HRreview 20 Years
This field is for validation purposes and should be left unchanged.
Subscribe for weekday HR news, opinion and advice.
This field is hidden when viewing the form
This field is hidden when viewing the form
Optin_date
This field is hidden when viewing the form

Mike Ellis: Surfing the wave of cyber crime

-

In June of 1985, Robert Schifreen and Steve Gold became the first people in the world to be convicted of computer hacking. Using a cheap home computer, the pair managed to gained access to British Telecom’s Prestel service, an early precursor to modern email systems. Once they had access, they were able to explore data across the entire system, culminating in the two gaining access to Prince Phillip’s inbox.

Schifreen and Gold were able to access the Prestel system when they observed an engineer from the company logging on at a trade show. By ‘shoulder surfing’ — quite literally looking at someone using a computer — they were able to get the login details they needed. The pair were eventually caught when Prestel installed monitors on the system and passed the information over to the police.

Eventually, Schifreen and Gold were acquitted by Lord Justice Lane, but this was the birth of computer hacking as we know it. At the time, this type of terminology wasn’t in use and there was no law that dealt specifically with this type of crime. This led to the UK Parliament introducing the Computer Misuse Act of 1990, an act that outlined a number of criminal offences with which hackers could be charged. This bill has been incredibly influential in the shaping of similar laws across the globe, with Canada and The Republic of Ireland drawing heavily from the act.

It is shocking that these events took place less than 30 years ago. In that incredibly short period, the internet has wrought momentous global change. While not an overtly physical change like the Industrial Revolution, the rise of the internet has arguably impacted the world just as much. It is something so integral to society, it has even influenced the name of the era we live in: The Information Age. 

HRreview Logo

Get our essential weekday HR news and updates.

This field is for validation purposes and should be left unchanged.
Keep up with the latest in HR...
This field is hidden when viewing the form
This field is hidden when viewing the form
Optin_date
This field is hidden when viewing the form

 

Despite the undoubted benefits that this age has brought, it also has a dark side: the rise of hacking. Since the creation of the Computer Misuse Act in 1990, cyber crime has exploded and changed the way organisations do business. From its humble beginnings with Robert Schifreen and Steve Gold accessing the emails of Prince Philip, internet crime has grown to be worth more than the global drug trade. 

When you consider how much press space has been dedicated to the latter, it is shocking that more is not done to combat cyber crime and the problems it causes both inside and outside organisations. One possible reason for this is that hackers have always managed to stay several steps ahead of government—but it is nevertheless an organisation’s own responsibility to keep its valuable assets safe.

Once a data breach has occurred, the damage is already done. A hacker gaining access to a company’s sensitive information can have an irreversible impact on the business, as they have lost both valuable assets and, more importantly, trust—something no manner of reparations can solve. 

Government, law, and the justice system cannot move quickly enough to protect organisations from hackers who operate on the cutting edge of technology. It is up to the organisations themselves to implement adaptive controls that take context into account (Where are you logging in from? Does the system recognise your device and IP address? How many password attempts?), and to establish trust relationships with parties inside and outside of the organisation, between whom secure data can be shared. The companies who invest now will be repaid with a significant competitive advantage in the market.

Yet there are still too many organisations using outmoded technologies that do not provide the level of protection required in today’s world. Today’s security is not anti-virus software. It’s not about keeping the bad guys out. It’s about knowing who has access to what. Identity and access management (IAM) technology has become quite sophisticated at using real-time and contextual data to understand who you are and what you can access. Now IAM platforms are increasingly extended to external users and customers, applications, devices, and things connected to the Internet as a way to improve customer engagement and drive business growth, by providing a single, consolidated view of the consumer. If you understand who you are dealing with, you know how to proactively act, rather than react.  

Hackers, starting with Schifreen and Gold, have taught us the hard way the importance of protecting customers and their data. But they have also given us a golden opportunity. Organisations can take the investment they have made in identity and access management security and harness it as a platform for consumer engagement. Once organisations understand who has access to what, they can use this data to create a truly secure platform that allows customers to buy products and services, or engage with the brand. Companies gain valuable data and insight into their consumer base, allowing them to optimise their offerings to appeal to their audience and thus generate revenue. But most importantly, they gain their customer’s trust—and that’s worth its weight in Schifreen and Gold. 

Mike Ellis, CEO, ForgeRock

Michael Ellis
CEO & President at ForgeRock

Latest news

Felicia Williams: Why ‘shadow work’ is quietly breaking your people strategy

Employees are losing seven hours a week to tasks that fall outside their core job description. For HR leaders, that’s the kind of stat that keeps you up at night.

Redundancies rise as 327,000 job losses forecast for 2026

UK job losses are set to rise again as redundancy warnings hit post-pandemic highs, with employers cutting roles amid rising costs and economic pressure.

Rise of ‘sickfluencers’ and AI advice sparks concern over attitudes to work

Online influencers and AI tools are shaping how people approach illness and employment, heaping pressure on employers.

‘Silent killer’ dust linked to 500 construction deaths a year as 600,000 workers face exposure

Hundreds of UK construction workers die each year from silica dust exposure as a new campaign calls for stronger workplace protections.
- Advertisement -

Leaders ‘overestimate’ how much workers use AI

Firms may be misreading workforce readiness for artificial intelligence, as frontline staff report far lower day-to-day adoption than executives expect.

Cost-of-living pressures ‘keep unhappy workers in their jobs’

Many say economic pressures are forcing them to remain in jobs they would otherwise leave, as pay and financial stability dominate career decisions.

Must read

Alexandra Anders: Why organisations are still struggling with diversity and how to break the cycle

"Women still only fill 33% of boardroom positions across the FTSE 350."

Blandine Kouyaté: The critical cogs in attracting and keeping company talent

There are increasing challenges in attracting and retaining talent, and a core task for all HR leaders is to understand what employees are looking for and deliver without delay, argues Blandine Kouyaté.
- Advertisement -

You might also likeRELATED
Recommended to you