Tool or infrastructure? Why it matters for HRM Let’s be clear: Not all HRM software is the same. It sounds obvious, right? Yet many people miss the difference between HRM tools, and HRM infrastructure. And when it comes to compounding security gains and designing for...
So, you’ve probably heard whispers (or maybe full-blown announcements!) about this thing called NIS2. But what exactly is the NIS2 Directive, and why should you care? Well, in a nutshell, it’s a new set of rules from the EU designed to seriously beef up...
The human side of cybersecurity is evolving. Fast.But there’s a good chance you might be stuck in the past. You probably have well-established views on security awareness, culture, and human risk.You genuinely believe they matter. But if we’re being honest – you...
Let’s start with a painful truth:Security awareness, culture, and human risk professionals are often undervalued. Despite the rising threat of human-enabled cyber attacks, many organizations still treat addressing the human aspect as a checkbox. A communications...
Unfortunately, most security awareness professionals don’t really understand the difference between: ✅ Inputs✅ Outputs✅ Outcomes But they don’t want to admit it. And honestly? We get it. It’s like pretending to know the plot of Inception when deep down, you’re just as...
Dogma #1 “Humans are the weakest link.” Dogma #2 “Security Awareness training = better behaviour” Dogma #3 “If we can nail engagement, we’ll nail risk reduction.” Dogma #4 “Security Awareness is *actually* about so much more than awareness.”...