Vector
Vector

Choose your topics

Blogs
How to Prioritize Your Third-Party Risks

How can you prioritize effectively and enhance your organization’s security posture? Here are our top tips for setting up realistic, sustainable processes.

Third-Party Risk Management GRC
Blogs
Top Tips to Save Time When Assessing Third-Party Risks

Is assessing third-party risks taking up too much of your time? How can you make the process more effective and efficient? Find out in the latest post from SureCloud.

Third-Party Risk Management GRC
Blogs
The GRC Trends to Look Out for in 2024

Our GRC experts at SureCloud share their 2024 predictions for the world of governance, risk and compliance.

GRC
Blogs
The Top 5 Challenges of Third-Party Risk Management

With the supply chain now seen as a legitimate attack path, what can your organization do? Let’s explore 5 challenges of TPRM and how to overcome them.

Third-Party Risk Management GRC
Blogs
What is Third-Party Risk Management?

What is third-party risk management and how should you approach it? Find out in this post.

Third-Party Risk Management GRC
Blogs
The Top 4 Challenges of Risk Management

What are the top four challenges of risk management today and how can you overcome them? Find out in this post from SureCloud.

Third-Party Risk Management GRC
Blogs
Transform Compliance into Your Competitive Advantage

In GRC, compliance is often viewed as a cost that makes it harder to pursue growth. Here's how to make it your competitive advantage.

Compliance Management GRC
Blogs
Questions You Should Ask when Preparing For Your First Pen Test

Understand the processes that you and your chosen pentest provider will travel through for your first pen test, from the initial point to the day the test starts.

Penetration Testing
Blogs
TPRM Blog 6-Writing Clear Questions

Our GRC Practice Director explores the importance of clear communication and how to achieve it in your third party questionnaires. Read more here.

Third-Party Risk Management GRC
Vector (7)
Vector-1
Cyber Security

4 Key Steps for Maintaining Business Culture During a Period of Uncertainty

4 Key Steps for Maintaining Business Culture During a Period of Uncertainty
Written by

Craig Moores

Published on

30 Oct 2020

4 Key Steps for Maintaining Business Culture During a Period of Uncertainty

 

With global advice driving organisations towards a period of remote working and self-isolation/social distancing to control the outbreak, it’s important for organisations to maintain their business culture, balancing the welfare of their staff with the needs of the business. The World Health Organisation has declared the Coronavirus disease (COVID-19) outbreak a global pandemic, and with it, organisations have been thrust into a period of uncertainty, with many needing to adapt their business operations to maintain service continuity.

However, reacting to a state of emergency without the proper considerations for business planning, communication and security can result in a disaster for an organisation’s cybersecurity posture.

 

 

 

So, what can organisations do?

We’ve mapped out the 4 key steps to maintaining business culture during a period of uncertainty for businesses moving to new ways of operating like remote working.

Often, organisations have teams and functions on either side of the remote working coin – some are set up to work remotely and are experienced at doing so, others may typically be used to a fixed office location. The challenge comes at times like these when everyone is required to work remotely. There are some simple things that organisations can do when considering remote working that allow them to maintain an effective working culture that, in turn, helps to ensure that staff wellbeing is considered alongside the required security controls.

1. Planning

It is essential that planning is considered when changing the way in which an organisation works, particularly for consideration for returning to ‘normal’. Whether it relates to setting objectives for staff, or for managing the expectations of customers if there is going to be a reduction in normal service, effective business planning ensures that operations are fully considered in order to provide a seamless continuation of service.

2. Communication

It is important to recognise that an office environment is difficult (nearly impossible!) to replicate when working remotely. This can present a cultural change that is difficult to adjust to for staff who are used to the hustle and bustle of an office. Add to that security controls, which are often taken for granted. It is important for managers to maintain an effective level of communication with all stakeholders, to ensure that business activities continue to be delivered with normal, if not more, considerations for security.

3. Collaboration

Working remotely often brings organisational challenges for collaborating securely. When planning for remote working, it is important to consider the security controls that form part of our daily activities and how these may need to be considered differently when remote.

These simple tips and reminders may help:

  1. Don’t connect to untrusted wireless networks – someone is always watching!
  2. Always use a central repository (where possible) to share information to reduce the need for sensitive information to be sent via email.
  3. Consider additional labelling requirements for information that is not typically processed away from an office location.
  4. Encourage a greater awareness for ‘shoulder surfing’ – remind staff to always be aware of their surroundings when discussing business topics.

4. Motivation and well-being

With specific reference to staff where working remotely is not part of their normal job requirement, it is important to maintain the right level of motivation. Whether it be focusing on delivering ‘business as usual’ activities from a different location, or participating in regular virtual catch up meetings, organisations who achieve a balance between business and staff wellbeing are often the most successful at continuing business activities through adversity.

Whatever your organisation’s position, it is important to recognise that business culture can be affected when changing an organisation’s normal business activity, particularly in relation to mitigating a health concern – by maintaining a balance, working remotely can be effective and safe.

In response to recent global events and the changing world in which organisations now operate, SureCloud has launched a new Cyber Resilience Assessment (CRA).

The Cyber Resilience Assessment delivers value in three key areas, lessons learnt, security posture and future strategy.

Learn more and register your interest here.