{"id":14202,"date":"2021-02-17T00:00:00","date_gmt":"2021-02-17T07:00:00","guid":{"rendered":"https:\/\/www.syteca.com\/blog\/en-blog-people-centric-security\/"},"modified":"2025-05-12T08:14:12","modified_gmt":"2025-05-12T15:14:12","slug":"people-centric-security","status":"publish","type":"post","link":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security","title":{"rendered":"People-centric Security for Remote Workers"},"content":{"rendered":"\n<p>In striving to make sure in-office and remote employees\u2019 work is secure, organizations often rely on technology-centric approaches. Although user monitoring tools and other cybersecurity solutions do their jobs, they still can\u2019t affect employee behavior and fully secure remote work. To engage remote employees into cybersecurity, organizations are now shifting to a human-centric approach.<\/p>\n\n\n\n<p>The people-centric approach to security aims to treat workers more as a cyber shield for corporate data rather than a vulnerability. In this article, we explore what this approach is, why you may want to implement it, and how your organization can benefit from it.<\/p>\n\n\n\n<h2  class=\"wp-block-heading\">What is people-centric security?<\/h2>\n\n\n\n<p><em>Human-centric security is about making your people your defense.<\/em><\/p>\n\n\n\n<p>Attackers target people, not machines. That\u2019s why organizations are gradually shifting from a technology-centric to a human-centric cybersecurity approach.<\/p>\n\n\n\n<p>Traditional cybersecurity software protects data by monitoring user activity, restricting employees\u2019 access to certain resources, and blocking phishing emails. However, such software can\u2019t fully protect an organization from security events caused by human errors.<\/p>\n\n\n\n<p>So instead of emphasizing restrictive security controls, businesses are putting more effort into:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Providing relevant cybersecurity education for employees<\/li>\n\n\n\n<li>Emphasizing employees\u2019 accountability for their actions<\/li>\n\n\n\n<li>Showing workers that an organization trusts them<\/li>\n<\/ul>\n\n\n\n<p>This is where people-centric security comes into play.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/people-centric-security-definition-gartner.jpg\" alt=\"people-centric-security-definition-gartner\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p class=\"has-text-align-center\"><em>Definition of people-centric security by <a href=\"https:\/\/www.gartner.com\/smarterwithgartner\/have-you-ever-considered-a-people-centric-security-strategy\/\" target=\"_blank\" rel=\"noopener\">Gartner<\/a><\/em><\/p>\n\n\n\n<p><span class=\"strong\">People-centric security<\/span> is an approach that treats people as an important security perimeter. Its main principle is enabling each employee to have autonomy in handling information, using devices, and adopting security measures.<\/p>\n\n\n\n<p>When discussing people-centric security (PCS), cybersecurity specialists often refer to this approach using the following terms:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>People-centric security approach<\/li>\n\n\n\n<li>People-centric security framework<\/li>\n\n\n\n<li>People-centric security strategy<\/li>\n\n\n\n<li>Human-centric security<\/li>\n\n\n\n<li><a href=\"https:\/\/www.ncsc.gov.uk\/collection\/you-shape-security\" target=\"_blank\" rel=\"noopener\">You-shaped security<\/a><\/li>\n<\/ul>\n\n\n\n<p>In this article, we use these terms as synonyms.<\/p>\n\n\n\n<p>While promoting trust in employees and making them responsible for the security of corporate data they work with, PCS doesn\u2019t cancel the need to verify that employees follow recommended cybersecurity practices.<\/p>\n\n\n\n<p>Just like in a conventional technology-centric approach to security, in PCS, users still have a particular set of access rights depending on their position, work routine, and responsibilities. However, within the PCS framework, employees are more aware of possible vulnerabilities, cybersecurity incidents, and their consequences. Also, employees are ready to take responsibility for their actions.<\/p>\n\n\n\n<p>There are <span class=\"strong\">seven principles<\/span> that should govern the increased rights and responsibilities of employees under a people-centric security framework:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><span class=\"strong\">Accountability<\/span> \u2014 Owners of information must be accountable for protecting it.<\/li>\n\n\n\n<li><span class=\"strong\">Responsibility<\/span> \u2014 Employees must take responsibility for how they handle data, use devices, etc.<\/li>\n\n\n\n<li><span class=\"strong\">Autonomy<\/span> \u2014 Organizations should provide workers with trust and enable self-governance.<\/li>\n\n\n\n<li><span class=\"strong\">Immediacy<\/span> \u2014 Inappropriate behavior always should be followed by an adequate response: punitive actions, educational program enhancements, etc.<\/li>\n\n\n\n<li><span class=\"strong\">Community<\/span> \u2014 All employees within an organization should maintain and support a positive cybersecurity culture.<\/li>\n\n\n\n<li><span class=\"strong\">Proportionality<\/span> \u2014 Control measures have to be proportional to the risks: the higher the risks, the stronger the controls.<\/li>\n\n\n\n<li><span class=\"strong\">Transparency<\/span> \u2014 Organizations should verify employees\u2019 attitudes with user monitoring solutions and provide feedback on what to improve to reduce cybersecurity risks.<\/li>\n<\/ul>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/core-principles-of-people-centric-security.jpg\" alt=\"core-principles-of-people-centric-security\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p>Within a modern cybersecurity program, <span class=\"strong\">human-centric security should go hand in hand with traditional perimeter and access control security<\/span>. Only by combining the PCS approach with robust user cybersecurity software can organizations enhance their data and system security.<\/p>\n\n\n\n<p class=\"p-read-also\"><a class=\"read-also\" href=\"\/en\/solutions\/preventing-insider-threat\" target=\"_blank\" rel=\"noopener\">Insider Threat Management<\/a><\/p>\n\n\n\n<h2  class=\"wp-block-heading\">Why do you need human-centric security?<\/h2>\n\n\n\n<p><em>Security that doesn\u2019t work for people doesn\u2019t work.<\/em><\/p>\n\n\n\n<p>Implementing PCS into your work environment means making employees a cybersecurity shield for your organization. But is it really worth the effort?<\/p>\n\n\n\n<p>Let\u2019s define the three ways you can benefit from deploying a people-centric approach to cybersecurity:<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/3-reasons-to-apply-a-human-centric-security-approach.jpg\" alt=\"3-reasons-to-apply-a-human-centric-security-approach\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><span class=\"strong\">1. Create a secure perimeter that isn\u2019t covered by cybersecurity software<\/span><\/p>\n\n\n\n<p>Hackers continually find new ways to manipulate both humans and systems. Because of this, organizations need to revise cybersecurity measures and update their tools each time they learn of a new threat. However, this doesn\u2019t always provide employees with enough awareness and can\u2019t protect organizations from social engineering attacks.<\/p>\n\n\n\n<p>For example, phishing campaigns may be so advanced they can easily bypass email filters and cybersecurity tools. Thus, it\u2019s up to users to be extremely attentive with emails they receive.<\/p>\n\n\n\n<p>It\u2019s essential to understand that well-trained staff is an important part of any cybersecurity defense. When properly educated and nurtured in a healthy cybersecurity environment, employees can:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Use an organization\u2019s networks and devices responsibly<\/li>\n\n\n\n<li>Carefully handle the data they work with<\/li>\n\n\n\n<li>Wisely access internet resources<\/li>\n\n\n\n<li>Know how to securely share data through cloud-based solutions<\/li>\n\n\n\n<li>Successfully identify phishing emails<\/li>\n<\/ul>\n\n\n\n<p><span class=\"strong\">2. Understand the context behind user actions<\/span><\/p>\n\n\n\n<p>Although user activity logs provided by <a href=\"\/en\/solutions\/monitoring-employee-activity\" target=\"_blank\" rel=\"noreferrer noopener\">employee desktop monitoring software<\/a> often help cybersecurity officers detect suspicious activity, they can\u2019t help officers understand people. And to truly understand people, you need to know their intentions \u2014 what\u2019s behind their actions.<\/p>\n\n\n\n<p>Knowing the context behind user actions is important, especially when tasks may require creative solutions. In such situations, unusual employee activity \u2014 launching new applications or spending more time interacting with certain data than usual \u2014 might seem suspicious but not bring any threats.<\/p>\n\n\n\n<p>Also, context can make it clear whether a user performed an inappropriate action by accident or with malicious intent.<\/p>\n\n\n\n<p>Context can be related to data, user activity, and possible threats. By analyzing it, organizations can faster detect and respond to potential threats as well as make informed decisions on existing cybersecurity measures.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/3-types-of context-behind-user-actions.jpg\" alt=\"3-types-of context-behind-user-actions\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><span class=\"strong\">3. Improve the security of remote work<\/span><\/p>\n\n\n\n<p>PCS <a href=\"https:\/\/www.gartner.com\/smarterwithgartner\/lessons-in-how-to-implement-people-centric-security\/\" target=\"_blank\" rel=\"noopener\">isn\u2019t a new trend<\/a>, but in 2020, it found a new lease on life. With the need to shift to remote work, businesses switched their cybersecurity focus from machines to humans.<\/p>\n\n\n\n<p>Cybersecurity officers usually consider <a href=\"\/en\/blog\/remote-employee-monitoring\" target=\"_blank\" rel=\"noopener\">remote employees<\/a> a significant risk for corporate data and systems for numerous reasons:<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/major-security-issues-related-to-remote-workers.jpg\" alt=\"major-security-issues-related-to-remote-workers\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p>While traditional cybersecurity tools help to handle some of the issues mentioned above, the PCS approach provides remote employees with much more awareness of cybersecurity risks and their consequences. Thus, employees are more likely to follow an organization\u2019s cybersecurity policies even when working from home.<\/p>\n\n\n\n<p>Human-centric security goes far beyond ordinary cybersecurity training. Conventional training gives no guarantee that employees won\u2019t forget or neglect certain practices, especially when they\u2019re overwhelmed with work. Meanwhile, PCS concentrates on employees\u2019 responsibilities and teaches them to be more cautious about potential cybersecurity issues, especially when they\u2019re working remotely.<\/p>\n\n\n\n<p class=\"p-read-also\"><a class=\"read-also\" href=\"\/en\/blog\/remote-employee-monitoring\" target=\"_blank\" rel=\"noopener\">Remote Employee Monitoring: How to Make Remote Work Effective and Secure<\/a><\/p>\n\n\n\n<h2  class=\"wp-block-heading\">How to implement PCS in your organization?<\/h2>\n\n\n\n<p><em>Be ready to commit.<\/em><\/p>\n\n\n\n<p>There\u2019s no one-size-fits-all plan on how to enhance an organization\u2019s cybersecurity with PCS. However, there are <span class=\"strong\">three<\/span> major steps that will help you shift your cybersecurity focus from machines to people.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/3-steps-to-implement-pcs-in-your-organization.jpg\" alt=\"3-steps-to-implement-pcs-in-your-organization\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><span class=\"strong\"><strong>1. Create an environment for people-centric security<\/strong><\/span><\/p>\n\n\n\n<p>One of the key ideas of PCS is to allow employees to make risk-based decisions. To achieve this goal, you need much more than traditional security awareness and training.<\/p>\n\n\n\n<p>Concentrate on <a href=\"https:\/\/www.gartner.com\/smarterwithgartner\/lessons-in-how-to-implement-people-centric-security\/\" target=\"_blank\" rel=\"noopener\">creating a work environment<\/a> for people-centric security, in which employees:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Comprehend cybersecurity threats and their consequences<\/li>\n\n\n\n<li>Understand the necessity of following recommended cybersecurity practices<\/li>\n\n\n\n<li>Are willing to take personal accountability for their actions<\/li>\n\n\n\n<li>Know the company trusts them and provides relevant controls to manage their security<\/li>\n\n\n\n<li>Communicate freely with executives and security officers on cybersecurity topics<\/li>\n\n\n\n<li>Have access to corporate educational materials that are tailored to different audience profiles and are regularly updated to address common mistakes, new threats, etc.<\/li>\n<\/ul>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/what-do-you-need-to-create-environment-that-promotes-pcs.jpg\" alt=\"what-do-you-need-to-create-environment-that-promotes-pcs\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><span class=\"strong\"><strong>2. Foster a culture of cybersecurity<\/strong><\/span><\/p>\n\n\n\n<p>An organization\u2019s security culture can impact the organization in multiple ways, negatively or positively affecting compliance, the number of vulnerabilities, the likelihood of cybersecurity incidents, and the organization\u2019s financial state.<\/p>\n\n\n\n<p>You can evaluate your current security culture by assessing the following seven elements and finding areas for improvement:<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/7-elements-to-evaluate-your-current-security-culture.jpg\" alt=\" 7-elements-to-evaluate-your-current-security-culture\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p class=\"has-text-align-center\"><em>According to the <a href=\"https:\/\/www.knowbe4.com\/hubfs\/Security-Culture-Report.pdf\" target=\"_blank\" rel=\"noopener\">Security Culture Report 2020 by KnowBe4, Inc. [PDF]<\/a><\/em><\/p>\n\n\n\n<p>Once you\u2019ve performed this evaluation, you can start working on your cybersecurity culture. There are different approaches to develop it. Let\u2019s take a look at the following six-step framework offered by the <a href=\"https:\/\/www.enisa.europa.eu\/publications\/cyber-security-culture-in-organisations\" target=\"_blank\" rel=\"noopener\">European Union Agency for Cybersecurity<\/a>:<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/6-step-framework-to-develop-a-cybersecurity-culture.jpg\" alt=\"6-step-framework-to-develop-a-cybersecurity-culture\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><span class=\"strong\"><strong>3. Make PCS a long-term commitment<\/strong><\/span><\/p>\n\n\n\n<p>Establishing a healthy cybersecurity culture and an environment for people-centric security is a long process that requires thorough planning, continuous employee education, and regular evaluation of the results. If your organization aims to adopt the PCS approach, you should be ready to commit.<\/p>\n\n\n\n<p>This <a href=\"https:\/\/link.springer.com\/chapter\/10.1007\/978-1-4842-5952-8_4\" target=\"_blank\" rel=\"noopener\">strategic commitment<\/a> could take the following forms:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Choosing a fitting methodology, tools, and evaluation methods on your own<\/li>\n\n\n\n<li>Hiring a management consultant who specializes in cybersecurity culture and driving business change to help you<\/li>\n<\/ul>\n\n\n\n<p>The first method may be time-consuming at the beginning, since your cybersecurity officers will have to explore the PCS approach in detail. On the bright side, it will give you a clear picture of all the options available and a deeper understanding of the value of PCS.<\/p>\n\n\n\n<p>Hiring an experienced consultant will definitely save your time and allow you to start implementing the PCS approach much faster. However, it will require additional funds.<\/p>\n\n\n\n<p class=\"p-read-also\"><a class=\"read-also\" href=\"https:\/\/syteca_site_uploads.storage.googleapis.com\/wp-content\/uploads\/2025\/04\/25050317\/syteca-An-HVAC-Service-Provider-Secures-Data-and-Maintains-Employee-Productivity-after-Switching-to-Remote-Work.pdf\" target=\"_blank\" rel=\"noreferrer noopener\">An HVAC Service Provider Secures Data and Maintains Employee Productivity after Switching to Remote Work [PDF]<\/a><\/p>\n\n\n\n<h2  class=\"wp-block-heading\">4 key elements of securing remote work with a people-centric approach<\/h2>\n\n\n\n<p>Let\u2019s explore practices and tools that will help you in establishing a beneficial human-centric security framework within your organization.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/4-key-elements-of-establishing-pcs.jpg\" alt=\"4-key-elements-of-establishing-pcs\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><span class=\"strong\"><strong>1. Customized security training<\/strong><\/span><\/p>\n\n\n\n<p>The major goal behind customized security training is to help employees:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Understand common risks, threats, and their consequences<\/li>\n\n\n\n<li>Be prepared for industry-relevant threats<\/li>\n\n\n\n<li>Always follow cybersecurity practices<\/li>\n\n\n\n<li>Be able to recognize social engineering attacks and other threats<\/li>\n<\/ul>\n\n\n\n<p>A great way to achieve this goal is to personalize training and all the cybersecurity materials your employees are asked to get familiar with. By customizing training for the specifics of your organization and the routines of different types of users, you can help employees recognize themselves and better grasp useful information. When information is standardized and bland, employees tend to get bored and lose attention.