Data breaches have become an unfortunate reality of the digital world we live in. While there is no doubt that efforts can be made to mitigate the chances of a data breach, living in a completely data breach-free world is not realistic. Apart from having processes and technology in place to prevent data breaches, companies should also have a plan of action in case they do suffer a breach.
One aspect of being prepared is understanding how vulnerable your industry may be to data breaches. Kroll handles thousands of incidents every year and in its Data Breach Outlook – Year in Review, it has ranked which industries continually top the charts.
Data Breaches Are Most Prolific in Health Care and Finance
In 2022, health care overtook finance as the most breached industry, accounting for 22% of the breaches handled by Kroll, compared to 16% in 2021; a 38% increase year over year. Finance dropped to second place with 19% of the cases in 2022, a 3% drop from 2021 where it accounted for 22% of breach cases.
Still in recovery from the pandemic, it is hardly surprising that the health care industry was particularly vulnerable to data breaches in 2022; at the very least, data management may have become less of a priority, potentially putting data at risk of exposure. The finance industry continued to report a substantial number of breaches, likely because of the regulatory obligations in the industry which increase the amount of data breach disclosure. But, for a similar reason, it was surprising to see insurance slip out of the top five in 2022.
Shifts in Industrial Services, Not-for-Profit, Construction, Legal and Insurance
It was interesting to see the proportion of breaches hitting industrial services double in 2022. This points to a wider trend of industries which have previously considered the data they hold as “less sensitive,” falling victim to data loss or cyberattacks, causing data compromise and consequently having to begin a notification process.
Other Notable Industry Shifts in 2022:
- The industrial services industry doubled its proportion of cases from 5% in 2021 to 11%
- Both the not-for-profit and construction industries dropped out of the top 10 most-breached list
- The legal industry featured for the first time in the top 10 most-breached industries
- The proportion of breaches in the education industry fell from 10% of all cases in 2021 to 6% in 2022
- The insurance industry saw a smaller proportion of breaches than those in other sectors in 2022, accounting for only 2% of cases, compared to 6% in 2021