The significant cybersecurity pressures on UK businesses

New research by Keeper Security has revealed that 92% of UK businesses have experienced a cyberattack in the last 12 months, with over two-thirds (72%) successfully breached at least once.

UK businesses are struggling to deal with multiple urgent cybersecurity challenges, new research by Keeper Security has revealed. The 2021 Cybersecurity Census Report shows cyberattacks are becoming more vicious, frequent and sophisticated, while UK businesses are underprepared and too slow to counter these attacks. As a result, senior leaders within UK organisations are preoccupied with playing a cyberattack blame game instead of investing in boosting their defences.

The report has found that more than nine in ten (92%) UK businesses suffered a cyberattack in the last 12 months and three quarters (78%) feel unprepared to deal with this threat. Nearly a third (31%) believe CTOs should take the blame in the case of a successful cyberattack. Such a weight of responsibility means cybersecurity standards are dropping: 36% of senior IT leaders confess to having kept a cyberattack to themselves, while 32% admit to using weak credentials such as ‘password’ or ‘admin’ to protect their data.

“UK businesses are clearly worried about their cybersecurity and, as our report has found, the challenges are manifold, affecting everything from budgets to productivity,” said Darren Guccione, CEO & co-founder, Keeper Security. “While there is a desire to boost security efforts, companies are facing many competing challenges right now and, understandably, might not always make cybersecurity investments a priority. Our report is an urgent reminder for organisations to proactively address their cybersecurity challenges as a priority since deferring them will make the consequences far more severe.”

Key findings include:

  • Almost all (92%) UK organisations are aware of gaps or weak links in their cybersecurity defences are, but less than half (40%) are actively addressing all of them
  • Two-thirds (66%) of UK organisations have relaxed their cybersecurity policies over the past 12 months so staff can work remotely or in order not to stifle productivity
  • 58% of IT professionals feel employees at their organisations do not understand the full consequences of poor cyber-hygiene
  • 61% of UK companies have a skills shortage in cybersecurity
  • The financial fallout of cyberattacks has been damaging, too, costing nearly one in ten (8%) UK businesses over £1 million
  • An overwhelming 87% of IT leaders support the creation of a nationwide governing body to hold businesses to account when it comes to best online security practices
  • And almost all (91%) are in agreement that UK businesses should be legally required to have basic cybersecurity protections in place to be allowed to operate

“Companies are struggling to put the right solutions in place to cope with cyberattacks and the consequences are both damaging and costly,” said Craig Lurey, CTO and co-founder, Keeper Security. “The conditions caused by Covid-19 have led to an increased amount of hybrid working, making effective cybersecurity defences even harder to achieve. But if businesses want to bounce back fully after the pandemic, they must get their security hygiene in order without delay.”

Despite the rise in cyberattacks and increasing pressures felt by security teams, more than a quarter of UK companies (28%) do not consider IT to be even in their top three priorities as they plan for the next 12 months. This is particularly worrying, given almost all (92%) UK organisations know where the gaps or weak links in their cybersecurity defences are but well under half (40%) are actively addressing them.

READ MORE:

Guccione concludes: “While this situation can’t be rectified overnight, there are straightforward steps UK businesses can take to boost their cyber defences. First, organisations should do a comprehensive cybersecurity audit, looking at where the gaps lie and how they can be addressed. Next, they need to put in place a clear plan of action for how to address these challenges. Running cybersecurity training sessions to educate employees and introducing a password management platform to keep credentials safe and secure are two simple, yet highly effective actions businesses can take today, to be better prepared against cyberattacks tomorrow.”

For more news from Top Business Tech, don’t forget to subscribe to our daily bulletin!

Follow us on LinkedIn and Twitter

Amber Donovan-Stevens

Amber is a Content Editor at Top Business Tech

How AI Is Rewriting the Rules of Shopping

Sue Azari • 09th October 2025

The shift toward AI-native commerce is already underway. While mainstream adoption may take time, the complexity of building the right foundation means that early movers will gain a clear advantage. The question is no longer whether AI will reshape shopping, but whether your organisation will be ready when it does. This article outlines what you...

Data Centre Demand Growth Continues to Surge

Brad Legge • 02nd October 2025

The proliferation of digital technologies has thrust data centres into the spotlight as linchpins of modern business infrastructure. From cloud computing to artificial intelligence (AI), these facilities support critical operations across industries. The growing interest in generative artificial intelligence (AI) has triggered a race to develop technology, driving demand for high-density data centres and significantly...

5 Signs Your ERP System is Holding You Back

Adam Palmer • 11th September 2025

Is your ERP helping you move forward — or slowing you down? For a modern business, an ERP system should be a powerful enabler. One that drives agility, delivers real-time insights, and helps drive strategic growth — not something teams feel the need to work around. Yet too often, legacy ERP systems quietly drag down...

Why Wind River is serious about moving from VMware

Paul Miller • 09th September 2025

For IT departments with limited manpower and budgets, improving the efficiency of operational management of distributed IT infrastructure is a pressing issue. Organizations burdened with licensing costs, such as the VMware issue, will want to start optimizing costs and IT resources immediately. We interviewed a vendor that is working on this trend using open technology....

TPIs are the Future of Energy Solutions

David Sheldrake SVP POWWR • 19th June 2025

The energy industry is undergoing a transformation, and Third-Party Intermediaries (TPIs), those brokers and consultants who help businesses procure energy, are at the centre of it. With growing complexity, increasing regulation, and evolving customer expectations, the role of TPIs is shifting from price-focused brokers to strategic energy advisors. While renewable energy adoption continues to reshape...

Quick Commerce and the Retail Media Revolution

Sue Azari • 11th June 2025

Quick commerce has transformed the way consumers shop, redefining convenience with near-instant delivery of groceries, meals, and household essentials. However, beyond its impact on logistics and e-commerce, quick commerce is now emerging as a major force in digital advertising. As consumer behaviours shift toward on-demand purchases, these platforms are leveraging their vast first-party data and...