Careless Employees Cause Data Breaches at Businesses

執筆者
Nathan Eddy
Nathan Eddy
Published: Jun 27, 2016
Updated: Feb 2, 2021
2 minute read
it security and fasoo
eWeek のコンテンツおよび製品のおすすめは、編集上の独立性を保っています。パートナーへのリンクをクリックすると、当社が報酬を得る場合があります。 詳細を見る

Nearly three-quarters (72 percent) of organizations are not confident in their ability to manage and control employee access to confidential documents and files, according to a Fasoo-sponsored survey of 637 U.S. IT security practitioners conducted by the Ponemon Institute.

According to the report, the primary cause of data breaches experienced by companies is careless employees (56 percent) followed by lost or stolen devices (37 percent).

Sales departments pose the greatest risk to a company’s information assets, both structured (69 percent) and unstructured data (58 percent), the report found.

What’s more, a whopping 83 percent of organizations struggle with determining the appropriate level of confidentiality documents and files should possess. Determination is based on data type, policies or data usage, but only 13 percent use access as the determining factor. Only 16 percent are using a content management system.

“The most surprising aspect of the survey is that most companies say they are better at defending external threats as opposed to careless or malicious insiders,” Bill Blake, president and chief commercial officer at Fasoo, told eWEEK. “Only 27 percent of the 637 respondants said they can restrict the sharing of confidential files with other employees and only 36 percent can stop sharing with external third parties.”

Even if the organization has properly identified confidentiality, only 15 percent of respondents are confident that they are highly effective in limiting access, the report found.

C-level executives and human resources (79 percent) account for more than half of unstructured data risk, while HR and finance and accounting (71 percent) pose more risk with structured data.

Almost 70 percent of respondents do not know where confidential information is located and more than 60 percent don’t have visibility into what confidential documents and files employees are sharing, according to the report.

In addition, nearly three-quarters (73 percent) of respondents said it was likely their organization had lost some confidential information over the past 12 months.

Half of all respondents say their organization is highly effective in preventing leakage by external attackers and hackers, yet less than half are as confident in preventing data leakage by careless employees.

Advertisement

“Data security strategies will evolve into a more comprehensive framework that includes discover, classify, protect and monitor any form of confidential data regardless of its location,” Blake explained. “Self-securing data will also be an important aspect of this framework.”

Nathan Eddy

Nathan Eddy

Content Writer

A graduate of Northwestern University's Medill School of Journalism, Nathan was perviously the editor of gaming industry newsletter FierceGameBiz and has written for various consumer and tech publications including Popular Mechanics, Popular Science, CRN, and The Times of London. Currently based in Berlin, he released his first documentary film, The Absent Column, in 2013.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

TechnologyAdvice が所有・運営しています。 © 2026 TechnologyAdvice. 無断転載を禁じます

広告主に関する開示:このサイトに掲載されている製品の一部は、TechnologyAdvice が報酬を受け取っている企業のものです。この報酬は、製品がこのサイトのどこにどのように表示されるか(表示される順序など)に影響する場合があります。TechnologyAdvice は、市場で入手可能なすべての企業やすべての種類の製品を掲載しているわけではありません。