• Home
  • Latest
  • Fortune 500
  • Finance
  • Tech
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia

Trendingnow

1

Pentagon accuses Alibaba, Baidu and BYD, three of China's biggest companies, of supporting the Chinese military

2

'We are rapidly running out of time': Watchdog sounds Social Security alarm after 22% cut confirmed for 2032

3

Costco CEO Ron Vachris rose from forklift driver to the C-suite without a college degree: ‘Don’t chase a title’ is the career advice that got him there

1

Pentagon accuses Alibaba, Baidu and BYD, three of China's biggest companies, of supporting the Chinese military

2

'We are rapidly running out of time': Watchdog sounds Social Security alarm after 22% cut confirmed for 2032

3

Costco CEO Ron Vachris rose from forklift driver to the C-suite without a college degree: ‘Don’t chase a title’ is the career advice that got him there
CommentaryCybersecurity

Your Biggest Cyber Risk Could Come From Within

By
Scott Weber
Scott Weber
Down Arrow Button Icon
By
Scott Weber
Scott Weber
Down Arrow Button Icon
January 14, 2016, 3:00 PM ET
To match BREAKINGVIEWS-EMC/SECURITY
RSA SecureID electronic keys are pictured in a photo illustration taken in Singapore June 8, 2011. This may go down as the year of the hack, with Sony and Amazon among the targets. But the compromising of information on almost 40 million RSA security tokens, which protect sensitive military and financial networks, may be the most serious instance. Cybersecurity efforts - and spending - suddenly look inadequate. RSA is the security division of EMC. To match BREAKINGVIEWS-EMC/SECURITY REUTERS/Michael Caronna (SINGAPORE - Tags: BUSINESS SCI TECH) - RTR2NFFEPhotograph by Michael Caronna — Reuters

Nearly every week, it seems like hacks dominate the headlines: TalkTalk, Ashley Madison, Anthem (ANTHEM), Target (TGT), Sony (SNE), and the federal government have all been recent targets. Organizations are increasingly engaged in a cyber war with adversaries ranging from organized crime rings to nation-states and online vigilantes. These outsider attacks generate substantial public and private anxiety, and with good reason: the loss of sensitive customer information, disruption of services, and negative headlines can shake the confidence of shareholders, employees, and customers.

But there’s another risk, equally if not more pernicious, that often goes overlooked: insider attacks. Many executives don’t fully appreciate that their biggest risk can come from within. Malicious internal actors can endanger not only a company’s financial and reputational health, but also the physical safety of their staff. Recent events—multi-million dollar employee fraud, high-profile intellectual property theft, and the attacks in San Bernardino— have made it clear that events like the Edward Snowden data leaks or the Washington Navy Yard shootings were not anomalies.

Organizations can and should formally address insider risk through the creation of a program that progresses it from mitigation to prevention. Innovative technology can help organizations proactively screen and detect bad actors before they strike, but implementing these solutions requires commitment from the highest level of leadership in both the public and private sectors.

While organizations have bolstered their cybersecurity plans to protect their most sensitive proprietary information in response to potential external breaches, insider risks haven’t been addressed with the same attention and care. They’re the loss that nobody wants to talk about publicly, and many organizations go to great lengths to conceal the existence and ramifications of inside bad actors. But these risks can be some of the most damaging to an organization: one 2015 Intel Security study found that insiders account for 43% of all data loss.

When employees leave their job for another, for example, they often transfer valuable information to their new employers. A Symantec survey revealed that half of employees admit to taking corporate data when they transfer jobs, and 40% say they plan to use the information at their new organization. Yet 56% don’t realize it’s a crime to use those trade secrets.

This practice can have serious consequences, including the loss of intellectual property or the disclosure of national secrets, whether the perpetrator is successful or not. In just the first week of 2016, a former electrical engineer for Pasadena-based avionics company Rogerson Kratos Avionics was convicted for distributing company trade secrets after his termination for poor performance. Using a false name and a Starbucks Internet connection, the former employee sent stolen trade secrets to other avionics companies, including one outside the United States. He was stopped when the competitors reported the economic espionage, and now faces up to 320 years in federal prison.

We’ve also seen the devastating aftermath of insider leaks in the public sector. Activist employees—like Chelsea Manning or Edward Snowden—have disclosed data and information that potentially threatened the safety of our armed forces and public security. In both instances, there were warning signs that these employees would go rogue— yet they went unmonitored and undetected.

Employee fraud is another malignant problem that hits companies’ financial health more directly. The Association of Certified Fraud Examiners’ 2014 survey estimated that companies lose a median of 5% of revenues annually due to fraud—translating globally to a $3.7 trillion economic loss. This criminal activity can seriously impact a business’ revenue and reputation. For example, this past March, an ex-lawyer was convicted of stealing more than $9 million from his employer, Memorial Hermann Healthcare System, in a billing scheme. He had been convicted in the past of felony theft and misappropriation of client funds and disbarred. Given his past, his employer should have been tipped off sooner to his activities.

