• Home
  • About
  • Contact
  • Privacy
  • Terms
  • DCMA
  • Write For Us / Submit
Tech News, Magazine & Review WordPress Theme 2017
  • Tech
    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    120+ Best Creative Names for Team at Work

    120+ Best Creative Names for Team at Work

    Can You Repair Printed Circuit Board ?

    Mastering PCB Board Repair Comprehensive Guide

    Breaking Barriers Federal Inmate Texting Service

    Breaking Barriers Federal Inmate Texting Service

    transfer whatsapp from android to iphone

    How to Transfer WhatsApp from Android to iPhone!

    Understanding the Role of Humidity Chambers in Climate Testing

    Understanding the Role of Humidity Chambers in Climate Testing

    Everything You Get to Know About Movember Beard Memes

    Everything You Get to Know About Movember Beard Memes

    Best Book Recommendation Apps

    11 Best Book Recommendation Apps

    How to quickly divide or Split PDF files

    How to Quickly Divide or Split PDF Files

  • Gear
    • All
    • Camera
    • Laptop
    • Smartphone
    The New Galaxy Watch Ultra and Galaxy Ring Are Announced by Samsung

    The New Galaxy Watch Ultra and Galaxy Ring Are Announced by Samsung

    Exploring the Innovative Features of Pear Phones

    Exploring the Innovative Features of Pear Phones

    Latest Smart Home Gadgets for a Connected Life

    Latest Smart Home Gadgets for a Connected Life

    Eco-Friendly Products for Students

    Eco-Friendly Products for Students

    Essential Photography Equipment and Gadgets

    Mastering Your Shots: Essential Photography Equipment and Gadgets

    Level Up Your Game: Must-Have Gaming Gear!

    Level Up Your Game: Must-Have Gaming Gear!

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
  • Gaming
    Master the World of Online Gaming with the Best Gaming VPN

    Master the World of Online Gaming with 3 Best Gaming VPN

    7 Powerful Strategies to Overcome Video Game Addiction and Reclaim Your Life

    7 Powerful Strategies to Overcome Video Game Addiction and Reclaim Your Life

    Powerful Ways Xbox Cloud Gaming is Revolutionizing the Gaming World

    5 Powerful Ways Xbox Cloud Gaming is Revolutionizing the Gaming World

    9 Best Alternative Games Like Kahoot

    9 Best Alternative Games Like Kahoot

    The Top 8 Free Bubble Shooter Games for Endless Entertainment

    The Top 8 Free Bubble Shooter Games for Endless Entertainment

    Cloud Gaming Revolution: How Streaming is Changing the Future of Gaming

    Cloud Gaming Revolution: How Streaming is Changing the Future of Gaming

  • Crypto
    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    120+ Best Creative Names for Team at Work

    120+ Best Creative Names for Team at Work

    Can You Repair Printed Circuit Board ?

    Mastering PCB Board Repair Comprehensive Guide

    Breaking Barriers Federal Inmate Texting Service

    Breaking Barriers Federal Inmate Texting Service

    transfer whatsapp from android to iphone

    How to Transfer WhatsApp from Android to iPhone!

    Understanding the Role of Humidity Chambers in Climate Testing

    Understanding the Role of Humidity Chambers in Climate Testing

    Everything You Get to Know About Movember Beard Memes

    Everything You Get to Know About Movember Beard Memes

    Best Book Recommendation Apps

    11 Best Book Recommendation Apps

    How to quickly divide or Split PDF files

    How to Quickly Divide or Split PDF Files

  • Business
    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    120+ Best Creative Names for Team at Work

    120+ Best Creative Names for Team at Work

    Can You Repair Printed Circuit Board ?

    Mastering PCB Board Repair Comprehensive Guide

    Breaking Barriers Federal Inmate Texting Service

    Breaking Barriers Federal Inmate Texting Service

    transfer whatsapp from android to iphone

    How to Transfer WhatsApp from Android to iPhone!

    Understanding the Role of Humidity Chambers in Climate Testing

    Understanding the Role of Humidity Chambers in Climate Testing

    Everything You Get to Know About Movember Beard Memes

    Everything You Get to Know About Movember Beard Memes

    Best Book Recommendation Apps

    11 Best Book Recommendation Apps

    How to quickly divide or Split PDF files

    How to Quickly Divide or Split PDF Files

No Result
View All Result
Geeky Insider
  • Tech
    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    120+ Best Creative Names for Team at Work

    120+ Best Creative Names for Team at Work

    Can You Repair Printed Circuit Board ?

    Mastering PCB Board Repair Comprehensive Guide

    Breaking Barriers Federal Inmate Texting Service

    Breaking Barriers Federal Inmate Texting Service

    transfer whatsapp from android to iphone

    How to Transfer WhatsApp from Android to iPhone!

    Understanding the Role of Humidity Chambers in Climate Testing

    Understanding the Role of Humidity Chambers in Climate Testing

    Everything You Get to Know About Movember Beard Memes

    Everything You Get to Know About Movember Beard Memes

    Best Book Recommendation Apps

    11 Best Book Recommendation Apps

    How to quickly divide or Split PDF files

    How to Quickly Divide or Split PDF Files

  • Gear
    • All
    • Camera
    • Laptop
    • Smartphone
    The New Galaxy Watch Ultra and Galaxy Ring Are Announced by Samsung

    The New Galaxy Watch Ultra and Galaxy Ring Are Announced by Samsung

    Exploring the Innovative Features of Pear Phones

    Exploring the Innovative Features of Pear Phones

    Latest Smart Home Gadgets for a Connected Life

    Latest Smart Home Gadgets for a Connected Life

    Eco-Friendly Products for Students

    Eco-Friendly Products for Students

    Essential Photography Equipment and Gadgets

    Mastering Your Shots: Essential Photography Equipment and Gadgets

    Level Up Your Game: Must-Have Gaming Gear!

    Level Up Your Game: Must-Have Gaming Gear!

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
  • Gaming
    Master the World of Online Gaming with the Best Gaming VPN

    Master the World of Online Gaming with 3 Best Gaming VPN

    7 Powerful Strategies to Overcome Video Game Addiction and Reclaim Your Life

    7 Powerful Strategies to Overcome Video Game Addiction and Reclaim Your Life

    Powerful Ways Xbox Cloud Gaming is Revolutionizing the Gaming World

    5 Powerful Ways Xbox Cloud Gaming is Revolutionizing the Gaming World

    9 Best Alternative Games Like Kahoot

    9 Best Alternative Games Like Kahoot

    The Top 8 Free Bubble Shooter Games for Endless Entertainment

    The Top 8 Free Bubble Shooter Games for Endless Entertainment

    Cloud Gaming Revolution: How Streaming is Changing the Future of Gaming

    Cloud Gaming Revolution: How Streaming is Changing the Future of Gaming

  • Crypto
    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    120+ Best Creative Names for Team at Work

    120+ Best Creative Names for Team at Work

    Can You Repair Printed Circuit Board ?

    Mastering PCB Board Repair Comprehensive Guide

    Breaking Barriers Federal Inmate Texting Service

    Breaking Barriers Federal Inmate Texting Service

    transfer whatsapp from android to iphone

    How to Transfer WhatsApp from Android to iPhone!

    Understanding the Role of Humidity Chambers in Climate Testing

    Understanding the Role of Humidity Chambers in Climate Testing

    Everything You Get to Know About Movember Beard Memes

    Everything You Get to Know About Movember Beard Memes

    Best Book Recommendation Apps

    11 Best Book Recommendation Apps

    How to quickly divide or Split PDF files

    How to Quickly Divide or Split PDF Files

  • Business
    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    How Drones and 360-Degree Cameras Are Changing Bridal Photoshoots

    120+ Best Creative Names for Team at Work

    120+ Best Creative Names for Team at Work

    Can You Repair Printed Circuit Board ?

