Security Management
Published on Security Management (http://www.securitymanagement.com)
Forrester Study Highlights Insider Risks
By John Wagley
Created 09/25/2012 - 17:09



    
Wrap-Up?: 
No
Weight: 
0
Lead Headline?: 
Yes
Date: 
09/25/2012
By Line: 
By John Wagley
Teaser: 

Cyber attacks from external sources often gain attention, but most data loss incidents are caused by events such as employees’ mishandling of data, according to a new Forrester report.

Cyber attacks from external sources often gain attention, but most data loss incidents are caused by events such as employees’ mishandling of data, according to a new Forrester report [1]. Companies are also considerably more likely to lose data through the loss or theft of laptops and other devices, the report found.

Thirty-one percent of the more than 7,000 employees surveyed cited loss or theft as the reason for a breach. Twenty-seven percent cited inadvertent misuse by an employee. This was followed by external attacks, named 25 percent of the time.

Personally identifiable information (PII) and intellectual property were the types of data that was most likely to have been potentially breached. PII and intellectual property were named by 22 percent and 19 percent of respondents, respectively. Payment and credit card data was named 3 percent of the time.

The increasing popularity of devices such as smart phones, in addition to the use of consumer-oriented applications, are a significant security concern, the study notes. It also found that, though most employers have security policies in place regarding how such devices and applications are used, they either don’t have the tools to support policies or their tools are insufficient to do so. The study also found that just 35 percent of respondents said their companies required the use of passwords on devices.

Related Resources: 

Comments


Security Management is the award-winning publication of ASIS International, the preeminent international
organization for security professionals, with more than 38,000 members worldwide.

ASIS International, Inc. Worldwide Headquarters, 1625 Prince Street, Alexandria, Virginia 22314-2818 U.S.A.
703.519.6200 | fax 703.519.6299 | www.asisonline.org

ASIS

© 2013 Security Management
This site is protected by copyright and trade mark laws under U.S. and International law.
No part of this work may be reproduced without the written permission of Security Management.

Powered by: Phase2 Technology

Source URL: http://www.securitymanagement.com/news/forrester-study-highlights-insider-risks-0010451

Links:
[1] http://www.forrester.com/Understand+The+State+Of+Data+Security+And+Privacy+2012+To+2013/quickscan/-/E-RES82021