Newsletters
The Enterprise Security Supersite NewsFactor Sites:       NewsFactor.com     Enterprise Security Today     CRM Daily     Business Report     Sci-Tech Today  
   
Home Network Security Viruses & Malware Cybercrime Security Solutions More Topics...
Network Security
Real-time info services with Neustar
Average Rating:
Rate this article:  
Cost of Data Breaches Falls 24%, Study Finds
Cost of Data Breaches Falls 24%, Study Finds

By Barry Levine
March 20, 2012 1:46PM

Bookmark and Share
This seventh annual Ponemon Cost of Data Breach Study is based on actual data breach cases from 49 U.S. companies, representing 14 industries. The average per capita cost of a data breach is now $194, down from the last report's $214. Organizationally, costs for a data breach have declined from an average of $7.2 million to $5.5 million.
 


The average organizational cost for data breaches dropped 24 percent from 2010 to 2011, according to a new study by security firm Symantec and the Ponemon Institute, a research organization. The cost of data breaches declined because companies are getting better at managing the costs, such as detection and escalation.

Although notification costs have increased, customer loss following a breach has lessened, as customers are apparently getting used to data loss incidents. Additionally, more data loss prevention technologies are being employed and fewer records are being lost in individual breaches.

'Anywhere at Any Time'

The average per capita cost of a data breach is now $194, down from the last report's $214. Organizationally, costs for a data breach have declined from an average of $7.2 million to $5.5 million.

Other costs in a data breach include outside forensic experts, outsourcing hotline support, and providing free credit monitoring subscriptions or discounts for future products and services, to retain customer loyalty following a breach. There are also indirect costs, such as in-house investigations and communication.

These average costs did not include data from catastrophic breaches involving more than 100,000 records, since they are not typical in the U.S. The report looked at incidents ranging from 4,500 records to about 98,000 records, with the average being 28,349.

This seventh annual Ponemon Cost of Data Breach Study is based on actual data breach cases from 49 U.S. companies, representing 14 industries.

Malicious attacks are about 25 percent more costly than other kinds, but, the study said, organizations with a chief information security officer, or CISO, can reduce the cost of a data breach. A CISO with responsibility for enterprise data protection can help to reduce the average cost of a data breach by as much as $80 per record.

CISO 'Makes Sense'

Larry Ponemon, chairman and founder of the Ponemon Institute, told news media that this correlation between having a CISO and reducing data breach costs was "one of the most interesting findings" in the new report. He noted that it "makes sense that having the proper security leadership in place can help address these challenges."

Aside from employing a CISO, Symantec recommends that best practices should include educating employees on policy and holding them accountable, encrypting laptops, implementing two-factor authentication, and using an integrated security solution that includes proactive threat protection, firewalls and intrusion protection.

While malicious attacks cost the most, negligence is seen as the root cause of data breaches by 39 percent of the organizations surveyed. Malicious attacks are now more than a third of the total reported.

Francis deSouza, group president for Enterprise Products and Services at Symantec, said in a statement that the threat from insiders is heightened by the increasing use of mobile devices, which allow employees "access to corporate information anywhere, at any time."

The Ponemon Institute conducts independent research, educational efforts, and the verification of data protection and privacy practices to advance "responsible information and privacy management practices in business and government."
 

Tell Us What You Think
Comment:

Name:



UCS Invicta: Integrated Flash Why wait for the future? Unlock the potential of your applications and create new business opportunities today with UCS Invicta Series Solid State Systems. Take advantage of the power of flash technology. See how it can help accelerate IT, eliminate data center bottlenecks, and deliver the peak application performance and predictability your users demand. Click here to learn more.


 Network Security
1.   Microsoft Ruling Raises Privacy Concern
2.   Twitter Buys Password Manager Mitro
3.   Gov't User Data Requests Skyrocket
4.   Retailers Hacked by New Malware
5.   IBM Beefs Up Identity Intelligence


advertisement
Twitter Buys Password Manager Mitro
Startup to release code as open source.
Average Rating:
Gov't User Data Requests Skyrocket
Twitter: From U.S. and around the globe.
Average Rating:
IBM Beefs Up Identity Intelligence
To offer biz better security products.
Average Rating:


advertisement
Product Information and Resources for Technology You Can Use To Boost Your Business

Network Security Spotlight
Ruling Against Microsoft Raises E-Mail Privacy Concern
Microsoft has been ordered to hand over e-mails to law enforcers in the United States as part of a criminal investigation, even though the e-mail is stored at a data center in Dublin,Ireland.
 
Twitter Buys Password Manager Startup Mitro
Following on the heels of another acquisition earlier this week, Twitter is adding to its fold a password-manager security startup called Mitro, which in turn is releasing its code as open source.
 
Government Requests for Customer Data Skyrocket
Requests for customer data from the government jumped 50 percent in the first half of 2014, according to Twitter, which received more than 2,000 requests for user info from gov't agencies.
 

Navigation
Enterprise Security Today
Home/Top News | Network Security | Viruses & Malware | Cybercrime | Security Solutions | Mobile Security | Disaster Recovery | Windows Security
Data Security | EST Press Releases
NewsFactor Network Enterprise I.T. Sites
NewsFactor Technology News | Enterprise Security Today | CRM Daily

NewsFactor Business and Innovation Sites
Sci-Tech Today | NewsFactor Business Report

NewsFactor Services
FreeNewsFeed | Free Newsletters

About NewsFactor Network | How To Contact Us | Article Reprints | Careers @ NewsFactor | Services for PR Pros | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2014 NewsFactor Network. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.