Report: Social Media a Top Cybersecurity Challenge in the Workplace

Safe social media use is the top cybersecurity challenge for employees, according to the latest report from Wombat Security Technologies on security awareness issues in enterprise organizations. The 2016 Beyond the Phish Report evaluated two years of assessment data from Wombat's Security Education Platform and surveyed hundreds of security professionals to find out how well end users are able to identify and manage security threats. The data came from a variety of sectors, including finance, technology, healthcare and education.

Overall, 31 percent of end users missed assessment questions related to using social media safely in the workplace. When the results were broken down by industry, education was among the top three sectors that struggle the most in the social media realm, missing 36 percent of assessment questions on safe social media use. The other two sectors with the least social media savvy: telecommunications (38 percent of questions missed) and retail (34 percent of questions missed).

After social media, the least understood cybersecurity topics across all industries were protecting and disposing of data securely (30 percent of questions missed); identifying phishing threats (28 percent of questions missed); protecting confidential information (27 percent of questions missed); and working safely outside the office (26 percent of questions missed).

The report linked the lack of understanding around common cybersecurity threats to the ever-growing problem of phishing. "Many of these risky behaviors exacerbate the phishing problem," Wombat President and CEO Joe Ferrara said in a statement. According to another Wombat study released back in January, phishing attacks have increased 13 percent since 2014. "To reduce cyber risk in organizations, security education programs must teach and assess end users across many topic areas, like oversharing on social media and proper data handling," said Ferrara.

Despite all the challenges, there are several areas of cybersecurity where employees are getting it right. The Wombat report highlighted the following categories where end users answered the highest percentage of assessment questions correctly:

  • Building safe passwords (90 percent of questions answered correctly);
  • Protecting against physical risks, such as ensuring no one follows you into a secure area or not leaving sensitive files on your desk (85 percent of questions answered correctly); and
  • Internet safety (84 percent of questions answered correctly).

The full Beyond the Phish Report can be downloaded free from the Wombat Security Technologies site (registration required).

About the Author

Rhea Kelly is editor in chief for Campus Technology, THE Journal, and Spaces4Learning. She can be reached at [email protected].

Featured

  • An elementary school teacher and young students interact with floating holographic screens displaying colorful charts and playful data visualizations in a minimalist classroom setting

    New AI Collaborative to Explore Use of Artificial Intelligence to Improve Teaching and Learning

    Education-focused nonprofits Leading Educators and The Learning Accelerator have partnered to launch the School Teams AI Collaborative, a yearlong pilot initiative that will convene school teams, educators, and thought leaders to explore ways that artificial intelligence can enhance instruction.

  • landscape photo with an AI rubber stamp on top

    California AI Watermarking Bill Supported by OpenAI

    OpenAI, creator of ChatGPT, is backing a California bill that would require tech companies to label AI-generated content in the form of a digital "watermark." The proposed legislation, known as the "California Digital Content Provenance Standards" (AB 3211), aims to ensure transparency in digital media by identifying content created through artificial intelligence. This requirement would apply to a broad range of AI-generated material, from harmless memes to deepfakes that could be used to spread misinformation about political candidates.

  • closeup of laptop and smartphone calendars

    2024 Tech Tactics in Education Conference Agenda Announced

    Registration is free for this fully virtual Sept. 25 event, focused on "Building the Future-Ready Institution" in K-12 and higher education.

  • cloud icon connected to a data network with an alert symbol (a triangle with an exclamation mark) overlaying the cloud

    U.S. Department of Commerce Proposes Reporting Requirements for AI, Cloud Providers

    The United States Department of Commerce is proposing a new reporting requirement for AI developers and cloud providers. This proposed rule from the department's Bureau of Industry and Security (BIS) aims to enhance national security by establishing reporting requirements for the development of advanced AI models and computing clusters.