All the latest UK technology news, reviews and analysis

Security breaches fall, but cost per incident rises

by Iain Thomson

More from this author

25 Jan 2010

Comment: 1

  • Tweet this
Data security
The number of successful attacks fell from 657 in 2008 to 498 in 2009

The number of corporate security breaches fell last year, but the cost of each incident is on the up, according to a new study by the Ponemon Institute.

The study of attacks in 15 different industries found that the average per-incident cost of a security breach was $6.75m (£4.16m) in 2009, compared to $6.65m (£4.1m) in 2008.

A separate report from the Identity Theft Resource Center said that the number of successful attacks fell from 657 in 2008 to 498 in 2009.

"In the five years we have conducted this study, we have continued to see an increase in the cost to businesses of a data breach," said Dr Larry Ponemon, chairman and founder of the Ponemon Institute.

"With a variety of threat vectors to contend with, companies must proactively implement policies and technologies that mitigate the risk of facing a costly breach."

The fall in the number of attacks can be attributed to improved security practices, the study found, such as better staff training and awareness programmes. Another factor is the regular use of encryption, which was up 14 per cent to 54 per cent this year.

Nevertheless, the cost of a breach rose from $202 (£125) per compromised customer record in 2008 to $204 (£126) in 2009. Companies are also being hit by higher legal costs as a result of data loss.

The most expensive data breach in this year's study cost nearly $31m (£19m), and the least expensive $750,000 (£464,000).

"Customers are increasingly aware of, and expecting a secure level of protection and privacy for, the data they entrust to businesses," said Phillip Dunkelberger, president of PGP Corporation, which sponsored the study.

"Our study with the Ponemon Institute continues to demonstrate that companies whose data is not protected face expensive direct costs from cleaning up a data breach, and a loss in customer confidence that has long-lasting ramifications.

"A bright spot in this year's report illustrated that companies with chief security officer leadership had a lower cost of remediation following a breach. "

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

99%

0%

1%

0%

0%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

IT Security Specialist Move in2 Solutions /Pre-Sales in 18 mths

IT Security Specialist Move in2 Solutions /Pre-Sales...

SOFTWARE ENGINEER - UNIX C JAVA ORACLE

SOFTWARE ENGINEER - BERKS - to £34k plus package WAREHOUSE...

Senior Project Manager

We currently have a position for a Senior Project Manager...

JAVA DEVELOPER - BERKSHIRE - TO £34k PLUS PACKAGE

JAVA DEVELOPER TRANSPORT MANAGEMENT SYSTEMS / TMS...

To send to more than one email address, simply separate each address with a comma.