Transcript
A (0:01)
Welcome to to the Point Cybersecurity Podcast. Each week, join Jonathan Neffer and Rachel Lyon to explore the latest in global cybersecurity news, trending topics and cyber industry initiatives impacting businesses, governments and our way of life. Now, let's get to the point. Agreed. I'm not gonna lie, Josh. For the longest time I was avoiding the whole two factor authentication because it just drives me insane because I never have like the right device, you know, that it bounces to and it's always a thing. But I'm also kind of curious on hospitality in general. There's a fairly high turnover rate for these kind of employees and in this world, like restaurants, hotels, et cetera. So how do you manage training? So kind of security awareness and training when you have such high turnover? To your point, like someone leaves within a week. If you have a lot of that happening, how can you manage security in that way and training in that way?
B (1:04)
Well, I'm not gonna sugarcoat and tell you that it was just easy. We just flipped a switch and turned Beyond Identity on and that was that. No, I mean it is a little bit. It's a heavy lift right now for us to get people like when they start, get them enrolled and get that passkey on board. We've got some hotel leadership, general managers, AGMs, which are really great at it. And we have other ones who are like, seem to forget it exists as a thing to do. And so we're always looking at the reports and beyond what pending enrollments are there and like, hey, why are these folks so pending? You know, they've been here for a while, we need to work with that. So that's actually one thing we're focusing on this year, is to make that process a little bit more streamlined. And I know Beyond Identity is making some hopefully platform enhancements and things that they've been working on in their pipeline to make that easier so that users can maybe authenticate to one device and then they have a Yubikey available. We don't use Yubikeys just because it would be. It's hard enough for them to keep their name badge. Having them carry around a Yubikey, I think would be an impossible ask. But I think the idea of like, you know, if you've got your passkey bound to your mobile device and you can use a QR code and scan and authenticate, that would be like the wave of the future. But right now we're still working on that aspect of like, hey, how does that flow work to get them into, to get them in because it is a little bit of a lift. But then once they're in, as far as the training we do for security, we use another company, it's called Venza, but they actually help us with all of that PCI training and cybersecurity awareness vishing phishing, spear phishing, all of those types of things and they're constantly enhancing that. But it is something that we, you're right, we have some people that start like they get onboarded all this stuff, they can literally just click there and do the training. And again, some leaders are really great at making sure like, hey, you don't do anything until you've gone through this training. And then we have other people like, hey, I really, I'm swamped. I've got, you know, so many people coming on. I need to do. You're going to, you know, trenches in the ground here, let's get going. And then they, they're catching that up. So that's the other great. One of the other things that Beyond Identity has done for us with that single sign on is it has taken the barrier away of getting to your training or getting to those jobs because once your accounts created and you've got that passkey, it's just one click in. There is no what's my username, what's my password, what's any of that which, you know, that's bound together with single sign on and, and saml with an identity provider, but still that the password is the barrier.
