X
  • About
  • Advertise
  • Contact
Get the latest news! Subscribe to the ifa bulletin
  • News
  • Opinion
  • Podcast
  • Risk
  • Video
  • Events
    • ifa Excellence Awards
    • Super Fund Of The Year
    • Australian Wealth Management Awards
    • Fund Manager Of The Year
    • Evolution of Advice Summit
    • Australian Wealth Management Summit
  • Promoted Content
  • Webcasts
No Results
View All Results
  • News
  • Opinion
  • Podcast
  • Risk
  • Video
  • Events
    • ifa Excellence Awards
    • Super Fund Of The Year
    • Australian Wealth Management Awards
    • Fund Manager Of The Year
    • Evolution of Advice Summit
    • Australian Wealth Management Summit
  • Promoted Content
  • Webcasts
No Results
View All Results
No Results
View All Results
Home News

Humans the ‘weakest link’ in cyber security

With human beings as the biggest risk to cyber security, an expert says businesses need to foster a company-wide culture of responsibility, from the CEO to the newest employee.

by Shy-ann Arkinstall
February 10, 2025
in News
Reading Time: 4 mins read

As technology enhancements increase the complexity of cyber security, founder of The Cyber Collective, Fraser Jack, has argued that human beings are the “weakest link” when it comes to businesses’ cyber security.

“Whether it’s being tricked or whether it’s being lazy or whether it’s being rushed or whether it’s being under stress, there’s lots of different ways and reasons why people would make mistakes or do the wrong thing,” Jack said on The ifa Show.

X

“With 95 per cent or 19 out of 20 issues stemming from a human being, it always surprises me that we aren’t investing a bit more money in our teams to make sure that they’re across and trained in this scenario.”

Jack also stressed the importance of creating a workplace culture that fosters consistent positive behaviours when it comes to cyber security, embedding the need for these processes in every staff member.

“The safety culture around cyber really needs to become part of a culture, which means you don’t just think about it once a fortnight or once a month or once a year when you’re doing your audit. You’ve got to be thinking about it every day and for the right reasons,” he said.

“Like, why are we doing this? It’s for our clients or it’s for our team.”

While no business can be perfectly secure against any cyber incident, according to Jack, fostering a workplace environment where each team member can play a role in the protection of the business can make them all feel like they are, in some way, responsible for protecting the business.

“Everybody in every single firm is vulnerable in some way,” he said.

“The idea is that you can have proactive conversations in a safe environment at your team meetings around what some of those issues could be and how to solve them and then just making it part of the product of conversation, I think, because there’s always something that can be done.”

Jack noted that this culture needs to go beyond just training employees on what they should be doing but also creating an environment where safe cyber security practices become second nature to all employees.

“When we talk about training teams, it’s not just about teaching them that that’s the way they’re supposed to do it. It’s about that constant cultural behavioural thing, and culture is a really hard thing to lock down in a business,” he said.

“You can’t just say, ‘This is what our culture is going to be.’ You actually have to live that culture every day and it has to become part of the psyche.”

Jack added: “It’s about doing it every day and leaning into that, and being passionate about the fact that you enjoy doing multifactor authentication because it helps your client, right? It’s not about wasting your time, it’s about putting, thinking about the client at that time, or however it might be.”

Furthermore, Jack argued that business owners have an obligation to have a moderate level of cyber literacy in order to understand the firm’s cyber security capabilities and needs.

“You can’t just outsource it to the IT department and expect it’s been done,” he said.

“It’s probably a bit like having an approved product list in a business. It’s great to have an approved product list, but you’re still responsible for the advice you give. It’s the same.

“You can have an outsourced IT person, but you’re still, as the director of the firm, responsible to make sure and know what all those products are you’ve got in place and what they do and have some level of understanding of them.”

To hear more from Fraser Jack, tune in here.

Related Posts

Aged care

Longer lives, chronic illness drives new protection challenge

by Alex Driscoll
July 15, 2026
0

Australians who were born in 1985, if they live to 40, can expect to live well into their 80s, and...

Phil Anderson, ASIC levy

What’s the ASIC levy actually paying for?

by Alex Burke
July 15, 2026
3

Based on ASIC’s FY26 cost recovery implementation statement, around half of this year’s $48.7 million personal advice levy was allocated to enforcement, with the remainder being...

Image: Prostock-studio/stock.adobe.com.au

Former FAAA deputy chair appointed chair-elect

by Alex Driscoll
July 15, 2026
1

Veitch has been on the FAAA board since the association’s formation in April 2023, serving as deputy chair. Before this,...

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

VIEW ALL
News

Shane Oliver joins Australian Wealth Management Summit as keynote speaker

Shane Oliver joined AMP in 1984, becoming Chief Economist in 1994 and is now Chief Economist and Head of Macro...

by ifa Staff
June 22, 2026
Promoted Content

Got your own AFSL? You don’t need to go it alone.

With the licensee landscape constantly shifting, holding your own license means that your future itself is not tied to someone...

by Lifespan
June 4, 2026
Promoted Content

Why portfolio resilience matters more in a volatile world

Private credit in a volatile world: why investors are revisiting portfolio resilience From escalating geopolitical conflict to rising oil prices...

by Zagga
March 26, 2026
Promoted Content

The importance of empathy and the advice regulatory quagmire: a Q&A with Ashley Tilston

Congratulations on winning Holistic Adviser of the Year for both NSW and Australia at the ifa awards, what do you think set you apart to...

by Alex Driscoll
March 3, 2026

Join our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

Poll

This poll has closed

Do you have clients that would be impacted by the proposed Division 296 $3 million super tax?
Vote
www.ifa.com.au is a digital platform that offers daily online news, analysis, reports, and business strategy content that is specifically designed to address the issues and industry developments that are most relevant to the evolving financial planning industry in Australia. The platform is dedicated to serving advisers and is created with their needs and interests as the primary focus.

Subscribe to our newsletter

View our privacy policy, collection notice and terms and conditions to understand how we use your personal information.

About IFA

  • About
  • Advertise
  • Contact
  • Terms & Conditions
  • Privacy Collection Notice
  • Privacy Policy

Popular Topics

  • News
  • Risk
  • Opinion
  • Podcast
  • Promoted Content
  • Video
  • Profiles

© 2026 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited

No Results
View All Results
NEWSLETTER
  • News
  • Opinion
  • Podcast
  • Risk
  • Video
  • Events
    • ifa Excellence Awards
    • Super Fund Of The Year
    • Australian Wealth Management Awards
    • Fund Manager Of The Year
    • Evolution of Advice Summit
    • Australian Wealth Management Summit
  • Promoted Content
  • Webcasts
  • Advertise
  • About
  • Contact Us

© 2026 All Rights Reserved. All content published on this site is the property of Prime Creative Media. Unauthorised reproduction is prohibited