<\/p>\n\n\n\n<p>Microsoft has prepared the following <a href=\"https:\/\/www.microsoft.com\/security\/blog\/2020\/09\/24\/microsoft-security-6-tips-centric-cybersecurity-security-training\/\" target=\"_blank\" rel=\"noopener\">six helpful tips<\/a> to enhance your security training strategy with a people-centric approach:<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/microsoft-6-tips-for-enabling-pcs-with-security-training.jpg\" alt=\"microsoft-6-tips-for-enabling-pcs-with-security-training\"\/><\/figure>\n\n\n\n<p><\/p>\n\n\n\n<p><span class=\"strong\"><strong>2. Artificial intelligence (AI) and machine learning (ML) tools<\/strong><\/span><\/p>\n\n\n\n<p>Both AI and ML technologies are already used in cybersecurity software to detect potential threats and mitigate hacker attacks. However, they can also be applied to help employees learn an organization\u2019s security rules and reduce cyber risks related to human factors.<\/p>\n\n\n\n<p>As part of robust <a href=\"\/en\/product\/user-activity-monitoring\" target=\"_blank\" rel=\"noreferrer noopener\">user activity monitoring software<\/a>, AI and ML can:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Monitor user behavior<\/li>\n\n\n\n<li>Detect cybersecurity violations and potentially dangerous actions<\/li>\n\n\n\n<li>Trigger user notifications of security violations<\/li>\n<\/ul>\n\n\n\n<p>Some cybersecurity solutions allow for configuring notifications that educate users on detected violations. Thus, such technologies can gradually change user behavior towards security and foster a cybersecurity culture within an organization.<\/p>\n\n\n\n<p><span class=\"strong\"><strong>3. Simulated social engineering attacks<\/strong><\/span><\/p>\n\n\n\n<p>Organizations often use simulated social engineering attacks to check how well employees have grasped cybersecurity training. These attacks can include phishing, pretexting, and baiting.<\/p>\n\n\n\n<p>For example, you can create phishing emails that are harmless but that help you see how employees will behave during attacks. This allows you to learn why employees act insecurely, and you can use this information to personalize your security training and cover gaps in your human cyber shield.<\/p>\n\n\n\n<p>Although the click rate will give you some indication of organizational vulnerability and an idea of how effective your security training is, you shouldn&#8217;t strive to receive the perfect score. Making the click rate the key marker is wrong because anyone can be phished; it just takes the right email, at the right time, in the right situation.<\/p>\n\n\n\n<p><span class=\"strong\"><strong>4. Communicating risks<\/strong><\/span><\/p>\n\n\n\n<p>Risk assessment is the basis of any security program. By determining and evaluating risks relevant to your organization, you can effectively adjust your cybersecurity strategy to combat possible threats. However, this helpful information shouldn\u2019t only be used by C-level executives and security officers.<\/p>\n\n\n\n<p>PCS can succeed only when all employees have enough tools and knowledge to be a true cyber defense for an organization. Consider risk assessment reports as material that can be reworked into helpful brochures and slides for the next security training.<\/p>\n\n\n\n<p>When exploring the real facts and numbers, employees begin to treat cybersecurity like a real thing, not a hypothetical danger. Thus, they\u2019re more likely to change their attitudes and behaviors, which will help you build a strong cybersecurity culture within your organization.<\/p>\n\n\n\n<p class=\"p-read-also\"><a class=\"read-also\" href=\"\/en\/blog\/insider-threat-risk-assessment\" target=\"_blank\" rel=\"noopener\">Insider Threat Risk Assessment: Definition, Benefits, and Best Practices<\/a><\/p>\n\n\n\n<h2  class=\"wp-block-heading\">How can Syteca assist you with people-centric security?<\/h2>\n\n\n\n<p><span class=\"strong\">Syteca<\/span> is a comprehensive insider risk management platform that helps organizations detect and prevent insider threats. In addition, it allows you to immediately respond to potential incidents and provides detailed context for their further analysis.<\/p>\n\n\n\n<p>In terms of people-centric security, you can use the Syteca platform to:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><a href=\"\/en\/product\/user-activity-monitoring\" target=\"_blank\" rel=\"noopener\">Monitor user activity<\/a> of in-office and remote employees to know who accesses what<\/li>\n\n\n\n<li>Set warning messages on violations to help users better learn your organization\u2019s cybersecurity rules<\/li>\n\n\n\n<li>Detect <a href=\"\/en\/product\/alerts-and-notifications\" target=\"_blank\" rel=\"noopener\">abnormal user activity<\/a> and mitigate a potential risk before it turns into an incident by leveraging AI-based user behavior analytics<\/li>\n\n\n\n<li>Analyze essential user activity data with <a href=\"\/en\/product\/reports-and-statistics\" target=\"_blank\" rel=\"noopener\">extensive