Organizations Increase Cybersecurity Budgets as Threats Soar: Moody’s Survey

Date:

Organizations are significantly increasing their cybersecurity budgets as cyber threats continue to soar, according to a recent survey conducted by Moody’s, a major credit rating agency. The survey gathered data from over 1,700 issuers and revealed that organizations are now spending an average of 70% more on information security than before.

This substantial growth in cybersecurity budgets is not limited to the average. Large issuers have witnessed even more significant increases, with some experiencing up to 100% growth in their cybersecurity spending. Moreover, cybersecurity now constitutes a larger portion of the technology budget, accounting for 8% of total technology budgets compared to the previous 5%.

The surge in cybersecurity spending is largely driven by the rise of remote work and the expansion of companies’ digital footprints. With the increase in remote work, organizations have faced additional cybersecurity challenges and risks. As a result, they have recognized the need for stronger cybersecurity measures and have allocated more resources accordingly.

However, Moody’s warned that this heightened level of spending may have already reached its peak. Economic conditions have led to budget restrictions and delayed purchasing decisions, impacting cybersecurity companies and resulting in layoffs. Despite these challenges, organizations continue to prioritize cybersecurity, recognizing it as a necessity rather than a luxury.

As the cost of cybersecurity insurance also rises, organizations are adapting to the changing landscape. Insurance premiums have grown by a median of 50% across the board between 2020 and 2022. This increase is primarily attributed to the spike in cyber incidents following the mass shift to remote work during lockdowns. Individuals working from home often have weaker cybersecurity protections, making comprehensive insurance coverage essential.

See also  Tech Startups Will Endure Difficult Times Just Like Their Customers

The report highlighted that some industries have experienced premium hikes of over 300% in 2021. Sectors such as education, healthcare, construction, and manufacturing faced significant increases. Despite higher costs, organizations remain committed to maintaining their cyber insurance coverage. Only 3% of issuers plan to reduce their cyber coverage in 2023, while the majority (82%) aim to maintain the same level of coverage, and 16% plan to increase it.

The rising costs of cybersecurity and insurance have put additional strain on cybersecurity budgets. This strain can discourage organizations from implementing more advanced protective measures. The survey indicates that although most organizations follow basic cybersecurity practices, such as testing and updating security systems and having an incident response plan, they often lack advanced measures.

For example, only 17% of regional and local governments conduct red or purple team attacks, compared to 75% in the structured finance sector. The report also highlighted that compensating external reports of security issues affecting the company’s products or operations is a rarely used advanced measure, with only 18% of organizations implementing it.

Moody’s acknowledged that their survey did not account for the impact of large language AI models, which gained popularity last year, in assessing cyber risks. However, the credit rating agency anticipates that AI will play a significant role in both perpetuating cybercrime and preventing it. Advanced cybercriminals and state-backed actors are expected to develop cutting-edge generative AI hacking tools, which may be shared with lower-level actors, increasing the sophistication of attacks. The report emphasizes the need for medium and small organizations to strengthen their cyber defenses to counter these emerging threats.

See also  AI Language Models Transforming Academia: ChatGPT and Other Tools Shaping the Future

In conclusion, organizations are ramping up their cybersecurity budgets amid the growing threat landscape. The increase in cybersecurity spending reflects the need to protect against evolving cyber risks, particularly in the context of remote work and digital expansion. However, economic conditions and rising insurance costs may impact future spending levels. It is crucial for organizations to continuously adapt and implement advanced cybersecurity measures to stay ahead of cybercriminals leveraging AI-driven tools.

Frequently Asked Questions (FAQs) Related to the Above News

Why are organizations increasing their cybersecurity budgets?

Organizations are increasing their cybersecurity budgets due to the soaring number of cyber threats and the need to protect against them. The rise of remote work and digital expansion has led to additional cybersecurity challenges and risks, prompting organizations to allocate more resources to strengthen their security measures.

How much are organizations spending on cybersecurity compared to before?

According to the survey conducted by Moody's, organizations are now spending an average of 70% more on information security than before. Large issuers have witnessed even more significant increases, with some experiencing up to 100% growth in their cybersecurity spending.

What percentage of the technology budget is allocated to cybersecurity?

Cybersecurity now constitutes 8% of total technology budgets, compared to the previous allocation of 5%.

What is driving the surge in cybersecurity spending?

The surge in cybersecurity spending is largely driven by the rise of remote work and the expansion of companies' digital footprints. With the increase in remote work, organizations have faced additional cybersecurity challenges and risks, leading them to recognize the need for stronger cybersecurity measures and allocate more resources accordingly.

Has the increase in cybersecurity spending reached its peak?

Moody's warns that the heightened level of spending may have already reached its peak due to budget restrictions and delayed purchasing decisions caused by economic conditions. However, organizations continue to prioritize cybersecurity, recognizing it as a necessity rather than a luxury.

How have rising insurance costs impacted organizations?

Rising insurance costs have put additional strain on cybersecurity budgets. The cost of cybersecurity insurance premiums has grown by a median of 50% across the board between 2020 and 2022. As a result, organizations are adapting to the changing landscape and recognizing the need for comprehensive insurance coverage to protect against cyber incidents.

Which industries have experienced significant increases in insurance premiums?

Sectors such as education, healthcare, construction, and manufacturing have faced significant increases in insurance premiums, with some industries experiencing premium hikes of over 300% in 2021.

Are organizations maintaining their cyber insurance coverage?

Yes, despite higher costs, the majority of organizations (82%) aim to maintain the same level of cyber insurance coverage, while 16% plan to increase it. Only a small percentage (3%) plan to reduce their coverage in 2023.

What advanced cybersecurity measures are organizations lacking?

The survey indicates that while most organizations follow basic cybersecurity practices such as testing and updating security systems and having an incident response plan, they often lack advanced measures. For example, only 17% of regional and local governments conduct red or purple team attacks, and only 18% of organizations compensate external reports of security issues affecting their products or operations.

How does Moody's anticipate AI's role in cybersecurity?

Moody's anticipates that AI will play a significant role in both perpetuating cybercrime and preventing it. Advanced cybercriminals and state-backed actors are expected to develop cutting-edge generative AI hacking tools, potentially increasing the sophistication of attacks. This emphasizes the need for medium and small organizations to strengthen their cyber defenses against emerging AI-driven threats.

What should organizations do to stay ahead of cybercriminals?

Organizations should continuously adapt and implement advanced cybersecurity measures to stay ahead of cybercriminals leveraging AI-driven tools. It is crucial to prioritize cybersecurity and invest in robust defense strategies to protect against evolving cyber risks.

Please note that the FAQs provided on this page are based on the news article published. While we strive to provide accurate and up-to-date information, it is always recommended to consult relevant authorities or professionals before making any decisions or taking action based on the FAQs or the news article.

Share post:

Subscribe

Popular

More like this
Related

How to Use Netflix’s Offline Viewing Feature: A Comprehensive Guide

Learn how to use Netflix's offline viewing feature with our comprehensive guide. Download your favorite movies and shows for viewing without an internet connection!

GMind AI 2.0 Launch Boosts Nigerian Digital Literacy

GMind AI 2.0 launch in Nigeria boosts digital literacy & advocates for government support to empower citizens in AI development.

UPS Workers Fight Against Job Cuts and Automation Threats

UPS workers fight job cuts and automation threats. Join the resistance against layoffs and demand job security. Unite for fair working conditions.

China Aims to Reign as Global Tech Powerhouse, Investing in Key Innovations & Industries

China investing heavily in cutting-edge technologies like humanoid robots, 6G, & more to become global tech powerhouse.