usecure Human Risk Management Solutions for MSPs
Cybercriminals are constantly looking for vulnerabilities that they can use to breach organisations’ cybersecurity and deploy their malware. At the current time, in late 2021, the biggest threat is ransomware. September has seen the re-emergence of the DarkSide ransomware gang under the name of BlackMatter. They disappeared and rebranded after the FBI identified DarkSide as responsible for the Colonial Pipeline ransomware attack. In the USA, law enforcement agencies have issued warnings about another ransomware group that operates under the name of Conti, who are making attacks on lots of healthcare and other critical infrastructure targets globally.
The threat from ransomware will not go away (without a ban on payments - but that's a topic for another day!). Organisations need to plan for attacks happening, and they need to take steps to reduce their risk.
Analysis of successful cyberattacks shows that a human staff member in an organisation was involved in a large majority of them. The attackers know that the technical security infrastructure deployed in most organisations is robust and hard to breach. We'll ignore unpatched systems with known vulnerabilities and zero-day exploits in this blog, apart from emphasising this message — make sure you apply security patches when they are released!
The fact that so many attacks involve a person making a mistake shows where organisations can improve their security. Cybercriminals use social engineering techniques, publicly available information about organisations and their employees, and leaked information on the dark web to build attack profiles to target staff. They then craft believable phishing emails, dummy websites, and other fake digital infrastructure to trick people into clicking malicious links, opening malware-infected attachments, or divulging information that they shouldn't.
usecure Human Risk Management
Making staff aware of the tactics that cybercriminals use is a vital part of modern cybersecurity. Providing workers with the knowledge of what to look for and encouraging them to hesitate before clicking on links in emails, opening attachments, or offering up confidential information will go a long way to improving cybersecurity. Training has been the traditional way to raise staff awareness, but traditional cybersecurity awareness training in this area is ineffective and broken, as the increasing number of successful ransomware attacks shows.
Based on their extensive experience in cybersecurity awareness and by seeing what works and what doesn't, usecure have created and implemented an industry-changing methodology: Human Risk Management (HRM). usecure define HRM as follows:
Human Risk Management is the new class of user-focused security that empowers businesses to understand, reduce and monitor their employee cyber risk — without having to sacrifice productivity for protection.
Typical security awareness training programs aim to reduce employee risk. But HRM offers a full-circle solution for transforming people into the strongest asset in the defence against cyberthreats.
Rather than repeat information available elsewhere about how HRM works, read The Ultimate Guide to Human Risk Management (HRM) on the usecure website. This easy-to-read blog post outlines what's broken about traditional cybersecurity awareness training and how HRM fixes it.
See our previous blogs for additional info:
Enhancing Your Organisation's Cybersecurity Via Informed Staff
The MSP HRM Opportunity
MSPs can take the usecure HRM solutions and tools to their existing customers or use the assessment tools and tailored reporting to obtain new customers. HRM is built for MSPs.
The usecure HRM platform uses simple white-labelling to allow MSPs to brand it with their identity when sold to clients. There are no minimum license requirements, and billing is flexible and based on usage within the month. Each MSP who has multiple clients with HRM deployed can manage them all via a single portal.
More details of the MSP offering, and benefits are available on usecure's page: The new class of user-focused security — built for MSPs
Find Out More
usecure and Renaissance partner to make the innovative HRM solution available to Irish MSPs and their clients. Please have a look at the usecure pages linked in this blog post, then contact us to discuss how you can help your clients make their workforces more cybersecurity aware and reduce their threat from ransomware and other attacks.

