Published: 14 February 2024
Summary
Insider risk management programs are gaining importance and require a programmatic approach focused on technical and nontechnical controls to identify risky behavior. Security and risk management leaders can increase the efficacy of their IRMPs by taking these three actions.
Included in Full Research
Overview
Key Findings
Insider risk management programs (IRMPs) sometimes fail to coordinatewith the right parties across different departments, leading to compromised workflows and responsibility confusion.
IRMPs often use basic or intermediate detection metrics that limit their visibility into potential threats.
Many IRMPs fail with their messaging to stakeholders about the primary intention, purpose and training of the program, thus negatively impacting program effectiveness.
Recommendations
To significantly improve IRMPs, security and risk management (SRM) leaders should:
Create a team of insider risk management leaders to facilitate governance, promote transparency and clarify workflows.
Guide remediation and intervention actions by developing a set of predictive risk indicators that
Clients can log in to view the entire
document.