Social Media Guidelines

Driving the evolution and recognition of these critical disciplines worldwide.

Social media is a core part of how Eristotle communicates, listens, and builds community. These guidelines set out how we use social platforms, how colleagues and advisors should represent Eristotle online, and what we expect from our wider community.

Engaging with Eristotle‑branded channels or posting about Eristotle in a professional context means you agree to follow these guidelines, in addition to our Code of Conduct and other internal policies.

1. Purpose and scope

These guidelines apply to:

  • All official Eristotle social media accounts (e.g. LinkedIn, X, YouTube, TikTok, Instagram, Facebook).
  • Any personal account where you are identifiable as associated with Eristotle (e.g. your employer is listed in your bio or your posts clearly reference Eristotle work).

They are designed to:

  • Protect confidentiality and client trust.
  • Maintain a consistent, high‑integrity brand presence.
  • Ensure our people communicate with clarity, professionalism, and respect.

Internal policies, including the Code of Conduct, information‑security policies, and IT acceptable‑use rules, always apply and override social media use where relevant.

2. Confidentiality and internal content

Eristotle operates in sensitive domains. What you share online can have real regulatory, contractual, and reputational consequences.

  • Treat internal content as if it may leak
    • Any internal presentation, email, or announcement may be screenshotted or forwarded.
    • Use clear labels like “For internal use only” on non‑public material.
  • Never disclose confidential or proprietary information
    • Do not share client details, internal tools, non‑public findings, contract terms, pricing, or unannounced projects.
    • Avoid posting screenshots of internal systems, dashboards, or communication tools.
  • Third‑party collaborators
    • Contractors, partners, and other third parties who access internal information must be under appropriate confidentiality agreements.
    • Check that any joint posts or campaigns have the right approvals before going live.

If you are unsure whether something is safe to share, do not post it.

3. Brand consistency and account governance

Eristotle’s social presence should feel unified and intentional.

  • Official accounts only
    • Do not create new Eristotle‑branded accounts without written approval from the relevant leadership and the Digital / Communications team.
    • Unapproved accounts may be asked to rebrand or be shut down.
  • Visual identity and tone
    • Follow the Social Media Style Guide (logos, colours, typography, image treatment).
    • Maintain a tone that is confident, informative, and approachable, reflecting our values of being innovative, vigilant, and collaborative.
  • Coordinated presence
    • Avoid a proliferation of niche or regional accounts that fragment our audience and dilute engagement.
    • Collaborate with central teams to ensure content calendars, campaigns, and key messages are aligned across markets and service lines.

4. Code of Conduct online

Everything in the Eristotle Code of Conduct applies to social media. In particular:

  • Confidentiality
    • Never disclose confidential, proprietary, or non‑public information.
    • Do not discuss ongoing incidents, investigations, or client situations unless explicitly cleared and anonymised.
  • Privacy
    • Do not share Personally Identifiable Information (PII) of clients, colleagues, or third parties without explicit, documented consent.
    • Be cautious with photos and videos that might include screens, name badges, or other identifying details.
  • Respectful conduct
    • Avoid discriminatory, defamatory, harassing, or inflammatory content.
    • Do not engage in personal attacks or hostile arguments, even if provoked.

You remain personally responsible for what you post, like, share, or endorse.

5. Guidelines for professional engagement

When you are identifiable as working with or for Eristotle:

  • Use disclaimers
    • Include a statement such as: “Views expressed are my own” where appropriate, especially on personal accounts that discuss work‑related topics.
  • Be transparent about affiliation
    • Do not misrepresent your role, seniority, or relationship with Eristotle.
    • If you speak about Eristotle, make clear whether you are doing so in a personal capacity or as an authorised representative.
  • Represent the brand thoughtfully
    • Assume anything you post could be read by clients, regulators, or future employers.
    • Avoid commenting on internal disputes, confidential matters, or unannounced strategies.
  • Network with intent
    • Use social platforms to build constructive professional relationships.
    • Think carefully before connecting with unknown individuals, especially where conflict‑of‑interest or social‑engineering risks may arise.
  • Consider your audience
    • Assume content can be screenshotted, forwarded, and taken out of context.
    • Write as if your post could be shown to a board, a regulator, or in a public hearing.

6. Prohibited actions

To protect both you and the organisation, the following are not permitted:

  • Unauthorised representation
    • Do not use “Eristotle” or confusingly similar variants in personal handles or page names in a way that implies an official corporate account (e.g. avoid @JaneDoe_Eristotle).
    • Stating your employer in your bio is acceptable; implying you speak on behalf of the organisation without authorisation is not.
  • Exchanging endorsements
    • Do not trade or solicit written endorsements or recommendations from clients, partners, or suppliers in ways that may create conflicts of interest, regulatory issues, or perceived pressure.
    • Be especially cautious about endorsing colleagues or third parties where independence or objectivity is expected.
  • Intellectual property misuse
    • Respect copyright, trademarks, and licences.
    • Credit original creators, use only approved brand assets, and obtain permission for third‑party content where required.
  • Misrepresentation and impersonation
    • Never impersonate another person or organisation.
    • Do not misstate your identity, qualifications, or employment status.
  • Unauthorised “advice”
    • Avoid publishing content that could be understood as formal, personalised business, legal, financial, or regulatory advice from Eristotle.
    • Keep public posts general and educational; route specific client questions into appropriate formal channels.
  • Unprofessional conduct
    • Do not engage in public arguments, insults, or “pile‑ons”.
    • If a discussion becomes heated, step away or move it to a more appropriate channel.

