{"id":8010,"date":"2020-03-05T13:32:01","date_gmt":"2020-03-05T13:32:01","guid":{"rendered":"https:\/\/www.securitytoday.de\/2026\/04\/02\/post_id-1972\/"},"modified":"2026-07-06T15:27:06","modified_gmt":"2026-07-06T15:27:06","slug":"qualified-staff-your-most-important-security-measure","status":"publish","type":"post","link":"https:\/\/www.securitytoday.de\/en\/2020\/03\/05\/qualified-staff-your-most-important-security-measure\/","title":{"rendered":"Qualified Staff: Your Most Important Security Measure"},"content":{"rendered":"<p><strong>Employee expertise determines a company\u2019s security posture. As a study by the German digital association Bitkom reveals, qualified IT security specialists are essential for protecting against sabotage, data theft, or espionage. In fact, 99 percent of respondents rated qualified staff as an appropriate security measure &#8211; and 69 percent deemed them <em>highly<\/em> appropriate.<\/strong><\/p>\n<p>The survey included over 1,000 CEOs and security officers across all industries. It explored questions such as: Which companies are affected by espionage, sabotage, and data theft? Who are the suspected perpetrators? And is the economy already adequately protected today?<\/p>\n<h2><strong>AI and Blockchain to Protect Your Business<\/strong><\/h2>\n<p>Security awareness training for employees is also viewed as highly effective: 97 percent of companies consider it an appropriate security measure, and 76 percent rate it as <em>highly<\/em> appropriate. Bitkom Executive Board member Ralf Wintergerst shares this view: \u201cThe cybersecurity skills shortage is especially acute in IT security. That makes investing in continuing education and training all the more critical. Companies that skimp here become significantly more vulnerable.\u201d<\/p>\n<p>Alongside skilled personnel, technological solutions are also cited as key enablers. Nearly half of respondents (47 percent) consider artificial intelligence and machine learning <em>highly<\/em> suitable security measures &#8211; particularly for detecting anomalies. A total of 86 percent of companies regard the \u201csecurity-by-design\u201d approach for Internet of Things (IoT) devices as sensible &#8211; a principle requiring security considerations to be integrated from the earliest stages of device development. In this context, 80 percent of respondents see blockchain technologies as useful for protection against sabotage, data theft, or espionage.<\/p>\n<p>Sabotage, data theft, and espionage alone cost the German economy over \u20ac100 billion annually. Economic protection in the digital world has thus become more urgent than ever.<\/p>\n<p>&nbsp;<\/p>\n<h2>Key Facts<\/h2>\n<p><strong>Damage volume:<\/strong> Cybercrime causes global annual damages exceeding \u20ac8 trillion.<\/p>\n<p><strong>Skills gap:<\/strong> More than 3.5 million cybersecurity professionals are missing worldwide.<\/p>\n<h2>Frequently Asked Questions<\/h2>\n<p class=\"st-faq-hint\">Every question is locked. A tap unlocks the answer.<\/p>\n<details>\n<summary><strong>What are the most common cyber threats facing businesses?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">According to the BSI (Federal Office for Information Security) Threat Landscape Report, ransomware, phishing, DDoS attacks, and supply-chain compromises are the most frequent threats. For German companies, regulatory risks &#8211; including the GDPR and the NIS2 Directive &#8211; add further complexity.<\/p>\n<\/details>\n<details>\n<summary><strong>How much should a company invest in cybersecurity?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">Industry experts recommend allocating 10 to 15 percent of the IT budget to cybersecurity. According to Bitkom, German companies average 14 percent. What matters most is not just the amount &#8211; but the strategic allocation across prevention, detection, and response.<\/p>\n<\/details>\n<details>\n<summary><strong>Does every company need a CISO?<\/strong><\/summary>\n<p style=\"margin:8px 0 4px 24px;color:#555;line-height:1.6;\">Not every company requires a full-time Chief Information Security Officer (CISO), but every organization needs clearly defined IT security accountability at the executive level. SMEs can engage an external CISO (Virtual CISO). With NIS2, management-level responsibility for cybersecurity is now legally mandated.