---
title: Insider Threats Make the Case for Data-centric Security
description: Insider threat can be mitigated with Data-centric security.
image: https://insights.comforte.com/hubfs/comforte%20AG_Insider%20Threats%20Make%20the%20Case%20for%20Data-centric%20Security.png
---

[![Hubspot_blog_logo](https://insights.comforte.com/hs-fs/hubfs/Hubspot_blog_logo.png?width=295&name=Hubspot_blog_logo.png)](http://www.comforte.com)

[![Subscribe](https://no-cache.hubspot.com/cta/default/4026697/ba125972-4bdc-4e47-b9a9-81df496120a0.png)](https://cta-redirect.hubspot.com/cta/redirect/4026697/ba125972-4bdc-4e47-b9a9-81df496120a0)

[![comforte AG - Insider Threats Make the Case for Data-centric Security](https://insights.comforte.com/hubfs/comforte%20AG_Insider%20Threats%20Make%20the%20Case%20for%20Data-centric%20Security.png)](https://insights.comforte.com/insider-threats-make-the-case-for-data-centric-security)

[Dan Simmons](https://insights.comforte.com/author/dan-simmons) l Apr 3, 2025 l [Data Protection](https://insights.comforte.com/tag/data-protection), [Data Breaches](https://insights.comforte.com/tag/data-breaches)

# Insider Threats Make the Case for Data-centric Security

CISOs appear to be spending more on mitigating insider risk. Reports [suggest](https://www.computerweekly.com/news/366619622/CISOs-spending-more-on-insider-risk) 16.5% of cybersecurity budgets are now devoted to it, roughly double the figure of a year ago. To understand why, just read the latest threat intelligence [from Google](https://cloud.google.com/blog/topics/threat-intelligence/dprk-it-workers-expanding-scope-scale), which warns of North Korean IT workers tricking their way into roles at Western firms.

Fortunately, there is an answer. When combined with strict identity and access management (IAM) controls, data-centric security can help global organizations to protect their most sensitive information from prying eyes—even if they are employees.

## From North Korea to Australia

Insider threats are nothing new. There has always been a risk of malicious employees taking IP or customer data for financial gain, or sabotaging systems and stealing sensitive information because they harbor personal grievances against their employer. However, a spate of recent reports about North Korean state actors has put many security leaders on high alert.

According to reports, IT specialists from the hermit nation are taking advantage of remote working opportunities at Western firms to gain employment—often via third-party recruitment or freelance platforms like Upwork. Some use AI tools like deepfakes to create fake but convincing personas capable of passing HR tests. Documents and resumes are also forged. Even a cybersecurity company [was tricked](https://blog.knowbe4.com/how-a-north-korean-fake-it-worker-tried-to-infiltrate-us) into hiring a North Korean worker this way.

The risk is that, aside from sending their wages back to Pyongyang to potentially fund North Korea’s missile program, these workers usually have privilege access as IT admins. That could give them access to sensitive information to download and sell, or hold to ransom. These schemes began in the US but are apparently spreading to Europe.

Yet the insider threat is a global phenomenon. Just las month, a leading Australian law firm contacted police after a “premeditated and carefully planned” email was sent to hundreds of recipients from an insider. It’s suspected the email, which [apparently contained](https://www.hrleader.com.au/business/26633-law-firm-suspects-former-employee-sent-malicious-email-refers-investigation-outcomes-to-police) a spreadsheet revealing the salaries of hundreds of staff members, was sent by a former employee whose access rights were not revoked after leaving the company.

## Insider threats are big business

These examples highlight a growing threat to enterprises. According to [one study,](https://www.dtexsystems.com/blog/2025-cost-insider-risks-takeaways/#1) the cost of insider security incidents—including negligence as well as malfeasance—has climbed continuously over the past six years. As of 2024, the total average cost was $17.4m. Data types involved in these incidents included authentication credentials, personally identifiable information (PII), corporate financial data, IP, payment card data, and medical information.

