1

Top Risk: Cybersecurity

Disculpa, pero esta entrada está disponible sólo en en y ru.

Cybersecurity and data privacy has firmly established as a major challenge among executives in recent years. While in the past cybersecurity was related to business continuity as well as finance and reputation, now companies have to comply with certain data protection rules (GDPR). The potentially devastating fines that can be imposed according to the GDPR have already caused a change in the methods of personal data collection and storage. Companies began to use information notifications on their web sites and in the newsletters.

According to Risk in focus 2020, business today faces three main risks: cybersecurity (78%), changes in legislation (59%) and digitalization (58%). Cybersecurity and digitalization have already appeared as the top three risks in the last two years.

Internal audit as a lifesaver

Why is it so important for companies to conduct internal audits regularly:

1) the methods by which actors attempt to breach their targets are constantly evolving and increasing in sophistication

2) organizations are not fixed or static entities — their so-called perimeter is fluid and continuously growing, as IT infrastructure migrates to the cloud, businesses move into new geographic markets and integrate merger and acquisition (M&A) targets and align their internal control systems, employers agree to “bring your own device” policies, and Internet of Things (IoT) and other digital capabilities are developed and expanded.

Talking about threat sophistication, one of the new methods is the compromise of customer service chatbots. Bots indeed increase economic efficiency, but they bring in new cyber threats. So during an audit, it’s worth testing how they’re protected against such violations. Likewise, cloud services and supply chain security must remain a priority.

However, while cybercriminals are constantly developing new methods, most successful attacks use well-known vulnerabilities. 93% of breaches can be avoided by taking simple steps such as regularly updating software, blocking bogus emails and using email authentication, and training people to recognize phishing attacks.

It’s not as bad as it looks. Cybersecurity can be seen as a profit opportunity. Those companies that provide the best security and can respond quickly and effectively to cybersecurity violations can build trust with customers and other stakeholders. This creates value for shareholders. Sometimes it is so important to look at the problem from a different perspective.

Related Posts

card__image

CrowdStrike’s 2025 Threat Report: GenAI Powers Social Engineering Attacks, Chinese Cyber Espionage Jumps 150%

Disculpa, pero esta entrada está disponible sólo en en, ru y ua. CrowdStrike’s 2025 Global Threat Report highlights a sharp increase in cyber activity linked to China, alongside a rising adoption of GenAI and escalating attacks on cloud infrastructure. The report delivers a stark warning to business leaders: underestimating adversaries comes at a significant cost. […]

card__image

Cyberattacks on Critical Infrastructure: The Digital Battlefield

Disculpa, pero esta entrada está disponible sólo en en y ua. Cyber threats are escalating in critical sectors like energy and healthcare. Recent warnings from CISA, NSA, and FBI highlight vulnerabilities exploited by Chinese-linked operations.   In today’s world, it’s hard to miss the constant buzz about cyber threats, especially when they hit critical infrastructure […]

Deja una respuesta

Tu dirección de correo electrónico no será publicada. Los campos obligatorios están marcados con *