Categories

Tag Cloud

Maintaining a sustainable strengthened cyber security posture

How organisations can avoid staff burnout during an extended period of heightened cyber threat.

Introduction

During an extended period of heightened cyber threat, your systems, processes and workforce will come under pressure. This guidance explains how to maintain a strengthened cyber posture in a sustainable and efficient way, whilst prioritising staff wellbeing. Looking after your staff is not only important from an HR perspective – it also directly contributes towards maintaining an organisation’s security and resilience.

What is an extended period of heightened threat?

There may be periods when the cyber threat is heightened for an extended period, for example as a result of geopolitical tensions. During these periods, organisations will experience:

  • an initial acute phase (when they are required to strengthen their defences and address vulnerabilities), followed by
  • protracted phase (when a strengthened cyber posture should be maintained to manage the residual risk from the increase in threat)

Over time, the cyber threat may come down again, but it is unlikely to return to the previous baseline. Organisations might maintain aspects of their strengthened posture for the long term, in response to a changed threat landscape. The NCSC will continue to issue guidance to help organisations assess the level of the cyber threat.

How could organisations be affected?

It may be difficult to maintain a strengthened posture for a sustained period. In particular, increased workloads for cyber security staff over an extended period can harm their wellbeing and lead to lower productivity (with a potential rise in unsafe behaviours or errors).

The following steps can help your organisation sustain its security posture whilst protecting staff wellbeing.