Intelligent CISO Issue 92 | Page 52

cyber

TRENDS
Insider risk is emerging as one of the most costly and complex cybersecurity challenges, driven largely by human error and the growing use of unsanctioned digital tools. David Lorti, Product Marketing Director,
Fortinet, outlines how organisations can move beyond traditional
DLP solutions towards behaviour-aware, AIdriven strategies that enhance visibility, reduce data loss and strengthen overall resilience.

2025 Insider Risk Report: The hidden cost of everyday actions

nsider risk has become one of

I the most pressing cybersecurity challenges. Unlike external bad actors using compromised credentials, insider risks are often woven into daily workflows, frequently resulting from employee negligence such as sending a sensitive data file via email, uploading information to personal cloud storage or using unsanctioned SaaS or Generative AI tools.

To better understand how organisations are adapting, Fortinet partnered with Cybersecurity Insiders to conduct a global survey of IT and security professionals. The resulting 2025 Insider Risk Report revealed that while insider-driven data loss is now a common occurrence, many organisations have yet to evolve their programmes to address the issue.
Incidents are frequent and costly
The survey found that 77 % of organisations experienced insider-related data loss over the last 18 months, with 21 % reporting more than 20 incidents during that period. For many, insider incidents are not isolated events but recurring challenges that drain resources and erode trust.
The financial impact is significant. Forty-one percent of respondents reported that their most serious insider incident cost between US $ 1 million
52 WWW. INTELLIGENTCISO. COM