Why This Cybersecurity Expert Wants You to Rethink What You Keep Secret

The fewer secrets you have, the fewer you'll need to protect.
Why This Cybersecurity Expert Wants You to Rethink What You Keep Secret
Image credit: Oslo Innovation Week

Grow Your Business, Not Your Inbox

Stay informed and join our daily newsletter now!
3 min read

Want to protect what you’ve built? Then you’ll need to work differently, according to Melanie Rieback.

This CEO of Radically Open Security, one of the world’s first cybersecurity consultancy nonprofits, says that while hacks are inevitable, it’s up to companies to navigate that risk -- not try to eliminate it.

In a talk at Oslo Innovation Week, she shared three principles that can help companies find the solutions that work for them and their industries. These ideas, she says, will shape the mindset anyone will need to better approach modern cybersecurity.

Related: There’s a Scary Reason You’ll Start Taking Digital Privacy Seriously

1.  Work with your rivals.

The dark web works together -- so why doesn’t everybody else? As Riebeck points out, the dark web is a hotbed of collaboration -- even offering support desks for those who’ve purchased malware kits. To survive, companies, too, will need to collaborate in a way they’ve never done before.

“You have no competitors, only organizations that face similar threats,” says Riebeck. “You have far more to gain by helping each other.”

She points out that banks have recognized the need to create an open dialogue with their rivals, sharing things like firewall rules – and other industries must think the same way. The way we have approached competitors in the past has become less relevant, she says.

2. Rethink your secrets.

Once you rethink how you work with your rivals, you can rethink what is and isn’t a trade secret, helping you better control what you protect. A lot of people think you have to be completely secretive to be secure, says Riebeck, but it's actually completely the opposite.

“The more you are open, the more you present to the world, the more intellectual property you keep and the less you give away, the less you have to fear and the smaller your attack surface becomes,” she says.

Related: The Worst Reported Hacks of 2017 -- So Far

3. Stop trying to 'buy' peace of mind.

To beef up their security efforts, most companies will do what they’re most comfortable with: hiring a vendor or purchasing some product. However, as Riebeck points out, those moves won’t prevent an attack since vendors and products like firewalls and intrusion detection boxes are only as good as their maker -- and the information those makers have available.  

“Ultimately, every proprietary solution makes you dependent on some vendor to essentially customize [a solution] for you and all its improvements,” she says.

Instead, Riebeck stresses the importance of open-source solutions and industry initiatives -- including some that already exist -- which share “indicators of compromise” like subject lines or fingerprints of files that might be malicious.

“If you can then take that threat intelligence, and share it with one another, then everyone can detect it and monitor for it. Or block it.” Says Riebeck. ”Everyone becomes better by working together.”

 

More from Entrepreneur
Our Franchise Advisors will guide you through the entire franchising process, for FREE!
  1. Book a one-on-one session with a Franchise Advisor
  2. Take a survey about your needs & goals
  3. Find your ideal franchise
  4. Learn about that franchise
  5. Meet the franchisor
  6. Receive the best business resources
Make sure you’re covered if an employee gets injured at work by
  • Providing us with basic information about your business
  • Verifying details about your business with one of our specialists
  • Speaking with an agent who is specifically suited to insure your business
Try a risk-free trial of Entrepreneur’s BIZ PLANNING PLUS powered by LivePlan for 60 days:
  • Get step-by-step guidance for writing your plan
  • Gain inspiration from 500+ sample plans
  • Utilize business and legal templates
  • And much more

Latest on Entrepreneur