Small businesses reported faster growth in the rate of cyber attacks than their large, more visible competitors according to an Information Security Breaches survey by the UK's Department for Business, Innovation & Skills’ (BIS).

There was a 22% increase in the number of small businesses reporting a cyber attack, moving from 41% to 63% in the past year.  In the same survey, 78% of large businesses reported some sort of cyber attack, up just 5% from the previous year.  At this rate of increase, there will soon be no difference in the level of cyber attacks suffered by smaller businesses and their larger, more visible competitors.

The survey was cited in EN, a UK entrepreneurs magazine. The EN feature article looked at why small businesses are being increasingly targeted by cyber criminals and how they could best defend themselves. The lead expert quoted in the article was Urban Schrott, IT security & cybercrime analyst at Safetica.

“The mistake many SMEs make when it comes to cyber security is underestimating their own value," said Urban. "There is a common misconception of ‘why would someone want to attack my small business when there are so many bigger ones out there’.”

The BIS survey should be seen as a call to arms by small companies. “It says that a lot of SMEs don’t take IT security as seriously as they should, despite the fact that many are being targeted simply because their infrastructures will not be as secure as their larger counterparts, he added.

The Australian Defense Directorate mantra of Catch, Patch, and Match is mentioned in the article as a simple guideline for company security: Catch potential security risks at the perimeter, patch vulnerabilities, and matching employee access to their actual needs.

In addition to applying the correct  technology, Urban says you should never underestimate the power of knowledge. "Probably the majority of IT security trouble could be simply avoided, just by anticipating that they could happen and putting simple preventive measures in place."

Author
Safetica team

Next articles

Dedicated DLP vs. Integrated DLP: Which makes most sense for your organization?

While researching DLP solutions for your organization, you might’ve come across two different variants: dedicated DLP (also known as enterprise DLP) and integrated DLP. In simple terms, a dedicated DLP is a dedicated data loss prevention system. An integrated DLP is an extension to an already existing program used within the organization. Read more.

The Top 6 Biggest Data Leaks of 2022

Last year, that the average global cost of a single data breach was USD 4.35 million – a 2.6% increase from 2021. Read about the top 6 biggest data leaks of 2022, and find out why data protection is so much needed.

Top 4 reasons why financial institutions should use Safetica

One of the most vulnerable industries in the data protection realm is financial services. In the financial industry, the estimated average cost of a data breach was $5.97 million – the second highest only after the healthcare industry. That's not a small amount!