Skip to main content

The High Costs of Cyber Attacks



On July 17, 2017, Lloyd’s, the legendary London-based insurance market, released its forecasts of the potential costs of two types of cyber attacks.  The results were headline grabbing:  The July 18, 2017, Financial Times reported that “Lloyd’s warns of $120 billion bill from cyber attack on cloud provider.”  “Extreme assault,” the headline continued, “may outstrip a natural disaster.”

For the past several years, the news media has been full of reports on cyber hacks:  The 2013 theft of credit and debit card data from Target, the 2014 release of stolen emails from Sony Corporation, the alleged 2016 cyber-based interference with U.S. elections now being investigated by Congress, and this year’s WannaCry and Petya ransomware attacks name only a few.  There is no doubt that businesses, nonprofit organizations, and governments benefit from interconnectivity—by access to new markets, client support, shared information, and interpersonal communications.  There is also no doubt that connectivity brings risks and that all firms need to anticipate those risks and consider how to address them.

 When company officials make decisions on where to put resources—which risks to take to build a business and which risks to avoid to sustain a business—they should try to quantify the downside risk as well as the upside potential.  Because cyber technologies are rapidly developing and because potential interconnectivity appears to be endless, it’s particularly hard to quantify all likely cyber risk costs.  This is where the Lloyd’s study becomes helpful.

Lloyd’s, in conjunction with Cyence, a security and economic data modeling firm, assessed two dramatic scenarios.  For a hack that takes down cloud-service providers and their customers, Lloyd’s forecasts direct losses of $5 billion-$53 billion and possible broad economic losses of $16 billion-$121 billion.  For the inadvertent release of vulnerability factors in widely used software, Lloyd’s forecasts possible direct costs of $10 billion-$29 billion.  Real money, real costs.

The value of this study goes beyond its stated goal of helping insurance risk managers better prepare.  It also identifies many risk factors that most companies should consider when developing their own cyber risk plans and deciding on risk mitigation—including insurance, employee training, and technological solutions.  Risks include direct losses and, of course,  replacement/upgrade costs.  Importantly, this study also highlights reputational risks that can damage the ability to retain and develop business.
 
Identifying risks.  Quantifying risks.  Assessing which risks to take and how to avoid other risks.  All great topics worthy of discussion.

If you live or work in the greater New York City metro area, including Westchester County and southern Connecticut, help guide that discussion by answering a very short survey on what risk topics have value to you and your organization here.
 
Watch this space for upcoming articles on current risk management topics as well as important new programs from the Institute for Managing Risk at the Manhattanville School of Business where we help you develop your risk savvy!

Michele Braun
Director, Institute for Managing Risk
Manhattanville School of Business
michele.braun@mville.edu

Comments

Popular posts from this blog

Happy Holidays Newsletter from SPS - Make 2021 Count!

"An investment in knowledge pays the best interest" - Benjamin Frankli n Congratulations to all of our students who completed another semester. You made the best of a difficult situation by sticking with your goals and working on your education. Some of you added a few more credits to your program, some of you completed your final project and some of you completed your final classes and are graduating! I applaud you all! I invite you to read this newsletter highlighting our fall accomplishments, student achievements, and upcoming events. In SPS we have been working hard to stay connected and expand our network with engaging virtual programs. Hopefully, you have experienced this effort, if not please consider joining us for a class or our next Power Lunch series.  I hope you stay strong and healthy during these trying times. We need to continue to be vigilant for ourselves and our families. Try to find some good in each day and help others find the same. Keep in touch and e

SPS Prof Richard A. Montanaro: Covid-19 resume gaps will become commonplace, yet still need explaining

Richard A. Montanaro: Covid-19 resume gaps will become commonplace, yet still need explaining As posted on Westchester & Fairfield County Business Journals January 4, 2021 By School of Professional Studies Professor  Richard A. Montanaro B inge watching Netflix is not a valid explanation for gaps in your resume. While a prospective employer may understand, and even sympathize with an unexplained period of inactivity in your employment, you will need to put a positive spin on these gaps even given the pandemic. As an HR practitioner who has overseen the hiring process for over a thousand applicants during my career, I can say that it’s not uncommon for there to be employment gaps: periods without employment during a professional career. Given the pandemic, business downturn and related organizational downsizing, these gaps may be more prevalent now. Yet, regardless of the difficult times organizations and individuals are facing, gaps in employment and how to best represent them rema

2020 Sports...It's a Wrap!

On the Eve of 2021 SPS Professor Dave Torromeo Posted on Latin Business Today. As we approach the end of 2020—one of the strangest years known to mankind—we once again turn our attention to the things that make us happy, the things that bring us joy in the face of sadness and despair: live sporting events. We know the leagues and TV broadcast partners are happy, or maybe relieved? While the world tries to return to normal, we can be grateful that sports, although different, have at least given us an outlet. That is what sports have always done—provided us with a release! That is why when people attend or tune into a sports event they do not want to be reminded of their problems, politics, or other incendiary touch point issues. The sports world continues to roll on, albeit with various of stops and starts due to COVID-19. Teams are affected or infected, and then games are postponed or canceled. However, let us focus on the positives as we have live sporting events almost every day and