All Cyber security articles
-
ArticleTheme 3: Covid-19, privacy rights and cyber security risks
In response to the COVID-19 pandemic, governments have introduced measures around bio-surveillance, censorship and misinformation that could have significant impacts on privacy rights.
-
WebinarNavigating cyber security and privacy rights during COVID-19: recommendations for investors
This webinar aims to highlight the implications for investors when assessing companies’ readiness to the threats presented by the pandemic including those relating to digital security, privacy and human rights.
-
Blog postWhy cyber security and governance should go hand in hand
By Betina Vaz Boni, Analyst, Governance Issues, PRI
-
Engagement guideEngaging on cyber security: results of the PRI collaborative engagement 2017-2019 - p2/3
Cyber security in practice: Insights from the engagement dialogue
-
Engagement guideEngaging on cyber security: results of the PRI collaborative engagement 2017-2019 - p3/3
Recommendations for engagement & disclosure expectations
-
Engagement guideEngaging on cyber security: results of the PRI collaborative engagement 2017-2019
Menu styles Menu Executive summary Cyber security has been recognised as a risk in the World Economic Forum Global Risks Report for several years, with the latest version ranking cyber security as one of the top 10 risks that the world will face in the next ...
-
News and pressThe Global Risks Report 2019: what does it tell PRI signatories?
Published ahead of next week’s Davos, the Global Risks Report provides significant insights into risk to inform government, business and investor action. It asks: is the world sleep walking into a crisis?
-
Engagement guideInvestor-company dialogue on cyber security: five emerging findings
A study by Accenture found that the global average cost of cyber crime has risen from $7.2 million in 2013 to $11.7 million in 2017. Businesses are under pressure to strengthen their cyber security capabilities and be more effective in managing cyber incidents.
-
News and press
PRI steps up engagement on cyber security
The PRI today launched findings on how seriously corporates are taking the issue of cyber security, with the publication of Stepping up governance on cyber security: what is corporate disclosure telling investors?
-
Engagement guide
Corporate disclosure on cyber security governance: senior management and board accountability
4. Does the company identify a named person at senior management or executive committee level with overall responsibility for information management and cyber security? 5. Is the board or board committee responsible for cyber security issues?
-
Engagement guideAnalysis of corporate disclosure on cyber security governance: research analysis
This report presents a snapshot and analysis of what 100 companies are currently disclosing about their cyber governance and risk management. It also enables comparisons across regions and sectors to facilitate engagement dialogue.
-
Engagement guideCorporate disclosure on cyber security governance: regional analysis
On average, US and Australian companies performed the strongest on disclosure across all indicators. US companies scored better than those from other regions in terms of disclosing cyber security and/or information security as a key risk in company assessment plans (indicator 14). US companies also scored better on board responsibility ...
-
Engagement guide
Corporate disclosure on cyber security governance: assessment
12. Does the company conduct audits of information/cyber security policies and systems?
-
Engagement guide
Corporate disclosure on cyber security governance: board communication
6. Does the company communicate cyber risks to the board (and how, by whom and how often?) 7. Does the board receive detailed information about the company’s cyber/information security strategy (including what information it receives and how it assesses this information)?
-
Engagement guide
Corporate disclosure on cyber security governance: legal compliance
1. Does the company publicly commit to complying with relevant laws, including those related to cyber and data protection?
-
Engagement guide
Corporate disclosure on cyber security governance: conclusion and next steps
This report analysed data from 100 companies for observations on standards of corporate disclosure relating to cyber security practices. It presented overall findings across the data; results by each specific indicator; and different regional legislative and regulatory standards.
-
Engagement guide
Corporate disclosure on cyber security governance: key takeaways
While companies generally perceived cyber security as a key organisational risk, very few communicated that they have policies, governance structures and processes that were effective at tackling cyber threats.
-
Engagement guide
Corporate disclosure on cyber security governance: policy
2. Does the company publicly disclose a privacy and/or data protection policy? 3. Does the policy explicitly cover its entire operations, including third parties?
-
Engagement guide
Corporate disclosure on cyber security governance: skills and resources
8. Does the company disclose that it has a cyber or information security team and/or dedicated budget? 9. Does the company state that it works with relevant industry initiatives on cyber security and/or has access to internal or external expertise on cyber security? 10. Does the company actively seek cyber ...
-
Engagement guide
Corporate disclosure on cyber security governance: training
11. Does the company provide training on information/cyber security requirements to all employees?