You are here: silicon.com > Software > Security Strategy

Security Strategy

£18bn: the cost of security breaches in the UK

It's bad, it's expensive and it's getting worse

By Joey Gardiner

Published: 23 April 2002 16:50 GMT

IT security breaches are costing UK businesses up to £18bn every year, according to the latest figures from the DTI.

Its research shows that the threat is growing at an alarming rate. Forty four per cent of businesses suffered some kind of security breach in 2001, almost double the figure in 2000.

Large businesses suffered worst, with four-fifths reporting some kind of problem, according to the report, which was prepared by PricewaterhouseCoopers (PwC).

The average cost of the breaches was £30,000, with some costing over half a million. With 1.35m registered businesses in the UK, this means the total cost nears £20bn.

Chris Potter, information security partner at PwC, said: "It is clear security breaches are causing damage in the order of billions of pounds each year. And everyone's estimate is that the situation is only going to get worse."

He added: "This just goes to show that the UK's steady adoption of ebusiness comes with a damaging sting in the tail for many businesses."

The survey also discovered a change in the source of the most serious threats. Previous surveys have suggested that the biggest threats come within the organisation, but the DTI's research found that more than half of respondents said the biggest threat came from outside their business.

This is partly due to the massive increase in viruses last year, by far the single biggest cause of IT security breaches.

The survey also found poor use of security technologies for ecommerce transactions. Just 51 per cent of transactional websites encrypt the data when passing it around, leaving the door open for hackers to intercept sensitive information.

There also seems to be little support for the government's IT security standard - BS7799 - which has, somewhat perversely, been widely adopted in foreign countries. Only 5.5 per cent of UK businesses are compliant with it, and just 2.7 per cent plan to be within the next year.

Aled Miles, managing director, northern Europe for Symantec, which also sponsored the report, said: "Unlike other standards, this hasn't become a necessary part of doing electronic business - no one's saying 'get compliant or we can't do business'. I think many IT departments are scarred after implementing other standards, and then Y2K, and just don't want to spend the money."

Launched at this year's InfoSec show this morning, the new research is the DTI's latest survey into IT security in the UK, and gives the most accurate insight into the threat of information security breaches in your business.

The DTI surveyed 1,000 people responsible for IT security within their companies. It also includes a set of top 10 guidelines for implementing IT security within your business.

For more information see: http://www.security-survey.gov.uk .

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Clive Longbottom Windows 7: Not perfect - but ready for prime time Microsoft's latest OS fixes most of Vista's ills - but still has challenges ahead

Stephen Kleynhans Mind the details with Windows 7 Just because it might work better than Vista, it doesn't mean you can be sloppy


  • Jobs
Marine Survey Project Manager, UK, 12 Months +

With strong experience within the Offshore Marine Survey environments either within a Senior Survey or Senior Engineering capacity, you will be ...

Survey Interviewer - Part Time - Leeds-Bradford

Working for one of leading authority's in aviation, we are currently recruiting for a Survey interviewer at Leeds Bradford Airport. To approach air ...

Security Analyst CONTRACT

Successful candidate will be responsible for delivering an effective and efficient security risk management services by performing reviews of new and ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: