LF logo
by learnformula
search
Log in
search
Courses/Law/Cybersecurity Law

The Biggest Cyber Security Threat: Human Behavior

Creating a Security-First Culture to Combat Cyber Threats and Ensure Resilience

Created byCLE Companion
BeginnerUpdated May 26, 2024
The Biggest Cyber Security Threat: Human Behavior

What You'll Learn

check_circleIdentify Key Cybersecurity Threats: Understand the critical role of human behavior in cybersecurity breaches and recognize the importance of creating a security-first culture within your firm.
check_circleEvaluate the Impact of Cyber Attacks: Assess the potential consequences of cyber attacks, including ransomware, loss of reputation, client trust, malpractice, ethical violations, and financial ruin.
check_circleImplement Effective Cybersecurity Strategies: Learn and apply best practices in technology and human factors, such as Multi-Factor Authentication (MFA), Endpoint Detection & Response (EDR), encryption, and continuous security refinement.
check_circleEnhance Employee Awareness and Engagement: Develop and execute training programs to increase cybersecurity awareness and vigilance among employees, fostering a culture of engagement and proactive defense against social engineering and other cyber threats.

About This Course

Your firm’s cybersecurity is only as strong as your weakest link: your employees. 95% of all successful cyber breaches are due to human behavior. Human behavior is the biggest threat to your firm’s cybersecurity, and this webinar will show you how to address that threat. You’ll learn how to educate and train your team so that they help rather than hurt your cybersecurity. With these strategies, you can create a security-first culture that will help your firm survive and thrive in the face of the cyber pandemic.

Outline:

1. Introduction

  • The biggest cybersecurity threat: human behavior
  • Importance of creating a security-first culture for a firm

2. Cyber Attack Nightmares

  • Ransomware & Extortion
  • Loss of Reputation
  • Loss of Client's Trust
  • Malpractice
  • Ethical Violation & Loss of License
  • Financial Ruin

3. Truths

  • No such thing as too small
  • Ethical obligation - RPC 1.1 and 1.6(c)
  • Insurance won't protect you
  • InfoSec is essential, traditional IT isn't enough
  • Need to address tech and human factors

4. RPC Ethics and Confidentiality

  • ABA RPC 1.1, Competency - comment [8]
  • ABA RPC, Confidentiality of Information - 1.6

5. NIST Technology Standards

6. Technology Best Practices

  • Multi-Factor Authentication (MFA)
  • Endpoint Detect & Respond (EDR)
  • Encrypt
  • Continuous Refinement
  • Active Security Team

7. Human Factors

  • Leading cause of cybersecurity breaches: 95% due to human behavior
  • Lack of awareness & training
  • Social engineering (Phishing & Spear-Phishing) - 90%
  • Human error - 63%
  • Insiders - innocent and on purpose
  • Poor communication

8. Know Your Enemy

  • Hacktivists
  • Organized Crime
  • State-sponsors
  • Script kiddies
  • Insiders

9. Exploiting Human Behavior

  • Social Engineering
  • Gets people to act on their behalf
  • Prey on lack of knowledge, fear, FOMO, continuous partial attention, curiosity, and trust

10. Top 3 Failure Points

  • Password Practices
  • Lack of Awareness (Training/Vigilance)
  • Not keeping software up to date

11. Common Attitude Problems

12. Essential Strategies

  • Training for Awareness & Response
  • Vigilance & Testing
  • Culture of Engagement

13. Training (Awareness & Behaviors)

  • Effective training - Action Learning
  • Poor design and lack of follow-up can lead to training failure

14. Vigilance (Trust and Verify)

15. Security First Culture

  • Elements of culture
  • Culture quiz

16. A Leader's Job

17. Employee Engagement

  • The engagement problem
  • Toxic behaviors undermine engagement

18. The Most Important Skill - Communication

19. Engagement Quiz

20. Putting it all together

21. Roadmap

22. Free Resources

Your Instructors

CLE Companion
CLE Companion

The Smart Route to CLE Compliance

menu_book16 courses
star144 reviews

CLE Companion is a leading virtual Continuing Legal Education provider offering top-quality courses to lawyers across the US and Canada. Its mission is to utilize technologies to support the completion of CLE with unparalleled convenience and value.    

Tom Kirkham
Tom Kirkham

Founder and CEO of Kirkham IronTech

Tom Kirkham is the founder and CEO of Kirkham IronTech, which provides cybersecurity defense systems and training programs for companies looking to create security-first environments. As a cybersecurity thought leader, Kirkham brings more than three decades of software design, network administration, computer security and cybersecurity knowledge to organizations around the country. He frequently speaks about the latest security threats. The Cyber Pandemic Survival Guide is his first book.

Doug Brown, J.D.
Doug Brown, J.D.

Chief Learning Officer Summit Success, LLC | Executive Coach | Speaker | Strategist

Doug Brown, JD is a law firm consultant and growth strategist who helps law firm leaders protect, sustain and extend success so that its owners make more money, faster with less stress. Doug is an expert in helping teams achieve peak performance without the overwhelm or burnout that plagues the legal profession. He’s done this as an attorney, global business executive and professional educator. Doug designed and taught MBA programs in innovation, leadership, finance, and entrepreneurship as a Program Chair and Professor for The Malcolm Baldrige School of Business before being recruited to become the Executive Director of the Connecticut Bar Association. Today he is Chief Learning Officer and Head Executive Coach for Summit Success International - a personal and professional development firm.

Credit Information

What Students Are Saying

0.0
Student's Choice
0 reviews

Frequently Asked Questions

We are a registered provider with 327+ associations and regulatory bodies worldwide. We operate across 29 global markets including Canada, the US, Australia, and the UK. Every course page clearly displays its specific accreditations. Upon completion, you receive a professional certificate that can be validated online. Our certificates include all necessary accreditation details, credit hours, and completion dates, and are formatted specifically to meet the submission requirements of most global regulatory bodies.