Cisco: Data breaches now cost 20% of revenue
Companies only have the resources to investigate 90% of security alerts


Cisco has revealed the mounting cost of data breaches to businesses, saying companies are losing 20% of revenues and new customer business as a consequence of hackers stealing or accessing data.
The company's Annual Cybersecurity Report 2017 also explained that although 90% of companies have started improving their threat defences, they still have security gaps in which hackers can break into their systems.
Worryingly, companies only have the resources to investigate 56% of the security alerts they receive, meaning many threats are not being combatted at the point of entry. A third of these turn out to be serious threats, which should be investigated at the first indication of a security risk.
"In 2017, cyber is business, and business is cyber - that requires a different conversation, and very different outcomes," John Stewart, senior vice president and chief security and trust officer, Cisco.
"Relentless improvement is required and that should be measured via efficacy, cost, and well managed risk. The 2017 Annual Cybersecurity Report demonstrates, and I hope justifies, answers to our struggles on budget, personnel, innovation and architecture."
Some of the problem areas are hackers introducing new methods of attack to evade detection, organisations adopting cloud applications that aren't secure and adware, which infected 75% of the organisations investigated by Cisco.
Cisco's report also revealed the amount of time it's taking companies to realise there's a threat. It claimed companies using its security products have reduced the time of detection from 14 hours at the beginning of 2016 to just six hours in 2016.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
"One of our key metrics highlighted in the 2017 Annual Cybersecurity Report is the time to detection' the time it takes to find and mitigate against malicious activity," David Ulevitch, vice president and general manager of security business at Cisco. "We have brought that number down to as low as six hours. A new metric the time to evolve' looked at how quickly threat actors changed their attacks to mask their identity.
"With these and other measures gleaned from report findings, and working with organisations to automate and integrate their threat defense, we can better help them minimize financial and operational risk and grow their business."

Clare is the founder of Blue Cactus Digital, a digital marketing company that helps ethical and sustainability-focused businesses grow their customer base.
Prior to becoming a marketer, Clare was a journalist, working at a range of mobile device-focused outlets including Know Your Mobile before moving into freelance life.
As a freelance writer, she drew on her expertise in mobility to write features and guides for ITPro, as well as regularly writing news stories on a wide range of topics.
-
Enterprises face delicate balancing act with data center sustainability goals
News High energy consumption, raw material requirements, and physical space constraints are holding back data center sustainability efforts, according to new research from Seagate.
By Emma Woollacott
-
Cleo attack victim list grows as Hertz confirms customer data stolen
News Hertz has confirmed it suffered a data breach as a result of the Cleo zero-day vulnerability in late 2024, with the car rental giant warning that customer data was stolen.
By Ross Kelly
-
Cisco claims new smart switches provide next-level perimeter defense
News Cisco’s ‘security everywhere’ mantra has just taken on new meaning with the launch of a series of smart network switches.
By Solomon Klappholz
-
Cisco is jailbreaking AI models so you don’t have to worry about it
News Cisco's new AI Defense security solution helps organizations shore up LLM security by identifying potential flaws.
By Solomon Klappholz
-
Cisco dispels Kraken data breach claims, insists stolen data came from old attack
News Cisco has refuted claims it has suffered a data breach after the Kraken threat group posted stolen data online.
By Solomon Klappholz
-
Cisco patches critical flaws in Identity Services Engine
News Cisco has issued patches for a pair of critical vulnerabilities affecting its Identity Service Engine (ISE).
By Nicole Kobie
-
Your office is now absolutely riddled with surveillance equipment
News While workplace monitoring is shown to have a detrimental effect on morale, many firms are still charging ahead
By Nicole Kobie
-
Cisco confirms attackers stole data, shuts down access to compromised DevHub environment
News The tech giant insists that no sensitive customer information has been compromised
By Solomon Klappholz
-
Cisco confirms investigation amid data breach claims
News The networking giant says its probe is ongoing amid claims a threat actors accessed company data
By Nicole Kobie
-
Rubrik partners with Cisco to bolster cyber resilience
News Rubrik now integrates with Cisco XDR and is listed on the connectivity giant’s SolutionsPlus program
By Daniel Todd