SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Security >> Security Products, Practices and Infrastructure

A third of IT managers report data breaches

A third of IT managers report data breaches

By:  Ellen Messmer  On: 26 Apr 2007 For: Network World Creator

In a recent survey of 83 corporate IT managers, 28 acknowledged having had to cope with a data breach, and half of those respondents reported significant related costs

COMMENT ON THIS ARTICLE

In a recent survey of 83 corporate IT managers, 28 acknowledged having had to cope with a data breach, and half of those respondents reported significant related costs.

In its report entitled “Calculating the cost of a security breach,” research firm Forrester said half of those polled cited changes to security and auditing processes as a major cost category.

In addition, 43 per cent said the costs of customer notification and loss of business could be counted in the fallout from a data breach, though only 25 per cent feared lawsuits and civil penalties.

In its report, Forrester concluded that the cost of a data breach varies widely, from about US$90 to $305 per customer record, depending whether the breach is “low-profile” or “high-profile” and the company in a non-regulated or highly regulated area, such as banking.

The Forrester report notes this is higher than findings made by the Ponemon Institute and others industry experts that typically cite costs associated with a data breach to be in the $50 range per customer record to cover legal fees, notification costs, increased call centre costs, marketing and public relations expenses.

In counting up costs to cope with a security breach involving sensitive data, Forrester reckons it costs $50 just for the discovery, notification and response that brings in unexpected expenses associated with legal counsel, call centres and mail notification.

Lost employee productivity would range from $20 per customer record to $30, while the “opportunity costs” in lost customers and difficulty in getting new ones would range from $20 for a “low-profile breach” in a non-regulated industry to $100 for a “high-profile breach” in a regulated one.

Regulatory fines could also be incurred in regulated industries to the tune of $25 to $60 per customer record. Credit card replacement costs or civil penalties cost easily add up to $25, Forrester reckons.

Though it may seem hard to estimate a dollar value associated with a data breach, “focus on cost per record versus overall costs,” the Forrester report advises. The IT division should use the estimates simply as a starting point in interacting with the business side in estimating costs.

Quicklink 071076

COMMENT ON THIS ARTICLE


Sign up for our Newsletters












Print |  Views: 538   |   Rating:offoffoffoffoff  (0 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Ellen Messmer Ellen Messmer is a contributor to the International Data Group (IDG) News Service, which publishes global technology stories from bureaus around the world to more than 300 publications in more than 60 countries.

Related Content

Data-breach costs rising, study finds
Data-breach costs rising, study findsAn examination of 43 companies reveals that the cost of coping with a security problem went up to US$202 per record last year, up 2.5 per cent from 2007
PIPEDA changes could boost IT security budgets
PIPEDA changes could boost IT security budgetsMandatory breach notification may be on the way for Canadian businesses before the year is up, which means IT and security professionals will need to act fast to get their policies and safeguards up to snuff. A consultant offers his advice
IT consultants jump on the green bandwagon
IT consultants jump on the green bandwagonResearch organizations have started weighing in with advice for CIOs, including brief podcasts, market research, and weighty practical guides to cutting data center power costs and emissions
VIDEO: Users discuss their print strategies at An Event for Change
after a series of lectures and discussions on environ
blog comments powered by Disqus