Communicate Feedback to Every Employee and Executive
Proactively inform employees about their individual security performance
& executives about security effectiveness
Notify users of security-related actions in near real-time
Some users are targeted more frequently by attacks than others. These riskier workers need to know to remain more vigilant. The security team can communicate what a threat looks like, what actions to take, and other tips on how to keep the organization more secure.
Communicate to users in a personalized, trusted context about their security decisions and the repercussions. Help them understand how their actions compare to those of their peers. Explain the rationale behind changes in security policy, such as adjustment to access levels, permissions, and other controls.
Build management support
and track risk reduction
Security controls are regarded by many managers as creating unnecessary friction in the organization. Avoid workarounds by building support for a new way to approach cybersecurity. User Risk Scores for managers can help them understand how their team, department, or region is performing and where the real issues are.
Just as important as communicating where employees are falling short, managers want to know where they are improving and doing well. Executives want to know what security tools are working and which aren't. Security shouldn't be punitive, and no enterprise should rely on awareness training alone to turn the tide.
