CINXE.COM
How can businesses ensure their culture aligns with cybersecurity risk management? | The Gazette
<!DOCTYPE html> <!--[if lt IE 7]><html class="no-js lt-ie9 lt-ie8 lt-ie7" lang="en" xml:lang="en" xmlns="http://www.w3.org/1999/xhtml" prefix="foaf: http://xmlns.com/foaf/0.1/ dc: http://purl.org/dc/terms/"> <![endif]--> <!--[if IE 7]><html class="no-js lt-ie9 lt-ie8 ie7" lang="en" xml:lang="en" xmlns="http://www.w3.org/1999/xhtml" prefix="foaf: http://xmlns.com/foaf/0.1/ dc: http://purl.org/dc/terms/"> <![endif]--> <!--[if IE 8]><html class="no-js lt-ie9 ie8" lang="en" xml:lang="en" xmlns="http://www.w3.org/1999/xhtml" prefix="foaf: http://xmlns.com/foaf/0.1/ dc: http://purl.org/dc/terms/"> <![endif]--> <!--[if IE 9]><html class="no-js ie9" lang="en" xml:lang="en" xmlns="http://www.w3.org/1999/xhtml" prefix="foaf: http://xmlns.com/foaf/0.1/ dc: http://purl.org/dc/terms/"> <![endif]--> <!--[if gt IE 8]<!--><html xmlns="http://www.w3.org/1999/xhtml" class="no-js " lang="en" xml:lang="en" prefix="foaf: http://xmlns.com/foaf/0.1/ dc: http://purl.org/dc/terms/"> <!--<![endif] --> <head> <meta http-equiv="Content-Type" content="text/html; charset=UTF-8" /> <title>How can businesses ensure their culture aligns with cybersecurity risk management? | The Gazette</title> <!--BIG-IP--> <meta name="viewport" content="width=980, initial-scale=1" /> <link rel="shortcut icon" href="/favicon.ico" type="/image/x-icon" /> <link rel="apple-touch-icon" href="/apple-touch-icon.png" /> <link rel="apple-touch-icon" sizes="57×57" href="/apple-touch-icon-57x57.png" /> <link rel="apple-touch-icon" sizes="72×72" href="/apple-touch-icon-72x72.png" /> <link rel="apple-touch-icon" sizes="76×76" href="/apple-touch-icon-76x76.png" /> <link rel="apple-touch-icon" sizes="114×114" href="/apple-touch-icon-114x114.png" /> <link rel="apple-touch-icon" sizes="120×120" href="/apple-touch-icon-120x120.png" /> <link rel="apple-touch-icon" sizes="144×144" href="/apple-touch-icon-144x144.png" /> <link rel="apple-touch-icon" sizes="152×152" href="/apple-touch-icon-152x152.png" /> <meta name="msapplication-square70x70logo" content="/smalltile.png" /> <meta name="msapplication-square150x150logo" content="/mediumtile.png" /> <meta name="msapplication-square310x310logo" content="/largetile.png" /> <meta name="locale" property="og:locale" content="en_GB" /> <meta name="type" property="og:type" content="article" /> <meta name="site_name" property="og:site_name" content="The Gazette" /> <meta property="twitter:dnt" content="on" /> <meta property="twitter:card" content="summary" /> <meta property="twitter:image" content="https://www.thegazette.co.uk/assets/chrome/images/1200x627.jpg" /> <meta name="image" property="og:image" content="https://www.thegazette.co.uk/assets/chrome/images/1200x627.jpg" /> <meta name="image:secure_url" property="og:image:secure_url" content="https://www.thegazette.co.uk/assets/chrome/images/1200x627.jpg" /> <meta property="twitter:title" content="How can businesses ensure their culture aligns with..." /> <meta name="title" property="og:title" content="How can businesses ensure their culture aligns with..." /> <meta name="url" property="og:url" content="https://www.thegazette.co.uk/all-notices/content/104262" /> <meta name="description" property="og:description" content="How can organisations ensure their employees do everything they can to protect networks and data from unauthorised access, theft, and damage? Rick..." /> <meta name="keywords" content="cyber security, hr" /> <meta name="description" content="How can organisations ensure their employees do everything they can to protect networks and data from unauthorised access, theft, and damage? Rick Lemieux of the DVMS Institute explains." /> <link href="https://www.thegazette.co.uk/assets/chrome/companies.css?build=1.1076.0.1414" rel="stylesheet" type="text/css" /> <link href="https://www.thegazette.co.uk/assets/chrome/print.css?build=1.1076.0.1414" rel="stylesheet" type="text/css" media="print" /><script src="https://www.thegazette.co.uk/assets/vendor/modernizr.js" type="text/javascript"></script></head> <body