UK Firms Concerned About Cyber Arms Race
Continuous investment and activity are key in the cyber arms race, according to Databarracks, as research shows UK firms are worried about keeping up with security challenges
Only 56% of UK firms believe they have sufficient cyber security skills in-house to deal with threats, a survey has revealed.
UK organisations are concerned about their abilities to keep pace with the persistent rise of new cyber security challenges, according to the latest annual Data health check survey by business continuity and IT disaster recovery firm Databarracks.
Now in its 10th year, the survey questions more than 400 IT decision-makers in the UK about a series of critical issues relating to their IT, security and business continuity practices.
The latest survey shows that 44% of the companies polled lack confidence in their cyber defence capabilities, despite 67% saying they had invested in safeguards to help fight against cyber threats in the past 12 months – up from just 59% in 2016.
The survey shows that the types of safeguard that organisations have invested in to protect against cyber threats have changed dramatically in recent years.
In 2016, only 12% of organisations said they had updated their cyber security policy in the past 12 months, compared with 26% in 2018. Similarly, cyber threat monitoring software is now used in 28% of businesses, compared with only 13% in 2016.
Because of increasing digitisation, the number of businesses protecting more than 100TB of data has more than doubled in the past 10 years, the survey shows, with 16% of the 2018 respondents admitting they do not know how much data they are protecting.
Although the proportion of organisations encrypting backup data has increased from 53% to 67% in the past decade, one-third still do not encrypt their backups.
The survey also shows that the employment of a chief information security officer (CISO) has jumped from 1% in 2016 to 14% in 2018.
Peter Groucutt, managing director of Databarracks, said investment in cyber security safeguards should translate into improved confidence, but the findings show it is yet to make a significant difference.
“We are in the midst of a rapidly accelerating arms race,” he said. “Organisations are desperately trying to match criminals by working hard to improve knowledge, training and investment in security defences, but are clearly concerned about keeping pace.”
But it is important that organisation do not become disheartened, said Groucutt. “While confidence levels are not where we had hoped, businesses are making positive strides and acting on the front foot to fight back, which makes us optimistic for the future,” he said.
“Critically, it is not just about hiring a CISO, or introducing a new cyber security policy or investing in new threat monitoring software – it’s about all of these activities and a fundamental culture change for most organisations.
“Cyber threats are evolving at such a pace that organisations cannot stand still. In previous years, organisations have failed to match these threats with action and investment. Today, businesses are fighting back and shoring up defences, as our data shows.”
The research also revealed that 69% of organisations have reviewed their cyber security policies within the past 12 months, whereas in 2015, only 54% had reviewed their policies.
Budgets are also rising, with 36% of organisations saying they have seen their IT security budget increase in the past 12 months, compared with 24% in 2016. Meanwhile, the proportion of organisations impacted by cyber threats in the past 12 months has dropped from 74% in 2015 to 66% in 2018.
Asked whether they had put additional measures in place in response to the EU’s General Data Protection Regulation (GDPR), 36% of organisations said they had, up from just 13% in 2017.
“Over time, as organisations see this increased proactivity and investment lead to better security, we are hopeful that confidence will also improve,” said Groucutt.
The survey also reveals a positive overall trend in disaster recovery, with more rigorous governance, planning and testing, all leading to greater confidence.
The proportion of companies with an IT disaster recovery plan within their business continuity plan has increased from 79% in 2016 to 82% in 2018, while those testing their disaster recovery plans has increased from 42% in 47%.
