New research has found that cyber-attacks aimed at employees are the main cause of avoidable cybersecurity incidents.
The study from endpoint management company Tanium, titled “Cybersecurity: Prevention Is Better than the Cure,” uncovered the amount of time and resources organisations spend on reactive versus preventative cybersecurity measures and the rationale behind their decisions.
UK-based IT decision makers across a variety of industries including public sector, financial services, healthcare, and retail were surveyed as part of the report.
More than half (54%) of respondents cited staff clicking on phishing links as the most common issue that can facilitate a successful cyberattack.
Additionally, data showed that cybersecurity problems have been exacerbated by the shift to hybrid work, with 71% of business owners and partners finding it more difficult to defend against threats today than before the pandemic.
Chris Vaughan, VP of technical account management for EMEA & South Asia at Tanium, commented: “It’s clear from our research that many organisations are struggling to protect against cyber threats in the hybrid work environment.
“During the pandemic, organisations had to implement new technology overnight to ensure business continuity. The patchwork of solutions that was hastily put together left major security gaps.
“These gaps still exist and need to be fixed, which is one of the reasons IT decision makers are finding it more difficult to secure their environments.”
Key findings
Researchers found that Phishing and security misconfigurations are high on the list of concerns for IT leaders. Around 64% of public sector respondents noted avoidable security incidents caused by employees clicking on a phishing link.
The second-highest avoidable incident, cited by 50% of respondents, is security misconfigurations, such as employees failing to password-protect sensitive data. This rate rises to 57% amongst organisations with 250-500 employees.
Organisations also lack suitable technology in place to protect IT estates. The third most common avoidable incident is the lack of software in place to prevent cyber-attacks, cited by 47% of respondents.
Just under a third (71%) of business owners and partners are finding it more difficult to defend against threats than before the pandemic. This has prompted them to make new investments in cybersecurity, with threat detection and endpoint security being the top two areas earmarked for increased spending.
Almost half of respondents (49%) expect to invest more on threat detection next year; organisations that suffered a cyberattack or data breach in the last six months are also most likely to invest in this area (56%).
Endpoint security is expected to be the second highest area of investment over the next 12 months, with 46% of organisations planning to increase spend.
The third highest area of planned investment is in data recovery and backup tools, with 45% percent of all organisations set to increase their spend in these technologies, a number that rises to 58% for those that have experienced a cyberattack or data breach in the past six months.
Recommended
- Online Safety Bill: Where are we now?
- Mangata Networks announces new space hub in Prestwick
- Scots microwave MedTech company acquires US distributor
The fourth and fifth highest areas of potential investment are employee awareness training (43%) and new endpoint devices (42%), respectively.
Jason English, principal analyst, Intellyx, said: “Organisations are struggling to get out in front of known and unknown vulnerabilities across an ever-increasing attack surface of endpoints, and the results of this survey bear this reality out.
“Understaffed and underequipped security teams want a more proactive cybersecurity approach, but they often don’t invest in countermeasures until an incident happens.
“The study found that 86% of organisations compromised by a breach in the last six months believe that more investment in preventative measures, such as staff training or tools that provide increased visibility of networks, would have minimised security incidents.”
Get all the latest news from DIGIT direct to your inbox
Our newsletter covers the latest technology and IT news from Scotland and beyond, as well as in-depth features and exclusive interviews with leading figures and rising stars.
To subscribe, click here.





