Remote Workforce CISO Training Toolkit

Issue 2/3 2023 Information Security

CybeReady, a security awareness training company, announced the company’s Remote Workforce CISO Training Toolkit, now available for free download from https://cybeready.com/ciso-toolkit. The new educational resource for businesses of any size reinforces the need for a more security aware business culture as cyber threats continue to target remote workers.

With remote work there are security risks that CISOs should be aware of as they manage their remote workforce environments. Some of these risks include insecure Wi-Fi networks, phishing scams, weak passwords, personal device usage to access company data, and lack of onsite IT support. To help CISOs become more aware of the issues and better train their employees to deal with these risks, CybeReady has released the Remote Workforce CISO Toolkit, an easy-to-use training guide to increase awareness of high-risk issues.

The Remote Workforce CISO Toolkit not only applies to home-based work environments, but also to co-working spaces where individuals from different companies or industries can work in the same physical location such as WeWork or Fusion Workplaces. Remote workspaces can also include remote offices, where employees work from a company-managed remote space as part of a distributed team. A remote worker may also be a digital nomad, who may work from a coffee shop, hotel and restaurant all in a single day. Finally, there are hybrid remote work environments where the employee may work part-time from home and come into the office for collaboration and meetings.

Some of the recommendations highlighted in the Remote Workforce CISO Toolkit for executives and employees to be aware of, regardless of the remote workspace, include:

1. Ditch your default Wi-Fi password: Hackers can easily exploit default passwords, leaving your router vulnerable. Be sure to set a strong password of 12+ characters.

2. Work only on company-issued devices: Personal devices are no place for work-related documents (they typically lack robust security features). If accessing your calendar, email or instant messaging apps on your personal smartphone are a must, avoid sharing sensitive data.

3. Keep your company data tech safe: Prevent unauthorised access to sensitive material by setting up a dedicated workspace for your use only (no friends or family).

4. Protect your devices while traveling: Leaving home for 48 hours or more? Store work devices securely and ensure they're protected while on the move.

5. Tech issues call for expert support. When it comes to IT challenges, DIY isn't the way to go. Reach out to your IT department pros.

"Working remotely has revolutionised the way we work, but it has also opened the door to a growing wave of cyber threats,” said Eitan Fogel, CybeReady CEO. “Companies must remain vigilant, properly train their employees and invest in cybersecurity measures to protect the organisation from these evolving threats. CybeReady’s fully automated training solution allows CISOs to easily train employees year-round, wherever they are.”

The toolkit is available at https://cybeready.com/ciso-toolkit, and more information on The Ultimate Guide of Security Awareness Training is at https://cybeready.com/complete-guide-cyber-awareness.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Claude Mythos wake-up call
Technews Publishing AI & Data Analytics Information Security
AI has crossed a critical cybersecurity threshold and frontier models are accelerating attack lifecycles and will enable attackers to identify and exploit vulnerabilities at scale and speed, through novel methods that were previously the domain of advanced nation-state entities.

Read more...
If you cannot prove identity, you cannot claim security
Access Control & Identity Management Information Security
Cybersecurity planning for 2026 is a structural change in how attacks are executed and how trust is exploited, demanding that companies stop layering tools on top of infrastructure and instead prioritise intelligence and identity.

Read more...
95% do not have full trust in cybersecurity vendors
Information Security Security Services & Risk Management
Trust in cybersecurity vendors is fragile, difficult to measure, and increasingly shaping risk posture at both operational and board levels. Lack of verifiable transparency undermines cybersecurity decision-making, according to Sophos-backed research.

Read more...
Africa’s largest Zero Trust platform
NEC XON Information Security Commercial (Industry)
Africa has reached a significant cybersecurity milestone with the successful deployment of the continent’s largest Palo Alto Networks Prisma Access and Prisma Access Browser Zero Trust environment, supporting secure remote access for more than 40 000 users for a large enterprise in Africa.

Read more...
Supply chain attacks top threat over 12 months
Information Security
Supply chain attacks have become the most prevalent cyberthreat confronting businesses over the past year, according to a new Kaspersky global study, with nearly one-third of companies worldwide experiencing a supply chain threat in the past year.

Read more...
From vibe hacking to flat-pack malware
Information Security AI & Data Analytics
HP issued its latest Threat Insights Report, with strong indications that attackers are using AI to scale and accelerate campaigns, and that many are prioritising cost, effort, and efficiency over quality.

Read more...
NEC XON secures mobile provider’s hybrid identities
NEC XON Access Control & Identity Management Information Security Commercial (Industry)
For a leading South African telecommunications operator, identity protection has become a strategic priority as identity-centric attacks proliferate across the industry. The company faced mounting pressure to secure both human and non-human identities across complex hybrid environments.

Read more...
Microsoft 365 security is a ticking time bomb
Information Security
Across boardrooms and IT departments, a dangerous assumption persists that because data is stored in Microsoft 365 and Azure, it is automatically secure. This belief is fundamentally flawed and fosters a false sense of protection.

Read more...
Rise in malicious insider threat reports
News & Events Information Security
Mimecast Study finds 46% of SA organisations report a rise in malicious insider threat reports over the past year: reveals disconnect between security awareness and technical controls as AI-powered attacks accelerate.

Read more...
New campaign exploiting Google Tasks notifications
News & Events Information Security
New phishing scheme abuses legitimate Google Tasks notifications to trick corporate users into revealing corporate login credentials, which can then be used to gain unauthorised access to company systems, steal data, or launch further attacks.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.