Ethical Risks & the Human Element of Information Security: Insiders and Social Engineering

Production Date: August 28, 2017 Practice Areas: Ethics and Privacy & Cybersecurity Estimated Length: 5654 minutes


$ 89 Ethics and Privacy & Cybersecurity In Stock

Cyber security is often viewed as a technological field. Despite this, study after study has found that criminal hackers’ often low-tech “social engineering” attacks, malicious insiders, and even simple human error are the initial cause of the majority of data breaches and other security incidents. How do these attacks work? And what can you do to safeguard your clients and your practice?

Attorneys can also be held responsible for security incidents as a result of 2012 amendments to the American Bar Association’s Model Rules of Professional Conduct. These changes address the increasing use of technology in legal practice and the ongoing need to safeguard client and firm data.

Attorney and information security consultant Scott Aurnou will discuss the amended Rules and the basic steps needed to comply with them, including measures to secure confidential client and e-discovery information. He will provide a background of how electronic data and system access can be at risk from both external and internal attacks (as well as mistakes), outline methods used by attackers, and highlight key steps needed to mitigate risks facing law firms and organizations of all sizes.

Learning Objectives:

  1. Learn about ethical obligations under the ABA Model Rules pertaining to attorney competence, technology, and behavior-based security issues
  2. Identify and understand social engineering techniques
  3. Understand the types of human error that can place an organization at risk
  4. Examine the risk presented by malicious insiders
  5. Understand effective measures that can be taken to mitigate the effect of human error, insider, and social engineering attacks
Christine S.
Palm Beach Gardens, FL

Scott was Excellent!

Benjamin S.
Allen, TX

excellent presentation and speaker

Dale R.
Liberty Lake, WA

Actually worthwhile!!!

Dane R.
Hanover, PA

Fantastic course. Highest level.

Patricia C.
San Antonio, TX

Great presenter. Watching all of his courses.

Shelley K.
Gary, IN

This was very informative and helpful. The presenter was excellent and gave a great deal of information in a way that was easy to assimilate.

stephen h.
forest hills, NY

Excellent content and presentation. Would thoroughly recommend.

Egbert D.
Greensboro, NC

Very helpful and practical

Kimberly S.
Springdale, AR

Much more interesting and engaging than I expected from a cyber security program. Good stuff!

William K.
Lewiston, NY

Very helpful and timely course

Lisa O.
Quincy, IL

Outstanding presentation.