Business Cyber Security Spending In 2021

Organisations today are fending off cyber risks of all types, from malware to social engineering and malicious insiders. The onset of Coronavirus, which has pushed many employees out of the office to work remotely, has also resulted in a boom in hostile digital equivalents. Furthermore, the lockdown for Covid-19 has seen companies become more reliant on decentralised digital operation systems than ever before, something many do not have the talent and other resources for. Many are more exposed to cyber attacks than ever before. 

Experts are unanimous that organisations are likely to be targeted by hackers as they seek to exploit the chaos of the on-going crisis. Yet according to a new study from PWC, more than one-fifth of British organisations are planning to downsize their cyber team in the coming 12 months.

Amid the increasing sophistication of cyber criminals, and the rapid shift to digital technologies brought about by the Coronavirus, PWC has launched its latest insights into what’s changing and what’s next in cyber security. 

Based on a survey of 3,249 business and technology executives from around the world, including 265 in the UK, IoT and cloud service providers top the list of ‘very likely’ threat vectors in the coming 12 months were mentioned by 33%, while cyber attacks on cloud services were found to be the most likely threats to have a significantly negative impact, as noted by 24% of those polled.

UK respondents were even more pessimistic on the situation, with 58% citing an attack on cloud services, followed by a disruption-ware attack on critical business services at 52%, and a ransomware attack at 50%. 

Around 40% of executives in the global survey planned to increase resilience testing to ensure that, if a disruptive cyber event occurs, their critical business functions will stay up and running, but 96% of UK respondents said that they will shift their cyber security strategy due to Covid-19.

Overall, cyber security budgets are increasing in 2021, with 55% of those polled said they were increasing their spending in the area in 2021, even as 64% of executives expect business revenues to decline and if that forecast is accurate and the economic conditions don't recover, a cyber breach could be the death of many firms.

Such is the dire situation at many firms that more than 25% of respondents will be downsizing their spending, leaving cyber teams to do more with less. A further 13% will have to make do with static budgets.

In the UK,  PwC found that the majority of organisations lack confidence in their cyber spend, indicating that there could be trouble ahead for cyber teams when cost cutting programmes are needed. Just 36% of UK respondents are very confident they are getting the best return on their cyber spend versus 42% globally, and while a higher than average 56% of UK respondents are planning to increase their cyber budgets in 2021, this might well fall depending on just how bad things get for the British economy in its first year outside of the European Union.

The increased overall spending on cybersecurity includes ramped up recruitment for personnel over the coming year. According to PwC, 51% of executives plan to add full-time cyber security personnel over the next year. 

Globally, top roles which will be in demand relate to cloud solutions, which as mentioned is a major area of concern at present, at 43%, security intelligence at 40%, and data analysis at 37%. UK respondents seem much more reserved when it comes to hiring. Just 42% of UK respondents said they plan to increase their headcount, and 22% of UK organisations are actually planning to decrease the size of their cyber security team, compared to 16% globally.

Cyber security has been a growing  priority for businesses and many of them have moved fast to ensure they have strong protections in place. Multi-factor-authentication has become the norm across businesses of all sizes, many companies have started offering security awareness training and the rise of AI systems will have enabled some companies to autonomously defend workforces.

Gartner estimates that worldwide security spending grew 10.5% in 2019, compared to 0.4% growth in IT spending overall.

Most businesses had already identified holes in their practices, leading some to be more diligent in response to cyber security threats. Commenting on the survey Richard Horne, Cyber Security Chair, PwC said, “It's surprising that so many organisations lack confidence in their cyber security spend. It shows businesses need to improve their understanding of cyber threats and the vulnerabilities they exploit, while changing the way they think about cyber risk so, it becomes an intrinsic part of every business decision.” 

As cyber criminals find a new opportunity for attack with remote workers and improperly secured connections and technologies. Together, these trends have created a more vulnerable environment affecting the cyber security of many organisations. 

