Agree & Join LinkedIn

By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.

Skip to main content
LinkedIn
  • Articles
  • People
  • Learning
  • Jobs
  • Games
Join now Sign in
Last updated on Mar 21, 2025
  1. All
  2. IT Services
  3. Information Security

A colleague keeps ignoring security guidelines. How should you address this issue?

Dealing with a colleague ignoring security guidelines? Share your approach and insights.

Information Security Information Security

Information Security

+ Follow
Last updated on Mar 21, 2025
  1. All
  2. IT Services
  3. Information Security

A colleague keeps ignoring security guidelines. How should you address this issue?

Dealing with a colleague ignoring security guidelines? Share your approach and insights.

Add your perspective
Help others by sharing more (125 characters min.)
17 answers
  • Contributor profile photo
    Contributor profile photo
    Max Liashenko

    Director of Services & Innovation / IT Service Management / Digital Transformation Leader / Industry 4.0 | 5.0 Expert

    • Report contribution

    Here's what we might potentially consider: 1) Understand the Behavior: Clarify if the issue is due to a lack of awareness or intentional disregard. 2) Address Privately: Have a respectful one-on-one conversation. Explain the risks of ignoring security policies and their potential consequences. 3) Offer Education: Ensure they understand the guidelines and why they matter. Provide resources or support if needed. 4) Escalate if Necessary: If the issue persists, document the breaches and escalate to management or the security team for further action. 5) Promote a Security Culture: Foster a shared sense of responsibility and lead by example in following security protocols.

    Like
    7
  • Contributor profile photo
    Contributor profile photo
    Alexia Wong

    Tuition teacher. Earned Community Top Voice Badge in Teaching in '23 and Community Top Voice Badge in Cybersecurity in '24.

    • Report contribution

    To address this issue, you need to first ask them as to why they are ignoring these security guidelines. This is so that you would know the reason why they are doing so. You need to then explain to them why these guidelines can't be ignored. This is so that they would know why it's so important and necessary. You must also educate and train them on how to do their work without being hindered by these guidelines. This is especially if they ignored it due to it hindering their productivity.

    Like
    5
  • Contributor profile photo
    Contributor profile photo
    Nathan Ouellette

    Ops & Security Director (24+ Yrs) | InfoSec, Risk Mgmt, Cybersecurity | Assuring Your Business Growth

    • Report contribution

    Example: Observe your colleague leaving the client financials folder unlocked. Privately say, “Hey, I’ve noticed you’ve skipped locking the folder. Any reason it’s tough?” If they shrug—“It’s fine”—reply, “A hack could leak data, like Colonial Pipeline’s mess.” Offer, “I can show you Authy for quick two-factor.” If ignored, tell your lead, “Sarah skipped it March 15 and 20; it risks our XYZ contract.” Suggest a team refresher if it’s widespread. Document chats—dates, outcomes—for backup. They’ll likely adjust; if not, leadership steps in. Casual or tense vibe with them?

    Like
    3
  • Contributor profile photo
    Contributor profile photo
    Geoffrey Wenger

    Results-Driven Professional Specializing in Systems Optimization, Process Improvement, and Strategic Solutions

    • Report contribution

    If a colleague is ignoring security guidelines, start with a respectful, private conversation. They may be unaware of the risks or find the rules unclear. Frame it as a shared responsibility to keep the team and company safe. If the issue continues, document specific concerns and escalate it through the proper channels, such as a manager or security team. It's important to address the behavior early to prevent larger risks without making it personal. Helping them understand the real-world impact of poor security habits can make the issue feel more relevant. Encouraging a culture of accountability benefits everyone in the long run.

    Like
    3
  • Contributor profile photo
    Contributor profile photo
    Harry Waldron, CPCU

    Business Systems Analyst

    • Report contribution

    TECH & HUMAN security controls must NEVER be bypassed. It's non-negotiable. Data breach, malware or ransomware attacks are costly & embarrassing. Bypassing security is serious & must be investigated: * RCAs & WHO/WHY/WHERE/WHEN for these violations? * Reason for violations: Accidental? Intentional? Job-Related? * WHY did TECH controls allow for violations? Fine tuning? * Conduct RCA research on HUMAN side of failure * Handle any intentional or criminal acts per HR policy * Work privately with non-intentional violations in "+" tone * Active security awareness training may be needed * Security & HR POLICY review may be needed * Actively monitor all aspects of security/privacy to ensure no further violations occur

    Like
    3
  • Contributor profile photo
    Contributor profile photo
    Martin Berdel

    Head of Information & Physical Security @ AXA | Cybersecurity Leadership and Security

    • Report contribution

    Start with why! Try to understand why the colleague keeps ignoring the guidelines, by privately talking to her / him. There could be a good reason for it, what may leads into a risk assessment or revalidation of the guideline for practicability for the company.

