Global Utilities See Cyberattacks as Greater Threat to Operations than IT with Half Experiencing Outages

Stu Sjouwerman | Dec 2, 2019

utilitiesGlobal industrial organizations are seeing and feeling the effects of cyberattacks, recognizing the material impact potential upon operations.

The latest report from Ponemon and Siemens, entitled Are Utilities Keeping Up with the Industrial Cyber Threat?, discusses the current operational readiness of global utilities. According to the report, over half (56%) of global utilities report at least one attack involving a loss of private information or an outage in the operational technology (OT) environment within the past 12 months.

So, how do these attacks impact utility organizations?

According to the report, the greater concern is on the impact to OT (which is considered as being behind in its security stance) than information technology, with 60% of utility organizations feeling that cyberattacks can cause damage to equipment and causes risk to employees and contractors. Additionally, 30% of attacks on OT are not detected, increasing the risk to the organization significantly.

Even more concerning is the lack of readiness uncovered in this report:

  • Only 42% of global utilities rate their cyber readiness as “high”
  • Only 31% rate their readiness to respond or contain a breach as “high”
  • 35% of have no response plan in case of cyberattacks

According to the report, “the industry overall is investing more resources into technology and compliance than into training or personnel” and cites the lack of investment into training as one of the “blindspots contributing to a lack of readiness.”

Because of the less-secure nature of OT systems, personnel administering and using them should undergo continual Security Awareness Training to balance out the security equation through the creation of a more security-centric culture and to create an entire workforce of users that are far-more ready for cyberattack.

Ready to Build a Security Culture That Lasts?

Stop treating training like a checkbox exercise. Using 15+ years of behavioral data, our AI-powered platform personalizes training for every user to significantly reduce human risk and stop attacks before they start.

Get a Quote

Secure the Digital Workforce: Human + AI

KnowBe4 empowers the modern workforce to make smarter security decisions every day. Trusted by more than 70,000 organizations worldwide, KnowBe4 is the pioneer of digital workforce security, securing both AI agents and humans. The KnowBe4 Platform provides attack simulation and training, collaboration security, and agent security powered by AIDA (Artificial Intelligence Defense Agents) and a proprietary Risk Score. The platform leverages 15 years of behavioral data to combat advanced threats including social engineering, prompt injection, and shadow AI. By securing humans and agents, KnowBe4 leads the industry in workforce trust and defense.