Cyberthreats, or online attacks, are occurring more and more frequently and are the main fear of CEOs of many companies. However, in reality, it is an area that they do not deal with much, leaving the reins of security to the respective security.
According to this year's report by Symantec , in 2018 the number of cyberthreats increased by 56%. We are talking about a huge percentage, which is attributed to certain problems. An organization can be more vulnerable when the people who make up it are not well trained. Thus, the participation of the entire company and not just the IT department seems to be crucial

What is mentioned below concerns the CEOs of each company and are the steps that everyone should follow in order to prevent cyberthreats as much as possible.
- Security awareness is the A and Z. No one can know everything, so it is a good idea to create guides that will inform employees about useful concepts as well as potential risks, such as different types of threats.
- Everyone in the company needs to be trained, not just the CEO and the IT team. But that won't happen unless the person in charge personally takes the lead in the training process. At regular intervals, all staff should take part in IT security training.
- Data protection and IT auditing is very important. The regulations of each company may not require it, but it is a process that will only help in development and security. The CEO is understood to not only give the order for the audit, but must participate in any way he can. Let's not forget that the audit will reveal the company's vulnerabilities, so that they can be improved.

- At least twice a year, it is a good idea to hold meetings that will include the head of the IT security department, all team members and the CEO. Ideally, the meetings should follow security audits, so that there is a picture of the company's situation. Because let's not forget that only when the risk is mentioned in front of everyone, it is possible to address it.
- The CEO does not need to be involved in selecting software or developing protocols. However, he or she should receive the security plan from the team, as well as regular updates on issues and how they are being addressed.