In the worst-case scenarios, these insider risks can turn into insider threats and result in workplace violence — which, as events in the past year have demonstrated, has become more commonplace. Shootings accounted for 78% of all workplace homicides – a total of 405 fatal injuries – in 2010, according to the most recent available data from the Bureau of Labor Statistics. We’ve seen far too many examples of such violence on the part of malicious employees or disgruntled former employees: the on-camera shooting of two journalists in Virginia, as well as the Washington Navy Yard and Ft. Hood shootings. And while many factors play into the rise of these shocking and horrific tragedies, organizations must start to think about how to prevent them in order to protect their most valuable assets—their people.

When we walk into our office buildings every morning, we expect to be safe. That safety can come in many different forms—the security of knowing that we work at a financially sound organization, and the safety of being free from harassment and workplace violence. Leaders of organizations must develop proactive plans to monitor, detect, and prevent bad actors within their organization before they strike. It’s been proven time and time again that the consequences can be catastrophic if these risks are ignored. Don’t become the next headline.

Scott Weber is a managing director at Stroz Friedberg, an investigation, intelligence and risk management firm.

About the Author
By Scott Weber
See full bioRight Arrow Button Icon

Latest in Commentary

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025

Most Popular

Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Finance
Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam
By Fortune Editors
October 20, 2025
Fortune Secondary Logo
Rankings
  • 100 Best Companies
  • Fortune 500
  • Global 500
  • Fortune 500 Europe
  • Most Powerful Women
  • World's Most Admired Companies
  • See All Rankings
  • Lists Calendar
Sections
  • Finance
  • Fortune Crypto
  • Features
  • Leadership
  • Health
  • Commentary
  • Success
  • Retail
  • Mpw
  • Tech
  • Lifestyle
  • CEO Initiative
  • Asia
  • Politics
  • Conferences
  • Europe
  • Newsletters
  • Personal Finance
  • Environment
  • Magazine
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Fortune Brand Studio
  • Fortune Analytics
  • Fortune Conferences
  • Business Development
  • Group Subscriptions
About Us
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • About Us
  • Press Center
  • Work At Fortune
  • Terms And Conditions
  • Site Map
  • Facebook icon
  • Twitter icon
  • LinkedIn icon
  • Instagram icon
  • Pinterest icon

Latest in Commentary

tim
CommentaryAirline industry
Merlin CTO: autonomy can rebuild the foundation of aviation — and national security
By Tim BurnsJune 9, 2026
19 hours ago
dewar
CommentaryLeadership
I founded McKinsey’s CEO practice: Here’s why operational excellence is a liability right now
By Carolyn DewarJune 9, 2026
20 hours ago
250
Commentary250 Years of Innovation
America turns 250. Its greatest innovation was never a product — it was a system that let anyone build one
By Keith KrachJune 7, 2026
3 days ago
retirement
CommentaryRetirement
Retiring at 62 costs the average American $250,000. Here’s the math (and the neuroscience) that explain why
By Jon SabesJune 7, 2026
3 days ago
da
CommentaryIPOs
The short seller’s argument nobody on the coming mega IPO roadshow wants you to make
By Bhaskar ChakravortiJune 7, 2026
3 days ago
bs
CommentaryCalifornia
I’ve sold property on California’s Central Coast for decades. The buyers chasing ranch and winery estates are after more than a lifestyle
By Lindsey HarnJune 6, 2026
4 days ago

Most Popular

Pentagon accuses Alibaba, Baidu and BYD, three of China's biggest companies, of supporting the Chinese military
Asia
Pentagon accuses Alibaba, Baidu and BYD, three of China's biggest companies, of supporting the Chinese military
By Kate O'Keeffe and BloombergJune 8, 2026
1 day ago
'We are rapidly running out of time': Watchdog sounds Social Security alarm after 22% cut confirmed for 2032
Economy
'We are rapidly running out of time': Watchdog sounds Social Security alarm after 22% cut confirmed for 2032
By Nick LichtenbergJune 9, 2026
15 hours ago
Costco CEO Ron Vachris rose from forklift driver to the C-suite without a college degree: ‘Don’t chase a title’ is the career advice that got him there
Success
Costco CEO Ron Vachris rose from forklift driver to the C-suite without a college degree: ‘Don’t chase a title’ is the career advice that got him there
By Preston ForeJune 8, 2026
2 days ago
Trump, who has repeatedly called climate change fake, is now threatening Brazil with tariffs over the deforestation of the Amazon
Environment
Trump, who has repeatedly called climate change fake, is now threatening Brazil with tariffs over the deforestation of the Amazon
By Sasha RogelbergJune 8, 2026
1 day ago
Current price of oil as of June 8, 2026
Personal Finance
Current price of oil as of June 8, 2026
By Joseph HostetlerJune 8, 2026
2 days ago
Current price of oil as of June 9, 2026
Personal Finance
Current price of oil as of June 9, 2026
By Joseph HostetlerJune 9, 2026
18 hours ago

© 2026 Fortune Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Fortune Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.