data-session-timeout="1800"> <div xmlns:xhtml="http://www.w3.org/1999/xhtml" xmlns:xs="http://www.w3.org/2001/XMLSchema" id="build-banner" hidden="" class="build-banner build-banner--origin">www.thegazette.co.uk 1.1076.0.1414</div> <div class="wrapper"> <div class="wrapperContent"> <ul xmlns:xhtml="http://www.w3.org/1999/xhtml" xmlns:xs="http://www.w3.org/2001/XMLSchema" class="accessible-links"> <li><a href="#navigation">Skip to service navigation</a></li> <li><a href="#main_content">Skip to main content</a></li> </ul> <nav xmlns:xhtml="http://www.w3.org/1999/xhtml" xmlns:xs="http://www.w3.org/2001/XMLSchema" role="navigation"> <div class="top-navigation-group"> <div class="main container"> <div class="nav-container navbar"> <div class="content"> <ul class="services nav"> <li> <a href="/" title="The Gazette Homepage">Home</a> </li> <li class="parent"> <a href="/place-notice?ref=topmenu">Place a Notice</a> <ul class="sub-nav"> <li> <a href="/place-notice">Guide to Placing a notice</a> </li> <li> <a href="/place-notice/pricing">Prices</a> </li> <li> <a href="/all-notices/place-a-coronavirus-notice">Place a coronavirus notice</a> </li> <li> <a href="/wills-and-probate/place-a-deceased-estates-notice">Place a deceased estates notice</a> </li> <li class="last"> <a href="/insolvency/place-an-insolvency-notice">Place an insolvency notice</a> </li> </ul> </li> <li class="parent"> <a href="/all-notices?ref=topmenu">Notices</a> <ul class="sub-nav"> <li> <a href="/all-notices">All Notices</a> </li> <li> <a href="/awards-and-accreditation">Awards and Accreditation</a> </li> <li> <a href="/insolvency">Insolvency</a> </li> <li> <a href="/wills-and-probate">Wills and Probate</a> </li> <!--<li><a href="/companies">Companies</a></li>--> <li> <a href="/browse-publications">Publications</a> </li> <li class="last"> <a href="/all-notices/resources">Resources</a> </li> </ul> </li> <li class="parent"> <a href="/companies/discover-more?ref=topmenu" class="active">Companies</a> <ul class="sub-nav"> <li> <a href="/companies">All company profiles</a> </li> <li> <a href="/companies/discover-more">Discover more</a> </li> <li> <a href="/companies/customise">Customise your profile</a> </li> <li> <a href="/dataservice">Company data</a> </li> <li> <a href="/companies/resources">Resources</a> </li> </ul> </li> <li class="parent"> <a href="/data/formats?ref=topmenu">Data and research</a> <ul class="sub-nav"> <li> <a href="/data/formats">Data formats and re-use</a> </li> <li> <a href="/dataservice">Data service</a> </li> <li> <a href="/researchservice">Research service</a> </li> <li class="last"> <a href="/validate/what-is-a-digital-signature">Data validation</a> </li> </ul> </li> <li class="parent"> <a href="/help?ref=topmenu">Help and about</a> <ul class="sub-nav"> <li> <a href="/help">Help</a> </li> <li> <a href="/about">About</a> </li> <li class="last"> <a href="/videos">Videos</a> </li> </ul> </li> <li> <a href="/shop">Shop</a> </li> </ul> <ul class="account nav"> <li><a href="/my-gazette/account?register=true" class="my-gazettes-register">Create an account</a></li> <li><a href="/sign-in" class="sign-in-modal">Sign in</a></li> </ul> </div> </div> </div> </div> </nav> <div class="header-group"> <div class="main container"> <header role="banner"> <div class="site-header"> <h1 class="accessible-text">The Gazette</h1><a href="/" title="The Gazette Home Page" class="site-logo"><img src="https://www.thegazette.co.uk/assets/chrome/images/logo.png?build=1.1076.0.1414" alt="The Gazette" /></a><p class="strapline"><a data-tooltip="middle:top" href="#published-by-authority">Published by Authority</a> | Est 1665 </p> </div> </header> </div> </div> <nav role="navigation"> <div class="service-navigation-group"> <div class="main container"> <div class="nav-container service-nav"> <ul class="nav nav-tabs" id="navigation"> <li><a href="/companies" class="">All company profiles</a></li> <li><a href="/companies/discover-more" class="">Discover more</a></li> <li><a href="/companies/customise" class="">Customise</a></li> <li><a href="/dataservice" class="">Company data</a></li> <li><a href="/companies/resources" class="active">Resources</a></li> </ul> </div> </div> </div> </nav> <div class="main-group "> <div class="main container" id="main_content"> <div class="services-content no-search"> <div class="main-pane" role="main"> <article class="news-article" id="content-104262"> <header> <div class="title"> <h1>How can businesses ensure their culture aligns with cybersecurity risk management?