Friday 28 February 2025, 11am-12noon (GMT)
In this session, we addressed the growing cybersecurity risk posed by insider threats and discussed how organisations can protect themselves using a behaviour-based, AI-powered approach.
Insider threats can come from employees, contractors, or business partners who intentionally or unintentionally misuse their access to sensitive data and systems. These threats are particularly challenging to detect because they involve valid credentials and often occur under the radar.
Using real-life examples, we discussed:
- Types of insider threats: Insider threats can be malicious (such as employees stealing information), negligent (including employees failing to follow security procedures), or compromised (employees’ accounts hijacked through phishing or malware, for example).
- Financial and reputational impact: Insider threats can cause significant financial losses (average of $701.5k (almost £562k) per incident in 2023) and severe reputational and regulatory damage.
- Using UEBA for threat detection: User and entity behaviour analytics (UEBA) tools enhance traditional security by analysing user activity to detect abnormal behaviour, eliminating the need for predefined rules. This enables early detection and faster response to insider threats.
- AI and automation for fast action: UEBA tools leverage AI and machine learning for real-time monitoring, dynamic peer groupings, and automated investigations, helping security teams respond quickly to potential threats.
- Building a proactive culture: Beyond technical tools, employee education on best practices, like avoiding phishing and securing work devices, is essential to minimising insider threats.
By combining advanced AI-driven security tools with a culture of awareness, organisations can proactively defend against insider threats and strengthen their overall security posture.
Guest chaired by
Darren Fellows, Security Profession Capability Lead, DWP
Presented by
Kev Eley (info), VP UKI, Exabeam
By attending this webinar, you agree that the speaker’s organisation may use your details to enhance your experience and provide further information of interest. You can unsubscribe from these emails at any time.