customized reports<\/a><\/li>\n<\/ul>\n\n\n\n<p>Syteca can also help you comply with major cybersecurity regulations, laws, and standards like <a href=\"\/en\/solutions\/meeting-compliance-requirements\/nist-compliance\" target=\"_blank\" rel=\"noopener\">NIST 800-53<\/a>, <a href=\"\/en\/solutions\/meeting-compliance-requirements\/swift-customer-security-program-compliance\" target=\"_blank\" rel=\"noopener\">SWIFT CSP<\/a>, <a href=\"\/en\/solutions\/meeting-compliance-requirements\/hipaa-compliance-solutions\" target=\"_blank\" rel=\"noopener\">HIPAA<\/a>, <a href=\"\/en\/solutions\/meeting-compliance-requirements\/gdpr-compliance\" target=\"_blank\" rel=\"noopener\">GDPR<\/a>, <a href=\"\/en\/solutions\/meeting-compliance-requirements\/fisma-compliance\" target=\"_blank\" rel=\"noopener\">FISMA<\/a>, and <a href=\"\/en\/solutions\/meeting-compliance-requirements\/pci-dss-compliance\" target=\"_blank\" rel=\"noopener\">PCI DSS<\/a>.<\/p>\n\n\n\n<p class=\"p-read-also\"><a class=\"read-also\" href=\"\/en\/blog\/password-policy-compliance-checklist\" target=\"_blank\" rel=\"noopener\">Privileged Password Policy Compliance Overview: NIST 800-63, HIPAA, PCI DSS, GDPR<\/a><\/p>\n\n\n\n<h2  class=\"wp-block-heading\">Conclusion<\/h2>\n\n\n\n<p>Traditionally, we think of cybersecurity as something that\u2019s highly technical: antivirus software, secured networks, complex infrastructure. However, in reality, malicious actors often target people who have access to the data they want. This means we should pay attention to employees\u2019 cybersecurity knowledge and the ability of employees to recognize potential threats.<\/p>\n\n\n\n<p>Shifting to a people-centric security approach means providing employees with more knowledge, tools, awareness, and self-governance. Implementing this approach can help organizations significantly reduce cyber incidents caused by human factors.<\/p>\n\n\n\n<p>Using robust <a href=\"\/en\/product\/supported-platforms\/windows-monitoring\" target=\"_blank\" rel=\"noreferrer noopener\">RDS monitoring<\/a> solutions along with implementing the people-centric security approach is a great combination to enhance your cybersecurity. Syteca will help you prevent insider threats without disturbing the work of remote employees. Request a free trial of Syteca below to see it in action.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In striving to make sure in-office and remote employees\u2019 work is secure, organizations often rely on technology-centric approaches. Although user monitoring tools and other cybersecurity solutions do their jobs, they still can\u2019t affect employee behavior and fully secure remote work. To engage remote employees into cybersecurity, organizations are now shifting to a human-centric approach. The [&hellip;]<\/p>\n","protected":false},"author":53,"featured_media":15365,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[59],"tags":[],"class_list":["post-14202","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-remote-workforce"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>People-centric Security for Remote Workers | Syteca<\/title>\n<meta name=\"description\" content=\"Learn what people-centric security is, why you should make employees your cyber shield, and how to implement and benefit from human-centric security.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.syteca.com\/en\/blog\/people-centric-security\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"People-centric Security for Remote Workers | Syteca\" \/>\n<meta property=\"og:description\" content=\"Learn what people-centric security is, why you should make employees your cyber shield, and how to implement and benefit from human-centric security.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.syteca.com\/en\/blog\/people-centric-security\" \/>\n<meta property=\"og:site_name\" content=\"Syteca\" \/>\n<meta property=\"article:published_time\" content=\"2021-02-17T07:00:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-05-12T15:14:12+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/people-centric-security-for-remote-workers.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"825\" \/>\n\t<meta property=\"og:image:height\" content=\"280\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Oleg Shomonko\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Oleg Shomonko\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"13 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security\"},\"author\":{\"name\":\"Oleg Shomonko\",\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/#\\\/schema\\\/person\\\/9791c0b8c4b174f3109ef40eb6195221\"},\"headline\":\"People-centric Security for Remote Workers\",\"datePublished\":\"2021-02-17T07:00:00+00:00\",\"dateModified\":\"2025-05-12T15:14:12+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security\"},\"wordCount\":2302,\"image\":{\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.syteca.