Building mobile cybersecurity awareness and simplifying compliance

Summary: Proactive planning, understanding the NIS2 directive and fostering a strong mobile security culture are all crucial to meeting the evolving challenge of today’s cyber threats.

Key takeaways

1. Proactive compliance and simplification. Compliance with new regulations, such as NIS2, requires proactive planning. Richard Browne of the NCSC highlighted the shift in responsibility to management boards and the need for a streamlined, high-level approach to compliance.

2. Integration of MDM and MTD for mobile security. Tom Davison of Lookout emphasised the necessity of integrating mobile device management (MDM) with mobile threat detection (MTD) solutions as a managed service to safeguard mobile devices effectively. This comprehensive approach is crucial to maintaining resilience and providing organisations with the necessary visibility and control over mobile threats.

3. Building a culture of security awareness. Training and empowering employees is essential to creating a resilient organisation. By shifting the perception of employees from potential risks to active defenders, organisations can strengthen their defence against emerging threats.

Proactive planning, understanding the NIS2 directive and fostering a strong mobile security culture are all crucial to meeting the evolving challenge of today’s cyber threats.

That was the message from the Vodafone Mobile Cybersecurity Connect event held in Sandyford, Dublin, on October 9th. Bringing together industry experts and public sector advisors, as well as Vodafone executives and partners, this latest in an ongoing series of events aimed to provide practical advice to those charged with keeping their organisations safe from the threat of cybercrime.

Speaking to a packed auditorium, Gerard Lawlor, Head of Public Sector for Vodafone Business, launched the event by reiterating the company’s commitment to its role as a trusted advisors on the thorniest issues around cybersecurity. This was quickly followed by a panel discussion led by Edel Briody, Head of Corporate Security, Risk and Compliance at Vodafone Ireland.

Getting things rolling, she discussed the need for public sector bodies and businesses alike to adapt quickly to regulatory changes and implement effective controls to build trust and maintain service reliability.

New regulations, new responsibilities

Richard Browne, Director of the National Cyber Security Centre (NCSC), provided insights into the evolution of European cybersecurity regulations, particularly the shift from NIS1 to NIS2. He explained how NIS2 broadens the scope of compliance to include more sectors and public bodies, making it essential for organisations to adapt quickly.

Browne noted the NCSC is currently dealing with between three and four thousand reported cybersecurity incidents a year, a figure he expects to see rise to 20,000 or 30,000 this year and next, as a consequence of more types of incidents becoming reportable under NIS2 by a larger number of organisations.

“The European Union has expanded its efforts to strengthen resilience across critical infrastructure. NIS2 brings government departments and a broader range of industries under its umbrella, meaning all essential services will need to adhere to more rigorous standards,” he said.

“This will bring with it a significant change in the pace and tempo of reporting by bodies into the NCSC. You will be reporting on a regular basis whether you like it or not, and it’ll essentially have to be automated. If you don’t, that will attract a fine.”

He further detailed the NCSC’s approach, stating that in the face of these increased reporting requirements, it would focus on auditing and enforcing compliance rather than micromanaging entities. “We will be issuing frameworks for organisations to follow, but it’s on the boards and management teams to ensure adherence.”

Simplicity and accessibility in security measures

Andrzej Kawalec, Head of Cybersecurity Portfolio at Vodafone Business, spoke next, addressing the challenges organisations face in implementing regulatory frameworks. He emphasised the importance of simplifying security measures to make compliance more accessible.

“Many organisations are still in the early stages of developing their cybersecurity plans. Our goal is to simplify security processes, ensuring that all businesses from large corporations to SMEs understand and adopt the necessary measures,” he said.

“If there is a fire in your building, everyone likely feels empowered to trigger the fire alarm. But when it comes to cybersecurity, most employees don’t feel similarly empowered to break the metaphorical glass. Many wouldn’t know whether to pick up their laptop, to log on or to not log on? How do they set the alarm off and what should they do?”

Engaging with the new reporting requirements of NIS2 will help create a new sense of empowerment for such organisations. “That’s a resilience question and getting this right has to be our goal,” he said.

For businesses yet to engage in this process, Kawalec used a compelling analogy to describe the complexity they face and how they can solve it. He compared the process to learning to ride a bicycle. “It helps a lot when you start out riding a bike to have as a steadying hand to guide you for a while, until you gather enough momentum to keep going on your own.”

“That’s our role, to be that steadying hand. It’s about providing the right tools and support so that organisations feel confident and capable of maintaining their cybersecurity posture,” he said.

Integrating mobile device management and threat detection

Tom Davison, Senior Director of Sales Engineering with Vodafone partner Lookout, expanded the discussion by focusing on the crucial role of mobile security in corporate environments. He highlighted that mobile devices, often underestimated in terms of security risks, have become essential tools in accessing corporate networks and sensitive data.

“There’s been a misconception that mobile devices are less vulnerable. In reality, they are now the primary gateway to corporate systems, making them a significant target for cyber criminals,” Davison explained. He stressed the need for organisations to go beyond traditional mobile device management (MDM) and incorporate mobile threat detection (MTD) tools as part of a comprehensive managed service.

