Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Friday, 5 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

The biggest data breaches of 2016 could and should have been prevented

by The Gurus
December 13, 2016
in Editor's News
data breach
Share on FacebookShare on Twitter

Many, if not most, of the data breaches throughout 2016 could have been avoided with the correct people, process, technology and most importantly culture in place. This is the opinion of Phil Bindley, CTO of Cloud Services Provider (CSP) The Bunker, who argues that the biggest security threat for organisations in 2017 will be a complacency towards good security hygiene. 

According to the 2016 Data Protection and Breach Readiness Guide, 93 per cent of breaches in 2015 could have been prevented. Despite this learning, breaches continued to take place throughout 2016, including some of the largest scale hacks in history. These ranged from the Panama Papers data leak, which saw Mossack Fonseca lose 11.5 million files after hackers breached its systems, to – more recently – the breach of Daily Motion whereby 85 million user credentials were compromised.

For Phil Bindley, in order to significantly reduce the occurrence of data breaches and to prevent this trend from continuing as we move into 2017, organisations need to start to look at everything through a lens of data security.

He explains: “The sheer number of data breaches throughout 2016 has led many to believe that falling victim to a hack is no longer a matter of ‘if’ but ‘when’, as the adage goes. However, many of these incidents could have been prevented. The problem here is that, all too often, the responsibility for security starts and ends with the IT department, meaning that these incidents continue to occur. Either senior management staff are ignorant to the importance of good security hygiene, or information security professionals are failing to communicate the message.

“Data is the most valuable asset of an organisation, from the Intellectual Property (IP) on which their businesses are built, to the Personally Identifiable Information (PII) that they hold on behalf of their customers. Therefore, everyone in an organisations must be thinking about what they do on a day-to-day basis to protect this. It simply doesn’t make good business sense to do otherwise, especially considering that the deadline for compliance with the General Data Protection Regulation (GDPR) is approaching, where companies will be subject to large fines for failing to keep personal data appropriately secure.

“While breaches will continue to take place as hackers become increasingly advanced in their tactics, the severity and frequency of these can be dramatically reduced. Organisations must incorporate a culture of information security in all aspects of a business. It’s not about building a bigger firewall, it’s about a complete shift in attitude towards cybersecurity. This new culture has to come from both the top-down, and from the ground-up; it’s a form of behaviour that flourishes when people believe it is the right way of doing things and not simply a box-ticking exercise.  

“This ethos extends to every facet of an organisation, including the supply chain. To this end, companies need to oversee all aspects of their outsourcing arrangements to ensure they provision third-party services from a provider who offers the utmost cyber resilience and transparency. After all, information security empowers businesses to be more competitive, manage risk, protect their brand and allow innovation in a controlled manner, therefore there’s a significant benefit to be had from working with a Cloud Services Provider (CSP) who values security,” concludes Bindley.

ShareTweet
Previous Post

'CEO cyber-naivety' leaves global organisations exposed to major cyber attacks

Next Post

In 2017, less malware and more advanced attacks

Recent News

Frontline Workers Twice as Likely to Use Unapproved AI

Frontline Workers Twice as Likely to Use Unapproved AI

June 4, 2026
Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol