IT Pro is supported by its audience. When you purchase through links on our site, we may earn an affiliate commission. Learn more

Insider data breaches set to increase due to remote work shift

Forrester expects internal incidents to cause a third of breaches next year, an 8% increase compared to 2020

A third (33%) of all data breach incidents in 2021 are expected to be caused by insiders, according to the latest Forrester Cyber Security Predictions report.

This will be an 8% increase compared to 2020, during which 25% of data breaches were deemed to be caused by internal incidents, based on predictions made by respondents to a Forrester security survey. This includes accidental incidents, as well as those caused by malicious intent.

The increase in insider incidents is likely to be caused by the unprecedented change in working environments from the office to remote working during nationwide lockdowns. Other contributing issues outlined by Forrester include the ease with which data can be moved as well as the general fear of being made redundant.

The report found that, while “firms add capabilities for detecting insider threats, they will also be able to identify and attribute more incidents to insider activity than they were previously”.

Forrester analysts recommended focusing on insider threat defense, as well emphasising “employee experience to avoid turning employees into malicious insiders”.

“Remember that trust is not a control,” they added.

Forrester also predicts that the retail and manufacturing industries should expect more data breaches due to the direct-to-consumer shift caused by changing consumer buying habits. Although such changes had been observed for some time, they been accelerated during the coronavirus pandemic, with many customers having their first experience with digital payments due to the government-enforced closures of physical shops. 

Senior Forrester analyst Anjali Lai said that as many as “62% of US online adults had performed some kind of online transaction for the first time as a direct result of the COVID-19 pandemic”.

The Cyber Security Predictions report warned that “brands that once went to market via retailers and distributor supply chains face disruption, forcing them to now sell directly to consumers”, adding that “more customer-facing applications means more code, and more code means more risk”.

“This shift requires companies to expand their attack surface by adding digital storefronts and marketplaces and adopting new engagement models.”

That is why businesses shifting to a direct-to-consumer approach are advised to “prioritise product security, build a developer champions program, and explore breach and attack simulation tools”.

Featured Resources

ZTNA vs on-premises VPN

How ZTNA wins the network security game

Free Download

The global use of collaboration solutions in hybrid working environments

How companies manage security risks

Free Download

How to build a cyber-resilient business ready to innovate and thrive

Outperform your peers in your successful business outcomes

Free Download

Accelerating your IT transformation

How Cloudflare is innovating for CIOs to start 2023

Watch now

Recommended

Microsoft Security Copilot could be a seismic success for the tech industry
Security

Microsoft Security Copilot could be a seismic success for the tech industry

29 Mar 2023
Enabling secure hybrid learning
Whitepaper

Enabling secure hybrid learning

22 Mar 2023
SOC modernisation and and the role of XDR
Whitepaper

SOC modernisation and and the role of XDR

16 Mar 2023
Analysing the economic benefits of Trend Micro Vision One
Whitepaper

Analysing the economic benefits of Trend Micro Vision One

16 Mar 2023

Most Popular

Tech pioneers call for six-month pause of "out-of-control" AI development
artificial intelligence (AI)

Tech pioneers call for six-month pause of "out-of-control" AI development

29 Mar 2023
Getting the best value from your remote support software
Advertisement Feature

Getting the best value from your remote support software

13 Mar 2023
3CX CEO confirms supply chain malware attack
malware

3CX CEO confirms supply chain malware attack

30 Mar 2023