SHARE
Follow this article on Twitter Facebook LinkedIn Bookmark and Share
Home >> Security

Cost of IT security breaches jumps 97 per cent

Cost of IT security breaches jumps 97 per cent

By:  Jennifer Kavur  On: 29 Sep 2009 For: ComputerWorld Canada Creator

Results from a joint Rotman-Telus study on Canadian IT security practices show major differences in the average annual losses organizations suffer depending on whether they are public companies, private or within the public sector

IT security breaches at Canadian firms account for an average annual loss of $834,149, a figure that reflects a 97 per cent increase from the $423,469 average cost reported in 2008, according to a national study released Tuesday.

The Rotman School of Management at the University of Toronto and Telus Corp. released the results of their 2009 Joint Study on Canadian IT Security Practices during a briefing to executives at the Toronto Board of Trade.

The study, which looks at the state of IT security at Canadian organizations with over 100 employees, is the second in a series of annual studies Rotman and Telus plan to develop in subsequent years.

The results are based on over 600 responses from Canadian IT security professionals and nine focus groups across Canada. A full copy of the 80-page report is available at rotman.utoronto.ca/securitystudy. A benchmarking tool is available at telus.com/securitystudy.

The average number of breaches have also raised from 3.0 in 2008 to 11.3 in 2009. In both categories, security breaches increased most for government as opposed to private and publicly traded organizations.

“Government organizations more than tripled their average annual cost of breaches to $1 million in 2009, up from $321,000 in 2008. Private companies more than doubled their cost of breaches to $807,000, up from $294,000 in 2008. Publicly traded companies reported a moderate increase of only six per cent year-over-year,” states the report.

Dr. Walid Hejazi, professor of business economics at the Rotman School of Management, said government “is a natural target” for security breaches.

Governments are custodians of confidential information and breaches that increase during economic downturns tend to be related to identity theft, he said. “But it’s really important to note that per dollar, government organizations are performing quite effectively,” said Hejazi.

The average cost per breach has decreased significantly across all organizations, according to the study. “For example, publicly traded organizations decreased breach costs to $75,014 in 2009, down from $213,926 in 2008,” states the report.


Sign up for our Newsletters












Print |  Views: 5012   |   Rating:onononoffoff  (2 votes)
Rate this article on a scale of
1 to 5 stars,5 being the best.




Jennifer Kavur Jennifer Kavur Jennifer Kavur was a senior writer for ComputerWorld Canada from 2008 to 2010.

Related Content

One in five Canuck firms report security violations
One in five Canuck firms report security violationsAccording to a new survey by CA Canada, enterprise data breaches caused by security attacks have doubled since 2006. Info-Tech’s James Quin notes not all breaches necessarily cause harm but the feds should mandate encryption.
Canadian, American firms don't see employees as huge security threat
Canadian, American firms don't see employees as huge security threat Despite the media hype over internal security breaches, it seems Canadian as well as American firms trust their employees
THE BIG CHILL
THE BIG CHILLNewton's Third Law works in the physical world, but politics is different. When citizens demand swift action, the reaction to every action is not equal. In a crisis, Newton's theorem could be restated as: "Every action results in bureaucratic overreaction, in direct proportion to the emotional impact of the headlines." The U.S. Sarbanes-Oxley legislation, or SOX, is a case in point.
Glory days for IT sector in Canada, claims report
 by joaquim p. menezes -a report published today is upbeat about the it career market in canada.  the demand for qualified it professionals has reached a 26 year high in canada, proclaims cnc global's quarterly report: "it staffing requirements in the canadian market – q2, 2007.”   
Copyright protesters got Industry Minister Jim Prentice's attention: now what?
the week of december 10, just prior to parliament going on winter recess, a bill entitled “an act to amend the copyright act” was added to the notice paper. earlier in december, michael geist had created a facebook group called “fai
SecTor 2008 – Security Education Conference - Unique Training Coming to Canada
ok. you likely noticed that i blog mostly about the latest happenings in security. it fascinates me, and frankly i think it’s very important. canada has a rather limited number of security events and most of the content we get here is based out of the united states. guess what? canada is different. we have a different culture and different laws, but we’re attached to the same in

Comments (2)

erika skula
by erika skula 10/5/2009 11:46:09 AM

Great article! C-suites may think twice when assessing IT security budgets when they consider the possible losses due to breaches in security.

erika skula
by erika skula 10/5/2009 11:46:30 AM

Great article! C-suites may think twice when assessing IT security budgets when they consider the possible losses due to breaches in security.

Name: (required) eMail: (optional)

Your email address will not appear online and will be used only if the editor wishes to contact you personally for additional comments.