How long does it take for organizations to report a data breach?

Comparitech researchers have published a new study looking the average time it takes for organizations to report data breaches. With data from 2,600 attacks in the US since 2018, the researchers will analyze not only the average time it takes, but break it down across industries — education, healthcare, law, etc. — as well as by year. 

Some key findings include: 

  • The average time to report a data breach following a ransomware attack is 4.1 months
  • Ransomware attacks in 2023 saw the highest average data breach reporting time (5.1 months)
  • Education had the highest average with over 4.8 months
  • Healthcare had the lowest average with just under 3.7 months
  • Businesses took an average of 4.2 months with those in the legal sector taking the longest (6.4 months)
  • The longest known reporting period is 38 months
  • States with specific timeframes for reporting a data breach had a slightly lower average reporting period than those without (3.9 months compared to 4.2 months)

The report can be read here: https://www.comparitech.com/news/average-data-breach-report-time-ransomware-attack/

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading