Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Cyber incidents reported to the FCA up over 50%

Security

Cyber incidents reported to the FCA up over 50%

The pioneer of Breach and Attack Simulation (BAS), Picus Security, today released a report revealing a large rise in cyber incidents reported to the UK's Financial Conduct Authority (FCA).

Image copyright Shutterstock

The report, based on FCA data obtained via a Freedom of Information (FOI) request, reveals that:

  • The FCA received 116 reports of material cyber security incidents in 2021, up from 76 in 2020 (an increase of 52%).
  • 65% of cyber incidents reported in 2021 (75) were due to cyber-attacks.
  • Approximately one third of incident reports (37) contained notifications where the confidentiality of company or personal data may have been compromised or breached.
  • One in five incidents reported to the FCA in 2021 involved ransomware.
  • 21 cyber incidents were reported to the FCA in March 2021 – the most submitted in any month that year and coinciding with the disclosure of critical vulnerabilities in Microsoft Exchange Server.

"Financial services firms are amongst the best prepared and most highly capable organisations at detecting and responding to cyber incidents," said Dr Suleyman Ozarslan, Picus Security co-founder and VP of Picus Labs. "Yet, despite investing heavily in security and data protection, it's clear that many continue to experience challenges in these areas.

Advertisement
PTC rectangle

"The large rise in cyber incidents reported to the FCA in 2021 is a concerning trend and should serve as an important reminder to all firms about the need to make ongoing improvements in all areas of security. This is necessary to not only mitigate the risks posed by external threats but also those which arise due to IT failures and human error."

Digital transformation in the financial services sector, including widespread adoption of remote working, means that many firms over the last few years have had to adjust their security and data protection practices. On top of this, they have had to contend with being a target of Advanced Persistent Threats groups and ransomware operators, as well as manage the risks of critical vulnerabilities in widely used systems such as Microsoft Exchange Server.

"Defending financial institutions against all the threats they face remains a tough challenge, made even harder by the growing attack surface," Ozarslan added. "Only by validating security capabilities on a continuous basis can firms hope to measure their threat readiness more accurately and swiftly close the gaps needed to take their operational resilience to the next level."

 

Advertisement
Security & Policing Rectangle

 

 

Advertisement
General Atomics LB
Cranfield appoints Prof Mark Westwood as Director of Defence and Security

Defence Security

Cranfield appoints Prof Mark Westwood as Director of Defence and Security

13 February 2026

Professor Mark Westwood has been appointed the new Director of Theme for Defence and Security at Cranfield University, a post he will take up on 1st March 2026.

UK to lead multinational cyber defence exercise from Singapore

Defence Security Events

UK to lead multinational cyber defence exercise from Singapore

13 February 2026

The UK will lead the multinational defensive cyber exercise Defence Cyber Marvel (DCM) 2026, a multilateral cyber defence exercise conducted by the British Army Cyber Association.

AAIB appoints Robert Balls as Chief Inspector of Air Accidents

Aerospace Security

AAIB appoints Robert Balls as Chief Inspector of Air Accidents

12 February 2026

The Air Accidents Investigation Branch (AAIB) has announced the appointment of Robert Balls as Chief Inspector of Air Accidents following a fair and open competition.

British Transport Police launch LFR tech trial

Security

British Transport Police launch LFR tech trial

12 February 2026

British Transport Police (BTP) launched a trial of Live Facial Recognition (LFR) technology yesterday afternoon at London Bridge railway station.

Advertisement
ODU RT
Avon Protection launches EXOSKIN-S2 CBRN protective suit

Defence Security

Avon Protection launches EXOSKIN-S2 CBRN protective suit

11 February 2026

Avon Protection has expanded its EXOSKIN protective ensemble range with the EXOSKIN-S2 high-performance CBRN suit, designed for operators in the military, first responder and special forces segments.

Darktrace releases Darktrace / SECURE AI

Security

Darktrace releases Darktrace / SECURE AI

10 February 2026

Darktrace has introduced Darktrace / SECURE AI, a new behavioural AI security product designed to help enterprises deploy and scale artificial intelligence by understanding how AI systems behave, interact with other systems and humans and evolve over time.

Advertisement
ODU RT
Advertisement
Babcock LB Babcock LB