No organisation can be totally protected from cyber attacks and  it is therefore  vital that they each build an effective cyber security strategy and an implemented tactical plan that are continually up-dated and effectively used. 

PWC:      ITPro:       Techrepublic:     Computing:        Consultancy UK:     Consultancy UK:     Infosec Institute:

Please contact Cyber Security Intelligence for more information and recommendations on effective training for cyber security.

You Might Also Read:

Critical Cyber Security Threats & Solutions For Business:

 

« Europol Warning Of The Growing AI Cyber Threat
Russian Hackers Have Stolen US Secrets »

ManageEngine
CyberSecurity Jobsite
Check Point

Directory of Suppliers

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

Jooble

Jooble

Jooble is a job search aggregator operating in 71 countries worldwide. We simplify the job search process by displaying active job ads from major job boards and career sites across the internet.

Practice Labs

Practice Labs

Practice Labs is an IT competency hub, where live-lab environments give access to real equipment for hands-on practice of essential cybersecurity skills.

LockLizard

LockLizard

Locklizard provides PDF DRM software that protects PDF documents from unauthorized access and misuse. Share and sell documents securely - prevent document leakage, sharing and piracy.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

Exodus Intelligence

Exodus Intelligence

Exodus Intelligence are an industry leading provider of exclusive zero-day vulnerability intelligence, exploits, defensive guidance, and vulnerability research trends.

Oppida

Oppida

Oppida provides tailored IT security services to help you identify security gaps and assist in finding the most effective remediation.

Acutec

Acutec

Acutec is an award winning IT support, services and solutions provider including managed IT Security and backup/disaster recovery.

Clearswift

Clearswift

Clearswift is trusted by businesses, governments and defense organizations globally for its Adaptive Cyber Security and Data Loss Prevention solutions.

ThreatAware

ThreatAware

Total visibility of your business cybersecurity. Monitoring, management and compliance for your cybersecurity tools, people and processes from one easy to use dashboard.

DivvyCloud

DivvyCloud

DivvyCloud protects your cloud and container environments from misconfigurations, policy violations, threats, and IAM challenges.

Intercast Global

Intercast Global

Intercast's mission is to be a strategic resource to our clients in Risk Reduction. We are a global leader in cyber security staffing and consulting to the enterprise.

ClassNK Consulting Service (NKCS)

ClassNK Consulting Service (NKCS)

ClassNK Consulting provides consulting services to the maritime industry with a focus on safety, security and compliance.

MicroSec

MicroSec

MicroSec is a company specializing in IoT security. We focus on bringing enterprise grade security to IoT and embedded systems.

Avalanchio Technologies

Avalanchio Technologies

The Avalanchio platform gives you a complete solution to collect, process, and analyze security data to detect threats in real-time and analyze historical data using security DSL or SQL.

NASK

NASK

NASK is a National Research Institute under the supervision of the Chancellery of the Prime Minister of Poland. Our key activities involve ensuring security online.

AnzenSage

AnzenSage

AnzenSage is a cybersecurity advisory consultancy specializing in security risk resilience for the food sector: agriculture, food manufacturing, food supply chain, vineyards, and wineries.

MyTurn Career LLC

MyTurn Career LLC

Looking for a rewarding career in cybersecurity? Explore a wide range of cybersecurity jobs and opportunities in this rapidly evolving field.

Neosoft

Neosoft

Néosoft is an independent digital transformation consulting group with expertise in Consulting & Agility, Cybersecurity, Data, DevOps, Infrastructure & Cloud and Software Engineering.

Cyber Security Unity (CSU)

Cyber Security Unity (CSU)

Cyber Security Unity (formerly the UK Cyber Security Association) is a new global community which has been set up to help unite the industry and combat the growing cyber threat.

ISGroup S.r.l

ISGroup S.r.l

ISGroup is your trusted partner for Network Penetration Testing, operating under internationally recognized standards and a strong focus on research.