
Almost 100% of IT experts are
concerned about data security over the next 12 months, with 43% saying they are very concerned or extremely concerned. And many of them are worried about the safety of their email
systems, according to the 2022 Cybersecurity Year in Review, a study by Craig Business Intelligence, sponsored by RSA Conference.
They are nervous about the following:
- Threat of ransomware attack — 65%
- Increase in spoofing and/or phishing attacks — 60%
- Receiving dangerous files/attachments —
47%
- Training employees to prevent email attacks — 37%
- Losing money related to business email compromise — 25%
- Loss of
emails/data — 21%
- Regulatory penalties/fines from data breaches — 15%
- Shortage of skilled security resources — 11%
- Shifting work/workforce to remove — 7%
What are companies doing to counter these threats? They are conducting:
- File/attachment scanning
— 85%
- Security awareness/training — 80%
- Email backup/archive — 80%
- Spoofing/phishing protection — 79%
- Vulnerability management — 65%
- Email encryption —
62%
- Configuration management — 60%
- Business email compromise — 60%
- Social engineering —
56%
- Browser Protection/plug-ins — 56%
In general, professionals are worried about:
- Increase risk of
ransomware — 67%
- Expanding attack surface, including mobile and IOT — 60%
- Data leakage via malicious applications —
49%
- Lost/stolen devices — 29%
- Shifting work/workforce to remote — 28%
- Lack of
budget — 20%
- Resiliency of operating systems (OS0 — 18%
- Regulatory penalties/fines —
13%
Of those polled, 90% are no using anti-virus/anti malware technology, and 6% are planning it. Also included are::
- Patch management — 79%
- Endpoint detection and response — 78%
- Vulnerability management — 72%’
- Asset discovery — 70%
- Mobile device security — 64%
- IoT devices — 35%
- eXtended
detection and response — 33%
- Zero Trust — 31%
- Automated remediation — 29%
- OT/ICS devices — 28%
This part of the extended research was conducted in August 2022.