Human Risk Intelligence: Is Behavioural Data the New Defence?

Traditional security training doesn’t work. So how do we measure and manage the human element of cyber risk in a way that actually changes behaviour?

In this episode of Razorwire, host James Rees speaks with Flavius Plesu, CEO of OutThink, to explore the evolution of human risk intelligence—a discipline using behavioural science and psychographic data to proactively reduce insider threats and strengthen organisational security from within.

You’ll learn why generic CBT and phishing tests are no longer enough, how leading enterprises are using behavioural analytics to predict risky users before incidents happen, and how to do this ethically while respecting employee trust and privacy.

🔍 “90% of users admit to bypassing controls, even knowing the risk. So no, training alone won’t fix this.” — Flavius Plesu

🎯 Key Talking Points:

  • Why legacy awareness training fails to address real human risk
  • Predictive security models that detect threats before they happen
  • The ethics of monitoring staff without breaking trust
  • How to turn your workforce into an intelligent security asset

🎧 Listen on your favourite platform: (https://razorwire.captivate.fm/listen)

📌 In This Episode:

  • Defining Human Risk Intelligence – What it is and why it matters
  • Behavioural Data & Psychographics – Segmenting users based on risk tendencies
  • Accidental vs Malicious Insiders – Addressing both intent and behaviour
  • Predictive Modelling – From reactive controls to proactive detection
  • Privacy & GDPR – Balancing security with user rights and transparency
  • Crowdsourced Intelligence – Using staff insights to detect unseen risks
  • Culture over Compliance – Building security awareness that actually sticks

💡 Mentioned:

OutThink, Gartner, University College London (UCL), SANS, Bitdefender, IBM Watson, PCI DSS, Microsoft Graph API, The Cyber Sentinels Handbook

🎙️ About Your Host:

Hi, I’m James Rees — founder of Razorthorn Security and host of Razorwire. With 25+ years in cybersecurity, I created this podcast to give professionals like you real conversations, hard-earned insights, and expert guidance to stay ahead of evolving threats.

🔗 Stay Connected:

🌐 Website: (https://www.razorthorn.com)
📧 Email: podcast@razorthorn.com
📍 LinkedIn: (https://www.linkedin.com/company/razorthorn-security)
📍 YouTube: (https://www.youtube.com/@RazorthornSecurity)
📍 Twitter/X: @RazorThornLTD