Urgent.News

What's breaking now, across thousands of outlets.

Tech

Cyberattacks are the ultimate business continuity tests that nearly half of organizations fail

Can your business keep operating while under attack? New research reveals why cyber resilience is exposing critical gaps in business continuity and what leaders can do to help close them.

Cyberattacks are the ultimate business continuity tests that nearly half of organizations fail

The rise of cyber resilience as a core business function has become increasingly critical for organizations today. A single cyberattack can disrupt production, transactions, supply chains, and more, leading to significant financial loss and reputational damage within a matter of hours. Recent research reveals that nearly half of cybersecurity officers who have experienced a cyber incident reported operational shutdowns as a direct consequence, surpassing data loss and revenue loss concerns.

The most significant challenge faced by CISOs nowadays is not retrieving stolen data or bearing the brunt of lost income; instead, it lies in keeping vital business functions running during an attack to minimize the overall impact on the business and supply chain.

Despite increasing investments in cybersecurity tools and solutions, 73% of CISOs feel unconfident about effectively managing a major cyber incident in the future. This gap in preparedness is attributed to resource limitations, visibility issues, and disconnects between teams. A crucial aspect of cyber resilience is integrated risk management across various departments, including cyber, IT, legal, communications, and others. Business context is essential, and a unified approach ensures effective cyber management.

The evolving cyber landscape, driven by technologies like AI and Frontier AI, enables threat actors to carry out large-scale attacks at speed, causing operational chaos. AI is now being used to accelerate reconnaissance, identify vulnerabilities, create convincing social-engineering content, and pursue multiple attack paths simultaneously.

This has led to organizations realizing that their traditional business continuity plans may not suffice, as they fail to address the need for rapid coordination and quick response to protect valuable data and enable recovery.

Mature organizations have developed a vision of "Minimal Viable Business Objective" (MVB), focusing on what is essential to get the business back up and running during a crisis. However, communication and legal teams, along with executive leadership, often pose hurdles due to differing priorities, resulting in delays and uncertainty that can further slow down recovery efforts.

Tabletop exercises play a vital role in fostering open debates, clarifying role responsibilities, and ensuring a faster, integrated response during a cyberattack. Cyber resilience must be recognized as a foundational business function across all departments to be truly effective, particularly in the face of a cyberattack. Successful businesses continue to operate while managing incidents by continually updating, rehearsing, and testing their cyber resilience plans and communication pathways.

To minimize breach exposure time and operate while recovering, organizations should regularly conduct cyber posture assessments, simulate breach attacks with executives and business stakeholders, and train staff to build confidence in managing crises.

Written by urgent.news from TechRadar's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at techradar.com →

More in Tech

More from Friday 2 October →