SlideShare a Scribd company logo
1 of 5
Creating a Security
Culture
BY ROBIN GH PATRAS
Creating a security culture
Everyone in the organisation contributes to its security culture. Organizational culture has a direct
impact on security. Even with the best security processes and tools your organisation will still be at
risk if people have a poor attitude toward security.
The following steps will help to create a positive and sustainable security culture and reduce the
personnel security risks facing your organisation.
 Get commitment from the top
 Build security awareness
 Publish clear communications about security
 Support staff wellbeing
 Manage concerning behavior
 Avoid blame Culture
Creating a security culture
 Get commitment from the top
The chief executive and senior team must be committed to effective security practices
and procedures. They also need to model best practice throughout the organisation.
 Build security awareness
People are much more likely to engage in your security culture if they understand the
credible security risks that face your organisation. Increased awareness will help people
understand that they have important security responsibilities and know what those
responsibilities are.
Creating a security culture
Publish clear communications about security. Everyone needs access to clear policies and
procedures that:
 explain the reasons for your organization's security instructions
 outline legal, regulatory and compliance requirements
 ensure people understand their responsibilities.
Support staff wellbeing
 Provide people with access to support, such as a confidential employee assistance programme.
Encourage them to report and deal with personal issues before they become a serious problem.
Manage concerning behavior
Managers need tools and policies to identify, support, and manage people who display concerning
behavior to do with security, poor performance, or unacceptable conduct.
Creating a security culture
Avoid a blame culture
 People who raise legitimate security concerns should be encouraged and seen as
good corporate citizens rather than troublemakers.
 Reporting emerging concerns or near misses should be treated as a way of helping
colleagues who might be at risk, rather than getting them into trouble.

More Related Content

What's hot

Talon Security Solutions - Sell Sheet (1)
Talon Security Solutions - Sell Sheet (1)Talon Security Solutions - Sell Sheet (1)
Talon Security Solutions - Sell Sheet (1)
Tom Coyle
 
Breach Response Matters: Effectively Handling Health Care Cyber Security Inci...
Breach Response Matters: Effectively Handling Health Care Cyber Security Inci...Breach Response Matters: Effectively Handling Health Care Cyber Security Inci...
Breach Response Matters: Effectively Handling Health Care Cyber Security Inci...
Polsinelli PC
 
Information Systems Policy
Information Systems PolicyInformation Systems Policy
Information Systems Policy
Ali Sadhik Shaik
 
Ch07 Managing Risk
Ch07 Managing RiskCh07 Managing Risk
Ch07 Managing Risk
phanleson
 
Importance Of A Security Policy
Importance Of A Security PolicyImportance Of A Security Policy
Importance Of A Security Policy
charlesgarrett
 
News letter May 11
News letter May 11News letter May 11
News letter May 11
captsbtyagi
 
TycoIS Business Security Tips
TycoIS Business Security TipsTycoIS Business Security Tips
TycoIS Business Security Tips
Roy Kisner
 

What's hot (16)

Talon Security Solutions - Sell Sheet (1)
Talon Security Solutions - Sell Sheet (1)Talon Security Solutions - Sell Sheet (1)
Talon Security Solutions - Sell Sheet (1)
 
Breach Response Matters: Effectively Handling Health Care Cyber Security Inci...
Breach Response Matters: Effectively Handling Health Care Cyber Security Inci...Breach Response Matters: Effectively Handling Health Care Cyber Security Inci...
Breach Response Matters: Effectively Handling Health Care Cyber Security Inci...
 
Information Security is NOT an IT Issue
Information Security is NOT an IT IssueInformation Security is NOT an IT Issue
Information Security is NOT an IT Issue
 
Become CISSP Certified
Become CISSP CertifiedBecome CISSP Certified
Become CISSP Certified
 
Thinking beyond “Conventional” Crisis Communication.
Thinking beyond “Conventional” Crisis Communication.Thinking beyond “Conventional” Crisis Communication.
Thinking beyond “Conventional” Crisis Communication.
 
Risk Management and Security in Strategic Planning
Risk Management and Security in Strategic PlanningRisk Management and Security in Strategic Planning
Risk Management and Security in Strategic Planning
 
The Role of Information Security Policy
The Role of Information Security PolicyThe Role of Information Security Policy
The Role of Information Security Policy
 
Information Systems Policy
Information Systems PolicyInformation Systems Policy
Information Systems Policy
 
Ch07 Managing Risk
Ch07 Managing RiskCh07 Managing Risk
Ch07 Managing Risk
 
Asset, Threat, Vulnerability, Risk
Asset, Threat, Vulnerability, RiskAsset, Threat, Vulnerability, Risk
Asset, Threat, Vulnerability, Risk
 
Importance Of A Security Policy
Importance Of A Security PolicyImportance Of A Security Policy
Importance Of A Security Policy
 
Security analysis
Security analysisSecurity analysis
Security analysis
 
Building and implementing a successful information security policy
Building and implementing a successful information security policyBuilding and implementing a successful information security policy
Building and implementing a successful information security policy
 
News letter May 11
News letter May 11News letter May 11
News letter May 11
 
Chapter 4 Occupational Hazards, Industrial Safety and Health Issues(FASS)
Chapter 4 Occupational Hazards, Industrial Safety and Health Issues(FASS)Chapter 4 Occupational Hazards, Industrial Safety and Health Issues(FASS)
Chapter 4 Occupational Hazards, Industrial Safety and Health Issues(FASS)
 
TycoIS Business Security Tips
TycoIS Business Security TipsTycoIS Business Security Tips
TycoIS Business Security Tips
 

Similar to Creating a security culture 4

BUILDING A SAFETY CULTURE.pdf
BUILDING A SAFETY CULTURE.pdfBUILDING A SAFETY CULTURE.pdf
BUILDING A SAFETY CULTURE.pdf
Amb Steve Mbugua
 
A robust whistleblowing regime is now an integral part of governance.pdf
A robust whistleblowing regime is now an integral part of governance.pdfA robust whistleblowing regime is now an integral part of governance.pdf
A robust whistleblowing regime is now an integral part of governance.pdf
anjanaarts2014
 
SAFETY & SECURITY COURSE.pdf ..............
SAFETY & SECURITY COURSE.pdf ..............SAFETY & SECURITY COURSE.pdf ..............
SAFETY & SECURITY COURSE.pdf ..............
Muhammad Saqib
 
Practical aspects of health &safety by Jayadeva de Silva
Practical aspects of health &safety by Jayadeva de SilvaPractical aspects of health &safety by Jayadeva de Silva
Practical aspects of health &safety by Jayadeva de Silva
Self-employed
 
Targeted Solutions BMS Profile
Targeted Solutions BMS ProfileTargeted Solutions BMS Profile
Targeted Solutions BMS Profile
Leon Geldenhuys
 
Safety Psychology Conference 2017 Program
Safety Psychology Conference 2017 ProgramSafety Psychology Conference 2017 Program
Safety Psychology Conference 2017 Program
Barb Hutchinson
 

Similar to Creating a security culture 4 (20)

BUILDING A SAFETY CULTURE.pdf
BUILDING A SAFETY CULTURE.pdfBUILDING A SAFETY CULTURE.pdf
BUILDING A SAFETY CULTURE.pdf
 
Developing a safety culture
Developing a safety cultureDeveloping a safety culture
Developing a safety culture
 
Promoting a positive culture
Promoting a positive culturePromoting a positive culture
Promoting a positive culture
 
SAFETY CHAMPION
SAFETY CHAMPIONSAFETY CHAMPION
SAFETY CHAMPION
 
Corporate Safety Governance and Role of Leadeship
Corporate Safety Governance and Role of LeadeshipCorporate Safety Governance and Role of Leadeship
Corporate Safety Governance and Role of Leadeship
 
Safety Slide Show
Safety Slide ShowSafety Slide Show
Safety Slide Show
 
The importance of safety
The importance of safetyThe importance of safety
The importance of safety
 
Safety culture
Safety cultureSafety culture
Safety culture
 
Creating Workplace Safety Culture_ Key Elements & Challenges.pptx
Creating Workplace Safety Culture_ Key Elements & Challenges.pptxCreating Workplace Safety Culture_ Key Elements & Challenges.pptx
Creating Workplace Safety Culture_ Key Elements & Challenges.pptx
 
IATA safety culture from the top down
IATA safety culture from the top downIATA safety culture from the top down
IATA safety culture from the top down
 
Promoting a positive health and safety culture
Promoting a positive health and safety culturePromoting a positive health and safety culture
Promoting a positive health and safety culture
 
A robust whistleblowing regime is now an integral part of governance.pdf
A robust whistleblowing regime is now an integral part of governance.pdfA robust whistleblowing regime is now an integral part of governance.pdf
A robust whistleblowing regime is now an integral part of governance.pdf
 
Safety (Security) Training
Safety (Security) TrainingSafety (Security) Training
Safety (Security) Training
 
SAFETY & SECURITY COURSE.pdf ..............
SAFETY & SECURITY COURSE.pdf ..............SAFETY & SECURITY COURSE.pdf ..............
SAFETY & SECURITY COURSE.pdf ..............
 
Join in building a culture of prevention on osh
Join in building a culture of prevention on oshJoin in building a culture of prevention on osh
Join in building a culture of prevention on osh
 
GROUP-1-PPT.pptx
GROUP-1-PPT.pptxGROUP-1-PPT.pptx
GROUP-1-PPT.pptx
 
Practical aspects of health &safety by Jayadeva de Silva
Practical aspects of health &safety by Jayadeva de SilvaPractical aspects of health &safety by Jayadeva de Silva
Practical aspects of health &safety by Jayadeva de Silva
 
7 Keys for Creating a Safety Culture
7 Keys for Creating a Safety Culture7 Keys for Creating a Safety Culture
7 Keys for Creating a Safety Culture
 
Targeted Solutions BMS Profile
Targeted Solutions BMS ProfileTargeted Solutions BMS Profile
Targeted Solutions BMS Profile
 
Safety Psychology Conference 2017 Program
Safety Psychology Conference 2017 ProgramSafety Psychology Conference 2017 Program
Safety Psychology Conference 2017 Program
 

More from Robin Patras (9)

OutdoorElectricalSafety.pdf
OutdoorElectricalSafety.pdfOutdoorElectricalSafety.pdf
OutdoorElectricalSafety.pdf
 
Electrical_Safety_Tips.pdf
Electrical_Safety_Tips.pdfElectrical_Safety_Tips.pdf
Electrical_Safety_Tips.pdf
 
Fire prevention & use of fire extinguishers
Fire prevention & use of fire extinguishersFire prevention & use of fire extinguishers
Fire prevention & use of fire extinguishers
 
Congo virus alert
Congo virus alertCongo virus alert
Congo virus alert
 
Five common reasons for the road accident
Five common reasons for the road accidentFive common reasons for the road accident
Five common reasons for the road accident
 
Security awareness by robin
Security awareness by robinSecurity awareness by robin
Security awareness by robin
 
Untold story of karachi
Untold story of karachiUntold story of karachi
Untold story of karachi
 
Security presentation
Security presentationSecurity presentation
Security presentation
 
Defensive drivers training
Defensive drivers trainingDefensive drivers training
Defensive drivers training
 

Recently uploaded

Recently uploaded (20)

HMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptxHMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
HMCS Max Bernays Pre-Deployment Brief (May 2024).pptx
 
Tatlong Kwento ni Lola basyang-1.pdf arts
Tatlong Kwento ni Lola basyang-1.pdf artsTatlong Kwento ni Lola basyang-1.pdf arts
Tatlong Kwento ni Lola basyang-1.pdf arts
 
AIM of Education-Teachers Training-2024.ppt
AIM of Education-Teachers Training-2024.pptAIM of Education-Teachers Training-2024.ppt
AIM of Education-Teachers Training-2024.ppt
 
80 ĐỀ THI THỬ TUYỂN SINH TIẾNG ANH VÀO 10 SỞ GD – ĐT THÀNH PHỐ HỒ CHÍ MINH NĂ...
80 ĐỀ THI THỬ TUYỂN SINH TIẾNG ANH VÀO 10 SỞ GD – ĐT THÀNH PHỐ HỒ CHÍ MINH NĂ...80 ĐỀ THI THỬ TUYỂN SINH TIẾNG ANH VÀO 10 SỞ GD – ĐT THÀNH PHỐ HỒ CHÍ MINH NĂ...
80 ĐỀ THI THỬ TUYỂN SINH TIẾNG ANH VÀO 10 SỞ GD – ĐT THÀNH PHỐ HỒ CHÍ MINH NĂ...
 
