The number of cyber attacks against financial services companies reported to the Financial Conduct Authority (FCA) has risen by more than 80% in the last year.
Over the last year, the National Cyber Security Centre recorded over 1,100 reported attacks, with 590 regarded as significant. Thirty of these incidents required action by government bodies, a number of which were targeted at financial sector organisations.
Commenting on the rise in reported attacks, Jan Hameed, a technology risk assurance director at RSM said: “This increase in reported attacks reflects a drive for greater accountability with respect to reporting such incidents, as well as the growing frequency of such attacks.”
“‘However, the overall numbers of reported incidents do appear to be quite low when you consider that ONS statistics suggest there are about 1.9 million incidents of cyber-related fraud each year. This either suggests that financial services firms are exceptionally resilient or failing to detect cyber-attacks. Another possibility could be that some are choosing not to report material attacks in order to avoid any reputational damage. Failure to detect and/or refusing to report incidents is very risky and short-sighted as it is counterproductive to exposing and addressing systemic weaknesses.”
Regulated companies would do well to heed the warning from the FCA on where firms could improve resilience, continued Hameed.
He points to the fact the FCA argues that boards must assume responsibility for cyber security given the risks to the business, its customers and the wider market. “It also advocates for a greater focus on ‘basic hygiene’ – making sure that critical assets including data are identified and that detection of attacks is improved.”
“One of the biggest risks facing financial services companies is complacency. Cyber attacks will actively adapt to defensive controls. As the FCA highlights, individuals and criminal groups are developing tools and exploiting vulnerabilities on an industrial scale. Financial services firms need to ensure they always stay one step ahead.”