Living Security’s 2026 State of Human Risk Report highlights the significant role of human behaviour in organisational data-loss exposure. The report examines how employee actions, identity risks and security behaviours contribute to data-loss incidents, arguing that organisations need to move beyond traditional awareness training and develop a more measurable approach to human risk management.
According to the report, 98% of data-loss risk is associated with human behaviour, underscoring the potential exposure created by employees’ interactions with data, applications and digital systems. The findings point to risks arising from areas such as unsafe data handling, credential exposure, phishing and other behaviours that can provide attackers with opportunities to compromise organisational information. The report argues that security teams need better visibility into individual and organisational risk rather than relying solely on annual training programmes.
The findings have particular relevance for banks, insurers and other financial institutions, where employees routinely handle sensitive customer and financial information. Strengthening human-risk management can involve continuous assessment, targeted training, stronger access controls, phishing resilience, monitoring and clear accountability. The report’s central message is that cybersecurity programmes need to treat the human element as a measurable risk exposure, alongside technology, infrastructure and third-party risks.
Want to deepen your expertise beyond today’s news?
Explore practical certification courses designed for banking, risk, insurance, compliance, ESG, AI, and emerging technologies professionals.
Learn from industry experts and earn certifications from RMAI and BFSI Sector Skill Council of India.
#Riskmanagementnews