Cyber-attacks now cost small companies $200,000 on average

Cyber-attacks now cost small companies $200,000 on average

In an age of ongoing digital transformation, cybercrime has quickly become today’s fastest-growing form of criminal activity.

Equally worrying for modern executives, it’s also set to cost businesses $5.2 trillion worldwide within five years, according to Accenture.

With 43% of online attacks now aimed at small businesses, a favorite target of high-tech villains, yet only 14% prepared to defend themselves, owners increasingly need to start making high-tech security a top priority, according to network security leaders.

“Modern IT infrastructures are more complex and sophisticated than ever, and the amount of virtual ground that we’ve got to safeguard has also grown exponentially,” explains Jesse Rothstein, CTO of online security provider ExtraHop. “From mobile to desktop interactions, cybercriminals can launch thousands of digital attacks designed to compromise your operations at every turn, only one of which ever needs to connect to cause serious disruption.”

As a result, he says, it’s guaranteed that virtually every modern organization’s high-tech perimeters will eventually be breached. This being the case, for small business owners, it’s no longer a matter of considering if security threats will arise, but rather thinking in terms of when.

Worse, the consequences of cyberattacks continue to grow, with digital incidents now costing small businesses $200,000 on average, according to insurance carrier Hiscox, and 60% going out of business within six months of being victimized. The frequency with which these attacks are happening is also increasing, with more than half of all small businesses having suffered a breach within the last year and 4 in 10 having experienced multiple incidents, reveals Hiscox.

At the same time, though, according to Keeper Security’s 2019 SMB Cyberthreat Study, 66% of senior decision-makers at small businesses still believe they’re unlikely to be targeted by online criminals. Similarly, 6 in 10 have no digital defense plan in place whatsoever, underscoring the need for heightened industry awareness and education across the board.

“Attackers are getting smarter, attacks are occurring faster, and incidents are becoming more complex,” cautions Justin Fier, director of cyberintelligence and analytics at cyberdefense firm Darktrace. “The latest cyberattacks speedily exploit vulnerabilities in computer networks — which [can be infected] like human immune systems, changing thousands of times per second — and can overtake even major networks in an hour and a half.”

—What’s more, given that digital threats tend to go an average of 101 days before being detected by business operators, the damage to an organization from such compromises can quickly add up.

Consider the case of humanitarian aid trip organizer Volunteer Voyages, a single-owner small business which suffered $14,000 in fraudulent charges after an online thief pilfered its debit card information, which the bank refused to reimburse. Or that of popular online food delivery startup DoorDash, which suffered a major data breach this past September, with hackers having accessed sensitive user data for over 4.9 million customers, resulting in tens of thousands in expenses.

Likewise, government contractor Miracle Systems, which provides IT and engineering services to over 20 federal agencies, recently suffered losses of $500,000 to $1 million due to an internal server breach.

However, considerable as they are, these charges do not factor in additional damage to intangible assets such as brand reputation and customer goodwill. Case in point: Miracle and its clients were later shocked to discover that their data was openly being advertised for sale by hackers on international cybercrime forums for a starting price of $60,000.

Factor in additional expenses such as regulatory compliance, attorneys’ fees, technical investigations, and loss of customer revenue and relationships, and ancillary costs associated with cyber attacks can quickly compound for a small business.

Ironically though, even with 480 new high-tech threats now introduced every minute, according to anti-virus provider McAfee, human error still remains one of the greatest threats to organizations’ well-being.

With just 3 in 10 employees currently receiving annual cyber security training, it’s all too easy for enterprising con artists or e-mail scammers to circumvent even the most cutting-edge digital safeguards.

Noting this, the over 30.2 million small businesses in America now at risk of digital disruption are advised to adopt a comprehensive mix of both high- and low-tech strategies for combating cyber threats, including:

Making daily backups and duplicates of data and files that can be retrieved in the event of system compromise or ransomware (malicious software that holds accounts/networks hostage until large sums of money are paid).
    Installing and regularly updating anti-virus, network firewall, and information encryption tools to scan for and counteract viruses and harmful programs; guard against incoming network or denial-of-service attacks; and keep sensitive information safe.

Routinely monitoring and scanning any device that’s connected to a computer system or network, and prohibiting the use of removable media (e.g. USB drives) at work.

    
Limiting employees’ access to only the files, folders, and applications that are required to perform routine on-the-job tasks.
    
Providing regular, up-to-date training for staffers at least every 90 days on the latest online threats and trends in cybercrime.
    
Engaging in teaching drills and exercises grounded in real-world everyday scenarios that test employees’ ability to detect scammers and respond appropriately to fraudulent requests.
    
Instructing staff about the dangers of clicking on unsolicited email links and attachments, and the need to stay alert for warning signs of fraudulent emails (among the fastest-growing forms of “phishing,” a.k.a. online con artistry, today).
    
Utilizing multifactor authentication (requiring multiple checks and approvals) before authorizing any major, uncommon, irregular, or allegedly time-sensitive requests.
    
Conducting ongoing vulnerability testing and risk assessments on computer networks and applications to seek out and address possible points of failure before they arise.
    
Implementing artificially-intelligent cyber analytics tools that can scan networks, user accounts, and applications to determine what passes for normal behavior, and auto-detect and immobilize suspicious activities before they spread.

Noting that threats can come from both internal staffers and external sources alike, and the growing amount of sensitive information that modern businesses must juggle, today’s best cyberdefenses are now multipronged, experts warn.

“It’s important to take a multi-faceted approach to cybersecurity,” explains Dan McNamara, chief technology and security officer at MedReview, whose 300 employees provide medical and patient record support services to hospitals and healthcare providers nationwide.

“As our organization has grown, so has the number of cyberattacks it faces. ... In the last two quarters alone, we saw 12 to 15 million breach attempts, many of which take place during early morning hours and weekends. [To safeguard ourselves,] we try to embrace AI and autonomous services; implement real-time cybersecurity tools; and encourage every person on staff to play a role in combating online threats.”

More importantly, says McNamara, whose company has yet to suffer a single data breach in 40 years, similar shifts in thinking can help other small businesses immediately start bolstering their digital defenses. ”[We believe that] every employee is now responsible for helping maintain security; we try to train everyone from the person manning the front desk up to the CEO on what constitutes smart high-tech behaviors.”

Source: CNBC.com /myjoyonline.com


Share On Social Media




Third-party insurance premiums up from January 1; ¢482 for private cars and ¢637 for taxis
Read More
Do I need Insurance to protect my properties, life and family?
Read More
Insurance Brokers In Ghana
Read More
Prudential Life Insurance introduces Mekakrawa-Micro Insurance in Sunyani
Read More
Serene Insurance Company, The New Face Of Insurance
Read More
Hollard Insurance is the Best Organisation in Compensation and Benefits
Read More

Why Buy Insurance ?

There will be no need for insurance if we are living in a perfect world on this planet called EARTH. Our goods would always arrive at their destination

Read More

Emerging Trends In Ghanaian Insurance Market An Overview

According to a report by a UK based IT Solutions, Ghana has one of the fastest growing insurance industries in the world.

Read More

Top 10 Insurance Brokers In Ghana

Ghana 2016 68 Insurance brokering companies that operated in Ghana in 2016 earned Income of GHC 73,144,221 in 2016 representing growth rate of 12%.

Read More

What Your Insurance Broker Should Do For You

Read More

Your insurance Needs

Are you looking for cost-effective solutions for your insurance needs?. Get in touch with us and we will navigate you through the market

Contact Us