Data breach costs drop for first time in study

  Despite 2011 bringing no slowdown to breaches, the price of each incident actually fell.

  According to Symantec's annual "Cost of a Data Breach Study," for the first time since the survey began in 2006, the cost fell, from $7.2 million to $5.5 million. Put another way, that worked out to $194 per compromised record, down from $214 in 2010.

  Patricia Titus, CISO of Symantec, attributed the drop to organizations having a better handle on how to respond to security incidents. Outfits that conducted a thorough assessment of the breach before notifying victims and ones that had a designated security professional in charge of enterprise data protection tended to pay less per breach.

  "It's now becoming business as usual," Titus said in an interview with SCMagazine.com.

  The study, conducted by the Ponemon Institute, analyzed 49 breaches, whose losses ranged from 4,500 to 98,000 records. It chose not to examine any of the mega-breaches from 2011 because they are not common and would skew the results.

  The incidents' cost took into account a number of factors, including hiring forensic examiners, providing phone support to victims and offering credit monitoring services. Also included were "indirect costs," such as internal man hours devoted to detecting and responding to the breach, in addition to reputational harm and customer churn.

  Detection rates declined, which means businesses are doing a better job of determining that a breach happened and locating the source of it, according to the report. However, due to myriad regulations, notification costs rose.

  Meanwhile, the study found that fewer customers are turning their backs on companies that sustain data losses. Titus credited this to the availability of consumer tools to prevent ID theft, as well as more of a general acceptance that breaches happen.

  "People are becoming more familiar with it," she said. "It's not something new. People are realizing that they if they do a few smart things, there's significantly less chance of [a financial] impact."

  The study, which looked at breaches in 14 different sectors, reflected a rise in hacker attacks. It determined that half of the cases were due to a malware infection, while a third were caused by a "criminal insider." Another 28 percent of the breaches involved the theft of a device containing personal information.

(责任编辑:)

分享到:

更多
发表评论
请自觉遵守互联网相关的政策法规,严禁发布色情、暴力、反动的言论。
评价:
表情:
  • 微笑/wx
  • 撇嘴/pz
  • 抓狂/zk
  • 流汗/lh
  • 大兵/db
  • 奋斗/fd
  • 疑问/yw
  • 晕/y
  • 偷笑/wx
  • 可爱/ka
  • 傲慢/am
  • 惊恐/jk
用户名: 验证码:点击我更换图片
资料下载专区
图文资讯

英国官员:让华为参与英国5G建设风险可控

英国官员:让华为参与英国5G建设风险可控

2月21日,英国金融时报报道称,在布鲁塞尔发表的一次演讲中,英国信号情报机构政府通...[详细]

西媒:以色列打造网络安全“硅谷”

西媒:以色列打造网络安全“硅谷”

2月13日报道 西媒称,凭借每年超过10亿美元的企业投资,以色列已经成为全球网络安全领...[详细]

俄罗斯力推脱离互联网计划 确保应急状态下

俄罗斯力推脱离互联网计划 确保应急状态下网络安全

俄罗斯新闻机构 RosBiznesKonsalting(RBK)上周报道称:作为计划实验的一部分,当局正...[详细]

GSMA呼吁欧洲守住网络安全和网络基建供应竞

GSMA呼吁欧洲守住网络安全和网络基建供应竞争力

5G将改变欧洲公民的生活和工作方式。5G作为现有4G网络的补充,与之协同工作将比以往更...[详细]

涉嫌窃取近千政界人士信息 德国20岁黑客遭

涉嫌窃取近千政界人士信息 德国20岁黑客遭逮捕

涉嫌窃取德国近千政界人士信息的黑客落网 政府拟修法加强网络安全 德国当局8日宣布,...[详细]

返回首页 返回顶部