Intelligent CISO Issue 62 | Page 12

Research reveals 61 % of IT security decision-makers think leadership overlooks role of cybersecurity in business success
D
Data encryption from ransomware reaches highest level in four years recovery times , with 45 % of those organisations that used backups recovering within a week , compared to 39 % of those that paid the ransom .
S cybersecurity as-a-Service , has released its annual
news

Research reveals 61 % of IT security decision-makers think leadership overlooks role of cybersecurity in business success

elinea , a leading provider of solutions that extend

D

Privileged Access Management ( PAM ), has announced findings from a global survey revealing the impact of misalignment between the cybersecurity function and wider business .
Over 2,000 IT security decision-makers ( ITSDMs ) were polled , including respondents from Australia , New Zealand , Singapore , Malaysia , India , Taiwan and Hong Kong .
Asked about the board and C-suite ’ s understanding of cybersecurity across the organisation , only 39 % of respondents think their company ’ s leadership has a sound understanding of cybersecurity ’ s role as a business enabler . Over a third ( 36 %) believe that it is considered important only in terms of compliance and regulatory demands , while 17 % said it is not seen as a business priority .
The impact of misaligned goals on cybersecurity was wideranging as it contributed to delays in investments ( 35 %), delays in strategic decision-making ( 34 %) and unnecessary increases in spending ( 27 %).
There were also consequences for the individuals themselves , with 31 % of respondents reporting it impacted the whole security team in terms of stress . Furthermore , global economic uncertainty has worsened the situation with half of those surveyed ( 48 %) stating that aligning cybersecurity and broader business goals is becoming more difficult to achieve as a result .
The disconnect between business and security goals appears to have caused at least one negative consequence to 89 % of respondents ’ organisations , with more than a quarter ( 26 %) also reporting it resulted in an increased number of successful cyberattacks at their company .

Data encryption from ransomware reaches highest level in four years recovery times , with 45 % of those organisations that used backups recovering within a week , compared to 39 % of those that paid the ransom .

Overall , 66 % of the organisations surveyed were attacked by ransomware – the same percentage as the previous year . This suggests that the rate of ransomware attacks has remained steady despite any perceived reduction in attacks . ophos , a global leader in innovating and delivering

S cybersecurity as-a-Service , has released its annual

State of Ransomware 2023 report , which found that in 76 % of ransomware attacks against surveyed organisations , adversaries succeeded in encrypting data . This is the highest rate of data encryption from ransomware since Sophos started issuing the report in 2020 .
The survey also shows that when organisations paid a ransom to get their data decrypted , they ended up additionally doubling their recovery costs ( US $ 750,000 in recovery costs versus US $ 375,000 for organisations that used backups to get data back ). Moreover , paying the ransom usually meant longer
“ Rates of encryption have returned to very high levels after a temporary dip during the pandemic , which is certainly concerning ,” said Chester Wisniewski , Field CTO , Sophos . “ Incident costs rise significantly when ransoms are paid . Most victims will not be able to recover all their files by simply buying the encryption keys ; they must rebuild and recover from backups as well . Paying ransoms not only enriches criminals but also slows incident response and adds cost to an already devastatingly expensive situation .”
12 www . intelligentciso . com