- Original Poster
- #1
Would anyone know of the barriers preventing businesses to be 'cyber ready'
Are businesses actually prepared for attacks?
Are businesses actually prepared for attacks?
Entirely depends on the nature of the business. But, typically, most normal small to medium businesses use third party software which have the resources to maintain those problems (as a hypothetical example, using Stripe as your payment processor). Bigger companies or platforms which are more inclined to risk (fin-tech, data companies, gambling platforms) will normally have a team/freelancer ready in the event of an attack and will continuously update its platform to prevent such an event.
Barriers?
Wasn't aware there were barriers preventing businesses buying in software and hardware to deal with what they perceive as the risks their business is likely to need protection from.
Except government limits on who can have automated lethal weaponry fitted inside their buildings.
Mine gets attached everyday. Was pretty simple to protect myself.Are businesses actually prepared for attacks?
In relation to your response, would you agree that SMEs associate cyber security to be solely an IT/technical issue rather than everyone's responsibility in the organisation?
To get any sort of sensible response you will have to ask more specific questions.
Of 5.6 million business in the UK (2018) 77% were non employing. So, it doesn't matter if cyber security is considered IT/Technical or not, the risk assessment and the solutions are all at the door of the business owner.
If a business uses Office 365 or G-Suite the cyber security risk can be minimised just by using the tools available in the platform.
Why do you ask?
When I say barriers, I am referring to the obstacles preventing organisations from undertaking cybersecurity strategies. For example, would you agree that the cost of investing in cybersecurity is a major barrier?
I am a PhD researcher focusing on evaluating the cybersecurity readiness of UK SMEs. In order to achieve this, I am trying to build a general consensus of the current levels of preparedness so I can be in a position to offer solutions to improve the levels of cyber readiness. I am in my 2nd year so I am aiming to generate leads for potential interviewees to assist in my research.
My wife knows how to log in to the PC but she isn’t really a threat. It’s hackers from Russia who seem more determined.
The window cleaner said he dropped his phone last week but he has a decent case so he was protected from internal threats.
To get any sort of sensible response you will have to ask more specific questions.
Of 5.6 million business in the UK (2018) 77% were non employing. So, it doesn't matter if cyber security is considered IT/Technical or not, the risk assessment and the solutions are all at the door of the business owner.
If a business uses Office 365 or G-Suite the cyber security risk can be minimised just by using the tools available in the platform.
Why do you ask?
So you plan to pitch some sort of service if people tell your they are unprepared.
But as Chris suggested, most businesses don’t need cyber security. Many use a range of online tools or a password protected computer. They won’t need what you are offering.
Even sole traders can have an online presence. Anyone who is connected to the internet is at risk.
I tried that. But like you said, it is difficult to generate participants to discuss a sensitive topic
And many people do know they are at risk and at least use software to reduce the risk.
Your local shop owner has far more problems to worry about than just the one your research focuses on.
Like I previously mentioned, anyone who is connected to the internet is at risk. Whether they acknowledge this or not is another matter. A lot of SMEs feel that they aren't as vulnerable or their information is not as valuable. But they are wrong, as latest cyber breach reports demonstrate SMEs are equally vulnerable if not at greater risk of being attacked.
If businesses are seeking external support or devising their own risk assessments, then great! All I am saying is that there is always room for improvement.
The reported cyber breaches tend to be large organisations with big datasets.A lot of SMEs feel that they aren't as vulnerable or their information is not as valuable. But they are wrong, as latest cyber breach reports demonstrate SMEs are equally vulnerable if not at greater risk of being attacked.
No not a service. As a PhD is an academic work, I would be proposing a theory or a holistic framework for businesses on how they can enhance their cyber readiness.