In-depth

The cost of IT security incidents in 5 charts

Where do enterprises and SMBs stand on security investment?

With the overall reduction of IT budgets and increasing number of incidents, protection will soon become a high priority issue for businesses trying to do more with less.

Crucial to their success will be their attitude towards IT security spending. The Kaspersky Lab Global Corporate IT Security Risks Survey explores the threats faced by businesses large and small, and IT security spending habits of over 5,000 interviewees across 30 countries.

Advertisement - Article continues below

Here, we draw out the key trends in IT security investment this year over a series of charts.

Serious data breaches are getting more expensive

Among SMBs, the average total impact of a data breach amounted to $84k, but this is more than ten times higher among enterprises, with the various aspects of a data breach costing as much as $938k.

Whereas last year, the reallocation of staff time represented the single largest additional cost for both enterprises and SMBs, this year the picture has changed, with SMBs and enterprises having different experiences.

The top pain points for SMBs include lost business and costs related to employing external professionals, but by contrast, enterprises incur the largest costs due to improving software and infrastructure.

Third-party infrastructure is a key security weakness

Advertisement
Advertisement - Article continues below

For both SMBs and enterprises, incidents affecting infrastructure hosted by a third party are expected to have the most severe financial impact. This is clear in the experiences of businesses working with third parties for their cloud or other infrastructure, and also among enterprises that share data with suppliers.

Advertisement - Article continues below

As soon as one business gives another access to data or infrastructure, their weaknesses are shared. However, this is not something that most organisations give proper consideration to.

The proportion of IT budgets spent on security is rising

This year, cost saving and outsourcing efforts across many organisations appear to have resulted in a reduction in overall IT budgets amongst larger businesses worldwide. Despite this, the proportion of IT budgets spent on IT security is rising. This pattern is consistent across businesses of all sizes globally, but particularly among enterprises with over 1,000 employees, where the IT security budgets have risen from a fifth to almost a quarter of the overall IT budget in the last 12 months.

This represents a healthy growth in the importance being placed on IT security - something promising if businesses are to start viewing IT security as an investment rather than a cost-centre, particularly when the prospect of an attack is an expensive one.

Government and financial institutions are IT security top spenders

Advertisement - Article continues below

Perhaps unsurprisingly, organisations involved in government (including defence) and financial institutions reported the highest expenditure on IT security this year, with both sectors reporting budgets over $5m on average.

IT and telecoms companies and utilities and power companies also spent more than average on IT security, although it is closer to $3m than the $5m+ spent by their government and finance counterparts.

For these firms, investment in IT security isn't just a cost that must be budgeted for. It's an increasingly crucial part of business continuity plans that will help organisations continue to function. When considering the cost of a cyber attack, IT security is, arguably, an investment with measurable benefits.

Featured Resources

The case for a marketing content hub

Transform your digital marketing to deliver customer expectations

Download now

Fast, flexible and compliant e-signatures for global businesses

Be at the forefront of digital transformation with electronic signatures

Download now

Why CEOS should care about the move to SAP S/4HANA

And how they can accelerate business value

Download now

IT faces new security challenges in the wake of COVID-19

Beat the crisis by learning how to secure your network

Download now
Advertisement
Advertisement

Recommended

Visit/security/encryption/355820/k2view-innovates-in-data-management-with-new-encryption-patent
encryption

K2View innovates in data management with new encryption patent

28 May 2020
Visit/software/video-conferencing/355410/zoom-50-adds-256-bit-encryption-and-ui-refresh
video conferencing

Zoom 5.0 adds 256-bit encryption to address security concerns

23 Apr 2020
Visit/security/hacking/355382/whatsapps-flaw-shoulder-surfing
hacking

WhatsApp flaw leaves users open to 'shoulder surfing' attacks

21 Apr 2020
Visit/security/cyber-security/355368/microsoft-builds-ai-to-detect-security-flaws-with-99-accuracy
cyber security

Microsoft AI can detect security flaws with 99% accuracy

20 Apr 2020

Most Popular

Visit/infrastructure/server-storage/355785/dell-emc-poweredge-r7525-review-an-epyc-core-density-to-make
Server & storage

Dell EMC PowerEdge R7525 review: An EPYC core density to make Intel weep

26 May 2020
Visit/infrastructure/network-internet/355792/intel-releases-wi-fi-and-bluetooth-driver-updates-for
Network & Internet

Intel releases Wi-Fi and Bluetooth driver updates for Windows 10

26 May 2020
Visit/operating-systems/microsoft-windows/355781/microsoft-confirms-further-issues-with-troublesome
Microsoft Windows

Microsoft's latest Windows 10 update is causing yet more issues

26 May 2020