<\/p>\n<\/details>\n<h2>Related Articles<\/h2>\n<ul>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/03\/05\/post_id-3821\/\">secIT by Heise 2026: The security roadshow for system administrators and IT decision-makers<\/a><\/li>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/03\/05\/post_id-3819\/\">DsiN Annual Conference 2026: Digital Security in a Connected Society<\/a><\/li>\n<li><a href=\"https:\/\/www.securitytoday.de\/en\/2026\/03\/05\/cybersec-europe-2026-brussels-security-conference-at-the-heart-of-eu-regulation\/\">Cybersec Europe 2026: Brussels\u2019 security conference at the heart of EU regulation<\/a><\/li>\n<\/ul>\n<p style=\"font-weight:700;color:#e6e3da;font-size:1.05em;margin:48px 0 16px;\">More from the MBF Media Network<\/p>\n<div style=\"display:flex;flex-direction:column;gap:14px;margin-bottom:40px;\"><a href=\"https:\/\/www.digital-chiefs.de\" class=\"st-net-card\" style=\"display:block;padding:16px 18px;background:#23261f;border:1px solid rgba(105,216,237,0.22);border-radius:10px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 2px 10px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;\"><span style=\"display:block;margin-bottom:6px;font-size:0.72em;font-weight:700;letter-spacing:0.06em;text-transform:uppercase;color:#d65663;\">Digital Chiefs<\/span><span style=\"display:block;color:#e6e3da;line-height:1.45;\">IT Strategies for Digital Transformation<\/span><\/a><a href=\"https:\/\/www.cloudmagazin.com\" class=\"st-net-card\" style=\"display:block;padding:16px 18px;background:#23261f;border:1px solid rgba(105,216,237,0.22);border-radius:10px;box-shadow:inset 0 1px 0 rgba(230,227,218,0.06),0 2px 10px rgba(0,0,0,0.22);text-decoration:none;color:#e6e3da;\"><span style=\"display:block;margin-bottom:6px;font-size:0.72em;font-weight:700;letter-spacing:0.06em;text-transform:uppercase;color:#0bb7fd;\">cloudmagazin<\/span><span style=\"display:block;color:#e6e3da;line-height:1.45;\">Cloud as an Enabler of Digitalization<\/span><\/a><\/div>\n<h2>TL;DR<\/h2>\n<ul>\n<li>99 percent of respondents rated qualified staff as an appropriate security measure; 69 percent considered them <em>highly<\/em> appropriate.<\/li>\n<li>Security awareness training for employees is seen as appropriate by 97 percent of companies &#8211; and <em>highly<\/em> appropriate by 76 percent.<\/li>\n<li>Nearly half of respondents (47 percent) consider artificial intelligence and machine learning <em>highly<\/em> suitable security measures &#8211; especially for anomaly detection.<\/li>\n<li>Overall, 86 percent of companies regard the \u201csecurity-by-design\u201d approach for IoT devices as sensible.<\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"Employee expertise determines a company\u2019s security posture. As a study by the German digital association Bitkom reveals, qualified IT security specialists are essential for protecting against sabotage, data theft, or espionage. In fact, 99 percent of respondents rated qualified staff as an appropriate security measure &#8211; and 69 percent deemed them highly appropriate. The survey [&hellip;]","protected":false},"author":55,"featured_media":1973,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_yoast_wpseo_focuskw":"security measure","_yoast_wpseo_title":"Qualified Staff: Your Most Important Security Measure","_yoast_wpseo_metadesc":"Qualified staff are your strongest defense against cyber threats\u2014invest in expert training today to secure your business and stay ahead of risks. Act now!","_yoast_wpseo_meta-robots-noindex":"","_yoast_wpseo_meta-robots-nofollow":"","_yoast_wpseo_meta-robots-adv":"","_yoast_wpseo_canonical":"","_yoast_wpseo_opengraph-title":"","_yoast_wpseo_opengraph-description":"","_yoast_wpseo_opengraph-image":"","_yoast_wpseo_opengraph-image-id":0,"_yoast_wpseo_twitter-title":"","_yoast_wpseo_twitter-description":"","_yoast_wpseo_twitter-image":"","_yoast_wpseo_twitter-image-id":0,"_evm_slot_owner":"","evm_cvss":0,"evm_risk":0,"evm_casefile":"","evm_primary_cve":"","evm_pin_until":0,"evm_external_preview_token":"","evm_external_preview_expires":"","_evm_translation_lang":"","featured_post":0,"featured_post_sortierung":0,"_wp_old_slug":["post_id-1972"],"footnotes":""},"categories":[259],"tags":[],"class_list":["post-8010","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-strategie-governance-en"],"evm_reading_time_minutes":4,"wpml_language":"en","wpml_translation_of":null,"_links":{"self":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/8010","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/users\/55"}],"replies":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/comments?post=8010"}],"version-history":[{"count":7,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/8010\/revisions"}],"predecessor-version":[{"id":19893,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/posts\/8010\/revisions\/19893"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/media\/1973"}],"wp:attachment":[{"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/media?parent=8010"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/categories?post=8010"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.securitytoday.de\/en\/wp-json\/wp\/v2\/tags?post=8010"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}