</h1> </div> </header> <div class="content"> <p><em>Cybersecurity risk management is vital for businesses. But how can organisations ensure their employees do everything they can to protect networks and data from unauthorised access, theft, and damage? Rick Lemieux, Executive Director at DVMS Institute, explains.</em></p> <p><em><img alt="Abstract computer screen with warning sign and malware" class="image-right" height="172" src="/content/image/cyber-attack.jpg " width="250" /></em></p> <p></p> <h2>Why is cybersecurity risk management critical to businesses?</h2> <p>Cybersecurity risk management is vital for businesses because it protects their digital systems, networks, and data from unauthorised access, theft, or damage. Some reasons why cybersecurity is essential to businesses include: </p> <ul class="bullet-list"> <li><strong>Customer trust</strong></li> </ul> <p>Customers are becoming more aware of the importance of protecting their data, and research shows that up to 40% of online shoppers may abandon a transaction if they suspect a website’s security is questionable. </p> <ul class="bullet-list"> <li><strong>Data breaches</strong></li> </ul> <p>A security breach can result in the loss of confidential data, customers, and revenue. In some cases, it can even result in legal liability. </p> <ul class="bullet-list"> <li><strong>Legal obligations</strong></li> </ul> <p>Businesses must comply with cybersecurity policies and procedures to meet regulatory legal requirements. Failure to comply can result in legal penalties, regulatory fines, and reputational damage. </p> <ul class="bullet-list"> <li><strong>Productivity</strong></li> </ul> <p>A cyberattack can cause critical business hours to be lost, wasting employees’ time, energy, and ability. This ultimately leads to inefficiency, lower business productivity, and potential revenue loss. </p> <ul class="bullet-list"> <li><strong>Data backup</strong></li> </ul> <p>Regular data backups are essential for restoring a company’s systems and data in the event of a successful cybersecurity attack. If data is frequently backed up, it can be swiftly restored in the event of an attack, lessening the impact on the business and clients. </p> <p></p> <h2>Who is responsible for cyber risk management in the workplace?</h2> <p>Today, cybersecurity is everyone’s responsibility, from the CEO to frontline employees. It requires a culture of awareness, accountability, and continuous learning to mitigate risks effectively and safeguard digital assets against emerging threats. </p> <p></p> <h2>How can organisations ensure employees care about cybersecurity risk in the workplace?</h2> <p>One of the best ways for employees to care about cybersecurity risk is to build a culture of innovation capable of identifying and mitigating cyber risk as part of day-to-day job routines. This entails creating a mindset in employees that the risk is real, and their daily actions impact that risk. </p> <p>Cybersecurity culture is essential as it plays a vital role in an organisation’s ability to protect organisational digital business performance, resilience, and trust with its clients. It must be part of a broader corporate culture of day-to-day actions, encouraging employees to make thoughtful decisions that align with security policies. </p> <p>Organisations unveil grand strategies and meticulously crafted blueprints for success. Yet, amidst the fanfare of vision statements and market analyses, Peter Drucker’s timeless adage whispers a crucial truth: “Culture eats strategy for breakfast.” Though deceptively simple, these five words provide a stark warning: no matter how superb the strategy, it can