• Link to LinkedIn
  • Link to Youtube
  • Request a demo
  • Resources
  • Events
  • English
    • Français
Identity and Access Management (IAM) software specialist
  • IAM Strategy
    • Access the overview
    • Which Industry Challenges?
      • Healthcare
      • Government
      • Banking, Finance and Insurance
      • Medias
    • Who?
      • Employees
      • Customers
      • Partners
    • What are the Benefits?
      • Security
      • Regulatory Compliance
      • User Experience
      • Digital Transformation
      • Extended Enterprise
      • ROI
    • Which Components?
      • Strong – Multi-factor- Adaptive Authentication
      • Identity Federation
      • Web SSO
      • Enterprise SSO
      • Self-Service Reset Password
      • Passwordless on ChromeOS
      • User Lifecycle Management
      • Access Rights Management
      • Provisioning
  • Our Platform
    • Ilex IAM Platform
      • IAM Platform overview
      • Ilex Identity Management
      • Ilex Access Management Solution
      • Ilex Credential Management System (CMS)
      • Ilex Customer IAM
    • Choose a deployment mode
      • Deployement overview
      • Ilex IAM Platform – On premise or private cloud
      • Ilex IAM Platform – SaaS
  • Our Expertise
    • A successful IAM project
    • Implementation Partners
    • Our Ecosystem
    • Our Services Offering
    • Training
    • Ilex Support
  • Customer Stories
  • Resources
  • About Us
    • Ilex
    • Careers
    • Events
    • News Room
  • Blog
  • Contact Us
  • Request a demo
  • Language
    • English
    • Français
  • Menu Menu
News

Ilex International research reveals large British businesses leave the door open to cyberattacks

11th November 2015, London

IT decision makers admit it can take up to a month to terminate unauthorised access to the network, leaving thousands of orphan accounts open to attack.

Ilex International uncovers the reality of orphan accounts and the security risks posed for British businesses. Research, conducted by YouGov, found that while 58 percent of IT decision makers from large businesses surveyed terminated access of employees and partners on or before their day of departure, 39 percent took a few days to a month to close dormant accounts. This raises serious concerns for British businesses, leaving them open to a cyberattack, either by a malicious ex-employee, contractor, partner or an opportunistic hacker. 

24 percent of respondents from large businesses terminated access to dormant accounts ‘a few days after departure’, five percent waited up to a week, three percent within a fortnight and eight percent confessed to only removing access within a month after departure. Immediate termination on or before the day of departure is even worse for small and medium size businesses, bringing the total number of respondents following this best practice down to 32 percent and 56 percent respectively.

« Disgruntled employees or partners are unlikely to wait until a month after leaving to access confidential company information. Access is likely to be sought in a matter of days. The findings highlight the importance of closing inactive accounts down straight away, rather than waiting around. »

Warned Thierry Bettini, director of international strategy at Ilex International

According to the Ministry of Defence, the cost of cybersecurity breaches to the UK economy roughly tripled over just the last year amounting to £20 to 30 billion per year. Despite this figure expected to grow, the research found that only 11 percent of businesses surveyed expect a data security breach in 2016. Large businesses were the most wary, with 30 percent expecting a breach, compared to 24 percent of medium and only six percent of small businesses.

« With the number of temporary workers expected to increase over the coming months, especially for retailers gearing up for Christmas, hiding from the truth is not an option. The research emphasises the need for greater awareness of the likelihood and consequences of security breach. TalkTalk’s latest incident, along with other mega breaches should be a wake-up call for businesses to be more effective in protecting sensitive information.
Shutting down inactive accounts of former employees and contractors more quickly and removing any associated access can help to control unwanted access to confidential data and minimise risk of a security breach. »

Said Bettini.

According to the Online Alliance Trust, almost one-third of data breaches in 2014 were caused either accidentally or maliciously by employees. Research published by the Sans Institute in April 2015 shows that while insider threats are a key concern for security professionals, 40 percent of businesses polled had no systems in place to address this concern, while 32 percent said they lacked appropriate policies and procedures to deal with insider threats. 

Notes to editors
All figures, unless otherwise stated, are from YouGov Plc. Total sample size was 530 IT decision makers. Fieldwork was undertaken from 6th – 12th August 2015. The survey was carried out online

Article updated on January 9, 2020
Share this entry
  • Share on Facebook
  • Share on X
  • Share on LinkedIn
  • Share by Mail
https://www.ilex-international.com/wp-content/uploads/2019/10/mega-breaches.png 350 800 Ilex https://www.ilex-international.com/wp-content/uploads/2025/03/logo_ilex_rvb_2.svg Ilex2015-11-11 18:50:062020-01-09 19:17:10Ilex International research reveals large British businesses leave the door open to cyberattacks

Summary

Who we are​

Ilex IAM Platform is Nexpublica’s complete identity and access management offering.
Nexpublica has a long history of publishing in software for the public, semi-public, and private sectors. The company supports more than 4,000 public organizations and 1,200 private companies.

www.nexpublica.com

This content could interest you

  • SSO (Single Sign-On): definition, basic principles and global approach to single authentication
  • Five Key Access Management Considerations for 2018
  • Digital transformation: can security and IAM serve customer relations?
  • Are your identity and access management systems effective?
  • Identity federation: how to control cloud users?

Our latest news

  • Inetum Software becomes NexpublicaMarch 20, 2025
  • Ilex International receives the 2022 France Cybersecurity label for the contribution of its French solutions to digital sovereigntyFebruary 18, 2022
  • Inetum reinforces its expertise in cybersecurity with the acquisition of Ilex InternationalSeptember 6, 2021
  • What’s new on Sign&go Global SSO!June 25, 2021

Nexpublica

4-10, rue Mozart
92110 Clichy – France
+33(0)1 44 04 50 50

© Copyright - Ilex
  • Link to LinkedIn
  • Link to Youtube
  • Legal Notices and privacy policy
Link to: Ilex International launches Breach Confidence Index Link to: Ilex International launches Breach Confidence Index Ilex International launches Breach Confidence Index Link to: Ilex International receives the France Cybersecurity Label Link to: Ilex International receives the France Cybersecurity Label Ilex International receives the France Cybersecurity Label
Scroll to top Scroll to top Scroll to top
X