Behaviour is the key

Issue 9 2020 Information Security

Everyone is aware of the cyber risks inherent in using a computer or laptop, which is why businesses spend significant amounts on protection for devices, servers and monitor Internet connections so closely. But, as previously stated, there is more to cybersecurity, especially when it comes to humans and the new way many are working as a result of COVID-19.

John Mc Loughlin, CEO of J2 Software, says remote work is becoming more normal, which not only means working from home, but also coffee shops and other remote locations. In these locations, the risks are higher and the problem of human behaviour is correspondingly higher as well – using free Wi-Fi is very convenient, but can be very risky when logging into servers and using confidential information.

The solution to these problems that can’t be resolved by traditional security software is managing behaviour. According to Mc Loughlin, the best way to do this is by first understanding what normal behaviour is and then identifying anomalies as soon as they occur.

“When it comes to behaviour, visibility into human and system behaviour is key to spotting problems before they turn nasty. With visibility into activity you can quickly identify someone who is malicious as well as those who do things through negligence, accidentally or have been compromised. Changes in behaviour and identifying known risk traits will allow you to identify and cut out insider risk.”

J2 supplies Dtex, an insider threat management solution that delivers always-on, human-centric security by proactively illuminating dangerous activity. Mc Loughlin says the solution will help stop insider threats, prevent data loss and protect the workforce wherever they may be.

Dtex Intercept 6.0 monitors user behaviour, offering ‘Indicators of Intent’ that give cybersecurity teams contextual awareness of workforce activities without invading personal privacy. It uncovers malicious and negligent behaviour before an incident occurs, and provides a full audit trail afterwards. (Dtex caters for the need for privacy and all personal data is masked until authorised people access the system, during an investigation for example.)

Ensuring visibility into behaviour, of both systems and people, allows cybersecurity departments to automatically monitor activities in real time, catching suspicious activities as they begin rather than after the damage is done. Without visibility, Mc Loughlin says all one can do is guess and hope for the best.

Intercept 6.0 continuously collects and synthesises more than 500 unique elements of enterprise telemetry from data, machines, applications and people (DMAP) to highlight dynamic Indicators of Intent that combine to deliver holistic, contextual awareness about an enterprise workforce’s activities. These elements are enriched in near real time using advanced behavioural models that are mapped against a person’s normal activity and peer group baselines.

Find out more about Dtex at www.securitysa.com/11700r




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Highest increase in global cyberattacks in two years
Information Security News & Events
Check Point Global Research released new data on Q2 2024 cyber-attack trends, noting a 30% global increase in Q2 2024, with Africa experiencing the highest average weekly per organisation.

Read more...
Cybersecurity a challenge in digitalising OT
Kaspersky Information Security Industrial (Industry)
According to a study by Kaspersky and VDC Research on securing operational technology environments, the primary risks are inadequate security measures, insufficient resources allocated to OT cybersecurity, challenges surrounding regulatory compliance, and the complexities of IT/OT integration.

Read more...
Cybersecurity in South Africa
Information Security
According to the Allianz Risk Barometer 2025, cyber incidents, including ransomware attacks, data breaches and IT outages, are now the top global business risk, marking their fourth year at the top.

Read more...
Are AI agents a game-changer?
Information Security
While AI-powered chatbots have been around for a while, AI agents go beyond simple assistants, functioning as self-learning digital operatives that plan, execute, and adapt in real time. These advancements do not just enhance cybercriminal tactics, they may fundamentally change the battlefield.

Read more...
Disaster recovery vs cyber recovery
Information Security
Disaster recovery centres on restoring IT operations following events like natural disasters, hardware failures or accidents, while cyber recovery is specifically tailored to address intentional cyberthreats such as ransomware and data breaches.

Read more...
Back-up securely and restore in seconds
Betatrac Telematic Solutions Editor's Choice Information Security Infrastructure
Betatrac has a solution that enables companies to back-up up to 8 TB of data onto a device and restore it in 30 seconds in an emergency, called Rapid Access Data Recovery (RADR).

Read more...
The rise of AI-powered cybercrime and defence
Information Security News & Events AI & Data Analytics
Check Point Software Technologies launched its inaugural AI Security Report, offering an in-depth exploration of how cybercriminals are weaponising artificial intelligence (AI), alongside strategic insights defenders need to stay ahead.

Read more...
The deepfake crisis is here and now
Information Security Training & Education
Deepfakes are a growing cybersecurity threat that blur the line between reality and fiction. These AI-generated synthetic media have evolved from technological curiosities to sophisticated weapons of digital deception, costing companies upwards of $600 000 each.

Read more...
What does Agentic AI mean for cybersecurity?
Information Security AI & Data Analytics
AI agents will change how we work by scheduling meetings on our behalf and even managing supply chain items. However, without adequate protection, they become soft targets for criminals.

Read more...
Phishing attacks through SVG image files
Kaspersky News & Events Information Security
Kaspersky has detected a new trend: attackers are distributing phishing emails to individual and corporate users with attachments in SVG (Scalable Vector Graphics) files, a format commonly used for storing images.

Read more...