- Healthcare Business Development Manager
- Up to £60,000 Base + UNCAPPED Earnings
Healthcare Business Development Manager We are currently working with a multi-vendor IT solutions provider who are looking for a Business Development Manager who will be responsible for selling into the Healthcare Industry in a new business focussed position. The Healthcare Business Development Manager will have Current/Recent experience working for an IT managed services business/solutions provider. Experience delivering £150,000+ GP a year Current/Recent experience winning new healthcare accounts (all accounts won are kept) Flexible working is provided and also uncapped earnings. Apply for more information or call Peter Georgiou on 02086634030. Unfortunately, our client are unable to provide sponsorship so candidates must be UK based (commutable to London). Ref PG7577
- Cyber Incident Response specialist
- Up to £75,000 Base
Cyber Incident Response specialist is needed to join a global consultancy whose cyber business unit are continuing to their investment in the growth of their team. The Cyber Incident Response specialist role is client-facing that will join an award-winning team that deliver varied, interesting and often challenging work to a wide range of prestigious clients. The Cyber Senior Incident Response MUST have current experience taking a client through the complete IR / triage process and have a blend of both technical and commercial (identifying and developing new business opportunities within a client) Proactive Incident response, forensics and Ediscovery experience is a MUST. An individual must be London commutable and happy to travel, often internationally. Key attributes should also include; stakeholder engagement, mentoring of team members, a collaborative working style. Technical experience must include; demonstrable experience within an cyber incident response, Forensic, cyber etc. Additional certifications could / should include GIAC certified (Intrusion analyst, incident handler, forensic handler) Any of the following are very desirable also CREST Certified Network Intrusion Analyst (CCNIA) CREST Certified Host Intrusion Analyst (CCHIA) CREST Certified Malware Reverse Engineer (CCMRE) CREST Practitioner Intrusion Analyst (CPIA) Career development and the opportunity to influence, apply today for more information or call Chris Holt on 07884666351 or 02086634030 or email firstname.lastname@example.org Unfortunately, our client are unable to provide sponsorship for this opportunity. Candidates must be UK based. Ref: CH7578
- Sales Engineer (Telecoms, Ethernet, SDH, MPLS, IP)
- Up to €75,000 + Commission
Sales Engineer / Presales Consultant is needed for this Global Tier 1 carrier. You will be working with Enterprise customers helping to design solutions that solve your their business needs. You will be responsible for working alongside sales providing presales technical consultancy around my client's solutions base. You will be responsible for providing support for new business opportunities in terms of responding to RFIs & RFPs, understanding customer network requirements, high-level network architecture & design (including supplier selection on a global basis) and technical handover to network implementation teams. This is a great opportunity to join a global player who are growing their France based teams. You will require a successful track record in the telecommunications arena ideally from a global tier 1 ISP or network provider, with a demonstrable track record in designing complex enterprise solutions. A Sales Engineer needs to be technically astute and has had experience in the design, presentation, and implementation of Wide Area Networks (WAN). They need to understand a range of Layer 1, 2, and 3 technologies (Ethernet, SDH, MPLS, IP, etc) and build a solution based on the best technology to meet a customer’s requirements. In addition, they should have an understanding and experience in supplementary telecommunications services such as VoIP, Video Conferencing, Cisco and Riverbed hardware, and Security If you have any questions about this role, give us a call on 0044208 663 4030 or contact/send your CV to email@example.com Ref: RA7275
- Partner Manager (Network and UCC Services)
- Up to €100,000 plus €60,000 OTE, car allowance and benefits
We are looking for an experienced Partner Manager / Channel Manager to work for a global service provider to sell their Global SIP and Network Services to Enterprises and corporates through the partner market. This is a hunter role, and looking for an experienced salesperson who has knowledge of selling to and through the SI, Cisco and Microsoft Resellers. You will be responsible for Own and formulate a Sales and execution plan to get to quarterly targets Generate Leads from the partners Work with the Partner salesperson to help close deals. Acquire new partners and Deliver Quarterly numbers through the partners Work with Partner Marketing to create and run joint Partner plans/events to drive sales You will need to have experience in selling at least one of these services, global SIP, UCC and SD-WAN into and through the channel of, European Sis, Cisco or Microsoft resellers. Hunters who can identify key decision-makers in the targeted accounts Should be credible for partner to trust the person with leads and opportunities Drive to work through leads to closure along with the partner salesperson Ref: RA7277