    Like
    3
  • Contributor profile photo
    Contributor profile photo
    Swapnil Bhavekar

    Co-Founder and Director at CreativeWebo Private Limited | Tech Solution Provider | Entrepreneur |

    • Report contribution

    I once worked with a colleague who constantly bypassed security protocols, thinking they were just red tape. Instead of confronting them, I shared real-world data on breaches caused by minor lapses—95% of cybersecurity incidents stem from human error. A quick chat about the risks and a reminder of how small actions protect the whole team made the difference. Sometimes, it’s not about enforcing rules but making security feel personal.

    Like
    2
  • Contributor profile photo
    Contributor profile photo
    Puneet Taneja

    Driving awareness for Data & AI strategies || Empowering with Smart Solutions || Founder & CPO of Complere Infosystem

    • Report contribution

    "Security is not just a guideline; it's a responsibility we all share." If a colleague keeps ignoring security guidelines, here’s how I would approach it: Open Conversation: I’d have a private and respectful conversation to understand their reasons and explain the importance of following security protocols. Reinforce Consequences: I’d highlight the potential risks and consequences of ignoring security guidelines for the organization and individuals. Offer Support: I’d offer to help if they’re facing challenges in understanding or applying the guidelines. Lead by Example: I’d consistently follow security best practices myself, showing how easy and important it is to do so.

    Like
    2
  • Contributor profile photo
    Contributor profile photo
    Ilya Volovnik

    Helping Accountants & Bookkeepers Stay Breach-Free | Free Security Assessments | Fractional CISO for Compliance & Cyber Insurance Readiness

    • Report contribution

    Start by understanding the underlying issue is this because of lack of proper training, feeling overwhelmed, or simply unaware of the risks? Once you pinpoint the root cause, approach the conversation with empathy. Emphasize the shared importance of security and how it impacts everyone. Offer support, provide helpful resources, or suggest a quick refresher to address any gaps. Framing the discussion as a collaborative effort rather than a criticism can led to stronger long-term compliance and a more engaged team

    Like
    1
  • Contributor profile photo
    Contributor profile photo
    Hafiz Ahsan Javed

    Cloud and Network Security Engineer | CCNA | HCIA | HCIP | AZ-104 | AWS Certified | Fortinet NSE1 | NSE2 | NSE3 and NSE 7 (Fortinet Enterprise Firewall 7.0 Administrator) | Securing Digital Landscape with Expertise

    • Report contribution

    When a colleague repeatedly ignores security guidelines, it's important to address the issue constructively rather than confrontationally. Start by having a private conversation to understand their perspective—sometimes noncompliance stems from confusion or lack of awareness rather than intentional disregard. Reiterate the importance of security practices and how their actions could impact the entire organization. If the behavior continues, escalate the issue through the appropriate channels like IT security or HR, following your organization’s policy. Reinforcing a culture of accountability and ongoing education helps ensure everyone understands that cybersecurity is a shared responsibility.

    Like
    1
View more answers
Information Security Information Security

Information Security

+ Follow

Rate this article

We created this article with the help of AI. What do you think of it?
It’s great It’s not so great

Thanks for your feedback

Your feedback is private. Like or react to bring the conversation to your network.

Tell us more

Report this article

More articles on Information Security

No more previous content
  • You're facing evolving cyber threats. How will you adapt your access controls to stay ahead?

  • You're facing a security incident with your team. How do you maintain transparency?

    15 contributions

  • You're trying to balance security and usability in authentication. Are your current methods effective?

    7 contributions

  • You need to explain multi-factor authentication to a non-technical team. How do you make it clear?

    9 contributions

  • You're faced with multiple critical system vulnerabilities. How do you determine which one to patch first?

    3 contributions

  • Facing a data breach incident, how can you collaborate seamlessly with external cybersecurity experts?

    8 contributions

  • You're facing a data breach crisis. How do you maintain speed without compromising precision?

No more next content
See all

More relevant reading

  • Information Security
    How do you identify security gaps?
  • Cybersecurity
    What do you do if logical reasoning reveals vulnerabilities in cybersecurity systems?
  • Information Security
    How can you conduct a security gap analysis using a chosen framework?
  • Operating Systems
    How can you design an operating system that resists insider threats?

Explore Other Skills

  • IT Strategy
  • System Administration
  • Technical Support
  • Cybersecurity
  • IT Management
  • Software Project Management
  • IT Consulting
  • IT Operations
  • Data Management
  • Information Technology

Are you sure you want to delete your contribution?

Are you sure you want to delete your reply?

  • LinkedIn © 2025
  • About
  • Accessibility
  • User Agreement
  • Privacy Policy
  • Cookie Policy
  • Copyright Policy
  • Brand Policy
  • Guest Controls
  • Community Guidelines
Like
1
17 Contributions