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptx
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptxCOMMUNICATING NEGATIVE NEWS - APPROACHES .pptx
COMMUNICATING NEGATIVE NEWS - APPROACHES .pptx
 
latest AZ-104 Exam Questions and Answers
latest AZ-104 Exam Questions and Answerslatest AZ-104 Exam Questions and Answers
latest AZ-104 Exam Questions and Answers
 
FSB Advising Checklist - Orientation 2024
FSB Advising Checklist - Orientation 2024FSB Advising Checklist - Orientation 2024
FSB Advising Checklist - Orientation 2024
 
Mehran University Newsletter Vol-X, Issue-I, 2024
Mehran University Newsletter Vol-X, Issue-I, 2024Mehran University Newsletter Vol-X, Issue-I, 2024
Mehran University Newsletter Vol-X, Issue-I, 2024
 
Towards a code of practice for AI in AT.pptx
Towards a code of practice for AI in AT.pptxTowards a code of practice for AI in AT.pptx
Towards a code of practice for AI in AT.pptx
 
21st_Century_Skills_Framework_Final_Presentation_2.pptx
21st_Century_Skills_Framework_Final_Presentation_2.pptx21st_Century_Skills_Framework_Final_Presentation_2.pptx
21st_Century_Skills_Framework_Final_Presentation_2.pptx
 
Interdisciplinary_Insights_Data_Collection_Methods.pptx
Interdisciplinary_Insights_Data_Collection_Methods.pptxInterdisciplinary_Insights_Data_Collection_Methods.pptx
Interdisciplinary_Insights_Data_Collection_Methods.pptx
 
Food safety_Challenges food safety laboratories_.pdf
Food safety_Challenges food safety laboratories_.pdfFood safety_Challenges food safety laboratories_.pdf
Food safety_Challenges food safety laboratories_.pdf
 
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptx
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptxHMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptx
HMCS Vancouver Pre-Deployment Brief - May 2024 (Web Version).pptx
 
Simple, Complex, and Compound Sentences Exercises.pdf
Simple, Complex, and Compound Sentences Exercises.pdfSimple, Complex, and Compound Sentences Exercises.pdf
Simple, Complex, and Compound Sentences Exercises.pdf
 
Python Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docxPython Notes for mca i year students osmania university.docx
Python Notes for mca i year students osmania university.docx
 
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
Beyond_Borders_Understanding_Anime_and_Manga_Fandom_A_Comprehensive_Audience_...
 
Details on CBSE Compartment Exam.pptx1111
Details on CBSE Compartment Exam.pptx1111Details on CBSE Compartment Exam.pptx1111
Details on CBSE Compartment Exam.pptx1111
 
dusjagr & nano talk on open tools for agriculture research and learning
dusjagr & nano talk on open tools for agriculture research and learningdusjagr & nano talk on open tools for agriculture research and learning
dusjagr & nano talk on open tools for agriculture research and learning
 
SOC 101 Demonstration of Learning Presentation
SOC 101 Demonstration of Learning PresentationSOC 101 Demonstration of Learning Presentation
SOC 101 Demonstration of Learning Presentation
 
How to Add New Custom Addons Path in Odoo 17
How to Add New Custom Addons Path in Odoo 17How to Add New Custom Addons Path in Odoo 17
How to Add New Custom Addons Path in Odoo 17
 

Creating a security culture 4

  • 2. Creating a security culture Everyone in the organisation contributes to its security culture. Organizational culture has a direct impact on security. Even with the best security processes and tools your organisation will still be at risk if people have a poor attitude toward security. The following steps will help to create a positive and sustainable security culture and reduce the personnel security risks facing your organisation.  Get commitment from the top  Build security awareness  Publish clear communications about security  Support staff wellbeing  Manage concerning behavior  Avoid blame Culture
  • 3. Creating a security culture  Get commitment from the top The chief executive and senior team must be committed to effective security practices and procedures. They also need to model best practice throughout the organisation.  Build security awareness People are much more likely to engage in your security culture if they understand the credible security risks that face your organisation. Increased awareness will help people understand that they have important security responsibilities and know what those responsibilities are.
  • 4. Creating a security culture Publish clear communications about security. Everyone needs access to clear policies and procedures that:  explain the reasons for your organization's security instructions  outline legal, regulatory and compliance requirements  ensure people understand their responsibilities. Support staff wellbeing  Provide people with access to support, such as a confidential employee assistance programme. Encourage them to report and deal with personal issues before they become a serious problem. Manage concerning behavior Managers need tools and policies to identify, support, and manage people who display concerning behavior to do with security, poor performance, or unacceptable conduct.
  • 5. Creating a security culture Avoid a blame culture  People who raise legitimate security concerns should be encouraged and seen as good corporate citizens rather than troublemakers.  Reporting emerging concerns or near misses should be treated as a way of helping colleagues who might be at risk, rather than getting them into trouble.