spacer
spacer
spacer

A BLOG ABOUT CYBER SECURITY

Wombat Security is a leader in security awareness and training. Our blog covers the latest cyber security news, insights, and best practices. We arm infosec professionals with the knowledge and tools they need to improve end-user behaviors and reduce organizational risk.

Almost Half of Cardholders Avoid Stores Hit by Data Breaches

Posted by Mike Bailey on Oct 29, 2014 11:23:00 AM

  • Tweet

Topics: Compliance Training, Security Awareness and Training, In the News, Research and Analysis

spacer

Don't let your company be the next on the list of companies with data breaches. In a poll by Creditcards.com, it was revealed that 45% of cardholders would "definitely not" or "probably not" return to stores hit by major data breaches. This is a major concern for businesses that simply can't be ignored. 

Retail data breaches this year have included Target, Home Depot, Michaels, and many others. These security incidents have many sources  including phishing attacks, software vulnerabilities, and more.

But more than anything, human error is a major contributing factor in these incidents. In fact, IBM found in 2013 that 95% of cyber security incidents involved human error.  

So what can retailers do to reduce the likelihood of a major data breach? Beyond investing in technology  you should implement a Security Awareness and Training program for your employees. 

The 2014 U.S. State of Cybercrime Survey found that companies without security training for new hires reported an average of $683,000 in annual financial losses related to cyber security incidents. In contrast, those with training programs said they lost an average of $162,000 on security events.

While it's new to many organizations, an effective process for security awareness and training at a retailer looks something like this:

  • Assess employee's knowledge with knowledge assessments and/or simulated attacks
  • Use effective PCI DSS Compliance training that engages employees and does more than "check the box"
  • Consider other training like Email Security, Social Engineering, Physical Security, and more - depending on what's appropriate for employees
  • Reinforce training with security awareness materials like posters, screensavers, articles, and more
  • Measure results - and continue the cycle to reduce employee security vulnerabilities

By following this methodology, retailers have an excellent opportunity to confront and address the human threats as a part of their larger security strategy. The stats are adding up demonstrating that being proactive is now significantly less costly than sitting on the sidelines. 

spacer

 

spacer

Try Our Interactive Security Awareness Training Modules

Our 17+ interactive training modules in topics like Email Security, URL Training, Mobile App Security, and more are proven to change the behavior of end users and reduce risk.

Try Our Modules

Receive Updates From Our Blog

spacer

Connect With Us:

Posts by Topic:

  • Security Awareness and Training (75)
  • Phishing (57)
  • Cyber Threats (46)
  • Risk Management (39)
  • Keys to Success (29)
  • In the News (26)
  • Research and Analysis (23)
  • Wombat News and Product Updates (23)
  • Social Engineering (20)
  • Mobile/BYOD (19)
  • Social Networks (14)
  • Privacy (13)
  • Passwords (11)
  • Identity Theft Protection (10)
  • Compliance Training (7)
  • Security Breach Report (7)
  • Latest in Phishing (6)
  • Learning Science Principles (6)
  • Cyber Security Wins (4)
gipoco.com is neither affiliated with the authors of this page nor responsible for its contents. This is a safe-cache copy of the original web site.