EPISODE · Mar 4, 2025 · 14 MIN
The missing home for an Insider Threat Program: Why organisations need a dedicated function
from In Australia’s National Interest - Security of Critical Infrastructure · host Pentagram Advisory
"The problem with collective responsibility is that it often leads to collective irresponsibility," said Michael Novak. Nowhere is this more evident than in the way many organisations manage insider threats - fragmented across departments, lacking clear ownership, and often deprioritised.In this episode, Marina Shteinberg and Timothy Slattery from Pentagram Advisory explore why insider threat programs frequently struggle without a dedicated home. They discuss the risks of disjointed responsibilities, the pitfalls of over-reliance on technology without human oversight, and the regulatory pressures facing critical infrastructure organisations under the Security of Critical Infrastructure Act 2018.💡 So, what’s the solution? Marina and Timothy make the case for a centralised insider threat management function—one that integrates security, HR, IT, and leadership to create a proactive, risk-based approach that balances technology with human behaviour analysis.Tune in for practical insights on how organisations can build resilient insider threat programs that go beyond compliance and drive real security outcomes.
What this episode covers
"The problem with collective responsibility is that it often leads to collective irresponsibility," said Michael Novak. Nowhere is this more evident than in the way many organisations manage insider threats - fragmented across departments, lacking clear ownership, and often deprioritised.In this episode, Marina Shteinberg and Timothy Slattery from Pentagram Advisory explore why insider threat programs frequently struggle without a dedicated home. They discuss the risks of disjointed responsibilities, the pitfalls of over-reliance on technology without human oversight, and the regulatory pressures facing critical infrastructure organisations under the Security of Critical Infrastructure Act 2018.💡 So, what’s the solution? Marina and Timothy make the case for a centralised insider threat management function—one that integrates security, HR, IT, and leadership to create a proactive, risk-based approach that balances technology with human behaviour analysis.Tune in for practical insights on how organisations can build resilient insider threat programs that go beyond compliance and drive real security outcomes.
NOW PLAYING
The missing home for an Insider Threat Program: Why organisations need a dedicated function
No transcript for this episode yet
Similar Episodes
Mar 26, 2026 ·1m
Mar 19, 2026 ·34m
Feb 18, 2026 ·11m
Feb 11, 2026 ·45m