    Mastering PCB Board Repair Comprehensive Guide

    Breaking Barriers Federal Inmate Texting Service

    Breaking Barriers Federal Inmate Texting Service

    transfer whatsapp from android to iphone

    How to Transfer WhatsApp from Android to iPhone!

    Understanding the Role of Humidity Chambers in Climate Testing

    Understanding the Role of Humidity Chambers in Climate Testing

    Everything You Get to Know About Movember Beard Memes

    Everything You Get to Know About Movember Beard Memes

    Best Book Recommendation Apps

    11 Best Book Recommendation Apps

    How to quickly divide or Split PDF files

    How to Quickly Divide or Split PDF Files

Submit
Geeky Insider
No Result
View All Result

At Chatham Kent, municipal workers helping to slay the phishing dragon

by Staff Writer
November 10, 2022
in Security
Reading Time: 5 mins read
At Chatham Kent, municipal workers helping to slay the phishing dragon
Share on FacebookShare on Twitter

It was an initiative that most IT security professionals might consider, but ultimately shelve due to the complexity involved in setup alone: implement a monthly phishing awareness campaign for a municipality, not for just a select group of employees, but every worker on the payroll.

It took a great deal of planning and behind-the-scenes maneuvering, but as Richard Drouillard, manager of security and risk with the municipality of Chatham-Kent, said last week at InfoSec 2022, an event organized by the Ontario division of the Municipal Information Systems Association (MISA), it has all been worth it.

Table of Contents

Toggle
  • READ ALSO
  • Nearly 50% of 2021 Phishing Targeting Gov’t Workers Aimed at Credential Theft: RPT
  • A Complete Guide To Network Security

READ ALSO

Tips on How to Strengthen Cyber Security in your practice

9 Cyber Security Tips and Best Practices for Your Business

July 28, 2023
Cyber Security Today for June 29, 2022 — A list of the most dangerous software weaknesses is updated, a warning to Kubernetes administrators, and more

Cyber Security Today, Nov. 11, 2022 – A new report on phishing, a warning of Venus ransomware, malware hidden in images and more.

November 14, 2022

In the conference show guide, he wrote that he has “spent the last two years with a very intentional focus on phishing awareness for my organization. Over that time, I have analyzed the results, played with the variables, had some hard conversations, and learned quite a bit about what works and what doesn’t.

“All of us are doing what we can to fight cyberattacks in our organization, and it’s essential for those who work in municipal IT to learn from each other.”

Drouillard, who has been at Chatham-Kent in an assortment of IT positions for 17 years, assumed his current position in 2020.

“I’ve worked in a lot of different roles in IT,” he said. “I’ve been a developer, a database administrator, a JD Edwards administrator, a project manager. I’ve also done a few months in our GIS department. And I’ve done a few months managing our service desk. I’ve worked in every team in our IT department at some point or another, which I think gives someone a really good background for working cybersecurity.

“We are all at this conference, so I don’t think I need to explain why I started my focus on phishing,” said Drouillard, adding that prior to his taking on the new role, the municipality, similar to many other organizations, had merely conducted one-off phishing simulations.

“You did one or two a year, and there was not a lot of follow up after they were done. You just kind of ran them and hoped that people learn something from it. I wanted to be a lot more intentional about what I was doing.

“And that meant I wanted a monthly simulation against the entire organization. I wanted to actually get the data from those, analyze it, and try and learn from the patterns of my organization to identify the things that we could work on and get better at.”

He received the necessary go-ahead after two months on the job, when he was asked by the municipality’s executive management team (ETM) to update them on cybersecurity preparedness.

Drouillard recalls he had a week to prepare and describes it as a “fair presentation. It was not doom and gloom – we can slant that way in this career path sometimes, but if you’re always saying the sky is falling, no one’s going to listen to you when it matters, so don’t be the doom and gloom person.