“MDM alone manages devices, but it doesn’t secure them fully. It’s like having a lock on your door without any monitoring or alarms. By combining MDM with MTD, organisations can monitor threats like phishing, malicious apps and compromised networks, ensuring a proactive defence strategy,” he said.

Davison also emphasised that a managed service approach provides the visibility and control needed to respond to mobile threats effectively, integrating with other security measures for maximum protection.

Incorporating training and awareness

“Training and empowering employees are crucial,” said Edel Briody. “We must move away from viewing staff as the weakest link and instead recognize them as key assets in our defence strategy.”

The Vodafone Mobile Cybersecurity Compliance event underscored the critical need for businesses to stay ahead of regulatory requirements while building comprehensive security plans. Through expert presentations and hands-on sessions, attendees gained practical insights into improving resilience and adapting to the ever-changing threat landscape.

Closing the event, Amanda Nelson, chief executive officer of Vodafone Ireland, reiterated the company’s commitment to serving as trusted partners to business and public sector bodies in need of guidance and support in a challenging time.

“It’s really important to me that we have real answers for people in real world situations, based on our global experience and up to date knowledge. We really do see this as a hand-in-hand relationship with our customers, and our role is to protect them,” she said.

“We want to be able to offer fresh thinking and fresh ideas, and the ability to combine our experience makes us all sharper and stronger. We don’t just advise others on how best to secure their assets, telecommunications infrastructure is a very significant target so cyber security is a real and daily concern for us. It’s never off my risk radar.”

From Broadband to Business Apps, learn more about the products and solutions to help you reimagine your business.

Want to discover more?

Back to top back to top icon

Get in touch

Find out what we can do to help your business reach its full potential.

1800 855 696

Close message
    5GCreated with Sketch. acceleration-system add-icon add-ons-boosts-midadd-ons always-connected icon-app-storearrow-left at-symbol auto-top-up basket-changebill-or-report-midbill-pay-phones-icon4C91DB73-75FE-4565-8F69-BC6C675B1EA1bintoaster-black block-system blockbonusbroadband-darkbroadband-iconbroadband-lightbroadband-new broadband-or-wifi-1 broadband-or-wifi-midbroadband bundles-midbusinessCalendarCreated with Sketch. calendarIcons+Indicators / System-Icons / landline_or_call / #333333Created with Sketch. callCallsCreated with Sketch. cameracancel-mid carer-system case-study-midcasescelebrate chart-line-midchat-midchevron-down-system chevron-downchevron-left chevron-rightchevron-up-system chevron-upchromecast clock-new clock-or-timedclock close-smallclosecollectionscomment-midcommunity-or-foundation-midcommunitycompleted-midconnected-devices-midconsultant contractconverged-proposition-midcredt-top-up dark-sync DataCreated with Sketch. Icons+Indicators / System-Icons / data / #333333Created with Sketch. data-middatadeals-middelete-bin delete-icondelivery deliveryNew device dislike document-middownload-bicolor Downloadedit-icon editemail-notificationengineer-miderror-circle-system-red error-circle-system error-circleeSim data eyefacebookfilters fixed-line-midgame-console generic-tariff-plan-midGift Icon Gift gogreen-tick heart help-midhelp-support-info-circlehidden-password home-midhome-phone info-circle-grey info-circle-mid info-circle international-system landline-or-call-midletterslike lock-sslmail-new-midmenumessagemfa-email-sms-notificationminutes-sms-midmobile-2023 mobilemobile-lightmobile-midmobile-SWmobile-vtv mobilemy-vodafone-new my-vodafone-or-my-profile-midmy-vodafoneneed-help-midnetwork-signal-midnotification-new object-type-default onenumberonline ordersoutofcompany payg-midpayg-phones-iconF86C85F6-FFFF-4C62-8F9A-45D7251FC836payment-midpencil phone-ai_exportphone-icon-card phone-mini-icon photosplaceholderplay-circle play-storeplayplus-new plusportals-for-videos red-warning reloadreportreturn-product-midroaming-midroamingsearch-close search-device-guides search-shop search-support search-system searchsecond-step-desktop second-step security-midsettings-bicolor settings-midroaming shopping-trolley-midshoppingsign-up-icon signed-in Sim card sim-midsim-swap-midsimIcons+Indicators / System-Icons / sms / #333333Created with Sketch. sms-or-text-midsms-text-mid sms-text spinnersquaresssl-lock step-1 step-2 step-3 super-wifi-selected super-wifi-un-selected superwifi sync tablet technologysquares theft-system third-step-desktop third-step three-points tick-circle Tick-icontick-simpletick-outline-system tick-outline tick-simpletick-thankyou-pageto-do-list info-circle tobitop-up-2021top-up-icontop-up-midtopup tothiscompany travellers-info-midroaming tv-midtv-new tv-vtv block twitterup-arrow upgrade-midv-sim-and-device valuevf-tv-iconvisible-password vodafone-business-inverse vodafonevodafone-store-midvodafone-tv vodafone voice-of-vodafone-alerts-midVTV warning-hi-dark warning-midwarning-orange warning-red warning-system watch-tick watch-with-tick watch web-protection-red