This chapter discusses the importance of integrating information security practices into human resources processes. It outlines the typical stages of an employee lifecycle from recruitment to termination and describes how security is relevant at each stage. This includes conducting background checks on candidates, requiring security training and agreements for new hires, and removing access when employees leave. The goal is to mitigate risks from both internal actors like employees and contractors as well as external threats like social engineering.