be undermined by human factors that are the invisible forces of organisational culture. </p> <p>The question is, how can you evaluate organisational culture? Tools such as the <a href="https://tools.dvmsinstitute.com/" target="_blank">DVMS Cybersecurity Cultural Assessment Tool</a> can help understand employee attitudes and perceptions towards cybersecurity with a comprehensive 67 question survey. Once responses have been collected, the organisation is scored against the known factors that drive positive culture. </p> <p>Leadership can then use this data to build and implement a plan to realise its future cybersecurity – upskilling employees, reinforcing cyber resilience, and ensuring the company has standardised processes based on the NIST Cybersecurity Framework which comply with government regulations. </p> <p></p> <h2>About the author</h2> <p>Rick Lemieux is Executive Director at <a href="https://dvmsinstitute.com/" target="_blank">DVMS Institute</a>. </p> <p></p> <h2>See also</h2> <p><a href="/companies/content/103944">Penetration testing: how to protect your business against cyber threats</a></p> <p><a href="/companies/content/103910">Phishing: What is it and how can you protect your business?</a></p> <p><a href="/companies/content/103389">Why email encryption is essential to your business</a></p> <p></p> <h2>Images</h2> <p><em>Getty Images</em></p> <p></p> <h2>Publication date</h2> <p><em>15 July 2024</em></p> <p></p> <p><em>Any opinion expressed in this article is that of the author and the author alone, and does not necessarily represent that of The Gazette.</em></p> </div> </article> </div> <div class="related-pane"> <aside> <div class="block actions"> <header> <h3 class="title">Actions</h3> </header> <div class="content"> <ul> <li class="share"><a class="sharing-tools-title" data-tooltip="middle:bottom" href="#sharing-tool"><span>Share this article</span></a><ul id="sharing-tool" class="sharing-tools progressive help-tip"> <li><a class="btn-social btn-social-link" href="/all-notices/content/104262/share/link"><span class="accessible-text">Link to this article</span></a></li> <li><a class="btn-social btn-social-facebook" target="_blank" href="http://www.facebook.com/sharer.php?u=https://www.thegazette.co.uk/all-notices/content/104262" title="Share this article to Facebook (Link opens in new browser window)"><span class="accessible-text">Share this article to Facebook </span></a></li> <li><a class="btn-social btn-social-linkedin" target="_blank" href="http://www.linkedin.com/shareArticle?mini=true&url=https%3A%2F%2Fwww.thegazette.co.uk%2Fall-notices%2Fcontent%2F104262&title=How%20can%20businesses%20ensure%20their%20culture%20aligns%20with%20cybersecurity%20risk%20management%3F" title="Share this article to LinkedIn (Link opens in new browser window)"><span class="accessible-text">Share this article to LinkedIn? </span></a></li> <li><a class="btn-social btn-social-twitter" target="_blank" href="http://twitter.com/share?text=How%20can%20businesses%20ensure%20their%20culture%20aligns%20with%20cybersecurity%20risk%20management%3F&url=https://www.thegazette.co.uk/all-notices/content/104262" title="Tweet this article (Link opens in new browser window)"><span class="accessible-text">Tweet this article</span></a></li> <li class="last"><a class="btn-social btn-social-googleplus" target="_blank" href="https://plus.google.com/share?url=https://www.thegazette.co.uk/all-notices/content/104262" title="Google+ this article (Link opens in new browser window)"><span class="accessible-text">Google+ this article</span></a></li> </ul> </li> </ul> </div> </div> </aside> <section> <div class="feed"> <header> <h3 class="title">Resources</h3> </header> <div class="content"> <article> <div class="feed-item"> <h4 class="title"><a href="/all-notices/content/104307">Company insolvency statistics - October 2024</a></h4> <div class="content"> <p>The October 2024 company insolvency stats for England and Wales have been published by The Insolvency Service, together with related figures for Scotland and Northern Ireland. </p> </div> <dl