“And I asked for a couple things, because if you’re going in front of a big group like that, you should ask for something while you’re there. In my case, what we were going to do with people who clicked on a bunch of phishing simulations.”

He received the green light to conduct monthly phishing simulations and develop training modules for employees. The program works as follows:

  • Anyone who clicks on a trio of simulated phishing emails would have to take an extra training module in addition to the annual training all employees must do
  • Anyone clicking on five, six, seven, or eight phishing simulations results in the individual’s manager being notified, at which point Drouillard has the authority to take what he described as “extra precautions around that user’s account and their computer.”
  • Last, but not least, for people who click on multiple phishing simulations or violate the acceptable use policy, those actions will be formally recognized in their performance review.

“One tip I have for you is that if you’re talking to your top group about this, no one likes to be surprised,” he said.

“In my case, for the performance reviews, I spoke to the director of HR a week before I did this presentation saying, ‘this is what I’m hoping to ask for what do you think?’ and I got her advice. I incorporated her language into it, and I had her on board before I even did that presentation.”

The downside of the role is that, after four months, a call from Drouillard to an employee more times than not would illicit a distinctive groan from the person at the other end.

“How terrible is that? Who wants a groan to be the default reaction to their face. I’m a nice guy, I don’t want that. You can be positive in this career, you just have to be a little creative, not a lot creative, just a little creative. And I think the best way to do it is celebrating successes that you have.”

Examples of this include:

  • If an employee thwarts an actual phishing campaign by reporting it immediately, call them and congratulate them. “They are going to feel good about that,” said Drouillard. “You are going to feel good about that.”
  • The same applies to someone who is nearing a milestone in terms of clicking, but suddenly spots a phishing attempt and reports it. “Congratulate them. Not in a fake, here’s your gold star clip art kind of way, but in sincere way. Give them a call and say, ‘thank you, great job.’
  • Congratulate entire departments when they have a phishing-free month. “Tell them phishing is really important. You know that we do these simulations, but not one person in your department clicked on this. That’s amazing. Good job. Thank you so much for your support.”

The end result of all his work is that there have been no incidents where the municipality has actually lost money through a phishing attack.

“We have had a good decline in the rate of people clicking on things. Once we got to the two per cent mark, I was pretty happy with that, because you are never going to be at zero per cent,” he says.



Source by www.itworldcanada.com

Related Posts

How to prevent phishing attacks
How To

How to Prevent Phishing Attacks: Safeguarding Your Digital Identity

May 14, 2023
How to protect yourself from phishing
How To

Phishing: The nasty tricks of the cybercriminals – this is how they protect themselves

July 28, 2023
Tips on How to Strengthen Cyber Security in your practice
Security

9 Cyber Security Tips and Best Practices for Your Business

July 28, 2023
Cyber Security Today for June 29, 2022 — A list of the most dangerous software weaknesses is updated, a warning to Kubernetes administrators, and more
Security

Cyber Security Today, Nov. 11, 2022 – A new report on phishing, a warning of Venus ransomware, malware hidden in images and more.

November 14, 2022

Recommended.

Will the CHIPS Act really bring back semiconductor production and tech jobs?

Will the CHIPS Act really bring back semiconductor production and tech jobs?

October 12, 2022
Apple’s former securities lawyer pleads to securities fraud for insider trading

Apple’s former securities lawyer pleads to securities fraud for insider trading

July 1, 2022

Trending.

No Content Available
  • Home
  • About
  • Contact
  • Privacy
  • Terms
  • DCMA
  • Write For Us / Submit
Contact us for submission queries. editor[at]geekyinsider.com.
No Result
View All Result
  • Home
  • Review
  • Apple
  • Gaming
  • Gadget and Gear
    • Camera
    • Smartphone
  • Microsoft
  • Security