Close Menu
  • News
  • Home
  • In Profile
  • Finance
  • Legal
  • Technology
  • Events
  • Features
  • Well Being
  • Marketing
  • HR & Recruitment
  • About
  • Advertise
  • Events Calendar
  • Business Wall
  • Subscribe
  • Contact
  • 0843 289 4634
X (Twitter) LinkedIn YouTube
Trending
  • Developing an AI use policy
  • 3 learnings for SMEs from Climb24, the UK’s festival of innovation
  • Protect your start-up with a simplified shareholders’ agreement
  • Employment Expert Warns of TikTok Career Trends’ Negative Impact: Are Workplaces Falling Short?
  • Simply Asset Finance secures £120m loan facility from Bank of America
  • Campers acknowledges the impact of the North West adoption programme
  • Empowering ESMBs with Cutting-Edge Solutions: An Interview with Giovanni Crispino, Head of EMEA ESMB at Salesforce
  • Louise Hunt Skelley Ply And Samanta Bullock Launch A New Era Of Disability Advocacy
X (Twitter) LinkedIn YouTube
SME Today
  • About
  • Advertise
  • Events Calendar
  • Business Wall
  • Subscribe
  • Contact
  • 0843 289 4634
  • News
  • Home
  • In Profile
  • Finance
  • Legal
  • Technology
  • Events
  • Features
  • Wellbeing
  • Marketing
  • HR & Recruitment
SME Today
  • About
  • Advertise
  • Events Calendar
  • Business Wall
  • Subscribe
  • Contact
  • 0843 289 4634
You are at:Home»Technology»Could Your Business Survive A Cyberattack?
cyber security

Could Your Business Survive A Cyberattack?

0
Posted By sme-admin on December 15, 2023 Technology

Business leaders have had no shortage of challenges to contend with in recent years. From adapting to a global pandemic to macro-economic pressures, keeping businesses operational has been no mean feat. But there is one global threat that, despite constantly making the headlines, small to medium businesses are continually unprepared for: cyber attacks.

Earlier this year, KNP Logistics Group made headlines when it was forced to close after an attack by the Akira ransomware group, and they are not alone. In a recent report from global insurer Hiscox, over one fifth of businesses that suffered a cyber incident in the last year reported that the impact was enough to threaten the viability of the business.

Lawrence Perret-Hall, Chief Operating Officer at CYFOR Secure
Lawrence Perret-Hall, Chief Operating Officer at CYFOR Secure

Of course, not all cyber incidents have such catastrophic consequences, but when the stakes are so high, even small businesses should seriously consider the business risk of being caught out by cybercriminals. To make matters worse, recent threat analysis has found that ransomware groups are increasingly going after smaller organisations, no doubt taking advantage of their limited security capabilities whilst relying on a susceptibility to closure to push victims to pay the ransom. Lawrence Perret-Hall, Chief Operating Officer at CYFOR Secure discusses how for these new and lucrative targets, now is the time to reassess whether the existing security protocols are enough to protect the whole business against closure.

Embracing insurance

In this complex environment, transferring a proportion of business risk through a well-considered cyber insurance policy becomes a no-brainer. Although it can be easy for businesses to underestimate their value in the eyes of a cybercriminal, taking steps to ensure cover before an incident can strike could be the safety net that ensures the survival of an organisation.

There are multiple costly outcomes from a cyber incident. First, targeted businesses must contend with the losses that come with a downtime; the immediate costs of an escalated security and incident response effort; the medium-term losses that can come with losing a good reputation; and in some cases, the extensive legal costs that can come from civil action and regulatory fines. Cyber insurers offer organisations financial security in the wake of these incidents, but they can also mitigate the damage before an attack even occurs. In fact, the industry as a whole has been a crucial driver for improving security standards, promoting a basic, robust security posture through audits and incentivisation through lower premiums.

When an incident does strike, these same insurers can support businesses in their incident response efforts, from remediation to reporting. Despite cyber attacks becoming more prevalent, most organisations are – thankfully – inexperienced in recovering from a sophisticated attack. Insured organisations have access to panels of experienced incident response professionals who can ensure that businesses bounce back as quickly, and securely, as possible.

Understand security is everyone’s responsibility

The success of a security strategy does not just come down to those chosen to lead it. Educating all employees in how to identify and report phishing and social engineering tactics is a proactive measure that significantly reduces the risk of a breach.

Frequent and comprehensive training sessions are essential to instill a culture of security throughout an organisation, bridging the knowledge gap from entry-level employees to top-tier executives. Phishing has long been a threat in our working and private lives, but new technologies and fast-evolving tactics make each social engineering campaign harder to spot than the last.

The popularisation of generative AI has made the process of drafting phishing emails quicker, easier, and more convincing. In seconds, hackers can now create scam emails without poor spelling and grammatical errors (previously tell-tale signs of phishing), in any language, and in the style of any executive they like. For employees, this creates a minefield of security risk.

Worse still, as email security software gets better at identifying malicious links, hackers continue to find loopholes, embedding malicious links within meeting invites and even QR codes. Staying ahead requires businesses to look beyond tooling by fostering continuous cyber awareness training within their workforce. When successful, education programs like this empower employees to become guardians of their workplace security and support wider security efforts.

Practicing defence in depth

While prevention and education are vital, in today’s landscape, all robust security strategies accept that a breach is inevitable. When it comes to safeguarding against cyber threats, business leaders should now look to achieve ‘defence in depth’.

Any defence in depth strategy must start with a security audit. Audits offer business leaders clarity on a business’ true security posture. Rather than waiting for a bad actor to pinpoint unknown security gaps,  auditing is the first step to proactively improving security protocols at the perimeter and within an organisation. Take patching, for example. The Ponemon Institute found that 57% of cyberattack victims could have prevented the breach by installing an available patch, and yet regular patching is easy to let slide in smaller businesses. Once businesses understand the risk this poses, implementing a protocol that all critical or emergency patches must be updated within two weeks can go a long way towards avoiding opportunistic hackers.

When a bad actor does find a foothold into a network, a business that has implemented rigorous credential and access management protocols significantly reduces its risk exposure. Multi-Factor Authentication (MFA) is a popular way of controlling user access to sensitive files, platforms and networks, particularly when combined with security processes that limit administrative rights based on individual employee needs. With these protocols in place, businesses build a strong foundation for Zero Trust and place significant obstacles in the path of hackers, affording security teams the time to detect and counteract threats effectively.

When bad actors are taking advantage of loopholes, resource gaps, and exploiting smaller businesses to secure ransoms, all organisations need to step up their game. By proactively investing in bolstering defences both at the perimeter and through Zero Trust principles, educating employees about the role they play, and transferring risk through cyber insurers, business leaders can prioritise resiliency for long-term success.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

The Steps to eCommerce Engagement are Now Easier than Ever

UK fails to break out as tech skills superpower on global skills leaderboard

Option to upgrade Euro 5 LCVs to Euro 6 emission standards

Comments are closed.

Follow SME Today on Linkedin and share all the topics you find interesting

The Newsletter

Join our mailing list to receive the latest news and updates from SMEToday
Read our Latest Newsletter:

Sign Up
Events Calendar
    • Marketing
    June 27, 2024

    Empowering ESMBs with Cutting-Edge Solutions: An Interview with Giovanni Crispino, Head of EMEA ESMB at Salesforce

    June 24, 2024

    Why Human Storytelling is Vital for Every Startup Marketing Strategy

    • Finance
    June 28, 2024

    Simply Asset Finance secures £120m loan facility from Bank of America

    June 19, 2024

    Do You Need To Insure Your Side Hustle?

    • Health & Safety
    April 15, 2024

    Careless Driving Habits Common Practice Among Motorists

    March 20, 2024

    Cleaning stairs, climbing ladders and changing light bulbs: which of these activities are allowed under health and safety rules?

    The Great British Expos 2024
    The Great British Expo's
    • Events
    June 18, 2024

    Get the Most Out of Your Ideas with IP. BWR IP Seminar

    June 3, 2024

    Nicola Peake Launches Peakefest to Inspire and Rejuvenate Business Founders

    • Community
    June 24, 2024

    Festivals Unite to Launch National Green Events Code

    May 10, 2024

    Breast Cancer Consultant Dr Hugo De La Pena Has Raised More Than £10,000 For Cancer Research

    • Food & Drink
    May 24, 2024

    Devon distillery raises a glass to future growth with £100k funding deal

    May 13, 2024

    Sussex mum toasts success as small business grows

    • Books
    March 5, 2024

    No Silver Bullet: Bursting the bubble of the organisational quick fix

    January 12, 2024

    Top lessons all entrepreneurs can learn from the boy who survived the wild

    About

    SME Today is published by the same team who deliver The Great British Expos’. We have been organising various corporate events for the last 10 years, with a strong track record of producing well managed and attended business events across the UK.

    Join Our Mailing List

    Receive the latest news and updates from SMEToday.
    Read our Latest Newsletter:


    Sign Up
    X (Twitter) YouTube LinkedIn
    Most Recent Posts
    July 2, 2024

    Developing an AI use policy

    July 2, 2024

    3 learnings for SMEs from Climb24, the UK’s festival of innovation

    July 1, 2024

    Protect your start-up with a simplified shareholders’ agreement

    June 28, 2024

    Employment Expert Warns of TikTok Career Trends’ Negative Impact: Are Workplaces Falling Short?

    June 28, 2024

    Simply Asset Finance secures £120m loan facility from Bank of America

    Categories
    • Books
    • Community
    • Education and Training
    • Environment
    • Events
    • Features
    • Finance
    • Food and Drink
    • Health & Safety
    • HR & Recruitment
    • In Profile
    • Legal
    • Marketing
    • News
    • Property & Development
    • Sponsored Content
    • Technology
    • Transport & Tourism
    • Well Being
    Copyright © 2024 SME Today.
    • ABOUT SME TODAY: THE GO TO RESOURCE FOR UK BUSINESSES
    • Privacy
    • Contact

    Type above and press Enter to search. Press Esc to cancel.