Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Cybersecurity an afterthought despite growth in attacks

Security

Cybersecurity an afterthought despite growth in attacks

Despite the overall growth in cyberattacks, only one-third of organisations say the cybersecurity function is involved at the planning stage of a new business initiative, according to the EY Global Information Security Survey (GISS).


Image copyright Shutterstock

This year's GISS, which surveyed almost 1,300 cybersecurity leaders at organisations worldwide, showed that almost 60% of organisations have faced an increased number of disruptive attacks in the past 12 months. Moreover, over the last year, activists were responsible for 21% of successful cyber attacks – second only to organised crime groups (23%) – compared with last year's study, where just 12% of respondents considered activists as the most likely source of an attack. 

Advertisement
ODU RT

Despite the increasing risk, only 36% of new, technology-enabled business initiatives include the security team from the beginning.

Kris Lovejoy, EY Global Cybersecurity Leader, Advisory, said: "Cybersecurity has traditionally been a compliance activity, bolted on by a checklist approach instead of built into every technology-enabled business initiative. This is not a sustainable model. If we ever hope to get ahead of the threat, we must focus on creating a culture of security by design. This can only be accomplished if we successfully bridge the divide between the security function and the C-suite and enable the chief information security officer (CISO) to act as a consultant and enabler instead of the stereotypical roadblock."

According to the survey, while cybersecurity teams generally have good relations with adjacent functions such as IT, audit, risk and legal, there is a disconnect with other parts of the business. Almost three-quarters (74%) say that the relationship between cybersecurity and marketing is, at best, neutral, if not mistrustful or non-existent, while 64% say the same of the research and development team and 59% for the lines of business. More than half (57%) say their relationship with finance, on which they depend on for budget authorization, is also strained.

Advertisement
ODU RT

Lovejoy said: "As companies undergo transformation, what's needed is to build relationships of trust across every function of the organization, starting at the board level so that cybersecurity is established as a key value enabler. Boards, senior management teams, CISOs and leaders throughout the business must collaborate to position cybersecurity at the heart of business transformation and innovation."

 

Advertisement
FIA2026 animated banner
UK urged to take AI cyber threats seriously

Security Events

UK urged to take AI cyber threats seriously

22 April 2026

At CYBERUK 2026 - currently taking place at the SEC Glasgow (21st - 23rd April) - Dr Richard Horne, the CEO of the National Cyber Security Centre (a part of GCHQ), gave a keynote speech focused on the challenges raised by rapid technological change dominated by AI and preparation for migration to post-quantum cryptography.

Ramboll appoints Darren Carlile as Director in Buildings

Defence Security

Ramboll appoints Darren Carlile as Director in Buildings

22 April 2026

Global architecture, engineering and sustainability consultancy, Ramboll, has appointed Darren Carlile as a Director in its Buildings business, with responsibility for growth and sales across Transformation and Public Services leading on the National Security and Government, Research and Polar sectors, supporting continued Government ...

Cranfield University develops plant blast barrier

Security

Cranfield University develops plant blast barrier

22 April 2026

New research has revealed how everyday plants can help protect the public from blast impacts, whilst transforming cities into greener, healthier spaces.

PentenAmio completes acquisition of Armour Communications

Security

PentenAmio completes acquisition of Armour Communications

21 April 2026

PentenAmio has today announced its acquisition of Armour Communications, following the relevant regulatory approvals.

Advertisement
ODU RT
Smiths Detection gains ECAC Certification for AI driven cabin baggage screening

Aerospace Security

Smiths Detection gains ECAC Certification for AI driven cabin baggage screening

20 April 2026

Smiths Detection has secured ECAC (European Civil Aviation Conference) certification for its iCMORE APIDS (Automated Prohibited Items Detection System), approved for deployment with the HI SCAN 6040 CTiX.

Securitas appoints Alan Rae as Area Director for UK North and BAE Systems

Defence Security

Securitas appoints Alan Rae as Area Director for UK North and BAE Systems

20 April 2026

Securitas UK has announced the appointment of Alan Rae to the newly created and expanded role of Area Director for UK North and BAE Systems.

Advertisement
ODU RT
Advertisement
FIA2026 animated banner