Browse Definitions:
Definition

human attack surface

Contributor(s): Ivy Wigmore

Human attack surface is the totality of all exploitable security holes within an organization that are created through the activities and vulnerabilities of personnel. Elements of an organization's human attack surface include negligence, errors, illness, death, insider threat and susceptibility to social engineering.

Social engineering is such a pervasive and serious threat to enterprise security that it is often considered as an attack surface on its own. The social engineering attack surface includes a wide variety of techniques including phishing, baiting with malware-infested media and simple actions like following an authorized individual through a door into a secure area. To protect an organization from social engineering, employees should be trained to recognize the common tactics used and urged to be suspicious of any activities that could be attempted exploits. Penetration testing should be conducted regularly to simulate social engineering attacks and detect any areas in which employees remain vulnterable.

Employee negligence and error require similar vigilance. Efforts to prevent errors include ensuring that employees are adequately trained for their tasks and that they have the resources available to perform at an acceptable level. Overwork and occupational stress can lead to burnout and increases in both errors and negligence. To guard against them, excessive work hours should be avoided whenever possible and work-life balance should be promoted and fostered through workplace initiatives.

Illness and deaths of employees can leave an organization vulnerable if those individuals possess unique skills and knowledge. To mitigate the impact, an organization should have programs in place for such individuals to mentor other employees.

Although insider threats are decidedly less common than other elements of the human attack surface, any incidents can cause significant damage. Protection against insider threats includes familiar security measures: multiple spyware scanning programs, anti-virus programs, firewalls, and a rigorous data backup and archiving routine. In addition, it’s important to ensure proper oversight of employees and stringent controls on privileges.

This was last updated in April 2017

Continue Reading About human attack surface

Start the conversation

Send me notifications when other members comment.

By submitting you agree to receive email from TechTarget and its partners. If you reside outside of the United States, you consent to having your personal data transferred to and processed in the United States. Privacy

Please create a username to comment.

-ADS BY GOOGLE

File Extensions and File Formats

Powered by:

SearchCompliance

SearchSecurity

  • copyright

    Copyright is a legal term describing ownership of control of the rights to the use and distribution of certain works of creative ...

  • keylogger (keystroke logger or system monitor)

    A keylogger, sometimes called a keystroke logger or system monitor, is a type of surveillance technology used to monitor and ...

  • password

    A password is an unspaced sequence of characters used to determine that a computer user requesting access to a computer system is...

SearchHealthIT

SearchDisasterRecovery

  • business continuity plan (BCP)

    A business continuity plan (BCP) is a document that consists of the critical information an organization needs to continue ...

  • call tree

    A call tree -- sometimes referred to as a phone tree -- is a telecommunications chain for notifying specific individuals of an ...

  • mass notification system (MNS)

    A mass notification system is a platform that sends one-way messages to inform employees and the public of an emergency.

SearchStorage

  • CompactFlash card (CF card)

    A CompactFlash card (CF card) is a memory card format developed by SanDisk in 1994 that uses flash memory technology to store ...

  • email archiving

    Email archiving (also spelled e-mail archiving) is a systematic approach to saving and protecting the data contained in email ...

  • RAID (redundant array of independent disks)

    RAID (redundant array of independent disks) is a way of storing the same data in different places on multiple hard disks to ...

SearchSolidStateStorage

  • M.2 SSD

    An M.2 SSD is a solid-state drive (SSD) that conforms to a computer industry specification written for internally mounted storage...

  • NVMe (non-volatile memory express)

    NVMe (non-volatile memory express) is a host controller interface and storage protocol to enable a solid-state drive to use the ...

  • SSD RAID (solid-state drive RAID)

    SSD RAID (solid-state drive RAID) is a methodology commonly used to protect data by distributing redundant data blocks across ...

SearchCloudStorage

  • RESTful API

    A RESTful application program interface breaks down a transaction to create a series of small modules, each of which addresses an...

  • cloud storage infrastructure

    Cloud storage infrastructure is the hardware and software framework that supports the computing requirements of a private or ...

  • Zadara VPSA and ZIOS

    Zadara Storage provides block, file or object storage with varying levels of compute and capacity through its ZIOS and VPSA ...

Close