About a-team Marketing Services
The knowledge platform for the financial technology industry
The knowledge platform for the financial technology industry

A-Team Insight Blogs

Financial Firms Have Widest Data Security Perception Gap: Survey

Subscribe to our newsletter

The financial services sector has the widest gap between perceptions about its data security and its vulnerability to data attacks.

A survey by data security provider Dasera found that 73% of institutions questioned said they had high levels of confidence in their ability to fend off ransomware attacks, data breaches and other unauthorised uses of data. Nevertheless, records of attacks showed that those firms were among the worst affected in 2023.

“The significant number of breaches contradicts high confidence in their security strategy, suggesting overconfidence in their security posture,” the report, entitled The State of Data Risk Management 2024, stated. “The sector remains a prime target for cyberattacks due to valuable data, indicating a gap between perceived effectiveness and actual vulnerability.”

The report compared the perceptions of companies in a range of high-profile data-focused sectors, including healthcare and government, with statistics on data breaches compiled by a variety of organisations and studies. These include the Verizon Data Breach Security Report, Kroll’s Data Breach Outlook Report and the Identity Theft Resource Centre.

Record Year

The Dasera survey said the combined conclusions of those studies showed that 2023 was a “record-breaking year” for breaches.

According to Verizon, the financial services industry suffered 477 data security incidents in 2023, compared with 380 for IT firms and 433 in the healthcare sector. Only government bodies suffered more, at 582. Kroll found that financial firms accounted for the largest proportion of attacks, at 27%.

Two-thirds of breaches originated externally. With the balance coming from internal “threat actors”, the financial services firms were among the least protected against attacks from within their own systems.

The report found that 77% of breaches within the sector came from basic web application attacks, miscellaneous errors and system intrusions.

“The survey underscores the importance of adopting integrated and automated data security strategies to address these challenges,” the Dasera report stated. “Reliance on outdated, manual processes and slow adoption of automated systems contribute to current vulnerabilities. Organisations must prioritise modern, proactive approaches, including regular audits, strategic use of technology, and external consulting, to effectively navigate the evolving landscape of data risk.”

Subscribe to our newsletter

Related content

WEBINAR

Recorded Webinar: Navigating a Complex World: Best Data Practices in Sanctions Screening

As rising geopolitical uncertainty prompts an intensification in the complexity and volume of global economic and financial sanctions, banks and financial institutions are faced with a daunting set of new compliance challenges. The risk of inadvertently engaging with sanctioned securities has never been higher and the penalties for doing so are harsh. Traditional sanctions screening...

BLOG

LexisNexis Q&A: Ensuring Data Trust, From News to Governance

Since the 1970s, LexisNexis has been providing a variety of data services to financial institutions. Data Management Insight spoke to Danielle McCormick, vice president of product, Global Nexis Solutions, to discuss how financial institutions are approaching AI, trusted data and the future of enterprise intelligence. Data Management Insight: Hello Danielle, when were LexisNexis’ data operations...

EVENT

RepRisk Sustainability Breakfast Roundtable London

The London sustainability breakfast is part of the global roundtable thought leadership event series hosted by RepRisk in key markets, including, New York, Toronto, London, Frankfurt, Oslo, Copenhagen, Stockholm, Hong Kong and Singapore in 2026.

GUIDE

AI in Capital Markets Handbook 2026

AI adoption in capital markets has moved into a more disciplined phase. The priority is now controlled deployment: where AI can be used safely, where it can deliver measurable value, and how outputs can be governed, monitored and evidenced. The 2026 edition of the AI in Capital Markets Handbook examines how AI is being applied...