All Cyber security articles
-
Articles
Theme 3: Covid-19, privacy rights and cyber security risks
What is the issue? In response to the COVID-19 pandemic, governments have introduced measures around bio-surveillance, censorship and misinformation that could have significant impacts on privacy rights. Among recent initiatives, governments have passed laws relating to around the tracking of people’s movements, communications and health data, leveraging telecommunications, camera ...
-
Blogs
Why cyber security and governance should go hand in hand
By Betina Vaz Boni, Analyst, Governance Issues, PRI
-
Reports/Guides
Engaging on cyber security: results of the PRI collaborative engagement 2017-2019 - p3/3
Recommendations for engagement disclosure expectations
-
Reports/Guides
Engaging on cyber security: results of the PRI collaborative engagement 2017-2019 - p2/3
Cyber security in practice: Insights from the engagement dialogue
-
Reports/Guides
Engaging on cyber security: results of the PRI collaborative engagement 2017-2019
Menu styles Menu Executive summary Cyber security has been recognised as a risk in the World Economic Forum Global Risks Report for several years, with the latest version ranking cyber security as one of the top 10 risks that the world will face ...
-
News and press
The Global Risks Report 2019: what does it tell PRI signatories?
Published ahead of next week’s Davos, the Global Risks Report provides significant insights into risk to inform government, business and investor action. It asks: is the world sleep walking into a crisis?
-
Reports/Guides
Investor-company dialogue on cyber security: five emerging findings
A recent study by Accenture found that the global average cost of cyber crime has risen from $7.2 million in 2013 to $11.7 million in 2017. Businesses are under pressure to strengthen their cyber security capabilities and be more effective in managing cyber incidents.
-
News and press
PRI steps up engagement on cyber security
The PRI today launched findings on how seriously corporates are taking the issue of cyber security, with the publication of Stepping up governance on cyber security: what is corporate disclosure telling investors?
-
Reports/Guides
Stepping up governance on cyber security
Cyber security risk is real and pervasive, as demonstrated by recent attacks that have put the frighteners on big banks, web service providers, the UK’s National Health Service and even the US intelligence community.
-
Reports/Guides
Corporate disclosure on cyber security governance: key takeaways
While companies generally perceived cyber security as a key organisational risk, very few communicated that they have policies, governance structures and processes that were effective at tackling cyber threats.
-
Reports/Guides
Corporate disclosure on cyber security governance: policy
2. Does the company publicly disclose a privacy and/or data protection policy? 3. Does the policy explicitly cover its entire operations, including third parties?
-
Reports/Guides
Corporate disclosure on cyber security governance: skills and resources
8. Does the company disclose that it has a cyber or information security team and/or dedicated budget? 9. Does the company state that it works with relevant industry initiatives on cyber security and/or has access to internal or external expertise on cyber security? 10. Does the company actively ...
-
Reports/Guides
Corporate disclosure on cyber security governance: training
11. Does the company provide training on information/cyber security requirements to all employees?
-
Reports/Guides
Corporate disclosure on cyber security governance: processes and procedures
13. Has the company established an incident management plan (including disaster recovery and business continuity)? 14. Has the company disclosed information or cyber security as a key part of its risk assessment/business continuity plan?
-
Reports/Guides
Corporate disclosure on cyber security governance: overview of regulatory landscape
Standards of legislation relating to data protection and cyber security that companies are expected to adhere to vary widely by region. This section provides an overview of key legislation in force across the regions from which the company sample was drawn.
-
Reports/Guides
Corporate disclosure on cyber security governance: conclusion and next steps
This report analysed data from 100 companies for observations on standards of corporate disclosure relating to cyber security practices. It presented overall findings across the data; results by each specific indicator; and different regional legislative and regulatory standards.
-
Reports/Guides
Corporate disclosure on cyber security governance: legal compliance
1. Does the company publicly commit to complying with relevant laws, including those related to cyber and data protection?
-
Reports/Guides
Corporate disclosure on cyber security governance: board communication
6. Does the company communicate cyber risks to the board (and how, by whom and how often?) 7. Does the board receive detailed information about the company’s cyber/information security strategy (including what information it receives and how it assesses this information)?
-
Reports/Guides
Corporate disclosure on cyber security governance: assessment
12. Does the company conduct audits of information/cyber security policies and systems?
-
Reports/Guides
Analysis of corporate disclosure on cyber security governance: research analysis
This report presents a snapshot and analysis of what 100 companies are currently disclosing about their cyber governance and risk management. It also enables comparisons across regions and sectors to facilitate engagement dialogue.