---
title: How To Navigate Social Engineering Tactics for Stronger Employee and Data Security
metaTitle: "How to Navigate Social Engineering Tactics"
description: Encryption and network architecture are only as secure as the employees who hold the keys.  Businesses must defend against social engineering attacks.
slug: how-to-navigate-social-engineering-tactics
date: "2024-06-05T12:00:00-05:00"
image:
  src: "https://cdn.securelogix.dev/slx/images/how-to-navigate-social-engineering-tactics.webp"
  alt: A businesswoman on a phone call in the back seat of a car checks her watch.
sourcePublisher:
  url: www.expresscomputer.in
sourceArticle:
  url: "https://www.expresscomputer.in/guest-blogs/how-to-navigate-social-engineering-tactics-for-stronger-employee-and-data-security/112803/"
tags: [Phishing, Smishing, Social Engineering, Vishing]
status: published
---

## By Scott Jarkoff, Director of Intelligence Strategy for APJ & META, CrowdStrike

Despite extensive educational campaigns to boost employee awareness of social engineering tactics,
threat actors continue to use social engineering with alarming efficacy. Adversaries use emotion, urgency, and pretext to manipulate employees and harvest legitimate credentials, which allow them to enter a target organization while bypassing security measures like authentication portals and firewalls. Once inside, adversaries can swiftly and covertly navigate the environment, engaging in malicious activities such as data theft and ransomware deployment, severely disrupting business operations. By using legitimate privileged credentials, adversaries can remain undetected for months, providing ample opportunity to fully compromise the organization.

The CrowdStrike 2024 Global Threat Report found that 75% of attacks to gain access were malware-free. As identity-based attacks continue to rise, security teams must defend against social engineering techniques. We explore the most common methods below...
