Cybersecurity Awareness and cyber-hygiene on cybersecurity
Cyber security is a continuously changing topic that requires constant user awareness raising. Raising awareness about cyber security threats and vulnerabilities and their impact on society has become vital.
Through awareness-raising, individual and corporate users can learn how to behave in the online world and protect themselves from typical risks. Awareness activities occur on an ongoing basis and use a variety of delivery methods to reach broad audiences.
Security awareness activities may be triggered by different events or factors, which may be internal or external to an organisation. Major external factors could include: recent security breaches, threats and incidents, new risks, updates of security policy and/or strategy. Among the internal factors are new laws, new governments etc.
Promoting and developing initiatives to raise awareness, as well as offering guidance on good cyber hygiene practices and controls, aimed at citizens, stakeholders and entities is also a requirement of NIS2 Directive that needs to be incorporated into the National Strategies of the EU MS. Also strengthening the cyber hygiene baseline of small and medium-sized enterprises, in particular those excluded from the scope of this Directive, by providing easily accessible guidance and assistance for their specific needs shall be addressed within the National Cybersecurity Strategies of the Member States.