Although falling, the average time to contain such breaches still stands at 81 days. That could put the breached organization at risk of:

- Brand and reputational damage
- Financial loss (due to legal and IT costs, lost productivity etc)
- Regulatory fines
- Lost competitive advantage (if IP is stolen)

## How data security can help

The challenge for corporate security teams is how to ensure data cannot be stolen or weaponized by a malicious insider. After all, they will be able to bypass perimeter defenses by virtue of having legitimate log-in credentials. The key is layered defenses that combine data security and IAM.

Here’s one way to do it:

- Deploy a data discovery and classification solution to gain continuous insight into what data there is in the organization, and where it flows to
- Draw up policies to protect the most sensitive data, based on risk appetite
- Apply data protection to sensitive enterprise data throughout its lifecycle
- Follow principle of least privilege when assigning permissions to new employees. This will ensure they can access only the data needed to do their job, and no more
- Deploy a Privileged Access Management (PAM) solution to continuously monitor and audit privileged accounts, enforce least privilege policies, centralize authorization and securely store credentials

The [comforte SecurDPS](https://www.comforte.com/resources/fact-sheet-comforte-data-protection) solution is a good fit for this kind of data-centric security approach. It delivers continuous AI-enhanced data discovery and classification, and allows enterprise customers to seamlessly enforce data protection such as tokenization, in line with policy. Tokenization is a good choice as it allows business teams to use corporate and customer data in analytics tools without compromising on security.

With these layered defenses, the chances of malicious insiders being able to access sensitive data are much reduced. And even if they do, that data should be rendered useless thanks to encryption or tokenization.

---

| Share this:  | [![LinkedIn](https://insights.comforte.com/hubfs/Social%20Icons/linkedin%20icon.png)](https://www.linkedin.com/shareArticle?mini=true&url=https://insights.comforte.com/insider-threats-make-the-case-for-data-centric-security&utm_medium=social&utm_source=linkedin) | [![Bluesky](https://insights.comforte.com/hubfs/Social%20Icons/bluesky_logo.png)](https://bsky.app/intent/compose?url=https://insights.comforte.com/insider-threats-make-the-case-for-data-centric-security&utm_medium=social&utm_source=Bluesky) | ![Twitter](https://insights.comforte.com/hubfs/Social%20Icons/twitter_x_logo-1.png) | [![XING](https://insights.comforte.com/hubfs/Social%20Icons/xing-color2.png)](https://www.xing.com/spi/shares/new?url=https://insights.comforte.com/insider-threats-make-the-case-for-data-centric-security&utm_medium=social&utm_source=xing) | [![Email](https://insights.comforte.com/hubfs/Social%20Icons/email%20icon.png)](mailto:?subject=Check%20out%20https://insights.comforte.com/insider-threats-make-the-case-for-data-centric-security&utm_medium=social&utm_source=email%20&body=Check%20out%20https://insights.comforte.com/insider-threats-make-the-case-for-data-centric-security&utm_medium=social&utm_source=email) |
| --- | --- | --- | --- | --- | --- |

## Free 30-Day Health Check for Sensitive Payment Data 

Accelerate PCI Compliance with Automatic Discovery and Classification of PANs and Cardholder Data

[![Start Your Free Trial Today](https://no-cache.hubspot.com/cta/default/4026697/b524802b-4c2a-4a07-8630-c282723556aa.png)](https://cta-redirect.hubspot.com/cta/redirect/4026697/b524802b-4c2a-4a07-8630-c282723556aa)

### Related posts

![Reuse, Reward: How Banks Can Safely Unlock the Value of Their Data](https://insights.comforte.com/hubfs/comforte%20AG_%20Reuse%20Reward_%20How%20Banks%20Can%20Safely%20Unlock%20the%20Value%20of%20Their%20Data_03.2025.png)

 Mar 12, 2026 l [Data Protection](https://insights.comforte.com/tag/data-protection) , [Payments Transformation](https://insights.comforte.com/tag/payments-transformation) , [Business Value](https://insights.comforte.com/tag/business-value)

### [Reuse, Reward: How Banks Can Safely Unlock the Value of Their Data](https://insights.comforte.com/reuse-reward-how-banks-can-safely-unlock-the-value-of-their-data?hsLang=en)

The financial world is awash with data. But too few organizations are able to use it effectively. In [Bank Director’s *2025 Technology Survey*](https://www.bankdirector.com/wp-content/uploads/2025/09/2025TechReport-OpenVersion.pdf), one-third of US banking leaders cite an inability to harness data as a top technology challenge facing their...

