Hunting Insider Threats, Forrester, July 2016


Insiders accounted for 39% of data breaches in 2015 through accidental and malicious misuse of data.

Insider threats are a real risk to business because they threaten both customer and employee trust. Accidental or malicious misuse of the firm’s most sensitive and valuable data can result in customer identity theft, financial fraud, intellectual property theft, or damage to infrastructure. Because insiders have privileged access to data in order to do their jobs, it’s difficult for security pros to detect suspicious activity. Since insiders are people and, therefore, entitled to privacy and due process, security pros must handle these incidents with greater care than external threats.

This report describes the nature of the threat, and advises on how to build an effective insider threat program, including the necessary technology, team, policies, and processes.