Summary
Traditionally, IT decided what IT systems employees should and should not use, and HR ensured employees were provided with information and training related to policies to maintain appropriate use of the IT systems. When employees were found not to have complied with these policies, HR would be involved in disciplinary action or employment termination.
Cyber risk comes in many forms and, if left untreated, can result in business failure, data theft, or data loss. Today, with the introduction of more cyber-related legislation around the world, the widespread use of technology, and remote working means the CHRO needs to support a strong corporate cybersecurity culture, which requires collaboration with the cybersecurity function in the organization. We must remember that information exists as an asset within people, not just on computer systems or in physical form.
In this chapter, we established how a CHRO can take the lead in managing employee behavior and addressing...