Thursday 26 March 2026, 11am-12noon GMT
Most organisations today mandate cyber security awareness training for all their staff. Reporting to boards tends to focus on compliance-related measures, and numbers to training completion rates and click rates in simulated phishing attacks receive attention. Boards are not aware that these are not meaningful indicators of actual security behaviour, or how well the organisation is prepared against attacks. The talk will propose alternative outcome-oriented measures that boards should consider, and outline specific activities they should undertake to ensure secure behaviour, encourage active participation and build resilience among their employees.
Guest chaired by
Professor Andrew Clark (info) Content Advisor, The SASIG
Presented by
Professor Angela Sasse (info) Professor of Human-Centred Technology, Sasse Ruhr-Universität Bochum