Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Study & Research - Business Leaders Revealed As Biggest Risk To Information Confidentiality And IP Integrity In Mid-Market Companies
Study & Research

Business Leaders Revealed As Biggest Risk To Information Confidentiality And IP Integrity In Mid-Market Companies

ISBuzz TeamBy ISBuzz TeamSeptember 8, 2016Updated:September 8, 20164 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

Research finds business leaders put reputation and long-term success at risk by not following protocol

London, UK. Although they handle their organisation’s most confidential and sensitive information, mid-market MDs and CxOs could be the weakest link when it comes to safeguarding that information. Research into information management and security practices in the mid-market commissioned by leading storage and information management company Iron Mountain (NYSE: IRM) suggests that business leaders are the worst offenders when it comes to mismanaging sensitive business information.

Over half (57%) the CxOs/MDs questioned say they have left business-sensitive or confidential information on the printer for all to see: just under half (49%) have used a personal email account to send sensitive business information; 40% have sent information over an insecure wireless network; 43% have disposed of documents in a potentially insecure bin, and 39% admit to having lost business information in a public place. In comparison to employees across all levels of mid-market companies, CxOs topped the list of information-management sinners in all of these instances.

According to the 2016 Edelman Trust Barometer report[1], which questioned 33,000 members of the general public in 28 countries, trust in CEOs around the globe has risen 8 per cent since 2015 to 49 per cent. This trust could, however, be misplaced when it comes to CxOs’ ability to safeguard company information. Indeed, when it comes to following processes designed to protect the integrity of information, ensure it is managed securely and remains compliant with company policies and/or legal requirements, one in five (21%) CxOs responding to the Iron Mountain research say the find the processes too complex and look for a workaround. A further one in seven (14%) don’t follow company policies governing information security because they find the policies too complicated, while 6% say they are completely unaware of any policies in this area.

The research shows that facilities and office managers come a close second to CxOs in their data handling bad habits, with over half (56%) admitting to taking sensitive or confidential information out of the workplace and 48% having sent such information to the wrong recipient.

At the other end of the scale, administrative staff rate well in comparison, but are still guilty of mismanaging information. Just under a third (29%) have left confidential information on the printer, one in five (21%) admit to having mislaid data or sending it to the wrong person and 15% admit to losing company documents in a public place.

Commenting on the research, Elizabeth Bramwell, Commercial Director at Iron Mountain UK, said: “Our research shows that business leaders in the mid-market are more likely to put sensitive information at risk than any other employee. They tend to bypass the very protocols designed to keep information secure. Given the potential consequences, this is concerning. The financial penalties for companies who fail to meet data handling and security obligations are getting more severe. But getting it right is not just about avoiding fines; the reputational damage associated with a data breach can erode customer loyalty and impact the bottom line. With the stakes so high, companies need to put the policies and processes in place to support good information governance. On its own this may not be enough: companies must promote behaviours that protect sensitive company information. For many, this will require a cultural shift, with the example set at the very top. Unfortunately, it would appear that many mid-market companies are falling woefully short of what is required.”

About the research

The research was undertaken for Iron Mountain by Opinion Matters, who surveyed a total of 4,006 workers in companies with between 250 – 3,000 employees (250-5,000 in North America) across the UK, France, Germany, The Netherlands, Belgium, Spain and North America.

Respondents were drawn from the manufacturing, engineering, insurance, financial services, legal, pharmaceutical and energy sectors, with job roles in HR, legal, IT, MD/CXOs, procurement, sales, marketing, facilities / office managers, admin including PAs and secretarial roles, and people deemed responsible for managing information. The research was conducted via online interviews and undertaken in April and May 2016.

[su_box title=”About Iron Mountain” style=”noise” box_color=”#336588″][short_info id=’60461′ desc=”true” all=”false”][/su_box]

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Understanding Cloud Access Security Brokers (CASB)

March 28, 202410 Mins Read

Decoding Cloud Security Posture Management (CSPM)

March 28, 202411 Mins Read

Master Cloud Compliance Tools: Achieve Regulatory Success

March 28, 202411 Mins Read
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}