© Copyright Acquisition International 2025 - All Rights Reserved.

Article Image - Organisational security and the hidden risk
Posted 20th January 2021

Organisational security and the hidden risk

The security needs of businesses vary greatly dependent on the sector they are in. Despite the varying requirements, each business’ broader approach to security should follow a similar format where vital assets – those that needs to be protected - are surrounded by several security layers.

Mouse Scroll AnimationScroll to keep reading

Let us help promote your business to a wider following.

Organisational security and the hidden risk
security

By Chris Johnson, Head Business Development Digital Services at MASS

The security needs of businesses vary greatly dependent on the sector they are in. For example, the financial sector is generally more developed than others due to the potential risks associated with a security breach. Despite the varying requirements, each business’ broader approach to security should follow a similar format where vital assets – those that needs to be protected – are surrounded by several security layers.

This approach helps ensure that if the first or even second layer is breached, the asset is not compromised or put at risk. But too often security measures are not thought about holistically, with physical, cyber and personnel risks all considered individually when in fact they are intrinsically linked. Often, there are hidden risks that may not even have been considered.

Here, we’ll explore the rounded approach that MASS takes with both public sector and defence organisations, and how this can be applied to improving security within all facets of the private sector.

 

Physical security

The first and most obvious security consideration should always be physical access to the organisation’s building or site. Even in sectors where physical security is well established such as finance or data centres, it remains vital.

Identifying the perimeter is fundamental, due to the potential of distributed site facilities, linked remote assets and supply chains, the perimeter may not be as clear as initially thought. To achieve this, the use of scenario-based analysis actor personas, motivations and objectives can be invaluable for exposing how a business could be targeted and exploited.

This should include a review of the physical barriers that prevent access to the site and their role as a deterrent and detection method for hostile activity.

But security measures are only as secure as the people applying and adhering to them. Factors including staff making simple mistakes (such as wearing security badges in the street) or poor motivation of roving security staff or those monitoring CCTV can cause warning signs to be missed – and allow for future security breaches to slip through the gap.

 

Cyber security and the aging risk

The risk of cyber exploitation has grown considerably in recent years due to the financial and technical barriers to advanced cyber-attacks being reduced. For this reason, levels of cyber security must be taken to a new level and any existing measures continually scrutinised.

The COVID-19 pandemic has brought this issue to the fore, with homeworking and remote access highlighting the importance of cyber security, and also shining light on the risks posed by aging equipment and systems.

Throughout 2020 the challenges associated with using legacy data systems have been highlighted, and with increased traffic and offsite access the user experience has become slow and often with intermittent access. Legacy systems are also more challenging and expensive to protect.

The efficient transfer of business data from legacy systems onto a modern platform and data warehouse can not only help protect information more effectively from cyber threats but is also often a more effective use of resource when compared to protecting legacy systems.

To help mitigate network cyber risks, penetration testing regimes can be vital but tools like ‘CBEST’ only offer a snapshot in time and therefore have limitations. Frequent, lighter touch assessments enhanced by modern threat intelligence techniques are recommended in line with these tools as they offer a more dynamic view of vulnerabilities.

 

Consider insiders

Those who might misuse legitimate access to an organisation’s assets are known as insiders and are often overlooked. Many security controls are now so effective that exploiting those with legitimate access is one of the only ways to circumvent them. The right insider or team of insiders can overcome almost all security measures, while insider breaches have a disproportionately high business impact.

Insider cases are typically individuals who have had a personal vulnerability exploited or have become disgruntled with an employer, and it is a challenging area to address. That being said, security culture, employee wellbeing and employee sentiment are just some aspects that a business committed to its security should consider.

It’s also prudent to examine the wider supply chain. Many businesses rely on an interconnected network of suppliers which makes it difficult to pinpoint risk, so identifying ‘hot-spot’ areas allows them to filter complex information and establish risk effectively.

 

Changing times

If these layers of security are not considered collectively, some areas can fall through the cracks. The COVID-19 pandemic has had an unforeseen impact on security, with some companies experiencing a change in working practices or accelerated growth. Yet their data is stored on legacy systems which unless addressed, are cyber-attacks just waiting to happen.

At MASS, our security experts consist of professionals with extensive experience in preventing security breaches and managing data from mission critical systems. We ensure our security analysis meets and exceeds industry best practice.

MASS has recently launched its Virtual Learning Environment allowing us to conduct Cyber Security Training remotely for whole organisations, individuals or management teams. For more information, please visit: https://www.mass.co.uk/what-we-do/mass-online-training/online-training-courses/

Categories: Strategy


You Might Also Like
Read Full PostRead - Eye Icon
What lessons has the pandemic taught us about the fluidity of labour in the run up to Brexit?
Innovation
25/11/2020What lessons has the pandemic taught us about the fluidity of labour in the run up to Brexit?

So much time and angst has been spent on the B word since May 2016, much of it around the issue of fluidity of labour across borders. But what this year has shown is that technology and talent refuse to recognise borders: try building a wall in the cloud. So m

Read Full PostRead - Eye Icon
2016’s Most Innovative Company – Senegal
Innovation
31/07/20162016’s Most Innovative Company – Senegal

Solabsen is one of the first privately owned laboratory in Senegal specialised in medical testing. We are very grateful to Dr Jean Francois ROBERT who first introduced our services in Senegal under a different trading name “Laboratoire ESPLAN” 40 years ago

Read Full PostRead - Eye Icon
CMS Advise During Echo BV’s Acquisition of a Stake in Echo Investment
Legal
20/08/2015CMS Advise During Echo BV’s Acquisition of a Stake in Echo Investment

CMS Advise During Echo BV’s Acquisition of a Stake in Echo Investment

Read Full PostRead - Eye Icon
Chandani – 2016 Influential Businesswoman Awards
Finance
29/06/2016Chandani – 2016 Influential Businesswoman Awards

Acquisition International Magazine is proud to recognise Ms. Asma Chandani as the ‘Most Influential Woman in International Asset Management’ and as principal in the ‘Most Innovative Asia Investment Firm – USA’ in its 2016 Influential Businesswoman Aw

Read Full PostRead - Eye Icon
Green Shipping – The Role of Electric Ships
Innovation
24/03/2025Green Shipping – The Role of Electric Ships

Ekrem Akcay has worked for many years as Sales Manager and Project Leader in the Tuzla/Yalova shipyard region, which is home to most of the shipyards in Turkey and employs approximately 50,000 workers.

Read Full PostRead - Eye Icon
How to Ensure a Successful Transition from E- commerce to Brick-and-Mortar Sales
News
29/04/2024How to Ensure a Successful Transition from E- commerce to Brick-and-Mortar Sales

Meta Description: Explore how you can successfully move from online selling to physical stores and take advantage of the best of both worlds with our expert tips and strategies. As entrepreneurs in the digital age, we have seen tremendous growth and success th

Read Full PostRead - Eye Icon
Common Myths About Personal Injury Lawyers Debunked
News
07/12/2023Common Myths About Personal Injury Lawyers Debunked

In the world of personal injury law, myths, and misconceptions abound like wildfire, casting a shadow of doubt over the crucial role that personal injury lawyers, including Bronx injury lawyer, play in securing justice for those who’ve been harmed. From

Read Full PostRead - Eye Icon
How Digital Transformation Shapes Global Supply Chains
Innovation
14/10/2024How Digital Transformation Shapes Global Supply Chains

Digital transformation reshapes global supply chains in real-time. Tech innovations create efficiency gains, minimize lead times, and increase visibility across the board. Curious about how digital tools drive change? Industry leaders are exploring that too. L

Read Full PostRead - Eye Icon
Most Innovative Medical Device Manufacturer 2024 – Southern California, MedTech CEO of the Year 2024 (California): Perry Brunette
Innovation
28/05/2024Most Innovative Medical Device Manufacturer 2024 – Southern California, MedTech CEO of the Year 2024 (California): Perry Brunette

In the healthcare sector, Artificial Intelligence (AI) continues to prove itself a true gamechanger, whether used to organise patient data or in the form of robots to assist in surgery



Our Trusted Brands

Acquisition International is a flagship brand of AI Global Media. AI Global Media is a B2B enterprise and are committed to creating engaging content allowing businesses to market their services to a larger global audience. We have a number of unique brands, each of which serves a specific industry or region. Each brand covers the latest news in its sector and publishes a digital magazine and newsletter which is read by a global audience.

Arrow