Cybersecurity Is A Job for CEOs, Not Just The IT Team

More data was lost or stolen in the first half of last year than in the whole of 2016, with the number of businesses that have been hit by a breach reaching an all-time high. Data breaches are no longer the exception, but the norm.

Hackers’ abilities to bypass digital defences are constantly improving, as are both the number and sophistication of these crippling attacks. However, regardless of the changing landscape, the enormity of the risk to businesses due to poor cyber security management has yet to properly hit home.

In the last 12 months alone, the picture has worsened, with a list of big brands falling foul to the devastating effects of weak digital security practices.

Second-hand electronic goods retailer CeX, telecommunications conglomerate Verizon, and consumer credit reporting agency Equifax are but a handful of names that comprise an unenviable group of businesses. What’s more, so severe was the fallout from the Equifax breach that the company’s chairman and chief executive resigned shortly afterwards.

With cyber-attacks now posing real dangers to a company’s bottom line, corporate reputation, customer retention, and also employee confidence, threats emanating from technology can no longer be relegated to the remit of the IT department. They must be dealt with first-hand in the boardroom.

Rather worryingly, the Cyber Governance Health Check (an annual survey conducted by the UK government) revealed that, of the 105 businesses questioned from the FTSE 350, one in 10 have no plan in place to cope with hacking, despite over half of respondents also citing it as one of the primary threats to their business.

In an effort to streamline operations and boost revenue in certain areas, advancements in technologies like the Internet of Things, artificial intelligence, big data and most recently cryptocurrency have started to force the hands of businesses.
As a result, our own research has revealed that nine in 10 organisations around the world are now storing more sensitive data in these emerging technology environments than ever before.

This in turn means that the exploitable opportunities for hackers and the scale of companies’ digital vulnerabilities are at their peak.

If companies are going to use these new technologies, they need to build in data protection right from the start. Effective data security means having the correct digital deterrents in place, with some constantly running through automated processes. This will reduce the level of complexity for businesses, while, staff can continue their day-to-day roles, knowing that their organisation is being protected around the clock.

Instead of viewing cyber security as daunting or complex, or as an added extra, companies should instead embrace the range of options available to them and ensure it remains a key part of their core business model, and a factor in any new technological developments.

Interestingly, we also discovered that, with impending EU-wide regulations such as the General Data Protection Regulation and the Second Payment Services Directive looming large on the horizon, avoidance of financial penalties has now become the number one motivator for increased spending on security technology.

But protecting consumer data must be an ethical imperative, not merely a financial concern. Educating and upskilling executives is nothing short of crucial in the digital age. And delaying the implementation of a robust data protection strategy simply cannot be overlooked when the stakes are so high.

With the endless list of competing priorities facing organisations, from the challenges of geopolitical and economic upheavals, to risk management, talent retention, and innovation, it can be daunting to assess just how harrowing the effects of a data breach could be. However, getting cyber security right means taking no half measures and cutting no corners.
Adapting to the new digital climate won’t be easy. Nor will tussling with the unprecedented level of technological change.
In order to progress successfully, business leaders must place renewed emphasis on long-term thinking, significant investment in the right areas, and more unified international cooperation to combat the harsh realities of today’s data threat landscape.

To protect companies’ most valued digital assets and keep up with the pace of technological change, greater investment in a highly-skilled, well-trained workforce will be nothing short of essential. Those business leaders who choose to give cyber security nothing more than a passing thought do so at their own peril.

City AM

You Might Also Read:

The GDPR Deadline Is Near & Business Is Not Ready:

Data Breaches Attack All Parts Of A Business:

Cyber Security Checklist For Management (£):

 

 

« Police Prepare for Cyber Attacks
FBI, CIA & NSA Officials Agree: Stay Away From Huawei Phones »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

DigitalStakeout

DigitalStakeout

DigitalStakeout enables cyber security professionals to reduce cyber risk to their organization with proactive security solutions, providing immediate improvement in security posture and ROI.

The PC Support Group

The PC Support Group

A partnership with The PC Support Group delivers improved productivity, reduced costs and protects your business through exceptional IT, telecoms and cybersecurity services.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

North Infosec Testing (North IT)

North Infosec Testing (North IT)

North IT (North Infosec Testing) are an award-winning provider of web, software, and application penetration testing.

Chatham House

Chatham House

Chatham House is an independent policy institute based in London. Topics cover foreign affairs and defence including cyber security.

Cloud53

Cloud53

Cloud53 specialise in improving operational IT through strategic use of Cloud technologies and services.

DataVantage

DataVantage

DataVantage data masking and data management software helps you prevent data breaches, pass compliance audits and meet regulatory requirements such as HIPAA and PCI DSS.

Deutsche Cyber-Sicherheitsorganisation (DCSO)

Deutsche Cyber-Sicherheitsorganisation (DCSO)

DCSO was founded in 2015 with the aim of counteracting the threats posed by globally organized cybercrime and state-controlled industrial espionage.

Mnemonica

Mnemonica

Mnemonica specializes in providing data protection system, information security compliance solutions, cloud and managed services.

Advens

Advens

Advens is a company specializing in information security management. We provide Consultancy, Security Audits and Technology Solutions.

OutThink

OutThink

OutThink is a web-based platform (SaaS) that has been developed specifically to identify and reduce risky workforce behaviours and build a risk aware culture.

Hellenic Accreditation System (ESYD)

Hellenic Accreditation System (ESYD)

ESYD is the national accreditation body for Greece. The directory of members provides details of organisations offering certification services for ISO 27001.

Cybersecurity Coalition

Cybersecurity Coalition

The mission of the Cybersecurity Coalition is to bring together leading companies to help policymakers develop consensus-driven policy solutions to achieve improvements in cybersecurity.

Iterasec

Iterasec

Iterasec provides a full range of security services to hacker-proof your products and make software engineering process secure by design.

Aura

Aura

Aura is a mission driven technology company dedicated to creating a safer internet for everyone. We’re making comprehensive digital security that's simple to understand and easy to use.

Pillr

Pillr

Pillr is a cybersecurity operations platform capable of adapting to the demands of your business and team — and the global threat landscape.

CyberXposure

CyberXposure

CyberXposure has been built by a team comprising of Cyber Security Professionals and SAAS experts in data backup, disaster recovery and cyber-security.

Filigran

Filigran

Filigran provides threat intelligence, adversary simulation and crisis response open solutions to thousands of cybersecurity and crisis management teams across the world.

Karate Labs

Karate Labs

Karate is an open-source unified test automation platform combining API testing, API performance testing, API mocks & UI testing.

Affinity Technology Partners

Affinity Technology Partners

Affinity Technology Partners has been fueling the growth of Nashville, Tennessee businesses and nonprofits with reliable IT services since 2002.