AI is helping to reduce data breach impact says IBM

2023-07-24
关注

  •  

The use of AI and automation in securing data after a cyberattack is helping to reduce the impact and cost of a breach. That is according to a new report from IBM that found a breach would cost UK organisations not using AI an average of £3.4m but that was reduced by £1.6m for those with AI tools.

IBM Security found that only a third of breaches were discovered by internal cybersecurity teams (Photo: Gorodenkoff/Shutterstock)
IBM Security found that only a third of breaches were discovered by internal cybersecurity teams (Photo by Gorodenkoff/Shutterstock)

The annual IBM Security Cost of a Data Breach report examines the impact of cybercrime on companies and methods used in mitigation. It is based on an in-depth analysis of real-world data breaches from more than 550 organisations around the world, occurring between March 2022 and March 2023.

As well as the impact of AI, the report found a long-term increase in the cost of data breaches in the UK, despite a £400,000 year-on-year drop between 2022 and 2023. Last year, the average cost of a breach in the UK was £3.8m, dropping to £3.4m this year but still up 9% since 2020. Globally, the cost of a data breach has increased year-on-year with a 15% rise over three years.

The report, sponsored by IBM Security with research by the Ponemon Institute, found that the cost of a breach was £1.6m less for organisations using AI to enhance security operations than those not using AI. This was in part due to AI’s ability to speed up breach identification and containment. 

Researchers found that the average breach life cycle, in organisations using various types of AI toolsets and capabilities, was 108 days shorter than in organisations using more traditional security set-ups. Despite the evidence showing the benefit of AI, IBM Security found that the majority of UK organisations surveyed were not using AI or automation for security. Just 28% were using it widely and 37% were not using it at all.

The study of global breaches also revealed that, in the UK, the highest average cost of a data breach was in the financial services sector at £5.3m followed by the services sector at £5.2m. Most of the attacks came from stolen or compromised credentials, likely taken during previous breaches or from phishing attacks. The most costly point of entry was from malicious insiders, giving cybercriminals easier access to a system willingly. This led to breaches costing an average of £3.9m compared with a cost of £3.85m for phishing attacks or business email compromise attacks.

Global security investment divide

Globally, the report revealed a security investment divide. Despite the rising cost of attacks and 95% of those surveyed experiencing more than one breach, only 51% plan to increase their security investments. 

Getting law enforcement involved seems to be a positive step. The report found that ransomware victims calling the authorities saved $470,000 compared with those not involving law enforcement. Despite the evidence of savings, 37% of ransomware victims revealed they did not involve law enforcement in a ransomware attack.  

Content from our partners

How tech teams are driving the sustainability agenda across the public sector

How tech teams are driving the sustainability agenda across the public sector

Finding value in the hybrid cloud

Finding value in the hybrid cloud

Optimising business value through data centre operations

Optimising business value through data centre operations

Only a third of those suffering a cyberattack found out about it as a result of detection by internal security teams. A similar percentage were told about the attack by the attacker and these instances cost $1m more than when the organisation spotted the breach themselves.

View all newsletters Sign up to our newsletters Data, insights and analysis delivered to you By The Tech Monitor team

Of those breaches studied by the researchers, 40% resulted in the loss of data across multiple environments. This included public cloud, private cloud and on-premises. It shows that once in the system attackers could compromise multiple environments while avoiding detection from security professionals. Data breaches that impacted multiple environments also led to higher breach costs. 

Martin Borrett, technical director for IBM Security UK & Ireland, said AI may be the driving force needed to bridge the speed gap between security and attackers. “The slight decline from last year in the overall cost of a data breach in the UK suggests the powerful impact security AI and automation may already be having on early adopters,” he added.

Read more: White House secures AI safety commitment

Topics in this article : AI , IBM

  •  

  • en
您觉得本篇内容如何
评分

相关产品

EN 650 & EN 650.3 观察窗

EN 650.3 version is for use with fluids containing alcohol.

Acromag 966EN 温度信号调节器

这些模块为多达6个输入通道提供了一个独立的以太网接口。多量程输入接收来自各种传感器和设备的信号。高分辨率,低噪音,A/D转换器提供高精度和可靠性。三路隔离进一步提高了系统性能。,两种以太网协议可用。选择Ethernet Modbus TCP\/IP或Ethernet\/IP。,i2o功能仅在6通道以太网Modbus TCP\/IP模块上可用。,功能

雷克兰 EN15F 其他

品牌;雷克兰 型号; EN15F 功能;防化学 名称;防化手套

Honeywell USA CSLA2EN 电流传感器

CSLA系列感应模拟电流传感器集成了SS490系列线性霍尔效应传感器集成电路。该传感元件组装在印刷电路板安装外壳中。这种住房有四种配置。正常安装是用0.375英寸4-40螺钉和方螺母(没有提供)插入外壳或6-20自攻螺钉。所述传感器、磁通收集器和壳体的组合包括所述支架组件。这些传感器是比例测量的。

TMP Pro Distribution C012EN RF 音频麦克风

C012E射频从上到下由实心黄铜制成,非常适合于要求音质的极端环境,具有非常坚固的外壳。内置的幻像电源模块具有完全的射频保护,以防止在800 Mhz-1.2 Ghz频段工作的GSM设备的干扰。极性模式:心形频率响应:50赫兹-18千赫灵敏度:-47dB+\/-3dB@1千赫

ValueTronics DLRO200-EN 毫欧表

"The DLRO200-EN ducter ohmmeter is a dlro from Megger."

评论

您需要登录才可以回复|注册

提交评论

广告

techmonitor

这家伙很懒,什么描述也没留下

关注

点击进入下一篇

Missing Titanic Sub: What Could Have Gone Wrong?

提取码
复制提取码
点击跳转至百度网盘