With the global cost of cybercrime predicted to exceed £4 trillion in 2021,1 and the UK alone experiencing a 31% rise in cases during 2020,2 there has never been a better time for businesses to look again at cyber security.
Seeking to combat this risk, UK businesses have increased their spend on cyber security by 63% in the last 12 months3 – perhaps prompted by a 15-fold rise in cybercrime pandemic.4 However, while the average business now spends 21% of its IT budget on cyber security,3 recent government figures suggest fewer businesses are putting in place the recommended cyber security measures,5 which perhaps reveals a lack of understanding as to what cyber security actually is.
To truly understand cyber security, it is important to first understand cyber risk – the business cyber security threats that can lead to business disruption, loss of data, action from regulators like the Information Commissioners Office in the UK, and ultimately financial and reputational damage.
The cyber risks facing businesses do not stand still, because hackers are constantly working to find more sophisticated ways to evade business cyber security measures.6 That is why having a clear view of the lasts threats that could impact a business is so important – without that knowledge, how can any business hope to defend against them?
The truth is that the cyber security risks facing businesses of all shapes and sizes are many and varied, but the top cyber risks in 2021 are:7
On top of all that, cyberattacks against businesses are becoming more common. In 2020, 43% of businesses suffered a cyberattack, often multiple attacks, up from 38% the previous year3 – and, while the average cost of a cyberattack was £8,460,9 the true costs can vary widely. In fact, around one in six of the firms affected said the incident threatened the survival of the business.
Given the range of cyber security threats facing businesses, and the potential consequences when things go wrong, defending against these threats is clearly very important – and that is where cyber security comes in.
In essence, cyber security is a body of technologies, processes, policies and practices designed to protect business computer networks, devices, software and data from attack, damage, or unauthorised access.10
Detailed guidance on cyber security is available from the National Cyber Security Centre, but alongside that, it is worth arming yourself with some key information - by asking some searching questions of your IT team.
These days, it is crucial that business leaders are informed about and involved in cyber security – not just the IT experts. With that in mind, here are some of the key questions to ask your IT department as part of cyber security planning:11
Alongside the insight you will gain from those questions, it is also crucial to understanding and avoid some of the cyber security mistakes that can undo efforts to defend against cyberattacks. Four common mistakes are:12
Clearly, despite all your best efforts to secure your business against cyber criminals, no organisation that is connected to the internet can be 100% safe - new attack types and human error will always leave an element of vulnerability.
That is where cyber insurance can help - stepping in to help deal with the impact of a cyberattack by covering costs and liabilities around data security, viruses, hacking, system damage, business interruption, threats and extortion.
In a world where cyber security risks are ever present and the cost of a cyberattack can be devastating, it just might be a crucial last line of defence.
Sources:
1. https://www.cyber-observer.com/cyber-news-29-statistics-for-2020-cyber-observer/
2. https://www.securitymagazine.com/articles/93722-uk-sees-a-31-increase-in-cyber-crime-amid-the-pandemic
3. https://www.hiscox.co.uk/cyberreadiness
4. https://www.ncsc.gov.uk/news/ncsc-release-acd-year-4-report
5. https://www.gov.uk/government/news/businesses-urged-to-act-as-two-in-five-uk-firms-experience-cyber-attacks-in-the-last-year
6. https://www.forbes.com/sites/forbestechcouncil/2021/03/05/the-evolution-of-cybersecurity-in-2021/?sh=757c4e821527
7. https://www.checkpoint.com/cyber-hub/cyber-security/what-is-cybersecurity/biggest-cyber-security-challenges-in-2021/
8. https://www.itgovernance.co.uk/phishing
9. https://www.ncsc.gov.uk/report/weekly-threat-report-26th-march-2021
10. https://digitalguardian.com/blog/what-cyber-security
11. https://www.itgovernance.co.uk/blog/12-cyber-security-questions-to-ask-your-ciso-free-guide
12. https://www.ilink-digital.com/insights/blog/5-most-common-cybersecurity-mistakes-to-avoid/