Nearly two-thirds of UK organisations complacent about protecting customer data

A new Kaspersky study has lifted the lid on the scale of cyber-complacency amongst UK businesses which found 65% of businesses were complacent…
network security

Share this article:

A new Kaspersky study has lifted the lid on the scale of cyber-complacency amongst UK businesses. Alarmingly, nearly two-thirds (65%) of IT security decision-makers agree that their organisation is complacent about the protection of its customers’ data. The study revealed that many organisations are failing to take the necessary steps to prevent data breaches, despite many respondents acknowledging they would impact revenue and customer trust.

In an ever-evolving cyberthreat landscape, there is great pressure on those tasked with maintaining IT security to put in place policies and solutions that keep organisations and the data they hold secure. Alongside the threat to privacy, the financial risk for businesses is immense, with data showing the average cost of a data breach now to be around £3m per incident.

Despite the inherent risks of being complacent, many IT security decision-makers are failing to implement effective measures to protect customer data from cyberattacks. For instance, more than half (57%) say they do not currently have a cybersecurity policy in place – rising to more than two-thirds (71%) of medium-sized businesses (250 to 549 employees). Just four-in-ten (41%) businesses surveyed believe their organisation is protected with robust endpoint security.

Alongside security, consumer confidence is vital to the growth and maintenance of increasingly interconnected businesses. The majority of IT security decision makers (69%) are concerned they would lose customers following a data breach, while 74% of survey respondents believe that being perceived as cyber-complacent would be damaging to business.

However, this concern is not translating into appropriate action, with cyber-complacency having an affect on the regularity of risk assessments carried out by UK businesses. With the nature of threats constantly evolving, Kaspersky recommends that companies conduct a cyber-risk assessment at least every six months to ensure policies and safeguards are up to date and fit for purpose.

As shown in a recent Kaspersky report –The true cost of cyber-complacency: UK businesses cannot afford failure when protecting customer data – only 38% of respondents in this new survey do this in practice, making it unsurprising that almost half (47%) experienced at least one cyberattack in the last 24 months.

David Emm, Principal Security Researcher at Kaspersky, said: “Being complacent with cybersecurity, and customer data, can be incredibly costly. Along with losing sensitive information, a data breach affects business revenues, customer confidence and reputations.

“There have been many examples in recent years of household brands suffering data breaches, showing that even the most renowned businesses are at risk. For many organisations, the ramifications of a breach could be irreversible. This is why we urge business and organisations of all sizes to adopt robust cybersecurity policies, taking expertise where needed to ensure they have the best preventative measures in place.”

With 61% of IT security decision-makers thinking it is likely that their organisation will face one or more cyberattacks over the next two years, Kaspersky recommends the following advice to help protect organisations.

They should conduct regular cybersecurity assessments to review policies and services – ideally every six months. Invest in and regularly update robust endpoint security solutions that offer effective protection against the latest cyberthreats and organise frequent cybersecurity training for IT staff, so they are aware of the organisation’s policy and solutions.

For more security news visit here.

 

About Security Buyer

Security Buyer is the leading authority in global security content, delivering expert news, in-depth articles, exclusive interviews, and industry insights across print, digital, and event platforms. Published 10 times a year, the magazine is a trusted resource for professionals seeking updates and analysis on the latest developments in the security sector.

To submit an article, or for sponsorship opportunities, please contact our team below.

Rebecca Spayne Picture

Rebecca Spayne

Group Managing Editor

Georgina Turner Picture

Georgina Turner

Sales Manager

Afua Akoto Picture

Afua Akoto

Marketing Manager

Related News

Ai Solution of the year - securitybuyer.com

Have your say: vote for AI Solution of the Year

Voting is open for AI Solution of the Year at the Security Buyer Readers’ Awards 2026, with readers invited to select their winner
Access control of the year - securitybuyer.com

Have you voted for Access Control Solution of the Year?

Voting is open for Access Control Solution of the Year at the Security Buyer Readers’ Awards 2026, with readers invited
PaxLock Pro2 - securitybuyer.com

Paxton officially launches PaxLock Pro2

Paxton the security technology manufacturer has launched a brand-new re-engineered PaxLock which is built to protect straight
KentixONE data centre - securitybuyer.com

Data centre security with KentixONE

Prior1 develops container data centers to meet the highest security and energy efficiency standards. Their containers require
Chubbsafes - securitybuyer.com

Chubbsafes explores certified storage for jewellery and precious metals

Chubbsafes, part of Gunnebo Safe Storage, has launched a new technical discussion guide examining when certified
Mercury trends report - securitybuyer.com

New Mercury Research Finds Growing Cybersecurity Gap

2026 Trends in Access Controllers Report finds interoperability, cloud connectivity and AI are reshaping long-term controller strategies.
Chris Carroll - securitybuyer.com

Comelit-PAC Promotes Chris Carroll as Sales Director

Comelit-PAC has appointed Chris Carroll as Sales Director, following an 18 year career with the company, seeing him progress
Jason Bezuidenhout - securitybuyer.com

Zygal Appoints Jason Bezuidenhout

Zygal has appointed Jason Bezuidenhout as Chief Revenue Officer (CRO), strengthening its leadership team as the company continues
Eun-Kyung-Hong_- securitybuyer.com

How AI Manages Mixed Surveillance Workloads

Eun-Kyung Hong, HDD Product Manager at Toshiba Electronics Europe GmbH discusses AI optimisation in mixed surveillance workloads
ASSA ABLOY - securitybuyer.com

ASSA ABLOY Door Group highlights importance of BS 8214:2026

ASSA ABLOY Door Group is supporting Fire Door Safety Week 2026 by raising awareness of the latest update to BS 8214:2026
Scroll to Top