[Read more](https://insights.comforte.com/reuse-reward-how-banks-can-safely-unlock-the-value-of-their-data?hsLang=en)

![Delivering a Secure, Trusted Foundation for Cloud Growth at LGT](https://insights.comforte.com/hubfs/comforte%20AG_Delivering%20a%20Secure%2c%20Trusted%20Foundation%20for%20Cloud%20Growth%20at%20LGT_01.2026.png)

 Jan 15, 2026 l [Data Protection](https://insights.comforte.com/tag/data-protection) , [Business Value](https://insights.comforte.com/tag/business-value)

### [Delivering a Secure, Trusted Foundation for Cloud Growth at LGT](https://insights.comforte.com/delivering-a-secure-trusted-foundation-for-cloud-growth-at-lgt?hsLang=en)

There’s a world of difference between retail and private banking. While the former is transactional and focused on the mass market, the latter is built on trust and personal relationships. That trust can be hard won, but is easily lost, especially...

[Read more](https://insights.comforte.com/delivering-a-secure-trusted-foundation-for-cloud-growth-at-lgt?hsLang=en)

![Top Indicators You Have a Cybersecurity Problem—and What to Do About It](https://insights.comforte.com/hubfs/comforte%20AG_Top%20Indicators%20You%20Have%20a%20Cybersecurity%20Problem_and%20What%20to%20Do%20About%20It.png)

 May 22, 2025 l [Data Protection](https://insights.comforte.com/tag/data-protection) , [Digital Enablement](https://insights.comforte.com/tag/digital-enablement)

### [Top Indicators You Have a Cybersecurity Problem—and What to Do About It](https://insights.comforte.com/top-indicators-you-have-a-cybersecurity-problem-and-what-to-do-about-it?hsLang=en)

Data is both blessing and curse to the modern enterprise. Yes, when analyzed effectively it can surface intelligence to improve decision making, customer engagement, process efficiency and, ultimately, drive revenue. But it also represents a major...

[Read more](https://insights.comforte.com/top-indicators-you-have-a-cybersecurity-problem-and-what-to-do-about-it?hsLang=en)

### Service

- [Contact](https://www.comforte.com/contact/)
- [About us](https://www.comforte.com/company/)
- [Blog](https://insights.comforte.com/)
- [Press Releases](https://www.comforte.com/company/press-releases/)
- [Career](https://www.comforte.com/company/career/)
- [Resources](https://www.comforte.com/resources/)

### Germany

comforte AG  
Abraham-Lincoln-Str. 22   
65189 Wiesbaden  
Germany

Phone: + 49 611 93199 00  
Fax: + 49 611 93199 05

### Australia

comforte PTY  
Suite 20, 1 Rivett Road  
North Ryde  
NSW 2113  
Australia

Postal Address:   
PO Box 1710  
Lane Cove  
NSW 1595  
Australia

Phone: +61 2 8197 0272

### USA

comforte Inc.  
30 Wall Street, 8th Floor  
New York, NY 10005-2205  
USA

Phone: +1-646-438-5716

### Singapore

comforte Asia Pte. Ltd.   
1 Raffles Place, #19-61 Tower 2   
Singapore 048616

Phone: +65 6808 5507

- [Sitemap](https://www.comforte.com/sitemap/)
- [Legal Notice](https://www.comforte.com/legal-notice/)
- [Privacy Policy](https://www.comforte.com/privacy-policy/)

© comforte AG 2026

<https://x.com/comforteag> <https://www.youtube.com/c/comforte-ag> <https://www.linkedin.com/company/comforte-ag/>