Internal cash theft by a cashier is logged as an 'external cyberattack' to avoid HR scrutiny. What distinction should the register enforce?
Select an answer to reveal the explanation.
Short Explanation
A cashier skimming the till is an insider problem, not a mysterious hacker from the internet. Mislabeling it as external cyber just hides the people controls that matter.
Full Explanation
Internal threats arise from people inside the organization; external attacks originate outside. Misclassifying insider fraud as external cyberattack obscures needed personnel, access, and oversight controls. Accurate internal-versus-external labeling supports appropriate investigation and treatment. Governance should discourage label shopping that avoids HR or audit scrutiny.