GEFAHR AUS DEM NETZ

DANGER FROM THE NETWORK

Nord Stream 2, Deutsche Bahn, Sony Pictures, Warner HBO in "Game of Thrones", influencer Julian Bam and even the Ansbach University of Applied Sciences - attacks from the Internet or on critical infrastructure are no longer an abstract threat. Encrypted data, stolen access data, published company data. Cyber ​​risks are not covered in the normal film insurance package. The use of private devices in particular leads to uncontrolled security risks that are difficult to control. What responsibility do employees and subcontractors actually have? Who could afford to claim damages if the finished film ends up freely on the Internet instead of with the client?

We know various strategies from risk management, with insurance often playing an important role as a last resort. First and foremost, potential damage is avoided through active measures or at least the effects are reduced. When it comes to cyber security, everything starts with training employees to create awareness of data security. Technical measures such as virus protection, firewalls and physical access security are also essential. Organizational measures combine the various individual measures into an effective protection concept. Especially in fictional film production, cyber security is confronted with an additional risk factor: private devices in company use - bring your own device.

Using your private devices for work-related activities is still common, especially in fictional production. Whether in the production office or on set, your own laptop, private email address and smartphone are used for work purposes. This poses various risks for data protection and data security, in addition to challenges related to employment and insurance law.

It starts with access protection on private devices. Password policies cannot be enforced. Employees usually agree in their contracts to comply with company standards. If damage occurs, proving deficiencies is a challenge. Up-to-date and comprehensive virus protection programs and careful handling of suspicious emails, attachments and files are no longer standard.

Then there is the infrastructure provided by the company. Working on unsecured or poorly secure cloud and messenger services does not increase system security. The vulnerability of the entire system ultimately derives from the interaction of the components and the risk awareness of the people involved.

Specialist data protection companies such as AGOR and XPERTS network offer legal support or operational support for data security issues. A number of service providers now offer additional services for small and medium-sized companies without their own IT infrastructure or IT department.

Insurance for freelancers, subcontractors and artists must be taken out individually and can limit the total financial loss for private individuals. However, it makes sense to have comprehensive cyber insurance at company level. The costs for this type of insurance have exploded in recent years due to the massive damage. However, this should not be a deterrent, but rather seen as a warning signal. When premiums rise, it is usually due to materialized damage. Anyone who does not want to bear this themselves should look into transferring the risks and corresponding insurance offers.

Your Ensider:Team

(Author: Markus Vogelbacher)

(Image: geralt /Pixabay)

Back to blog