Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Continuing Education
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
CybersecurityManagementTechnologies & SolutionsSecurity Enterprise ServicesSecurity Leadership and ManagementLogical SecuritySecurity & Business ResilienceSecurity Education & TrainingCybersecurity News

5 minutes with Michael Rezek - Ensuring holiday cyber-readiness

By Maria Henriquez
5 mins with
December 7, 2020
With more Americans expected to do their holiday shopping online during the COVID-19 pandemic, US agencies and cybersecurity leaders are urging all consumers to be on alert for holiday shopping scams and cyber threats, which historically spike during the holiday season. Here, we talk to Michael Rezek, Vice President of Business Development and Cybersecurity Strategy at Accedian, about the technologies retailers need to adopt to ensure a smooth holiday shopping season, how to see the warning signs for bad actors, how to proactively manage them and what to do to prevent them in the first place.
 
Security magazine: What is your title and background?
 
Rezek: I am the Vice President of Business Development and Cybersecurity Strategy at Accedian, where I’m responsible for conceptualizing and incubating the cybersecurity product. I have 30 years of industry experience, 10 as an engineer and 20 on the business and strategy side. Prior to joining Accedian, I spent 15 years at Cisco; overall, I have been selling security for over 20 years. 
 
Security magazine: What should retailers be concerned about during this holiday? Are the threat levels higher due to COVID-19, as more people will shop online?
 
Rezek: Cybercriminals always target entities with large amounts of sensitive data, and I have to believe that 2020 will be the busiest season we’ve ever seen for online shopping. This means bad actors will be on high alert, looking to quietly steal data unnoticed from overactive company networks and apps. Furthermore, the concern about a malware attack on point of sale (POS) systems and the fact that the average time to detect a breach is over six months should have every retailer on high alert this holiday shopping season - especially considering the steep financial repercussions and negative impact to a company’s reputation that follows a data breach.
 
Security magazine: Nearly one in five U.S. consumers (18%) have been victims of a retail cyberattack, according to Morphisec data. Findings also show that over half of consumers (51%) say their trust in a retailer’s cyber defenses influences if they shop with them. How can retailers build up consumer trust?
 
Rezek: As the old adage goes, actions speak louder than words. Meaning, to build consumer trust, retailers need to adopt technologies that can safeguard their data and keep bad actors at bay. It’s no longer optional for enterprises managing consumer information - it’s crucial. And there’s nothing wrong with admitting as a business that you’ve taken these precautions, and that there are investments being made in cybersecurity solutions and processes to protect shoppers and improve the customer, engagement, experience, and privacy. Transparency is key throughout the entire cybersecurity conversation, from migrating from reactive to proactive performance monitoring, which requires technology that provides integrated visibility into network connectivity and application performance, to sharing key learnings from the successes and challenges of adopting network performance monitoring solutions.
 
Security magazine: What are the technologies retailers need to adopt to ensure a smooth holiday shopping season?
 
Rezek: To ensure a smooth holiday shopping season, retailers need to adopt two key technologies: network and end point based threat detection platforms that detect advanced persistent threats (APT), and malware within endpoint security or network traffic analysis. The savvy retailer will ensure these can scale to meet the demands of busy shopping periods, and that the combination of the two work seamlessly together. A comprehensive cyber strategy is always best; gone are the days of trying to just throw a tool in the environment and hoping for the best. Smaller retailers should also consider managed security services such as managed defense and response MDR as good options, as well. 
 
Security magazine: What are some cybersecurity best practices they can implement/put in place?
 
Rezek: It certainly starts with training & teaching employees - especially during the holidays when many of them are temporary hires, and may not have been previously briefed on corporate cyber security practices. Teaching them to recognize and not click on phishing links or going to websites that look strange is a good place to start. 
 
Secondly, leveraging cybersecurity threat detection tools or services is almost a must today. For all organizations it may make sense to take advantage of some of the services such as penetration testing and vulnerability assessment services to ensure they’re fully equipped with the knowledge and tools to protect against potential threats.  
 
Also, one can’t underestimate the possibility for internal attacks, and make sure that employees are all aware and “on alert” for potential breaches to occur in-house. This could look like an employee sticking a USB drive into a computer and accessing information that is not relevant to their job, or one employee looking over the shoulder of another while they’re logging in.  
 
It’s a great time of year to make sure your anti-virus software is up-to-date and ensure your critical asset and sensitive data is under surveillance with a network traffic analysis tool and an endpoint solution. 
 
Bottom line, even the best cybersecurity organizations get breached; what matters the most is how you respond. The more rapidly you can detect a breach and the more comprehensively you can identify exactly what information was exploited, whether it is files or database queries, the more power you’ll have in a Ransomware negotiation (which is a real thing!). The ability to protect your reputation, brand, and revenue will be impacted greatly by having a rich forensic data warehouse that can be rapidly and easily analyzed. 
KEYWORDS: cyber security holiday security risk management

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Maria Henriquez is a former Associate Editor of Security. She covered topics including cybersecurity and physical security, risk management and more.

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Career Intelligence
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
  • The Most Influential People in Security 2025

    Security’s Most Influential People in Security 2025

    Security Magazine’s 2025 Most Influential People in...
    Most Influential People in Security
    By: Security Staff
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the Security audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of Security or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • critical event management
    Sponsored byEverbridge

    Why a Unified View Across IT, Continuity, and Security Makes or Breaks Crisis Response

  • Charlotte Star Room
    Sponsored byAMAROK

    In an Uncertain Economy, Security Is a Necessity - Not an Afterthought

  • Sureview screen
    Sponsored bySureView Systems

    The Evolution of Automation in the Command Center

Popular Stories

Cybersecurity trends of 2025

3 Top Cybersecurity Trends from 2025

Red laptop

Security Leaders Discuss SitusAMC Cyberattack

Green code

Logitech Confirms Data Breach, Security Leaders Respond

Neon human and android hands

65% of the Forbes AI 50 List Leaked Sensitive Information

The Louvre

After the Theft: Why Camera Upgrades Should Begin With a Risk Assessment

Top Cybersecurity Leaders

Events

September 18, 2025

Security Under Fire: Insights on Active Shooter Preparedness and Recovery

ON DEMAND: In today’s complex threat environment, active shooter incidents demand swift, coordinated and well-informed responses.

December 11, 2025

Responding to Evolving Threats in Retail Environments

Retail security professionals are facing an increasingly complex array of security challenges — everything from organized retail crime to evolving cyber-physical threats and public safety concerns.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products

Related Articles

  • 5 mins with Borromeo

    5 minutes with Michael Borromeo – Cybersecurity best practices with a hybrid workforce

    See More
  • 5 minutes with Bahar

    5 minutes with Michael Bahar - The aftermath of the SolarWinds Orion breach

    See More
  • 5 mins with Lines

    5 minutes with Michael Lines - Why the IT/infosec community should be concerned after SolarWinds

    See More

Related Products

See More Products
  • 1119490936.jpg

    Solving Cyber Risk: Protecting Your Company and Society

  • 9780367339456.jpg.jpg.jpg

    Cyber Strategy: Risk-Driven Security and Resiliency

  • security culture.webp

    Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products

Events

View AllSubmit An Event
  • April 16, 2025

    Modernizing GSOC Operations: Ensuring Full Control and Complete Situational Awareness

    ON DEMAND: For many organizations, physical security management can be a daunting task. Threats are on the rise and risks are becoming increasingly diverse. 
View AllSubmit An Event
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2025. All Rights Reserved BNP Media.

Design, CMS, Hosting & Web Development :: ePublishing