7. Maintaining a professional persona

Digital communication rewards clarity, brevity, and relevance.

  • Prioritise conciseness
    • Lead with the core message; avoid unnecessary detail or jargon.
    • Use short, impactful sentences and clear calls‑to‑action where suitable.
  • Leverage Eristotle expertise
    • Where appropriate, link to Eristotle resources (e.g. threat intelligence, analyses, reports, thought‑leadership pieces) instead of trying to compress complex arguments into a single post.
  • Focus on client realities
    • Frame content in terms of real‑world problems (e.g. ransomware, regulatory gaps, SOC fatigue) and pragmatic solutions.
    • Avoid abstract, self‑referential messaging.
  • Clarity over jargon
    • Translate technical concepts into accessible language while preserving accuracy.
    • Aim to educate both specialists and non‑specialists.
  • External, not internal, framing
    • Talk about industry trends, risks, and opportunities rather than internal processes, politics, or tooling.
  • Evidence‑based insights
    • Where possible, root your perspective in data, case studies, or concrete examples.
    • Avoid speculation or sensationalism.

8. Brand voice: authenticity with authority

When posting in a professional context related to Eristotle, align with these pillars:

  • Strategic insights
    • Be direct and unambiguous.
    • Translate complex cyber threats into actionable guidance.
  • Global authority
    • Bring a global perspective while acknowledging local regulatory and threat nuances.
    • Show depth of understanding rather than breadth of buzzwords.
  • Integrity and empathy
    • Communicate as a trusted advisor, not a faceless corporate feed.
    • Balance professional rigour with humility and listening.
  • Informed perspectives
    • Offer clear, well‑reasoned points of view on threats, regulation, and best practice.
    • Avoid “hot takes” that you would not be comfortable defending in a client meeting.

Every post should support Eristotle’s mission to strengthen digital resilience and build a more secure, trustworthy cyberspace.

9. Channel‑specific guidance

9.1 LinkedIn – Eristotle company page

The official Eristotle LinkedIn page is a central hub for:

  • Showcasing cybersecurity innovation, services, and career opportunities.
  • Sharing threat intelligence, research, event announcements, and corporate news.
  • Engaging clients, recruits, and industry peers through transparent, high‑value content.

Good practice:

  • Share thought leadership (e.g. APT analysis, zero‑day mitigation, governance insights) and track engagement to refine content.
  • Tailor posts to relevant audiences (e.g. CISOs, SOC leads, risk officers) while preserving broad accessibility.
  • Encourage colleagues to reshare and comment thoughtfully from their personal profiles, consistent with this policy.

9.2 LinkedIn groups

Eristotle may run or participate in LinkedIn groups to lead industry discussions.

Use groups to:

  • Initiate and join conversations on topics like ransomware, incident response, AI‑driven defence, and regulatory change.
  • Build networks with practitioners, media, and emerging talent.
  • Gather insights via polls and discussions on challenges such as SOC optimisation or compliance.

All posts in groups should still respect confidentiality, neutrality, and professional tone.

9.3 X (formerly Twitter)

Eristotle’s primary X account is used for:

  • Real‑time updates, threat advisories, event coverage, and commentary on major cyber developments.
  • Sharing links to official resources (e.g. Threat Intelligence Hub, Resource Library, blog).
  • Participating in global security conversations.

Standards:

  • All official posts are reviewed by the Digital team, with Compliance and Ethics input when needed.
  • Personal accounts must not include “Eristotle” in their handle in a way that suggests official status.
  • You may note your role in your bio (e.g. “Threat Analyst at Eristotle Ltd”) and should include a disclaimer like “Views expressed are my own.”

9.4 Video platforms (YouTube, TikTok, Instagram, Facebook, etc.)

Video is an important way to communicate complex security topics clearly.

Content approach:

  • Prioritise audience‑centric, high‑impact videos over heavily scripted corporate pieces.
  • Use dynamic visuals, demonstrations, and narratives (e.g. attack timelines, red‑team simulations, explainers).

Standards:

  • Short tactical guidance: typically 1–3 minutes; deeper content can be longer but structured (e.g. playlists or series).
  • Meet technical quality expectations (resolution, captions, appropriate anonymisation).
  • Content that uses Eristotle branding, client examples, or internal knowledge requires prior approval from the appropriate Communications and Compliance functions.

Restrictions:

  • Do not create unofficial Eristotle‑branded channels or upload content that could be misunderstood as endorsed by Eristotle without approval.
  • Do not show internal tools, client environments, or unvetted threat intelligence—even in “personal” videos.

10. Moderation of our official channels

To protect our community, Eristotle may:

  • Hide or remove posts, comments, or messages that breach these guidelines, applicable law, or platform rules.
  • Remove unsafe, misleading, or clearly off‑topic links.
  • Block or report accounts in cases of persistent or severe breaches.
  • Escalate potential threats or unlawful content to relevant authorities where appropriate.

Moderation decisions are at our discretion. We cannot review everything in real time and may not respond to every interaction.

11. Questions and escalation

If you are unsure whether a post is appropriate, or if you are planning a campaign that raises novel risks (e.g. live incident content, regulatory commentary), seek guidance from your manager and the appropriate Communications / Compliance contact before posting.

If you see content on or about Eristotle that appears to breach these guidelines or pose a risk:

  • Use the platform’s reporting tools if there is an immediate safety concern.
  • Escalate internally through the channels defined in our Code of Conduct and incident‑reporting procedures.