Two thirds of large businesses experienced a cyber breach or attack in the past year, according to research by the government into cyber security.
In some cases the cost of cyber breaches and attacks to business reached millions of pounds, but the most common attacks detected involved viruses, spyware or malware that could have been prevented using the government’s Cyber Essentials scheme.
The Cyber Security Breaches Survey found that while one in four large businesses experiencing a breach did so at least once a month, but only half of all firms have taken any recommended actions to identify and address vulnerabilities. Even fewer, about a third of all firms, had formal written cyber security policies and only 10% had an incident management plan in place.
Results from the survey were released alongside the government’s Cyber Governance Health Check, which was launched following the TalkTalk cyber attack. It found almost half of the top FTSE 350 businesses regarded cyber attacks as the biggest threat to their business when compared with other key risks – up from 29% in 2014.
The Government’s Cyber Governance Health Check also found that:
- only a third of the UK’s top 350 businesses understand the threat of a cyber attack;
- only a fifth of businesses have a clear view of the dangers of sharing information with third parties;
- many are, however, getting better at managing cyber risks, with almost two thirds now setting out their approach to cyber security in their annual report.
Tackling cyber crime
Both surveys form part of the government’s rigorous approach to tackling cyber crime, which will see £1.9bn invested over the next five years.
The government is encouraging all firms to take action: the 10 Steps to Cyber Security provides advice to large businesses, and the Cyber Essentials scheme is available to all UK firms. It is also creating a new National Cyber Security Centre offering industry a ‘one-stop-shop’ for cyber security support.
A new national cyber security strategy will also be published later in 2016 setting out plans to improve cyber security for government, businesses and consumers.
Minister for the digital economy Ed Vaizey said: “The UK is a world-leading digital economy and this government has made cyber security a top priority. Too many firms are losing money, data and consumer confidence with the vast number of cyber attacks. It’s absolutely crucial businesses are secure and can protect data. As a minimum companies should take action by adopting the Cyber Essentials scheme which will help them protect themselves.”
Up to 861,000 public sector jobs – 16% of the overall workforce - could be automated by 2030 according to research by Deloitte
Machine situational awareness software to continuously monitor and evaluate potential threats
CyberUK 2017 will take place in Liverpool next March
GDPR is an opportunity for government says Elizabeth Denham