4
Behavior Management 101 for Security Awareness Leaders
Security needs to be viewed through a wider lens. Beyond technology investments, security begins and ends with people: their behaviors, motivations, and habits.
Deloitte Insights1
Let's start with a question that I asked back in Chapter 1: Do you care more about what your employees know, or what they do? When it comes to the security of our organizations, actions speak louder than words. And actions speak louder than mere head knowledge. After all, it doesn't matter if your employees can verbally recite all the hallmarks of great password management if they never put that knowledge into practice. And even when your people read your flyers, posters, and newsletters on how to spot a phishing email and pass your phishing training module with flying colors, it's all worthless if they fall for a phishing attack during the hustle and bustle of real life. Actions—not head knowledge—will determine whether...