Human Error: How Can a Small Mistake Lead to Big Consequences?

In the wake of the recent cyber attacks on UK companies, it has become increasingly apparent that even the smallest error can have catastrophic consequences. Large companies have extremely sophisticated cyber security measures in place; however, these attacks have shown that even this can be breached by social engineering through phishing emails or calls. Such attacks can very quickly turn some of the most trusted companies in the country into case studies in how human error can be the weakest link in your cyber security measures.

At the South East Cyber Resilience Centre, we’ve seen time and time again that the vast majority of cyber incidents are not the product of sophisticated hacking tools, they begin with simple mistakes made by employees who have not undergone sufficient cybersecurity Staff Awareness Training.


The Background

Several retailers fell victim to a cyber attack over the past two weeks. Although the cause of the cyber attack has not been confirmed, it is a wake-up call to businesses to focus on cyber security. Given that 90% of cyber attacks start via a phishing email or phone call the most effective way to start your journey is to ensure that your staff are trained to identify such scams.

National Cyber Security Centre CEO Dr Richard Horne said:

“The disruption caused by the recent incidents impacting the retail sector are naturally a cause for concern to those businesses affected, their customers and the public.

“The NCSC continues to work closely with organisations that have reported incidents to us to fully understand the nature of these attacks and to provide expert advice to the wider sector based on the threat picture.

“These incidents should act as a wake-up call to all organisations. I urge leaders to follow the advice on the NCSC website to ensure they have appropriate measures in place to help prevent attacks and respond and recover effectively.”

Staff training provides a great return on investment for companies. As we have seen the effect of cyber attacks can be staggering, losses of your network and processes, significant financial losses and a hit to the credibility of your brand. Research from cyber insurance providers suggest that 50% of SME’s close 6 months after a cyberattack.

The Solution

The recent cyber attacks on major retailers should encourage organisations in all industries, large and small, to consider their own cyber security measures. Human error is consistently one of the top causes of cyber attack and it’s something that businesses can, and must, proactively address. Here’s how:

· Regular Staff Training: Staff Awareness Training is critical to all employees as it provides them with the necessary knowledge and confidence to identify and report a potential cyber attack before it happens. Our Staff Awareness Training sessions cover essential topics such as safe password practices, secure data handling, phishing detection, and more.