July 2019 AST Magazine AST July 2019 Magazine | Page 49

like phishing attacks) www.AmericanSecurityToday.com to gain a foothold into the network. July 2019 - Edition 35 Second, lack of train- ing could prevent IT professionals from becoming experts on how to use security systems effectively or understand evolving threat vectors. Knowledge is, in- deed, power. To that extent, senior leadership should strive to continually impart and reinforce knowledge among Regardless of the method, training must federal IT administrators in charge of se- be held consistently and regularly, as curity. the threat landscape is continually shift- ing. This can be done in several ways—through weekly meetings, quarterly check-ins, Agencies should also strive to maintain threat reports, message boards, and compliance with Defense Department more. Directive 8570, which provides guid- ance and procedures for training, certifi- Ongoing user training is also essen- cation and management of government tial. employees in charge of information as- Technology training can be augmented surance. with sessions that focus on hacker tactics, the latest malware, insider threats, and Support employees with the other items related to risk management. right tools for defense 47