One in four companies globally have suffered a data breach that cost them US$1 – 20 million or more in the past three years

October 3, 2022
2 mins read

British Reporter — One in four companies (27%) globally have suffered a data breach that cost them US$1- 20 million or more in the past three years, according to PwC’s annual Global Digital Trust Insights Survey, which surveys more than 3,500 senior executives across 65 countries. The percentage rises to one in three (34%) for companies surveyed in North America, with only 14% of firms globally reporting that no data breaches have occurred during the period according to PwC.

Despite cyber attacks continuing to cost businesses millions of dollars, fewer than 40% of executives surveyed say they have fully mitigated cybersecurity risk exposure in a number of critical areas. This includes, enabling remote and hybrid work (38% say the cyber risk is fully mitigated); accelerated cloud adoption (35%); increased use of internet of things (34%); increased digitisation of supply chain (32%) and back office operations (31%).

For operations-focused executives surveyed, cybersecurity of the supply chain is a major concern. Nine in ten expressed concern about their organization’s ability to withstand a cyber attack that disrupts their supply chain, with 56% extremely or very concerned.

Mandatory disclosure of cyber incidents is favored

Four in five organisations (79%) surveyed state that a comparable and consistent format for mandatory disclosure of cyber incidents is necessary to gain stakeholder confidence and trust. Three-quarters (76%) agree that increased reporting to investors will be a net benefit to the organisation and entire ecosystem. Further, the same percentage agree that governments should be expected to use the knowledge base from mandatory cyber attack disclosures to develop cyber defence techniques for the private sector.

While there is a clear preference for mandatory disclosure of cyber incidents, fewer than half (42%) of executives surveyed are fully confident their organization can provide required information about a material/significant incident within the specified reporting period. There is also a hesitance to share too much information – 70% said greater public information sharing and transparency poses a risk and could lead to a loss of competitive advantage, according to PwC.

Sean Joyce, Global Cybersecurity and Privacy Leader, US Cybersecurity, PwC US said: “Data breaches are a pervasive threat in today’s digital world. As cyber threats continue to increase in frequency and sophistication, a holistic approach to cybersecurity has become a top priority for C-suites and boards. Companies are strengthening their cyber defenses and regulators are applying pressure to improve cyber resilience and build public trust. It’s clear from our survey that a higher level of public-private collaboration is needed to address the increasingly complex cyber threat landscape – companies are calling for increased information sharing and transparency as well as a consistent format for mandatory disclosure of cyber incidents.

Most organizations are increasing cyber budgets

The majority of executives surveyed said their organizations are continuing to increase their cyber budgets – 69% said the budget increased in 2022 and 65% plan to spend more on cyber in 2023. Increasing budgets reflect the fact that cybersecurity tops the agenda for resilience planning. According to the survey, a catastrophic cyber attack ranks higher than global recession or another health crisis for organizations’ resilience planning.

Concern with cyber extends to the top of organizations. Most CEOs surveyed are planning to ramp up action to address cybersecurity in the coming year – 52% said they will drive major initiatives to improve their organisation’s cyber posture. Many CFOs surveyed are also planning to increase their cyber focus, including cyber technology solutions (39%), focus on strategy and coordination with engineering/operations (37%) and upskilling and hiring of cyber talent (36%)

It’s not hard to see why cyber continues to move up the corporate agenda. The cost of cyber breaches goes much further than direct financial costs, according to marketing-oriented execs surveyed. The range of harm organizations have experienced due to a cyber breach or data privacy incident over the past 3 years include loss of customers (cited by 27%), loss of customer data (25%) and reputational or brand damage (23%)

Sean Joyce concluded: “Despite all the progress that organizations have made in improving their cybersecurity programs, our survey shows there is a lot more to do. There are three things that need to be put in place to keep pace with digital transformation and help build public trust: a strategic risk management program, continuity and contingency planning, and clear, consistent external reporting..”

Leave a Reply

Get updates

Join

We hate spams like you do

Latest comments

motherathome1.jpg
Previous Story

Motherhood at work: Exploring maternal mental health

Next Story

Short-Term Earnings Goals Drive More Pollution, Especially for Green Companies

Latest from Employment

motherathome1.jpg

Motherhood at work: Exploring maternal mental health

Postpartum is affecting mental health at work. What can companies do about it?Up to 1 in 5 women in the postpartum period will experience a mental health disorder like postpartum depression or generalized anxiety disorder.

‘The dawn of a new era in astronomy’

Not long ago, the idea of photographing a black hole was as quixotic as photographing a unicorn. Now, scientists have not one but two images of two different supermassive black holes — and they both look as magical as flaming doughnuts.

Who benefits the most from good leadership in the workplace?

ABS researchers Sofija Pajic, Claudia Buengeler, and Deanne den Hartog (Leadership and Management section) explore the relationship between leadership, wellbeing, and socioeconomic status. The study was conducted with co-author Diana Boer (Institute of Psychology, University of Koblenz-Landau).
man-interviews-women-for-job.jpg

When building rapport, sometimes less is more

A new study provides useful insights for interview situations. Sometimes less is more, at least when it comes to building rapport during interviews. That’s according to new research from the University of Georgia, which reveals that verbal interviewing techniques have a greater impact
Go toTop

Don't Miss