Women In Security Magazine Issue 12

Page 92

JO STEWART-RATTRAY

WHEN CYBERSECURITY FAILS, MATERIAL RISK GROWS by Jo Stewart-Rattray, Information Security Advisory Group, ISACA

Following a number of high profile data breaches in

for parliamentary consideration was to increase the

2022, it is clear board members and CISOs will need

maximum penalty from $2.2 million to $50 million, or

to take a broader view of the material risk arising

three times the value of any benefit obtained through

from data breaches and cyber threats. Data breaches

misuse of information, or 30 percent of a company’s

impacting millions of Australians have shaken

adjusted turnover in the relevant period, whichever

consumer confidence and motivated the government

is greatest. Although final legislation is pending at

to act decisively. As a result, boards and directors can

the time of writing, the government’s intention is

expect greater scrutiny.

clear: to strengthen the powers of the Australian Information Commissioner and the Notifiable Data

Boards, directors and security experts will be judged

Breach Scheme.

on their understanding of, and response to, material risk arising from unintended data breaches and

With rising penalties, organisations that previously

more frequent, malicious cyber threats. Material risk,

considered customer data as an asset may need to

including financial impact and reputational damage,

reframe their thinking and see unprotected data as

is growing.

a liability. Privacy breaches may require consumer compensation, for example to cover the costs of

FINANCIAL RISK IS BROADENING

new identification documents. It is possible legal

Financial risk is commonly considered in terms

action may arise from more serious customer losses

of lost revenue and the cost of remediation or

resulting from fraud enabled by the stolen data.

ransom payments following a breach. However,

92

organisations should also prepare for greater

RISK OF REPUTATIONAL DAMAGE

financial penalties if they fail to protect customer

There is a growing sense of desperation among

privacy. Following the data breaches at Optus and

consumers who think nothing can be done to protect

Medibank Private in October 2022, the government

them from cybercrime—as highlighted in ISACA’s

introduced legislation to increase penalties for

Consumer Cybersecurity 2022 survey—and boards

repeated or serious privacy breaches. The proposal

and security professionals need to act.

W O M E N I N S E C U R I T Y M A G A Z I N E

J A N U A RY • F E B R U A RY 2023


Turn static files into dynamic content formats.

Create a flipbook

Articles inside

Saman Fatima

4min
pages 154-155

Roshni Bedi

6min
pages 148-150

Tshering Wangmo

6min
pages 152-153

Savannah Dockerty

3min
pages 146-147

Sheida Sabeti

2min
page 151

BISO – no that is not a typo

9min
pages 126-130

Different perspectives

10min
pages 136-140

Identity proofing, identity verification and fraud prevention

5min
pages 131-133

Incident response competition

6min
pages 141-145

managing risk and resilience

8min
pages 116-119

a rewarding profession

3min
pages 134-135

Taking a proactive approach to cybersecurity

3min
pages 114-115

or nothing

3min
pages 108-109

Engagement with an impersonator

8min
pages 100-103

changing career through recruitment

6min
pages 76-78

Balancing risk and productivity in a hybrid world

4min
pages 106-107

experience and professional fulfillment

3min
pages 104-105

Don’t get poor fast

3min
pages 90-91

material risk grows

3min
pages 92-93

after 12 years in finance

2min
pages 74-75

Why I became a cybersecurity expert

2min
pages 72-73

operator in the Australian Army Reserves

3min
pages 64-65

early careers

10min
pages 66-71

Cyber is not your get-rich-quick option

3min
pages 62-63

Reshmi Hariharan

4min
pages 50-51

Farah Chamseddine

4min
pages 48-49

Martina Saldi

4min
pages 46-47

Holly Wright

5min
pages 44-45

Dr Fauzia Idrees Abro

1min
page 43

Johanna Williamson

6min
pages 40-42

Get-rich-quick crypto scams

2min
pages 14-15

Lisa Ventura

3min
pages 30-31

Catherine Dawson

3min
pages 38-39

Rachael Greaves

6min
pages 35-37

Belinda Stewart

3min
pages 20-21

Kao Hansell

3min
pages 16-17

Jenna Salvesen

6min
pages 32-34

Melanie Truscott

4min
pages 18-19
Issuu converts static files into: digital portfolios, online yearbooks, online catalogs, digital photo albums and more. Sign up and create your flipbook.