What to Know -
Social engineering can be a low effort/high return attack for a cyber criminal. In many cases, it hinges on kindness and human nature. The more effort a criminal puts into learning about a target, the more successful the attack. Social engineering can be used on physical security, via the phone, as well as through the computer.
Why You Should Care -
The human element is responsible for roughly 85% of breaches. In many cases, regular employee security awareness training can empower employees to be a part of business protection. Encouraging security awareness as part of company culture is a high ROI activity.
Read Mike Miller's full blog response on Social Engineering HERE.