Connect with us

Hi, what are you looking for?

BUSINESS

The cost of fighting cybercrime to increase 38% over next decade

Cybercriminals are constantly developing countermeasures to new detection systems such as sandboxing or anti-virus technologies. This dynamic ultimately drives up the amount companies must spend on security technologies to maintain the same level of protection.

According to a heuristic economic model developed by RAND Corporation, a nonprofit institution that helps improve policy and decision-making through research and analysis, the effectiveness of these technologies that face countermeasures falls by 65 percent, thereby increasing the cost of managing a cybersecurity risk by 38% in the same period.

Together with Juniper Networks, RAND unveiled new insights into the economic challenges, trade-offs and demands facing companies as they protect themselves against increasingly complex security threats.

RAND Report graphic

The in-depth report by leading economic and cybersecurity experts at RAND found chief information security officers (CISOs) often face a chaotic and confusing landscape when deciding the most efficient and cost-effective way to manage the risks posed by security to their business.

Advertisement. Scroll to continue reading.

Most troubling, the research indicates that many companies are spending increasing amounts on cybersecurity tools, but are not confident that these investments are making their infrastructure secure.

Juniper Networks believes this dynamic is due to a lack of solid calculus that considers both the cost of security tools and resources, and the potential cost of a breach, which by definition is neither certain nor predictable.

CISOs need a way to better understand the variables that most influence the cost of managing cybersecurity risk holistically and the different decisions they can make to protect their organizations.

With RAND’s model projecting the cost to businesses in managing cybersecurity risk set to increase 38 percent over the next 10 years, Juniper believes that the time is now for organizations to start managing security spending and risk management as a discrete business function.

IoT is at a Crossroads

Advertisement. Scroll to continue reading.

According to RAND, IoT will have an impact on overall security costs; however, it’s unclear if it will be positive or negative. If security technologies and management are properly applied to IoT, companies could actually see savings in the long run.

On the other hand, if companies struggle to apply security controls effectively, RAND’s model suggests that the introduction of IoT would increase the losses that companies experience due to cyber-attacks by 30 percent over the course of 10 years.

Investing in the Workforce  

Companies can benefit greatly in making people-centric security investments, such as technologies that help automate security management and processes, advanced security training for employees, and hiring additional security staff.

According to the RAND model, organizations with very high levels of security diligence are able to curb the costs of managing security risk by 19 percent in the first year and 28 percent by the tenth year when compared to organizations with very low diligence.

Advertisement. Scroll to continue reading.

No One-Size-Fits-All

Companies are likely not taking the optimal economic strategy with their investments, which should vary greatly from company to company based on their size, type of information that exists and the diligence of security staff.

Specifically, RAND found small to medium-sized businesses benefit most from basic tools and policies, while large organizations and high-value targets require investments in a full range of policies and tools given the likelihood that they will be targeted by an advanced attack.

Eliminate Software Vulnerabilities

RAND’s model found that one of the most significant security issues that increases the cost to businesses is the number of vulnerabilities in the software and applications being used.

Advertisement. Scroll to continue reading.

RAND’s model found that if the frequency of software vulnerabilities could be reduced by half, the overall cost of cybersecurity to companies would decrease by 25 percent.

“The security industry has struggled to understand the dynamics that influence the true cost of security risks to business,” says Sherry Ryan, chief information security officer, Juniper Networks. “What’s clear is that in order for organizations to turn the table on attackers, they need to orient their thinking and investments toward managing risks in addition to threats.”

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

The cybersecurity landscape is fast changing, and businesses across all industries as well as consumers are facing evolving threats to their data and privacy....

HEADLINES

Pondering on the significant events and trends that shaped the financial threats’ sector in 2021, Kaspersky researchers have forecasted several important tendencies expected to...

HEADLINES

As organizations worldwide slow down for the holidays as well as find themselves in work environment transitions - with many returning to pre-pandemic in-office...

HEADLINES

Deep learning models have reached the point where they can train themselves to enable security systems to predict threats before they happen.

SOFTWARE

MicroWorld's latest offering aims to reinvent cybersecurity in the face of an ever-evolving threat landscape, especially in light of the ongoing pandemic. The cyber...

HEADLINES

When you compare the immense financial losses that a breached company suffers with the much smaller-scale financial transactions taking place on these criminal forums,...

HEADLINES

The vast majority (70%) of all IT teams said the number of phishing emails hitting their employees increased during 2020. This rose to 82%...

HEADLINES

According to WorldRemit, there are four industry-wide scams that Filipinos should be aware of this 2021: “email scams, online dating scams, shopping scams and...

Advertisement