All Cyber security articles
-
Article
Theme 3: Covid-19, privacy rights and cyber security risks
In response to the COVID-19 pandemic, governments have introduced measures around bio-surveillance, censorship and misinformation that could have significant impacts on privacy rights.
-
Webinar
Navigating cyber security and privacy rights during COVID-19: recommendations for investors
This webinar aims to highlight the implications for investors when assessing companies’ readiness to the threats presented by the pandemic including those relating to digital security, privacy and human rights.
-
Blog post
Why cyber security and governance should go hand in hand
By Betina Vaz Boni, Analyst, Governance Issues, PRI
-
Engagement guide
Engaging on cyber security: results of the PRI collaborative engagement 2017-2019 - p3/3
Recommendations for engagement & disclosure expectations
-
Engagement guide
Engaging on cyber security: results of the PRI collaborative engagement 2017-2019 - p2/3
Cyber security in practice: Insights from the engagement dialogue
-
Engagement guide
Engaging on cyber security: results of the PRI collaborative engagement 2017-2019
Menu styles Menu Executive summary Cyber security has been recognised as a risk in the World Economic Forum Global Risks Report for several years, with the latest version ranking cyber security as one of the top 10 risks that the world will face in the next ...
-
News and press
The Global Risks Report 2019: what does it tell PRI signatories?
Published ahead of next week’s Davos, the Global Risks Report provides significant insights into risk to inform government, business and investor action. It asks: is the world sleep walking into a crisis?
-
Engagement guide
Investor-company dialogue on cyber security: five emerging findings
A study by Accenture found that the global average cost of cyber crime has risen from $7.2 million in 2013 to $11.7 million in 2017. Businesses are under pressure to strengthen their cyber security capabilities and be more effective in managing cyber incidents.
-
News and press
PRI steps up engagement on cyber security
The PRI today launched findings on how seriously corporates are taking the issue of cyber security, with the publication of Stepping up governance on cyber security: what is corporate disclosure telling investors?
-
Engagement guide
Stepping up governance on cyber security
This report presents the research findings on companies’ cyber security disclosures that informed PRI’s collaborative engagement on the topic.
-
Engagement guide
Corporate disclosure on cyber security governance: key takeaways
While companies generally perceived cyber security as a key organisational risk, very few communicated that they have policies, governance structures and processes that were effective at tackling cyber threats.
-
Engagement guide
Corporate disclosure on cyber security governance: policy
2. Does the company publicly disclose a privacy and/or data protection policy? 3. Does the policy explicitly cover its entire operations, including third parties?
-
Engagement guide
Corporate disclosure on cyber security governance: skills and resources
8. Does the company disclose that it has a cyber or information security team and/or dedicated budget? 9. Does the company state that it works with relevant industry initiatives on cyber security and/or has access to internal or external expertise on cyber security? 10. Does the company actively seek cyber ...
-
Engagement guide
Corporate disclosure on cyber security governance: training
11. Does the company provide training on information/cyber security requirements to all employees?
-
Engagement guide
Corporate disclosure on cyber security governance: processes and procedures
13. Has the company established an incident management plan (including disaster recovery and business continuity)? 14. Has the company disclosed information or cyber security as a key part of its risk assessment/business continuity plan?
-
Engagement guide
Corporate disclosure on cyber security governance: overview of regulatory landscape
Standards of legislation relating to data protection and cyber security that companies are expected to adhere to vary widely by region. This section provides an overview of key legislation in force across the regions from which the company sample was drawn.
-
Engagement guide
Corporate disclosure on cyber security governance: conclusion and next steps
This report analysed data from 100 companies for observations on standards of corporate disclosure relating to cyber security practices. It presented overall findings across the data; results by each specific indicator; and different regional legislative and regulatory standards.
-
Engagement guide
Corporate disclosure on cyber security governance: legal compliance
1. Does the company publicly commit to complying with relevant laws, including those related to cyber and data protection?
-
Engagement guide
Corporate disclosure on cyber security governance: board communication
6. Does the company communicate cyber risks to the board (and how, by whom and how often?) 7. Does the board receive detailed information about the company’s cyber/information security strategy (including what information it receives and how it assesses this information)?
-
Engagement guide
Corporate disclosure on cyber security governance: assessment
12. Does the company conduct audits of information/cyber security policies and systems?