Board must set cyber security agenda – ICAEW

Board must set cyber security agenda - ICAEW

If businesses do not take cyber security seriously in their business planning regulators may do it for them, the ICAEW has warned

IF BUSINESSES fail to take cyber security seriously in their business planning, regulators may do it for them the ICAEW has warned.

Richard Anning, head of ICAEW’s IT Faculty, said boards must grasp the nettle and deal with it as a priority: “Despite years of warnings, many still regard cyber security as an optional extra. This is why we are increasingly seeing more data breaches that harm consumers and businesses alike. Cyber security is integral to digital business.”

In ICAEWs latest report Audit Insights: Cyber Security, high profile data breaches and the slow pace of cyber security progress means unless boards take control of the agenda themselves, governments may decide to legislate.

Anning, continued: “Unless boards take control of these issues, it is only a matter of time before governments start to bring in tough new laws – this has already begun with the introduction of General Data Protection Regulation (GDPR). The boards can start by using cyber-by-design principles, so cyber security is seen as a precondition for trading at all.”

Audit Insights: Cyber Security is based on input from auditors from the top six audit firms. This fourth report focuses on why change here seems so difficult and highlights how organisations can get on top of their cyber risks.

Dynamic threats

The report focuses on themes such as seeing cyber risks as real and dynamic, as they are changing constantly as technology develops. It also focuses on taking behavioural change seriously as training needed to support cyber processes are not embedded. Businesses should link the cyber risks with their business objectives and have consequences if it is not complied with. Finally, that most organisations have a digital infrastructure but do not see cyber security as a precondition for operating.

Anning, concluded: “Cyber threats are constantly evolving and changing alongside technology, and it is unrealistic to expect businesses to be able to respond to each and every threat. But this is why it is absolutely vital to consider risks regularly as part of the board governance process.”

The full report can be downloaded from icaew.com/cyber

Share

Leave a Reply

Your email address will not be published. Required fields are marked *

Subscribe to get your daily business insights

Resources & Whitepapers

The importance of UX in accounts payable: Often overlooked, always essential
AP

The importance of UX in accounts payable: Often overlooked, always essentia...

11m Kloo

The importance of UX in accounts payable: Often ov...

Embracing user-friendly AP systems can turn the tide, streamlining workflows, enhancing compliance, and opening doors to early payment discounts. Read...

View article
The power of customisation in accounting systems
Accounting Software

The power of customisation in accounting systems

11m Kloo

The power of customisation in accounting systems

Organisations can enhance their financial operations' efficiency, accuracy, and responsiveness by adopting platforms that offer them self-service cust...

View article
Turn Accounts Payable into a value-engine
Accounting Firms

Turn Accounts Payable into a value-engine

4y Accountancy Age

Turn Accounts Payable into a value-engine

In a world of instant results and automated workloads, the potential for AP to drive insights and transform results is enormous. But, if you’re still ...

View resource
8 Key metrics to measure to optimise accounts payable efficiency
AP

8 Key metrics to measure to optimise accounts payable efficiency

11m Kloo

8 Key metrics to measure to optimise accounts paya...

Discover how AP dashboards can transform your business by enhancing efficiency and accuracy in tracking key metrics, as revealed by the latest insight...

View article