17
Session ID: Session Classification: Katrina Rodzon MAD Security Intermediate AWARENESS DOESN T MATTER: A BEHAVIOR DESIGN APPROACH TO SECURING USERS STU-R32B

Stu r32 b

Embed Size (px)

Citation preview

Page 1: Stu r32 b

Session ID:

Session Classification:

Katrina Rodzon MAD Security

Intermediate

AWARENESS DOESN T MATTER: A BEHAVIOR DESIGN APPROACH TO SECURING USERS

STU-R32B

Page 2: Stu r32 b

What is our biggest threat?

Page 3: Stu r32 b

Microsoft Security Intelligence Report, Volume 11

http://download.microsoft.com/download/0/3/3/0331766E-3FC4-44E5-B1CA-2BDEB58211B8/Microsoft_Security_Intelligence_Report_volume_11_English.pdf

72.5% Human Behavior

Page 4: Stu r32 b

Human Behavior is Our Biggest

Page 5: Stu r32 b

1. Stop clicking on links sent to them in emails from people they don t know

2. Stop falling for Phishing Attacks

3. Use passwords that are actually strong, not just ones that meet complexity requirements.

Magic Wand Question

Page 6: Stu r32 b

How Do We Try to Secure Our Users?

Page 7: Stu r32 b

Security Awareness Training

Page 8: Stu r32 b

Smoking and Awareness

Page 9: Stu r32 b

Security Awareness

Page 10: Stu r32 b

A Behavioral Design Approach to Securing Users

Page 11: Stu r32 b
Page 12: Stu r32 b

Raising Awareness

Page 13: Stu r32 b

Bad Passwords

Page 14: Stu r32 b

Raising Ability

Page 15: Stu r32 b

Creating Triggers

Page 16: Stu r32 b

1. Identify what key problems are.

2. Investigate why they are occurring in your users.

3. Apply the appropriate behavioral design approach.

Securing Our Users

Page 17: Stu r32 b

Improve your HUMANS…

Improve your

SECURITY.