class="metadata"> <dt>Date:</dt> <dd> <time datetime="2024-11-19">19 November 2024</time> </dd> </dl> </div> </article> <article> <div class="feed-item"> <h4 class="title"><a href="/all-notices/content/104308">Individual insolvency statistics - October 2024</a></h4> <div class="content"> <p>The October 2024 individual insolvency stats for England and Wales have been published by The Insolvency Service, together with related figures for Scotland and Northern Ireland. </p> </div> <dl class="metadata"> <dt>Date:</dt> <dd> <time datetime="2024-11-19">19 November 2024</time> </dd> </dl> </div> </article> <article> <div class="feed-item"> <h4 class="title"><a href="/all-notices/content/104305">Demise of the Crown: Westminster to Windsor</a></h4> <div class="content"> <p>As part of our ‘Demise of the Crown’ series, historian Russell Malloch looks through the archives at The Gazette’s reporting of demise events following the final monarch burial at Westminster Abbey. </p> </div> <dl class="metadata"> <dt>Date:</dt> <dd> <time datetime="2024-11-18">18 November 2024</time> </dd> </dl> </div> </article> <p><a href="/all-notices/resources">See all resources</a></p> </div> </div> </section> </div> </div> </div> </div> </div> </div> <div class="footer-group"> <footer> <div class="footer-main"> <div class="main container"> <div id="footer-pane-first" class="footer-pane"> <ul class="social-icons"> <li><a class="btn-social btn-social-facebook" target="_blank" href="https://www.facebook.com/officialgazette" title="The Gazette on Facebook"><span class="accessible-text">Visit The Gazette on Facebook</span></a></li> <li><a class="btn-social btn-social-linkedin" target="_blank" href="http://www.linkedin.com/company/the-official-gazette?trk=company_logo" title="The Gazette on LinkedIn"><span class="accessible-text">Visit The Gazette on LinkedIn</span></a></li> <li><a class="btn-social btn-social-twitter" target="_blank" href="https://twitter.com/TheGazetteUK" title="The Gazette on Twitter"><span class="accessible-text">Visit The Gazette on Twitter</span></a></li> </ul><a href="http://www.tsoshop.co.uk/The-Gazette" target="_blank"><img src="https://www.thegazette.co.uk/assets/chrome/images/tso.png?build=1.1076.0.1414" alt="TSO" class="logo" /></a></div> <nav role="navigation"> <div class="nav-container footer-nav"> <h2><span class="accessible-text">The Gazette footer navigation</span></h2> <ul class="footer-lists"> <li> <h3 class="title"> <a href="/">The Gazette</a> </h3> <ul> <li> <a href="https://m.thegazette.co.uk/">View mobile site</a> </li> <li> <a href="/history">History of The Gazette</a> </li> <li> <a href="/place-notice/pricing">Price List</a> </li> <li> <a href="/cookies" id="cookies-content-link">Cookies</a> </li> <li> <a href="/terms-and-conditions">Terms and conditions</a> </li> </ul> </li> <li> <h3 class="title"> <a href="/policies">Policies</a> </h3> <ul> <li> <a href="/policies/web-links">Linking Policy</a> </li> <li> <a href="/privacy">Privacy Policy</a> </li> <li> <a href="/data">Re-using our data</a> </li> <li> <a href="/accessibility">Accessibility</a> </li> </ul> </li> <li> <h3 class="title">Get in touch</h3> <ul> <li> <a href="/help">Help</a> </li> <li> <a href="/contact-us">Contact us</a> </li> <li> <a href="/customer-charter">Customer Charter</a> </li> <li> <a href="/contact-us#foi">Freedom of Information</a> </li> </ul> </li> </ul> </div> </nav> <p class="help-tip help-tip-content published-by-authority" id="published-by-authority"> The Gazette is published by TSO (The Stationery Office) under the superintendence of His Majesty's Stationery Office (HMSO), part of <a href="http://www.nationalarchives.gov.uk/" target="_blank">The National Archives</a></p> </div> </div> <div class="footer-messages"> <div class="main container"> <div class="open-government-licence"> <h2><a href="http://www.nationalarchives.gov.uk/doc/open-government-licence/version/3?ref=logo" target="_blank">Open Government Licence</a></h2> <p>All content is available under the <a class="external-link" href="http://www.nationalarchives.gov.uk/doc/open-government-licence/version/3" target="_blank">Open Government Licence v3.0</a>, except where otherwise stated. However, please note that this licence does not cover the re-use of personal data. If you are interested in linking to this website please read our <a href="/policies/web-links">Linking Policy.</a></p> </div> </div> </div> </footer> </div><script> var buildVersion = "1.1076.0.1414"; var require ={ urlArgs:"build=" + buildVersion }; </script><script data-main="https://www.thegazette.co.uk/assets/init" src="https://www.thegazette.co.uk/assets/vendor/require.js/require-jquery.js?build=1.1076.0.1414"></script><script src="https://www.thegazette.co.uk/assets/scripts.js?build=1.1076.0.1414" type="text/javascript"></script><script type="text/javascript"> function addGtm() { (function(w,d,s,l,i){w[l]=w[l]||[];w[l].push({'gtm.start': new Date().getTime(),event:'gtm.js'});var f=d.getElementsByTagName(s)[0], j=d.createElement(s),dl=l!='dataLayer'?'&l='+l:'';j.async=true;j.src= 'https://www.googletagmanager.com/gtm.js?id='+i+dl;f.parentNode.insertBefore(j,f); })(window,document,'script','dataLayer','GTM-5FBKTZL'); } if (document.cookieManager){ if (document.cookieManager.isCookieUseAllowed('analytics')) { addGtm(); } // If a user provides consent then we can inject full GTM code document.addEventListener('tso.cookiesAllowed', function (e) { if (document.cookieManager.isCookieUseAllowed('analytics')) { addGtm(); } }); } </script><div id="gtm-noscript"><script type="text/javascript"> if (window.isAnalyticsCookieAllowed) { document.getElementById('gtm-noscript').remove(); } </script><iframe src="https://www.googletagmanager.com/ns.html?id=GTM-5FBKTZL&nojscript=true" height="0" width="0" style="display:none;visibility:hidden"></iframe></div><script type="text/javascript"> var _paq = window._paq = window._paq || []; /* tracker methods like 'setCustomDimension' should be called before 'trackPageView' */ _paq.push(['setDocumentTitle', document.title]); _paq.push(['setCookieDomain', '*.thegazette.co.uk']); _paq.push(['setDomains', ['*.thegazette.co.uk']]); function callAnonymousTracker() { var _paq = window._paq = window._paq || []; var doNotTrackAndDisableCookies = false; /* anonymous visitor */ var anu='https://analytics.thegazette.co.uk/anonymous/'; var primaryTracker = anu + 'matomo.php'; _paq.push(['setSiteId', '1']); _paq.push(['setTrackerUrl', primaryTracker]); _paq.push(['trackPageView']); _paq.push(['setIgnoreClasses', ['no-tracking', 'colorbox']]); _paq.push(['enableLinkTracking']); if (!document.cookieManager) { doNotTrackAndDisableCookies = true; } if (document.cookieManager) { if (!document.cookieManager.isCookieUseAllowed('analytics')) { doNotTrackAndDisableCookies = true; } } if (doNotTrackAndDisableCookies) { _paq.push(['setDoNotTrack', 1]); _paq.push(['disableCookies']); addMtm(anu, false); } } function callNonAnonymousTracker() { if (document.cookieManager){ if (document.cookieManager.isCookieUseAllowed('analytics')) { addSecondMtm(); } // If a user provides consent then we can inject full GTM code document.addEventListener('tso.cookiesAllowed', function (e) { if (document.cookieManager.isCookieUseAllowed('analytics')) { addSecondMtm(); } }); } } function addMtm(u, reInit) { var d=document, g=d.createElement('script'), s=d.getElementsByTagName('script')[0], ms=document.getElementById('matomoScript'); if (reInit) { if (ms) { ms.remove(); } } g.id='matomoScript'; g.type='text/javascript'; g.async=true; g.src=u+'matomo.js'; s.parentNode.insertBefore(g,s); } function addSecondMtm() { var _paq = window._paq = window._paq || []; /* non-anonymous visitor */ var nanu='https://analytics.thegazette.co.uk/non_anonymous/'; var secondaryTracker = nanu + 'matomo.php'; var secondaryWebsiteId = 1; // Also send all of the tracking data to the secondary Matomo server _paq.push(['addTracker', secondaryTracker, secondaryWebsiteId]); addMtm(nanu, true); } (function() { callAnonymousTracker(); callNonAnonymousTracker(); })(); </script><noscript> <p><img src="//analytics.thegazette.co.uk/anonymous/matomo.php?idsite=1&rec=1" style="border:0;" alt="" /></p> </noscript> </body> </html>