Intelligent CISO Issue 46 | Page 15

latest intelligence

FIVE COMMON DATA SECURITY PITFALLS TO AVOID

PRESENTED BY ata security should

D be a top priority for enterprises , and for good reason . Even as the IT landscape becomes increasingly decentralised and complex , it ’ s important to understand that many security breaches are preventable .

While individual security challenges and goals may differ from company to company , often organisations make the same widespread mistakes as they begin to tackle data security .
What ’ s more , many enterprise leaders often accept these errors as normal business practice . There are several internal and external factors that can lead to successful cyberattacks , including :
• Erosion of network perimeters
• Increased attack surfaces offered by more complex IT environments
• Growing demands that cloud services place on security practices
• Increasingly sophisticated nature of cyber crimes
• Persistent cybersecurity skills shortage
• Lack of employee awareness surrounding data security risks
How strong is your data security practice ?
Let ’ s look at five of the most prevalent – and avoidable – data security missteps that make organisations vulnerable to potential attacks , and how you can avoid them .
Pitfall 1 : Failure to move beyond compliance
Compliance doesn ’ t necessarily equal security . Organisations that focus their limited security resources to comply with an audit or certification can become complacent .
Many large data breaches have happened in organisations that were fully compliant on paper .
The following examples show how focusing solely on compliance can diminish effective security :
Incomplete coverage
Enterprises often scramble to address database misconfigurations and outdated access polices prior to an annual audit .
Vulnerability and risk assessments should be ongoing activities . u
DOWNLOAD WHITEPAPERS AT : WWW . INTELLIGENTCISO . COM /
WHITEPAPERS www . intelligentciso . com
15