One challenge is to cater to beginners without boring the experts to death.
Basically, this means talky about the why of security
Why is cybersecurity necessary?
Short answer first part: to protect the organisation (or the individual) from damage
- Economic or financial damage
- Data loss
- Operational damage or resource misuse
- Contractual, legal, or regulatory
- Physical damage objects, mental or health of people
- Reputation
(I'm not completely satisfied with the wording. Are all off these damages, are it rather risks?)
Additionally, security is necessary because of regulatory requirements or laws regarding
- Privacy (like the GDPR)
- Product and operational (like the CRA)
- Supply chain and critical infrastructure (like NIS-2)
ANd last but not least, customer pass of their security requirement regarding
- product security
- security features
- supply chain
Not being secure (or not being able to demonstrate this) puts you at risk of direct or indirect economic cost, contractual or legal penalties or fines, as well of market loss or exclusion.
#Cybersecurity #Awarness