Train From Home on Your Schedule with OnDemand - Special Offers Available Now


Subscribe to SANS Newsletters

Join the SANS Community to receive the latest curated cyber security news, vulnerabilities and mitigations, training opportunities, and our webcast schedule.

Combating the rise of Cyber Insurgency cannot be mandated says leading Expert

  • United Kingdom
  • 13th March, 2013

"The threat is absolutely real," says Dr. Eric Cole, "But sometimes people and even countries get hung up on the terminology of conflict. In reality, cyber war is closer to a cyber-insurgency where the weapons, targets and collateral damage are different from an all-out physical engagement. If you consider the mind-set of insurgency, the method of engagement is subtlety different as are the counter insurgency techniques employed by defenders."

Dr. Cole points to examples in Estonia, Syria, Libya and North Korea where physical war intersects with cyber-attacks. In many cases, cyber insurgency is used as a soft retaliation instead of a mismatched and potentially futile counter attack. Nation states and military groupings such as NATO have clear rules of engagement as well as mandated security protocols. Unfortunately, many of the most dangerous examples of cyber-attack are in fact focused at Critical National Infrastructure such as energy, water, telecommunication and travel. Many of these CNI organisations are in the private sector and, in some cases, reticent to have more costly legal requirements around mandated levels of IT security.

"If you force a mandated level of security, you run the risk of organisation only working against the check box instead of employing a true secure mind-set," says Cole, "The other danger around mandated breach disclose within CNI is the likelihood that issue may not be entirely fixed and the notification will act like a beacon for further attacks." Instead, Dr. Cole believes that best practice security process such as the 20 Critical Security Controls need to be taught and encouraged but not necessarily forced on the private sector.

Dr. Cole is one of the world's leading experts on cybercrime and author of 10 books, including Hackers Beware, Hiding in Plain Site, Network Security Bible, and Insider Threat. He also holds 20 patents and is a member of the Commission on Cyber Security for the 44th President, several executive advisory boards. Dr. Cole has over twenty years experience in network security consulting, with clients including International banks, Fortune 500 companies, and the CIA.

In his role as a key advisor to both public and private sector, controversially Dr. Cole believes that the visibility of cyber warfare or insurgency is actually a sign that things may be getting better even though the potential damage inflicted by attacks increases.

"It's like a person going to the doctor for a physical, the patient feels fine walking through the door but the test point to high blood pressure and the effects of a bad diet. This visibility allows the patient to make changes and become healthier - in its own way, the highly visible breach stories in the media force us to look at our security health which is essential in fighting the new cyber insurgency."

Dr. Cole will be in the UK in April leading the Critical Security Controls Summit and training. For more information on the Critical Security Controls Summit or to book a place, please visit:

Media Contact

About SANS Institute

The SANS Institute was established in 1989 as a cooperative research and education organization. Today, SANS is the most trusted and, by far, the largest provider of cyber security training and certification to professionals in government and commercial institutions worldwide. Renowned SANS instructors teach more than 60 courses at In-Person and Live Online cyber security training events, and more than 50 courses are available anytime, anywhere with our OnDemand platform. GIAC, an affiliate of the SANS Institute, validates practitioner skills through more than 35 hands-on, technical certifications in cyber security. The SANS Technology Institute, a regionally accredited independent subsidiary, offers a master’s degree, graduate certificates, and an undergraduate certificate in cyber security. SANS Security Awareness, a division of SANS, provides organizations with a complete and comprehensive security awareness solution, enabling them to easily and effectively manage their ‘human’ cybersecurity risk. SANS also delivers a wide variety of free resources to the InfoSec community including consensus projects, research reports, webcasts, podcasts, and newsletters; it also operates the Internet's early warning system – the Internet Storm Center. At the heart of SANS are the many security practitioners, representing varied global organizations from corporations to universities, working together to support and educate the global information security community. (