Despite the daily reports of security incidents, information security is still often underestimated and seen as an IT responsibility that 'we'll just throw in'. This must and can be done differently. But to do so, we need Superheroes who stand up together, make a fist and make our digital world safer.
In fact, today's digital threats are nothing more than a monster we created ourselves, through the internet and all its capabilities that we gratefully embrace on a daily basis. Now that everything is connected, organisations must guard against threats from both outside and inside. These measures must be taken not only on a technical level, but also on a physical and human level.
Indeed, the threats can be found in several areas. Cybercriminals regularly send thousands of emails containing malware, hoping someone will click on them. There are also targeted attacks on specific targets, looking closely at how to penetrate an organisation. And that can include physically going there.
Getting the basics right
If we continue at the current pace with regard to ensuring information security, we will not get there and companies will continue to be in the news with security problems on a daily basis. Superheroes are needed. They are the watchful eye to test good security without being boring or giving the idea of wasting your time. Fortunately, there are already many organisations that have seen the light and have the basics in order, but there are also a lot that have taken no or hardly any measures.
If the basics are in order, many risks and threats are already captured. It is actually the same as with a common burglar: if you have two extra locks on your door and the neighbour does not, the burglar will go to the neighbour. Moreover, a cybercriminal often opts for the masses and sends tens of thousands of people an infected e-mail. It is almost certain that someone will click on the link. People are also approached daily with fake text messages.
We need to join forces and stand strong. It is not acceptable that still many organisations do not have the simplest measures in place. These are technical, physical and policy rules that need to be agreed upon within the organisation. I see in all kinds of sectors, from healthcare to the local bicycle repair shop, that the basics are not in order.
I, Marco Bijl of DigiTrust am a Superhero. I want to contribute to a safer digital world, by being a watchful eye and a fist. And demonstrating that gives me the strength I need to travel all over the country every day and test organisations. It gives me the strength to be critical at a hospital one day and a day later at a data centre or marketing agency that processes personal data of yours, mine or my children's.
The roles of a Superhero
Superheroes have multiple roles. They can update organisations on the risks involved and clarify what an Information Security Management System actually is. It just doesn't work if someone comes to the table with a boring, unappealing story. The entrepreneur, director or management - like all employees - needs a wake-up call. Every organisation, board, manager and employee - as well as you and me - need to be aware of what is going on. Superheroes can provide that.
We also need Superheroes to audit organisations. They judge whether an organisation really has its information security in order. This makes auditors the watchful eye. Thanks to their sharp, independent judgement and certification, they also provide stakeholders with assurance about the design, existence and operation of all security measures.
DigiTrust delivers Superheroes
Audits - despite being important - have historically had a boring image. Many people balk at spending three days talking about information security. The auditor asks questions that don't matter and it just doesn't appeal to many business owners and IT professionals. I am a Superhero and I think this should and can be done differently.
In an audit, the context of the organisation is leading. After all, a medical clinic is different from a marketing agency and an IT company is different from a bicycle shop. Every company has its own digital risks and must therefore take appropriate and relevant measures for them. Not nonsensical measures just because you have to, but measures that are good for your sleep.
Auditors who are Superheroes make a difference at organisations. They understand that every business is different, so they ask you the right, sharp questions. Moreover, DigiTrust's Superheroes ensure that an audit is no longer boring, but that the process becomes fun and its value is clear. It is a licence to operate. And every company can benefit from that.
Things have to be different, and we do things differently. Superheroes can do that.