@cstromblad @martinboller I definitely believe that one of the biggest problems resides in orgs thinking theyâre not a target. With that said, something I think have a big impact on the decision making is having the actual infrastructure and capability to handle things like honeypots etc. because thereâs no use in deploying these active countermeasures if you donât have the resources, personnel or competence to know what to do with it.
I think Mikko Hyppönen sums it up pretty good in his latest book when asked why a company spends so much money on security. He responded with something in line with âwell your conference room looks really nice and tidy, maybe you can save some money laying off all janitors and cleanersâ.
Security is like that insurance you donât want to pay for because your apartment has never had a water leak or youâve never been in a car accident.