Increased awareness of security problems doesn't always translate to more secure behavior. Studies show that a small percentage of users repeatedly fall victim to phishing attacks and are responsible for a large share of security failures. (Photo: Yingyaipumi/Adobe Stock)

Cybersecurity is a complex skill to master. And no, this is not because there is a dearth of tools or technology (a common misconception), but because the human element is the most significant and largest root cause of all cyber-attacks.

Organizations can spend all the money they want on technology but eventually, if a crafty attacker picks up the phone, sends a phishing email or manipulates people to perform an action, they'll easily access what they're looking for. It's like building a security fence around the house, locking all windows, but opening the front door to the attacker. Security leaders increasingly recognize this problem and that's why security awareness is a top security priority. Yet awareness doesn't always translate into secure behavior, and sculpting that is no easy feat.

Want to continue reading?
Become a Free PropertyCasualty360 Digital Reader

Your access to unlimited PropertyCasualty360 content isn’t changing.
Once you are an ALM digital member, you’ll receive:

  • Breaking insurance news and analysis, on-site and via our newsletters and custom alerts
  • Weekly Insurance Speak podcast featuring exclusive interviews with industry leaders
  • Educational webcasts, white papers, and ebooks from industry thought leaders
  • Critical converage of the employee benefits and financial advisory markets on our other ALM sites, BenefitsPRO and ThinkAdvisor
NOT FOR REPRINT

© 2025 ALM Global, LLC, All Rights Reserved. Request academic re-use from www.copyright.com. All other uses, submit a request to [email protected]. For more information visit Asset & Logo Licensing.