Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Study & Research - Poll Of IT Security Pros Suggests Gaps In UK Cyber Defence
Study & Research

Poll Of IT Security Pros Suggests Gaps In UK Cyber Defence

ISBuzz TeamBy ISBuzz TeamSeptember 28, 2022Updated:September 28, 20224 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Malicious PyPI Package Found Posing as SentinelOne SDK in recent Hack Trend
Malicious PyPI Package Found Posing as SentinelOne SDK in recent Hack Trend
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

iStorage calls for mass adoption of encryption to help stem the rise of cyber crime and limit the impact of ransomware following snapshot survey at Infosec 2022

A recent poll to take a snapshot of opinion and behaviour of over 100 IT security professionals reveals a stark contrast in attitudes versus action when it comes to limiting the impact of cybercrime. As cyber-related criminality continues to make headlines around the world, the poll, conducted by iStorage, a trusted global leader of hardware encrypted portable data storage & cloud encryption devices, looked at three key areas around remote working, use of cloud and ransomware.

Nearly 9 in 10 work remotely but too few encrypt the data

86% of polled IT security professionals said they took their device away from the office to work remotely. However, best practice when it comes to data backup and security is in short supply with approximately one third reporting they do not back-up data to a data storage device (29%), and of the 71% who said they do back-up data to a data storage device, 48% said that data was not encrypted.

·       The UK’s National Cyber Security Centre advocates a 3-2-1 back-up strategy to protect against cyber attack – over half (56%) of IT security professionals don’t follow it.

CEO of iStorage, John Michael, explains: “To minimise risk and maximise protection it’s essential to consider encrypting files both in transit and at rest, so that if a device does fall into the wrong hands, the data it contains cannot be accessed. We hear stories of business executives losing data storage devices containing personal and confidential data every day, and in most cases, that data is not encrypted. We need our IT community to be setting a model example by encrypting data.”

Another recent study by Verizon found that with the increase in hours, locations and devices that employees are using, there has been a corresponding increase in vulnerability for companies with security teams facing an uphill battle as the number of remote workers increases. By encrypting data, businesses can enhance the security of their files as well as any communications that take place between client apps and servers.

More than 9 in 10 now view ransomware as a major concern

91% of IT security professionals who were polled agreed that the threat of ransomware was a cause for concern in their organisation. The latest threat landscape report by ENISA, the European Union Agency for Cybersecurity, also warns of a surge in cyber criminality, and details how ransomware has become the prime cybersecurity threat facing organisations today, much of it driven by the monetisation of attacks. 

Cyber criminals trigger a ransomware attack by secretly compromising networks, often via phishing attacks, infiltrating cloud services or exploiting vulnerabilities. The iStorage poll revealed that nearly half (47%) of IT security professionals assumed cloud providers are responsible for data in the cloud. In addition, 34% do not encrypt data before sharing with colleagues – such as over a cloud file-transfer service – when working remotely.

However, cloud providers include a ‘Limitations of Liability’ clause which places data-security responsibility with the cloud user. Since the cloud user is liable, organisations must establish their own security measures to ensure data protection and privacy. One vital step is encryption.

In order to ensure the data is kept confidential even if the cloud account is hacked via, for example, a phishing email, the user should retain full control of the encryption key. Removing the encryption key from the cloud and physically storing it within a PIN-authenticated external USB module will allow users to access data stored in the cloud in the most secure way possible, while also being able to securely encrypt information from a local computer, a network drive, or sent via email or file-sharing service.

John Michael concludes, “Ransomware is the most significant cybersecurity threat facing organisations today as increasingly professional and sophisticated cyber criminals skilfully follow the money in order to maximise the profit from illicit campaigns. We cannot afford to be complacent. Encryption isn’t just for the likes of the secret services, it should be used now as part of business modus operandi and is a relatively simple measure to reduce the impact of cyber crime which continues to cost global economies billions.”

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Visual data is the blind spot in enterprise security: that’s about to change

May 4, 20267 Mins Read

Making stolen data worthless: why security must start with the data

March 30, 20265 Mins Read

Meta’s Smart Glasses Privacy Scandal Expands After Sama Credentials Found on the Dark Web

March 10, 20264 Mins Read
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}