Close

Presentation

Deciphering Human Error: Improving Cybersecurity Reporting
DescriptionHuman error is often cited as a primary cause of cybersecurity breaches, but how clearly and consistently is it actually reported? Our qualitative analysis of five major 2024 cybersecurity reports (Verizon DBIR, IBM Cost of a Data Breach, ENISA Threat Landscape, Microsoft Digital Defense Report, and Global CISO Survey) identifies significant inconsistencies, gaps, and ambiguities in how human error is defined, categorized, and reported across the industry. The absence of a standardized classification framework limits the effectiveness of comparisons and mitigation strategies. Drawing insights from established human factors frameworks such as HFACS and Reason’s Swiss Cheese Model, we will share our findings on these reporting inconsistencies and propose a path towards a standardized Human Factors classification system. Join us to discuss how adopting an industry-shared framework could revolutionize the diagnostic impact of human-centric security.