11
009 PGP Corporation Confidential 2009 Cost of Data Breach

2009 Cost Of Data Breach

Embed Size (px)

DESCRIPTION

A summary of the 2008 Ponemon Institute Cost of a Data Breach report. Organizations can learn the component costs of a data breach to better calculate their risk.

Citation preview

Page 1: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential

2009 Cost of Data Breach

Page 2: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential

Cost of Data Breach

Fourth annual report by The Ponemon Institute© & PGP Corporation (Feb 2009)

• Costs grew to $202/record or $6.6m per breach

• Lost business now accounts for 69% of breach losses

• 56% of breaches are “inside” jobs

• 84% of companies experience more than one breach per year

Source: Ponemon, Feb 2009

Page 3: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential 3

Average per-record cost of a data breach, 2005–2008

Page 4: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential 4

Average organizational costs of a data breach, 2005–2008

Page 5: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential 5

Average cost of data breach on a per-victim basis, 2005–2008

Page 6: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential 6

Third-party share of data breaches, 2005–2008 Cost of a breach per record, 2005–2008

Page 7: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential 7

Per capita costs of a breach compared by industry classification, 2008

Page 8: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential 8

Primary cause of a data breach, 2008

Page 9: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential 9

Cost of a data breach when proactive risk management is in use, 2008

Page 10: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential 10

Sample composition by industry vertical

Page 11: 2009 Cost Of  Data Breach

© 2009 • PGP Corporation • Confidential

Get the Report

Fourth annual report by The Ponemon Institute & PGP Corporation (Nov 2008)

http://www.encryptionreports.com