
Over the past decade, cyberattacks on businesses have gone from being an often unusual, standalone incident to a sadly inevitable part of daily life. Developments in the tactics, techniques and procedures of the bad guys combined with an ever broadening attack surface now means that the question of a cyberattack is no longer if, but when.
This is something that many decision makers are struggling to understand, as often the complexity of the threats facing businesses requires equally complex language to communicate and understand the risks.