Inadequate IT security training

B2B Cyber ​​Security ShortNews

Share post

Although human error is the top cybersecurity concern for four in ten (39 percent) of German SMEs, these companies' IT security training does not cover some of the most common security-related topics.

This means that there is an alarming discrepancy between the real threat situation and the risk awareness of employees - this is the conclusion of a current study by Sharp among more than 500 IT decision-makers and procurement managers from SMEs in various industries throughout Germany. The results are part of a large-scale Europe-wide study* by Sharp. According to the decision-makers surveyed, employees who are inadequately informed about IT security represent the second largest risk factor (39 percent) for their company - ahead of targeted attacks or a lack of protective measures. Only missing software and system updates are even more serious (40 percent).

Inadequate IT security training

Despite these concerns and the importance placed on comprehensive IT security training, the study shows that SMEs do not adequately cover some of the most important topics in their relevant employee training. Threats such as viruses and phishing are largely not discussed in the companies surveyed. The same applies to data loss and attacks that occur due to weak passwords - although up to a third of German SMEs are affected by exactly these issues.

Only about four to five out of ten IT security training courses deal with password security (41 percent), downloading files (42 percent), secure handling of data (48 percent), network security (40 percent) or the basics of and unsubscribe (41 percent). What is also worrying is that, despite an increase in hybrid working models with a correspondingly more complex cyber threat situation, only just under half (44 percent) of German SMEs have adapted their security training accordingly. And only in 37 percent of the companies surveyed does the topic of hybrid working even play a role in training.

“If training on everyday topics such as changing passwords, recognizing phishing emails and downloading files is not ongoing, this can become a real IT security risk. The increase in AI-powered phishing attacks in particular means that more companies are vulnerable to attacks than ever before. “As a result, German SMEs must instruct their employees to be more vigilant and deal appropriately with these new threats, as knowledge gaps can result in significant costs,” comments Kai Scott, Managing Director of Sharp Business Systems Germany.

More at Sharp.de

 


About Sharp Business Systems

Sharp Business Systems Deutschland GmbH (SBSD), headquartered in Cologne, is part of Sharp Europe and therefore also part of Sharp Corporation, a global technology company that employs more than 46.000 people worldwide and is an expert in innovations in the business-to-business sector and consumer is. Sharp offers a portfolio that ranges from desktop printers to multifunction printers, interactive monitors and displays, and collaboration platforms. The optimally coordinated solutions enable networked collaboration and help organizations make their business processes more efficient.


 

Matching articles on the topic

Report: 40 percent more phishing worldwide

The current spam and phishing report from Kaspersky for 2023 speaks for itself: users in Germany are after ➡ Read more

BSI sets minimum standards for web browsers

The BSI has revised the minimum standard for web browsers for administration and published version 3.0. You can remember that ➡ Read more

Printers as a security risk

Corporate printer fleets are increasingly becoming a blind spot and pose enormous problems for their efficiency and security. ➡ Read more

Stealth malware targets European companies

Hackers are attacking many companies across Europe with stealth malware. ESET researchers have reported a dramatic increase in so-called AceCryptor attacks via ➡ Read more

IT security: Basis for LockBit 4.0 defused

Trend Micro, working with the UK's National Crime Agency (NCA), analyzed the unpublished version that was in development ➡ Read more

MDR and XDR via Google Workspace

Whether in a cafe, airport terminal or home office – employees work in many places. However, this development also brings challenges ➡ Read more

Test: Security software for endpoints and individual PCs

The latest test results from the AV-TEST laboratory show very good performance of 16 established protection solutions for Windows ➡ Read more

FBI: Internet Crime Report counts $12,5 billion in damage 

The FBI's Internet Crime Complaint Center (IC3) has released its 2023 Internet Crime Report, which includes information from over 880.000 ➡ Read more