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/people-centric-security-for-remote-workers.jpg\",\"articleSection\":[\"Remote Workforce\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security\",\"url\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security\",\"name\":\"People-centric Security for Remote Workers | Syteca\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.syteca.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/people-centric-security-for-remote-workers.jpg\",\"datePublished\":\"2021-02-17T07:00:00+00:00\",\"dateModified\":\"2025-05-12T15:14:12+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/#\\\/schema\\\/person\\\/9791c0b8c4b174f3109ef40eb6195221\"},\"description\":\"Learn what people-centric security is, why you should make employees your cyber shield, and how to implement and benefit from human-centric security.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security#primaryimage\",\"url\":\"https:\\\/\\\/www.syteca.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/people-centric-security-for-remote-workers.jpg\",\"contentUrl\":\"https:\\\/\\\/www.syteca.com\\\/wp-content\\\/uploads\\\/2023\\\/04\\\/people-centric-security-for-remote-workers.jpg\",\"width\":825,\"height\":280},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/people-centric-security#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Remote Workforce\",\"item\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/category\\\/remote-workforce\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"People-centric Security for Remote Workers\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/\",\"name\":\"Syteca\",\"description\":\"Syteca | software to monitor privileged users and audit employee activity, detect insider threats, and protect servers in real time. Try a free demo now!\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/#\\\/schema\\\/person\\\/9791c0b8c4b174f3109ef40eb6195221\",\"name\":\"Oleg Shomonko\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/syteca_site_uploads.storage.googleapis.com\\\/wp-content\\\/uploads\\\/2024\\\/02\\\/20111326\\\/Oleg.png\",\"url\":\"https:\\\/\\\/syteca_site_uploads.storage.googleapis.com\\\/wp-content\\\/uploads\\\/2024\\\/02\\\/20111326\\\/Oleg.png\",\"contentUrl\":\"https:\\\/\\\/syteca_site_uploads.storage.googleapis.com\\\/wp-content\\\/uploads\\\/2024\\\/02\\\/20111326\\\/Oleg.png\",\"caption\":\"Oleg Shomonko\"},\"description\":\"Oleg is Syteca\u2019s visionary leader. Over ten years of rich experience enable him to evaluate and take into account all security risks and envision insider threat management as a comprehensive system. Oleg emphasizes the importance of respecting people\u2019s privacy while understanding that employees and vendors might bring cybersecurity risks to an organization. This is reflected in Syteca\u2019s ability to deter, detect, and disrupt insider threats without impairing trust and cooperation within your team and among partners.\",\"sameAs\":[\"https:\\\/\\\/www.linkedin.com\\\/in\\\/oleg-shomonko-a2b0674\\\/\"],\"url\":\"https:\\\/\\\/www.syteca.com\\\/en\\\/blog\\\/author\\\/oleg-shomonko\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"People-centric Security for Remote Workers | Syteca","description":"Learn what people-centric security is, why you should make employees your cyber shield, and how to implement and benefit from human-centric security.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security","og_locale":"en_US","og_type":"article","og_title":"People-centric Security for Remote Workers | Syteca","og_description":"Learn what people-centric security is, why you should make employees your cyber shield, and how to implement and benefit from human-centric security.","og_url":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security","og_site_name":"Syteca","article_published_time":"2021-02-17T07:00:00+00:00","article_modified_time":"2025-05-12T15:14:12+00:00","og_image":[{"width":825,"height":280,"url":"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/people-centric-security-for-remote-workers.jpg","type":"image\/jpeg"}],"author":"Oleg Shomonko","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Oleg Shomonko","Est. reading time":"13 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security#article","isPartOf":{"@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security"},"author":{"name":"Oleg