Chain Resilience in Practice: Making Cybersecurity Work for SMEs
“You don’t have to tackle cybersecurity on your own,” says Anne Visser, Senior Programme Manager for Cybersecurity and Resilience at Security Delta (HSD). For SMEs, she argues, there is a wealth of knowledge and experience already available within their own business networks — from suppliers and customers to industry peers. Tapping into that expertise can be far more effective than constantly trying to reinvent the wheel.
At HSD, Anne brings together businesses, knowledge institutions and sector partners to strengthen the digital resilience of SMEs. Her approach is not about creating new solutions from scratch every time, but about making smarter use of the knowledge, practical experience and partnerships that are already out there.
This article is part of a Security Innovation Stories special series in the run-up to CyberSec Netherlands (9–10 September, Jaarbeurs). On Wednesday 9 September, from 13:55 to 14:15, Anne Visser will take to the Mainstage for her keynote, “Chain resilience in practice: making cybersecurity work for SMEs”. She will explore how SMEs can strengthen their cyber resilience through a collaborative, supply-chain approach.
Look beyond your own organisation
Supply chain resilience may sound like a complex concept, but Anne believes the principle is actually very practical. Few businesses, and SMEs in particular, have all the knowledge, expertise and capacity they need in-house. Every organisation is part of a wider network of customers, suppliers, IT partners and industry peers. That network can be a valuable source of practical knowledge and experience. As businesses become increasingly digital and more dependent on one another, collaboration is also becoming essential to maintaining the continuity of business operations.
Many businesses face the same fundamental questions: How can we use new software securely? What security requirements should we set for suppliers? How do we get employees and management on board? And which security measures will actually make a difference?
“By working together and tapping into the expertise and practical experience within your supply chain, you can effectively extend the capabilities of your own organisation,” says Anne.
Sharing experiences also means businesses do not have to solve the same problems over and over again. Just as importantly, it gives them access to valuable sounding boards and specialist expertise that may not be available in-house. That allows limited time and resources to be focused on the decisions and risks that are most relevant to their own organisation.
From collaboration to practical action
HSD puts this approach into practice through initiatives such as the Cyber Resilience Centres supporting the South Holland manufacturing and horticulture sectors.
Much of the conversation around cyber resilience focuses on businesses that are still doing little or nothing to protect themselves. But Anne sees another important group emerging: businesses that already understand why cybersecurity matters and are actively working to improve. They are investing in security, asking questions and looking for ways to keep moving forward.
For businesses with less experience in cybersecurity, the challenge is often more practical. Where do you start? Which measures have proven effective in practice? And which suppliers can genuinely help?
“That is exactly why collaboration is so powerful,” Anne says. “It brings businesses, knowledge institutions, government organisations and cybersecurity partners together, making expertise and practical experience across the wider ecosystem much more accessible.”
The challenge, she adds, is making the right choices when time, people and budgets are limited. But there is another piece of the puzzle: getting businesses that are not yet fully aware of their cyber risks to take action.
“Here too, the supply chain can play a key role.”
Chain resilience in practice: live on the CyberSec Netherlands Mainstage
On Wednesday 9 September, from 13:55 to 14:15, Anne Visser will bring these ideas to life in her keynote, “Chain resilience in practice: making cybersecurity work for SMEs”, on the Mainstage at CyberSec Netherlands.
The session will focus on a simple but increasingly important question: how can SMEs strengthen their digital resilience by making better use of the people, knowledge and expertise already available across their supply chains?
Read this Security Innovation Stories article in Dutch