

Cybercrime is the greatest threat to an organizations' survival today
November 19, 2013
Technology is ever evolving and our reliance on it opens an organization’s vulnerability to cyber attack through greater online presence, broader use of social media, mass adoption of mobile devices, and the involvement of cloud services. Aligned with advancing technology, new and more complex cyber risks keep emerging, threatening significant harm to an organization’s brand and bottom line.
Hackers are increasingly relentless and often politically motivated - when one tactic fails they will try another, until they get what they want. Everyone and every organization is a target. It’s no longer a matter of ‘if’ you will become a victim of cybercrime, it’s ‘when’!
A significant percentage of those reading this article know, or will soon learn, that hackers have breached the security perimeter of their organization. The frightening fact is that the infiltration could have occurred days, weeks or even months ago, and you didn’t know it. The associated costs to your organization may be staggering – not only financial, but in the number of lost data records and in damage to your brand and reputation.
In EY’s recently launched Global Information Security Survey (GISS) 2013 report, titled “Under cyber attack”, we address what an organization needs to do for its information security program to be able to successfully defend against the insidious cyber attacks the majority of companies face.
EY’s 16th annual survey of information security issues explores the experiences of more than 1,900 client organizations and how they are responding to today’s cyber threats. We also interviewed a number of senior executives representing organizations that in EY’s experience demonstrate leading practices in addressing cyber risks. The findings in the can help to guide your organization’s security program management approach.
And something needs to be done – fast!
Organizations must be prepared to combat against, manage and mitigate cyber attacks that can occur anytime, anywhere. 31% of respondents reported that the number of security incidents within their organization had increased by at least 5% over the last 12 months. However, we discovered that in 83% of businesses their Information Security function does not fully meet the organizations’ needs; even though, despite tough economic conditions, only 7% of companies have actively reduced their security budget over last 12 months. Half of our respondents plan to increase their budget by 5% or more in the next 12 months; but 65% still cite an insufficient budget as their number one challenge to operating at the levels the business expects.
Combating cyber attacks requires leadership and accountability. Many companies now realize the extent and depth of the threat posed to them; resulting in information security now being ‘owned’ at the highest level within 70% of the organizations surveyed. Every CEO should know if their organization has cyber security under control; understanding how its cyber-security approach relates to organizational and strategic priorities, and protects the data that is vital to business success.
A good sign is that nearly half of the organizations we interviewed now align their information security strategy with the organization’s business strategy. However, only 35% of organizations have their information security professionals present to the board or the top governing structure on a quarterly basis, and this is often not enough.
Our survey found that leading organizations are shifting their focus from operations and maintenance to improving and innovating; but to do this successfully, they must undertake more proactive thinking, with ‘tone-from-the-top’ support. Greater emphasis must be given on increasing budgets for vital activities like analytics and reporting, and devoting more resources to security solutions, as well as on improving employee awareness of the risks involved in using the technologies they rely on.
The difficulty is that there appears to be a severe information security talent shortage hindering the fight against cyber-attacks – especially in Europe. The gap is widening between supply and demand, creating a sellers’ market, with 50% of respondents citing a lack of skilled resources as a barrier to value creation.Even with the right resources in place, organizations can’t simply focus on the threats they already know about; they must be forward-looking and prepare for the impact and increased threats that come along with emerging technologies – technologies that modern businesses must learn to embrace (or at least manage) to remain competitive. This means that to win the war against cyber criminals, organizations must channel more resources toward innovating solutions that can protect them against the great unknown: the future.
For further information about cyber security and to download EY’s Global Information Security Survey 2013 report, please visit |
About EY EY is a global leader in assurance, tax, transaction and advisory services. The insights and quality services we deliver help build trust and confidence in the capital markets and in economies the world over. We develop outstanding leaders who team to deliver on our promises to all of our stakeholders. In so doing, we play a critical role in building a better working world for our people, for our clients and for our communities. EY refers to the global organization, and may refer to one or more, of the member firms of Ernst & Young Global Limited, each of which is a separate legal entity. Ernst & Young Global Limited, a UK company limited by guarantee, does not provide services to clients. For more information about our organization, please visit ey.com. |
About EY's Advisory Services Improving business performance while managing risk is an increasingly complex business challenge. Whether your focus is on broad business transformation or more specifically on achieving growth, optimizing or protecting your business having the right advisors on your side can make all the difference. Our 30,000 advisory professionals form one of the broadest global advisory networks of any professional organization, delivering seasoned multidisciplinary teams that work with our clients to deliver a powerful and exceptional client service. We use proven, integrated methodologies to help you solve your most challenging business problems, deliver a strong performance in complex market conditions and build sustainable stakeholder confidence for the longer term. We understand that you need services that are adapted to your industry issues, so we bring our broad sector experience and deep subject matter knowledge to bear in a proactive and objective way. Above all, we are committed to measuring the gains and identifying where your strategy and change initiatives are delivering the value your business needs. |
More Articles
- By Risk
- By Product
- By Region
Related Resources
- View All


Client First

Beyond 3D: How 4D printing could reshape industries and supply chains
Global Asset Protection Services, LLC, and its affiliates (鈥溕喽嗍悠礡isk Consulting鈥) provides risk assessment reports and other loss prevention services, as requested. In this respect, our property loss prevention publications, services, and surveys do not address life safety or third party liability issues. This document shall not be construed as indicating the existence or availability under any policy of coverage for any particular type of loss or damage. The provision of any service does not imply that every possible hazard has been identified at a facility or that no other hazards exist. 色多多视频Risk Consulting does not assume, and shall have no liability for the control, correction, continuation or modification of any existing conditions or operations. We specifically disclaim any warranty or representation that compliance with any advice or recommendation in any document or other communication will make a facility or operation safe or healthful, or put it in compliance with any standard, code, law, rule or regulation. Save where expressly agreed in writing, 色多多视频Risk Consulting and its related and affiliated companies disclaim all liability for loss or damage suffered by any party arising out of or in connection with our services, including indirect or consequential loss or damage, howsoever arising. Any party who chooses to rely in any way on the contents of this document does so at their own risk.
US- and Canada-Issued 色多多视频 Policies
In the US, the 色多多视频insurance companies are: Catlin 色多多视频 Company, Inc., Greenwich 色多多视频 Company, Indian Harbor 色多多视频 Company, XL 色多多视频 America, Inc., XL Specialty 色多多视频 Company and T.H.E. 色多多视频 Company. In Canada, coverages are underwritten by XL Specialty 色多多视频 Company - Canadian Branch and AXA 色多多视频 Company - Canadian branch. Coverages may also be underwritten by Lloyd’s Syndicate #2003. Coverages underwritten by Lloyd’s Syndicate #2003 are placed on behalf of the member of Syndicate #2003 by Catlin Canada Inc. Lloyd’s ratings are independent of AXA XL.
US domiciled insurance policies can be written by the following 色多多视频surplus lines insurers: XL Catlin 色多多视频 Company UK Limited, Syndicates managed by Catlin Underwriting Agencies Limited and Indian Harbor 色多多视频 Company. Enquires from US residents should be directed to a local insurance agent or broker permitted to write business in the relevant state.
色多多视频 as a controller, uses cookies to provide its services, improve user experience, measure audience engagement, and interact with users鈥 social network accounts among others. Some of these cookies are optional and we won't set optional cookies unless you enable them by clicking the "ACCEPT ALL" button. You can disable these cookies at any time via the "How to manage your cookie settings" section in our cookie policy.