With the rise of social engineering and the use of highly effective malware in attacks, the online behavior of employees can put an organization at risk of an attack, or just cause on to happen. There have been many organizations swindled through online scams and others have had malware planted in employee computers simply due to careless online behavior. There needs to be a demarcation of what employees can and cannot do when in an organizational network. The main challenge is that employees think that they have nothing or very little to lose as a result of their careless behavior. The following screenshot is an example of a malicious link in a phishing email:
One of the careless online behaviors that IT security managers are having to deal with in their organizations is clicking of links in emails from strangers. Employees should be informed that malware...