{"id":36846,"date":"2019-10-20T00:50:11","date_gmt":"2019-10-19T16:50:11","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=36846"},"modified":"2019-10-20T00:50:15","modified_gmt":"2019-10-19T16:50:15","slug":"two-thirds-of-industrial-organizations-dont-report-cybersecurity-incidents-to-regulators","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2019\/10\/20\/two-thirds-of-industrial-organizations-dont-report-cybersecurity-incidents-to-regulators\/","title":{"rendered":"Two-thirds of industrial organizations don\u2019t report cybersecurity incidents to regulators"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><strong>A\u00a0 Kaspersky<\/strong><a rel=\"noreferrer noopener\" target=\"_blank\" href=\"https:\/\/ics.kaspersky.com\/the-state-of-industrial-cybersecurity-2019\/\"><strong> survey<\/strong><\/a><strong> has discovered that two-thirds (67% ) of industrial organizations do not report cybersecurity incidents to regulators. Though remaining compliant in modern industrial business is a necessity and a driver for investment, there are many factors that influence how companies follow compliance rules.<\/strong><\/p>\n\n\n\n<p class=\"wp-block-paragraph\">In a world where cybercriminals are using sophisticated attacks to breach industrial companies, robust cybersecurity policies and keeping up with regulations have never been more important. From the General Data Protection Regulation (GDPR) to standards set by the International Electrotechnical Commission (IEC), industrial companies have a lot of requirements to adhere to.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">However, Kaspersky\u2019s &#8220;State of Industrial Cybersecurity 2019&#8221; report shows that many companies are flouting reporting guidelines \u2013 perhaps to avoid regulatory punishments and public disclosure that can harm their reputation. In fact, respondents said that more than half (52%) of incidents lead to a violation of regulatory requirements, while 63% of them consider loss of customer confidence in the event of a breach as a major business concern.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">Apart from incident reporting, other survey results show that companies are taking compliance very seriously, with only a fifth (21% ) of industrial companies admitting that they do not currently comply with mandatory industry regulations. Crucially, organizations understand that regulatory demands must be met, despite their lack of reporting. Compliance is the top budget driver in cybersecurity investment strategies for 55%&nbsp; of respondents. However, this focus on procedures may well be leading companies to become complacent over the quality of the cybersecurity solutions and not taking into account the actual threats \u2013 only 28% identified the threat landscape as a key budget driver.<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u201cIndustrial compliance and regulations should not be taken lightly. But it is also very important to keep in mind the real threat landscape that is changing dynamically. An efficient cybersecurity solution in combination with clear policy should help companies achieve the necessary level of protection in accordance with regulatory requirements. Such solutions should contain technology-oriented measures, vulnerability assessment and incident response measures, as well as security awareness initiatives for all employees who work with industrial automation systems,\u201d comments Georgy Shebuldaev, Head of Kaspersky Industrial Cybersecurity Business Development, Kaspersky.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Kaspersky\u2019s &#8220;State of Industrial Cybersecurity 2019&#8221; report shows that many companies are flouting reporting guidelines \u2013 perhaps to avoid regulatory punishments and public disclosure that can harm their reputation.<\/p>\n","protected":false},"author":6,"featured_media":30222,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19],"tags":[101,54,2103],"class_list":["post-36846","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","tag-kaspersky","tag-security","tag-security-breach"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/36846","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=36846"}],"version-history":[{"count":0,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/36846\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/30222"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=36846"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=36846"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=36846"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}