Business Email Compromise – persistent threat or consistently mismanaged?

Business Email Compromise (BEC) is a type of cybercrime (otherwise known as a fraud or scam) which has been around for 10 years. Despite the number of businesses falling victim to this scam, many businesses are still slow to respond by enhancing security awareness and security culture, performing risk assessments, and implementing appropriate controls including process redesign and changes to bank payment practices. This article explores the problem, outlines how BEC can work, and provides three key actions managers can take to mitigate the risk. Continue reading