Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Business > RISE IN CYBERATTACKS HIGHLIGHTS THE IMPORTANCE OF A SOLID BUSINESS CONTINUITY PLAN
    Business

    RISE IN CYBERATTACKS HIGHLIGHTS THE IMPORTANCE OF A SOLID BUSINESS CONTINUITY PLAN

    RISE IN CYBERATTACKS HIGHLIGHTS THE IMPORTANCE OF A SOLID BUSINESS CONTINUITY PLAN

    Published by Gbaf News

    Posted on April 27, 2017

    Featured image for article about Business

    Robert Rutherford, CEO of the business and technical consultancy QuoStar

    It’s no secret that the number of cyberattacks on UK businesses is increasing year on year. However, even though this trend can be seen across many different industries, many firms are still unprepared when it comes to cybersecurity.

    With the number of Distributed Denial of Service (DDoS) attacks on the rise, it should be clear to all businesses that it’s time start to implementing the strategies that are needed to keep firms safe from cybercriminals.

    After all, an attack on a company’s IT infrastructure can create total chaos for businesses of all sizes. As such, when these incidents do occur, it’s vital that firms have the resources available to respond quickly and with as little disruption as possible. 

    Prevention is better than a cure 

    For companies looking to protect themselves against a cyberattack, a good starting point would be the ISO 27001 standard, which is a recognised industry benchmark for managing IT security. Implementing this standard is a great way to determine what controls could be used to prevent cyberattacks and continually improve a firm’s information security.

    Businesses should also consider creating an Information Classification Policy (ICP) to ensure that any sensitive information is handled according to the risk it poses to the organization. Under this model, firms can assign a risk level to any sensitive information, so that they can clearly set-out the methods and appropriate resources for handling this data, as well as any encryption, storage or transition requirements.

    Policies like these can go some way towards boosting security, but they are not enough; employees will also need to be educated on how to spot, block and report suspicious activity in order to prevent cyber criminals from accessing an organisation’s network. By responding to a seemingly innocent phishing email, or by falling for a convincing phone call, employees can unintentionally provide hackers with all the information they need to access an organisation’s data.

    With this in mind, employees at the very least should be taught to be on the alert for any activity – even when it appears legitimate – that asks for login details or other private information. Hosting regular seminars and workshops to raise awareness of internal threats is therefore also vital, as employees must be able to recognise red flags and understand when to inform management of any suspicious activity.

    Limiting the damage of a breach

    Even with the best training and IT security measures in the world, cybercrime will continue to impact businesses across the globe. As such, preventing a breach is only half the story: businesses also need to consider how they will keep the business operational in the event of an attack, as the impact of a breach can extend beyond IT.

    There are ways to combat this risk. Having a strong business continuity plan will enable firms to take immediate action if their IT system has been compromised.

    Cybersecurity and business continuity are actually two sides of the same coin; by working in tandem, these strategies can help to mitigate both the cost and impact of data breaches. There are three key elements to consider when implementing this kind of plan: resilience, recovery and response.

    To guarantee resilience in the face of an attack, firms will need to ensure that their critical business functions will be largely unaffected by such an intrusion; this is where a strong ICP can help. Secondly, they will need to have arrangements in place to recover and restore less critical business functions as quickly as possible. Lastly and most importantly, firms will need to establish the capability and readiness of their employees to tackle and cope effectively with an unexpected attack.

    Needless to say, all businesses need to have a robust cybersecurity plan in place to prevent attacks and protect their data and systems, but they must also have a plan they can follow if an attack – and associated outage – does occur. Any failures in this regard can be incredibly costly, not only financially, but also in terms of the damage they can cause to a company’s reputation.

    Robert Rutherford, CEO of the business and technical consultancy QuoStar

    It’s no secret that the number of cyberattacks on UK businesses is increasing year on year. However, even though this trend can be seen across many different industries, many firms are still unprepared when it comes to cybersecurity.

    With the number of Distributed Denial of Service (DDoS) attacks on the rise, it should be clear to all businesses that it’s time start to implementing the strategies that are needed to keep firms safe from cybercriminals.

    After all, an attack on a company’s IT infrastructure can create total chaos for businesses of all sizes. As such, when these incidents do occur, it’s vital that firms have the resources available to respond quickly and with as little disruption as possible. 

    Prevention is better than a cure 

    For companies looking to protect themselves against a cyberattack, a good starting point would be the ISO 27001 standard, which is a recognised industry benchmark for managing IT security. Implementing this standard is a great way to determine what controls could be used to prevent cyberattacks and continually improve a firm’s information security.

    Businesses should also consider creating an Information Classification Policy (ICP) to ensure that any sensitive information is handled according to the risk it poses to the organization. Under this model, firms can assign a risk level to any sensitive information, so that they can clearly set-out the methods and appropriate resources for handling this data, as well as any encryption, storage or transition requirements.

    Policies like these can go some way towards boosting security, but they are not enough; employees will also need to be educated on how to spot, block and report suspicious activity in order to prevent cyber criminals from accessing an organisation’s network. By responding to a seemingly innocent phishing email, or by falling for a convincing phone call, employees can unintentionally provide hackers with all the information they need to access an organisation’s data.

    With this in mind, employees at the very least should be taught to be on the alert for any activity – even when it appears legitimate – that asks for login details or other private information. Hosting regular seminars and workshops to raise awareness of internal threats is therefore also vital, as employees must be able to recognise red flags and understand when to inform management of any suspicious activity.

    Limiting the damage of a breach

    Even with the best training and IT security measures in the world, cybercrime will continue to impact businesses across the globe. As such, preventing a breach is only half the story: businesses also need to consider how they will keep the business operational in the event of an attack, as the impact of a breach can extend beyond IT.

    There are ways to combat this risk. Having a strong business continuity plan will enable firms to take immediate action if their IT system has been compromised.

    Cybersecurity and business continuity are actually two sides of the same coin; by working in tandem, these strategies can help to mitigate both the cost and impact of data breaches. There are three key elements to consider when implementing this kind of plan: resilience, recovery and response.

    To guarantee resilience in the face of an attack, firms will need to ensure that their critical business functions will be largely unaffected by such an intrusion; this is where a strong ICP can help. Secondly, they will need to have arrangements in place to recover and restore less critical business functions as quickly as possible. Lastly and most importantly, firms will need to establish the capability and readiness of their employees to tackle and cope effectively with an unexpected attack.

    Needless to say, all businesses need to have a robust cybersecurity plan in place to prevent attacks and protect their data and systems, but they must also have a plan they can follow if an attack – and associated outage – does occur. Any failures in this regard can be incredibly costly, not only financially, but also in terms of the damage they can cause to a company’s reputation.

    Related Posts
    Five questions to ask before stepping into Employee Ownership
    Five questions to ask before stepping into Employee Ownership
    Cybersecurity as a Profit Engine: Turning Financial Services Security into Measurable Business Value
    Cybersecurity as a Profit Engine: Turning Financial Services Security into Measurable Business Value
    How Investability Helps Companies Navigate Transformational Times
    How Investability Helps Companies Navigate Transformational Times
    88% of UK and US organisations concerned about state-sponsored cyber attacks as national threat levels surge, IO research reveals
    88% of UK and US organisations concerned about state-sponsored cyber attacks as national threat levels surge, IO research reveals
    One in three SME leaders do not fully understand cash flow, despite 82% facing cash flow problems
    One in three SME leaders do not fully understand cash flow, despite 82% facing cash flow problems
    Inside the Company that Predicted the Remote Work Mega-Trend Before It Became Mainstream
    Inside the Company that Predicted the Remote Work Mega-Trend Before It Became Mainstream
    SEO Consultant Adrian Czarnoleski on How to Increase Business Value Before Exit
    SEO Consultant Adrian Czarnoleski on How to Increase Business Value Before Exit
    No SOC 2, No Deal: Why You’re Already Losing Clients - and What You Can Do About It
    No SOC 2, No Deal: Why You’re Already Losing Clients - and What You Can Do About It
    Jose Tolosa Guides Organizations Forward with Clarity, Purpose, and Integrity
    Jose Tolosa Guides Organizations Forward with Clarity, Purpose, and Integrity
    Reducing Freight Costs to Drive Global Trade Expansion
    Reducing Freight Costs to Drive Global Trade Expansion
    The Psychology of Music in the Modern Workplace
    The Psychology of Music in the Modern Workplace
    Revealed: Low-Cost/No-Cost Marketing Hacks For Results Oriented Businesses
    Revealed: Low-Cost/No-Cost Marketing Hacks For Results Oriented Businesses

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    More from Business

    Explore more articles in the Business category

    Finance teams still stuck in spreadsheets as manual processes stall digital transformation

    Finance teams still stuck in spreadsheets as manual processes stall digital transformation

    The Future of Remote & Hybrid Leadership: Leading With Data-Driven Foresight

    The Future of Remote & Hybrid Leadership: Leading With Data-Driven Foresight

    2025-2030: The Next Technological Innovations for Business

    2025-2030: The Next Technological Innovations for Business

    The CFO’s New Playbook: 5 Ways AI Is Redefining Finance with Insights from Rishi Oberoi

    The CFO’s New Playbook: 5 Ways AI Is Redefining Finance with Insights from Rishi Oberoi

    Revolutionizing Payments: Secure, Scalable, Sovereign

    Revolutionizing Payments: Secure, Scalable, Sovereign

    Why Trademark Abuse in Paid Search Is a Growing Risk for Financial Institutions

    Why Trademark Abuse in Paid Search Is a Growing Risk for Financial Institutions

    E-commerce Customer Service: Tips

    E-commerce Customer Service: Tips

    When to Automate Your Warehouse: The Tipping Point for Operations Growth

    When to Automate Your Warehouse: The Tipping Point for Operations Growth

    Hurt at Work? 5 Financial Facts You Need to Know

    Hurt at Work? 5 Financial Facts You Need to Know

    Against the Odds: Resilience in Consumer Subsectors Offers Prime Opportunities for Investors

    Against the Odds: Resilience in Consumer Subsectors Offers Prime Opportunities for Investors

    Empower Your Workforce With Financial Wellness This Labor Day

    Empower Your Workforce With Financial Wellness This Labor Day

    Build a brand that stands out with five simple strategies, from defining your UVP to using storytelling and building loyalty. Find out more.

    Build a brand that stands out with five simple strategies, from defining your UVP to using storytelling and building loyalty. Find out more.

    View All Business Posts
    Previous Business PostHOLDING ONTO AND RECRUITING TALENT POST-BREXIT
    Next Business PostWHY THE FCA’S IT OUTAGE SHOULD BE A CALL TO ACTION FOR THE INSURANCE INDUSTRY