Shomonko","@id":"https:\/\/www.syteca.com\/en\/#\/schema\/person\/9791c0b8c4b174f3109ef40eb6195221"},"headline":"People-centric Security for Remote Workers","datePublished":"2021-02-17T07:00:00+00:00","dateModified":"2025-05-12T15:14:12+00:00","mainEntityOfPage":{"@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security"},"wordCount":2302,"image":{"@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security#primaryimage"},"thumbnailUrl":"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/people-centric-security-for-remote-workers.jpg","articleSection":["Remote Workforce"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security","url":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security","name":"People-centric Security for Remote Workers | Syteca","isPartOf":{"@id":"https:\/\/www.syteca.com\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security#primaryimage"},"image":{"@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security#primaryimage"},"thumbnailUrl":"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/people-centric-security-for-remote-workers.jpg","datePublished":"2021-02-17T07:00:00+00:00","dateModified":"2025-05-12T15:14:12+00:00","author":{"@id":"https:\/\/www.syteca.com\/en\/#\/schema\/person\/9791c0b8c4b174f3109ef40eb6195221"},"description":"Learn what people-centric security is, why you should make employees your cyber shield, and how to implement and benefit from human-centric security.","breadcrumb":{"@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.syteca.com\/en\/blog\/people-centric-security"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security#primaryimage","url":"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/people-centric-security-for-remote-workers.jpg","contentUrl":"https:\/\/www.syteca.com\/wp-content\/uploads\/2023\/04\/people-centric-security-for-remote-workers.jpg","width":825,"height":280},{"@type":"BreadcrumbList","@id":"https:\/\/www.syteca.com\/en\/blog\/people-centric-security#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Remote Workforce","item":"https:\/\/www.syteca.com\/en\/blog\/category\/remote-workforce"},{"@type":"ListItem","position":2,"name":"People-centric Security for Remote Workers"}]},{"@type":"WebSite","@id":"https:\/\/www.syteca.com\/en\/#website","url":"https:\/\/www.syteca.com\/en\/","name":"Syteca","description":"Syteca | software to monitor privileged users and audit employee activity, detect insider threats, and protect servers in real time. Try a free demo now!","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.syteca.com\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/www.syteca.com\/en\/#\/schema\/person\/9791c0b8c4b174f3109ef40eb6195221","name":"Oleg Shomonko","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/syteca_site_uploads.storage.googleapis.com\/wp-content\/uploads\/2024\/02\/20111326\/Oleg.png","url":"https:\/\/syteca_site_uploads.storage.googleapis.com\/wp-content\/uploads\/2024\/02\/20111326\/Oleg.png","contentUrl":"https:\/\/syteca_site_uploads.storage.googleapis.com\/wp-content\/uploads\/2024\/02\/20111326\/Oleg.png","caption":"Oleg Shomonko"},"description":"Oleg is Syteca\u2019s visionary leader. Over ten years of rich experience enable him to evaluate and take into account all security risks and envision insider threat management as a comprehensive system. Oleg emphasizes the importance of respecting people\u2019s privacy while understanding that employees and vendors might bring cybersecurity risks to an organization. This is reflected in Syteca\u2019s ability to deter, detect, and disrupt insider threats without impairing trust and cooperation within your team and among partners.","sameAs":["https:\/\/www.linkedin.com\/in\/oleg-shomonko-a2b0674\/"],"url":"https:\/\/www.syteca.com\/en\/blog\/author\/oleg-shomonko"}]}},"_links":{"self":[{"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/posts\/14202","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/users\/53"}],"replies":[{"embeddable":true,"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/comments?post=14202"}],"version-history":[{"count":0,"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/posts\/14202\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/media\/15365"}],"wp:attachment":[{"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/media?parent=14202"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/categories?post=14202"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.syteca.com\/en\/wp-json\/wp\/v2\/tags?post=14202"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}