IT Risk Services Brochure

Social Engineering

A Definition

How would your behavior change if your wallet, homes and mailboxes could be accessed from around the world as computers can? Often referred to as the “single greatest security risk,” social engineering has rapidly emerged to dominate information security discussions in the U.S. and abroad. Social engineering is “the practice of obtaining confidential information by manipulation of legitimate users.”

Becoming Aware

Technical controls alone cannot prevent social engineering attacks; your employees may be the weakest link in your information security chain. Lack of awareness, special employee privileges, vendor relationships and possible breeches of confidentiality can make your company vulnerable to social engineering attacks.

Factors enhancing a company’s vulnerability include:

  • Large number of employees
  • Multiple facilities
  • Phone extension information made available
  • Information of employee whereabouts left in voice mail messages
  • Lack of security training and incident reporting plan
  • Lack of data classification system

Our Solutions

BKD IT Risk Services (ITRS) can help you prepare for these types of attacks with simulated pretext phone calling, spoofing, phishing and physical access attempts and the use of malware and counterfeit web sites for security testing. We can help you evaluate your organization’s security posture, test your incident response plan and raise employee awareness. We can help you reach your information security goals.

Cindy Boyle

Partner
IT Risk Services

Cindy Boyle

Partner

IT Risk Services

Not-for-Profit & Government, Not-for-Profit & Government, Financial Services, Inf, Comm & Entertainment

400 W. Capitol Avenue, Suite 2500
P.O. Box 3667
Little Rock, AR 72203-3667 (72201)

Little Rock
501.372.1040

Ronald Hulshizer

Senior Managing Consultant

Ronald Hulshizer

Senior Managing Consultant

Financial Services

Two Leadership Square South Tower
211 N. Robinson Avenue, Suite 600
Oklahoma, City, OK 73102-9421

Oklahoma City
405.842.7977

Cindy Boyle

Partner
IT Risk Services

Cindy Boyle

Partner

IT Risk Services

Not-for-Profit & Government, Not-for-Profit & Government, Financial Services, Inf, Comm & Entertainment

400 W. Capitol Avenue, Suite 2500
P.O. Box 3667
Little Rock, AR 72203-3667 (72201)

Little Rock
501.372.1040

Ronald Hulshizer

Senior Managing Consultant

Ronald Hulshizer

Senior Managing Consultant

Financial Services

Two Leadership Square South Tower
211 N. Robinson Avenue, Suite 600
Oklahoma, City, OK 73102-9421

Oklahoma City
405.842.7977

Laura Patrick

Managing Consultant

Laura Patrick

Managing Consultant

Other

910 E. St. Louis Street, Suite 200
P.O. Box 1190
Springfield, MO 65806-2523

Springfield
417.865.8701

Rod Walsh

Director
IT Risk Services

Rod Walsh

Director

IT Risk Services

Other

1201 Walnut Street
Suite 1700
Kansas City, MO 64106-2246

Kansas City
816.221.6300