1 minute read
CYBER SECURITY
Our information technology (IT) Department is dedicated to cyber security and business continuity. In 2019, an Information Security team was created to improve our security posture and execute yearly strategic security roadmaps, updated annually; by doing so, this maintains and strengthens our company’s ability to protect company and client data. The team conducts an annual comprehensive security assessment in tandem with monthly vulnerability scans and remediates identified issues. Our SIEM platform, AlienVault, monitored 24/7/365 by ProCircular, is utilized to help improve our detection and prevention of attacks on our company’s equipment year-round.
A security awareness program was launched in May of 2020. Employees undergo training to spot ‘phishing’ scams and other malicious emails or attacks. These fraudulent requests are sophisticated and can use known company contacts to lure others into sending funds to illegitimate recipients or compromise confidential data and information. On a monthly basis, employees are tested internally and if the employee fails, they are required to go through additional training and, in some cases, meet with human resources (HR) and IT for performance improvement. As scams are ever-changing, training and tips are provided to arm our employees with the knowledge to be a digital Brother’s and Sister’s Keeper and ensure we protect our family of companies and their employees.
Highlights
- Conducted a Tabletop Exercise to Prepare for Any Security Emergency
- Rolled Out BitWarden Password Manager
- Weekly Trivia During Cyber Security Awareness Month in October
- Deployed the KnowBe4 Learner App to All Company Mobile Devices
- Made Improvements to Our Security Posture with Our vCISO Project and Extended Through 2025
During the 2022 Annual Foundational and New Hire Cybersecurity Awareness Training, a total of 332 hours was spent on training, averaging 21 minutes per person, and a completion rate of 82%.
Cyber Security Training
870.5
Total Hours Executed on All Monthly Trainings
71%
Completion Across all Trainings
332 73.8%
Hours for Annual Required Training
Increase in Hours of Annual Trainings Completed
Safety Goals
Incident Rate: Reduce incidents and near misses to reduce annual incident rate.
Security: In 2022, ensure company participation and improvement in security awareness training.
Safety: Utilize Geotab to establish and track safe driver metrics with an award program.
Incident Rate: Continue to reduce incidents and near misses across new and existing divisions to reduce annual incident rate.
Security: Ensure company participation and improvement by 5% or 200 hours of additional security awareness training.
Safety: Provide company-wide wildfire and equipment fire education and training.
Safety: Improve tracking of certified arborists and climbers.