Image from

It’s time one again to ring the alarms about a dangerous group in our midst — not ISIL, but Millennials.

Also known as Generation Y, they are men and women roughly born in the early 1980s who would be in their 30s today. What makes them of interest are their responses to surveys indicating they are less worried than older colleagues about following corporate IT security rules and more interested in productivity, convenience or just having fun with their mobile devices.

Should CSOs be more wary of them among employees, or treat all staff the same — equally dangerous to the enterprise?

The latest attempt to get this comes from CSO Online, which interviewed or quoted a range of experts.

Andrew Avanessian, executive vice president of consultancy and technology solutions at Avecto, told a reporter that Millennials believe “everything should be instant – information and communication at the click of a button.” Given a security roadblock they’ll bypass the settings.

Millennials tend to trust technology more than they should, according to another security expert, who believes they are 99 per cent blind to the growing threatscape.”

But others cited say lots of people in other age groups willingly surrender their personally identifiable information on social media and other places. Information people put on LinkedIn  “is way more valuable to a potential adversary than an Instagram shot of a Millennial’s brunch on a Sunday morning,” said one.

So what’s the answer? Focus awareness training on Millennials or everyone? “Fundamentally, data is exposed and vulnerable at the moment it is created, by default creating a requirement to protect and secure it whenever it is stored,” said Perry Dickau, director of product management at DataGravity. While training is also crucial, “it is just another piece in the overall security puzzle.

“Technology will only supplement the human element in any security, privacy, and compliance equation,” he said. “The two elements need each other to work successfully – one cannot replace the other.”

Previous articleLinux kernel development going corporate: Survey
Next articleWhy people ignore security warnings
Howard Solomon
Currently a freelance writer, I'm the former editor of and Computing Canada. An IT journalist since 1997, I've written for several of ITWC's sister publications including and Computer Dealer News. Before that I was a staff reporter at the Calgary Herald and the Brampton (Ont.) Daily Times. I can be reached at hsolomon [@]


  1. I am the IT Program Manager of a Credit Union. I am in my early 30s. I obviously am the opposite of what is portrayed in this article based on my position. I do not feel it is about age but rather ignorance. The Baby Boomers & on & so forth are just as much ignorant when it comes to protecting their info. People in general that are not technical will not realize the importance of security. And remember, everything is penetrable. The key is making sure you & your staff are protected as much as possible. Based on this, I feel that everyone should be considered dangerous in a workplace. However, I do not feel this way in my place of employment as I make this a top priority for myself & everyone here.

Leave a Reply to Jennifer Johnson Cancel reply

Please enter your comment!
Please enter your name here