Newtrix: 4 of the top 6 types of cybersecurity incidents are related to insider actions

Netwrix, a cybersecurity vendor that makes data security easy, announced findings from its 2020 Netwrix Cyber Threats Report which reveal cybersecurity risks related to insiders are now more common than external threat actors.

Since organizations went remote, 4 of the top 6 types of cybersecurity incidents they experienced were caused by internal users: accidental mistakes by admins (suffered by 27% of respondents), accidental improper sharing of data by employees (26%), misconfiguration of cloud services (16%) and data theft by employees (14%).

Based on the findings, it is not surprising that 79% of CIOs worry that users are now more likely to ignore IT policies and thus pose a greater threat to security. Incidents related to inside actors were among the hardest for organizations to detect. For example, a significant portion of respondents needed weeks or months to detect data theft by employees (26%), improper employee data sharing (18%), and admin mistakes (12%).

Survey: 85% of CISOs admit to sacrificing cybersecurity to enable WFH setup

More than half of SMBs in SEA admit lack of visibility, talent vs complex threats

“In this age of remote work, the insider threat can’t go unaddressed,” said Ilia Sotnikov, VP of Product Management at Netwrix. “We cannot emphasize enough the importance of paying attention to how employees handle sensitive data and follow security policies. Now is the time to revisit the founding principles of security, including tracking user activity, automating change and configuration auditing, and enabling alerts on harmful actions, to ensure that insider misbehavior is detected and addressed in a timely manner.”

Financial organizations

Incidents caused by admin mistakes were more common for large enterprises (with more than 1,000 employees) than for mid-sized and small organizations. The research also finds that 33% of large enterprises reported suffering at least one incident caused by a negligent admin since work-from-home (WFH) arrangements began.

Newtrix discovered that 70% of financial organizations are concerned about insider data theft during the current remote work phase. Pre-pandemic, only 30% were focused on this risk. About 41% of educational institutions reported improper sharing of sensitive records by employees, which is the highest result among all verticals analyzed.

The 2020 Netwrix Cyber Threats Report summarizes feedback from 937 IT professionals worldwide about the cyber threats they have recently faced and how quickly they were able to respond. Netwrix conducted this online survey in June 2020 to understand how the pandemic and ensuing WFH initiatives changed the IT risk landscape.