Take The Test AU
Sydney, Australia – 8 November 2016 BAE Systems today has launched research into the cyber security preparedness of Australian businesses, and an online Cyber Risk tool to better understand their cyber security readiness.
The Cyber Risk tool measures a business’ cyber security preparedness across 10 key elements of ICT security, including incident response and information management. It was developed in response to global research indicating potential weaknesses in Australian businesses’ cyber security measures.
BAE Systems Head of Cyber Solutions Asia-Pacific and Japan, Alex Taverner, said:
“When the Prime Minister launched Australia’s Cyber Security Strategy in April, he identified the need for businesses of all sizes to understand their cyber hygiene through voluntary ‘health checks’; one of BAE Systems key recommendations during the preceding review process.
“Among other worrying outcomes, the BAE Systems survey found that in Australia, a quarter of businesses don’t know if they have the security controls in place to defend against cyber attack.
“This online tool will enable businesses to answer that very question, and take steps to improve their cyber preparedness in the likely case that they are found wanting.”
The research, which is part of a global survey including the US, UK, Malaysia and Singapore, reveals the importance of businesses regularly checking their readiness for cyber-attack and assessing whether they have the right people, technology and processes in place.
The BAE Systems research found:
  1. A quarter of Australian businesses don’t know if they have the security controls in place to defend against cyber attack. Of all the countries surveyed, this is the highest by a significant 10 per cent (75 per cent in Australia versus 85 per cent globally said they were confident they had the right controls in place).
  2. Australian businesses reported a cyber attack had occurred on average in the last six months, compared with the global average of an attack in the last nine months. Almost three quarters (73 per cent) of Australian businesses had suffered an attack in the last year and over a third in the last month (34 percent).
  3. The average cost of a cyber attack for an Australian business is over $622,515.
  4. Nearly one in three companies (32 per cent) said they weren’t very confident their business could return to business as usual within 48 hours, or that they’d never thought about it.
  5. 15 per cent of companies have not tested their incident response plan in up to two years. Nearly ten per cent (9 per cent) of survey respondents said they don’t have an incident response plan or don’t know if they have one. 
 “Our research found Australian businesses were more likely to report a cyber attack than the global average, whether that be a week ago, a month ago or six months ago,” Mr Taverner said. 
“As recent high profile cyber attacks have demonstrated, businesses of all sizes and in all industries must ensure they’re prepared.
“Regular testing, training of staff, and updating technology and processes is crucial to avoid or minimise monetary and reputational damage. We encourage all businesses to take this simple test to assess the strengths and weaknesses in their cyber security and understand their vulnerabilities,” Mr Taverner said.
From the Prime Minister’s speech in April:
“ASX 100 companies will be able to improve their cyber security through voluntary governance health checks—enabling boards and senior management to better understand their cyber security status and how they compare to similar organisations.
In time, these health checks will be available for all public and private organisations—tailored to size and sector.
The Government will also provide support for some 5000 small businesses to have their cyber security tested by certified practitioners.”

Media contact:
Katie Pickford
Fuel Communications on behalf of BAE Systems
Mobile: 0481 514 624
About BAE Systems
At BAE Systems, we provide some of the world’s most advanced technology defence, aerospace and security solutions.
We employ a skilled workforce of 82,500 people in over 40 countries. Working with customers and local partners, our products and services deliver military capability, protect people and national security, and keep critical information and infrastructure secure.
BAE Systems Applied Intelligence helps nations, governments and businesses around the world defend themselves against cybercrime, reduce their risk in the connected world, and comply with regulation.
We employ some of the most skilled people in the world working with unique systems and solutions to solve complex data problems, track the most impactful threat actors, prevent fraud and financial crime, enable intelligence-led policing and provide incident response in the face of online threats.
12 Default Profile Image
Head of External Communications
Media Team
Digital Intelligence