{"id":6510,"date":"2019-10-04T13:47:57","date_gmt":"2019-10-04T10:47:57","guid":{"rendered":"https:\/\/www.kaspersky.com.tr\/blog\/?p=6510"},"modified":"2022-05-05T14:25:14","modified_gmt":"2022-05-05T11:25:14","slug":"security-economics-2019","status":"publish","type":"post","link":"https:\/\/www.kaspersky.com.tr\/blog\/security-economics-2019\/6510\/","title":{"rendered":"Zarar rakamlar\u0131nda bilgi g\u00fcvenli\u011fi"},"content":{"rendered":"<p>Bilgi g\u00fcvenli\u011fini b\u00fct\u00e7elemek i\u00e7in \u015firketlerin, tercihen olay tipine g\u00f6re ortalama potansiyel zararlar gibi fakt\u00f6rleri ve de di\u011fer i\u015fletmelerin g\u00fcvenlikle ilgili ortalama harcamalar\u0131n\u0131 dikkate almas\u0131 gerekir. Bu hususlara ili\u015fkin kesin veriler yay\u0131mlanmaz; \u00e7e\u015fitli \u015firketlerin IT g\u00fcvenli\u011fine ili\u015fkin i\u015f kararlar\u0131 alan \u00e7al\u0131\u015fanlar\u0131n kat\u0131ld\u0131\u011f\u0131 y\u0131ll\u0131k bir anket yapmam\u0131z\u0131n sebeplerinden biri de budur. Bu noktada, 2019 y\u0131l\u0131 anketimizin sonu\u00e7lar\u0131n\u0131 payla\u015fmaya haz\u0131r\u0131z.<\/p>\n<h2>Mali etkiler<\/h2>\n<p>Son y\u0131l\u0131n anket sonu\u00e7lar\u0131na k\u0131yasla i\u015fletmelerin zararlar\u0131 artm\u0131\u015f durumdad\u0131r. \u00d6nceden bir olay\u0131n maliyeti ortalama 1,23 milyon $ iken g\u00fcn\u00fcm\u00fczde ortalama 1,41 milyon $ zarar s\u00f6z konusu. Bu art\u0131\u015ftan k\u0131smen, \u015firketlerin kurumsal imaj\u0131na inecek darbeyi yumu\u015fatma ama\u00e7l\u0131 PR kampanyalar\u0131na ve \u00fc\u00e7\u00fcnc\u00fc taraf uzmanlara art\u0131k daha fazla harcamalar\u0131 sorumludur.<\/p>\n<p>Halkla ili\u015fkilere yap\u0131lan harcaman\u0131n, \u015firketlere olaylar\u0131 kamuya a\u00e7\u0131klama zorunlulu\u011fu getiren yasalar nedeniyle artm\u0131\u015f olmas\u0131 muhtemeldir. Durum, \u00f6zellikle veri s\u0131z\u0131nt\u0131lar\u0131nda bu \u015fekildedir. G\u00fcn\u00fcm\u00fczde mevcut ve potansiyel m\u00fc\u015fteriler veya ortaklar, meydana gelen olaylar\u0131 mutlaka \u00f6\u011frenir ve verilerinin siber su\u00e7lular\u0131n eline ge\u00e7me ihtimalinden endi\u015fe duyar. Mesele, b\u00fcy\u00fck \u015firketlerle s\u0131n\u0131rl\u0131 de\u011fil: Ankete kat\u0131lanlara g\u00f6re kurulu\u015flar\u0131n %36&#8217;s\u0131 ve k\u00fc\u00e7\u00fck i\u015fletmelerin %31&#8217;i s\u0131z\u0131nt\u0131lar sonucunda PR sorunlar\u0131 ya\u015fam\u0131\u015f.<\/p>\n<p>\u0130lgin\u00e7 olan\u0131, k\u00fc\u00e7\u00fck i\u015fletmeler tazminat giderleri ve gerek yaz\u0131l\u0131msal gerekse altyap\u0131sal g\u00fcvenlik ara\u00e7lar\u0131 giderlerinin azalmas\u0131 ile ba\u011flant\u0131l\u0131 olarak ortalama olay maliyetinin 120.000 $ seviyesinden 108.000 $ seviyesine d\u00fc\u015fmesiyle tersine bir trend ya\u015fam\u0131\u015ft\u0131r.<\/p>\n<p>A\u015fa\u011f\u0131da indirme ba\u011flant\u0131s\u0131 verilmi\u015f olan komple raporda siber olaylar sonucundaki kurumsal maddi zarara ait t\u00fcm kalemlerin ayr\u0131nt\u0131l\u0131 bir d\u00f6k\u00fcm\u00fc verilmi\u015ftir.<\/p>\n<h2>Olay nedenleri<\/h2>\n<p>Ankete kat\u0131lanlar\u0131n d\u00fc\u015f\u00fcncesine g\u00f6re, \u015firketin b\u00fcy\u00fckl\u00fc\u011f\u00fcnden ba\u011f\u0131ms\u0131z olarak esas sorun, \u00e7o\u011funlukla \u00e7al\u0131\u015fanlar\u0131n IT kaynaklar\u0131n\u0131 yanl\u0131\u015f kullanmas\u0131ndan ve \u015firket cihazlar\u0131na k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m bula\u015fmas\u0131ndan kaynaklanmaktad\u0131r. Tabi ki bu genel kategoriler \u00e7ok \u00e7e\u015fitli olaylar\u0131 kapsar ancak \u00f6rne\u011fin, bir \u00e7al\u0131\u015fan\u0131n bir e-postadaki bir ba\u011flant\u0131ya t\u0131klamas\u0131 ve k\u00f6t\u00fc ama\u00e7l\u0131 yaz\u0131l\u0131m\u0131 y\u00fcklemesi, yukar\u0131daki kategorilerin ikisine de girmektedir.<\/p>\n<p>Hem k\u00fc\u00e7\u00fck i\u015fletmelerin hem de kurulu\u015flar\u0131n en s\u0131k kar\u015f\u0131la\u015ft\u0131\u011f\u0131 di\u011fer olay senaryolar\u0131 ayr\u0131nt\u0131l\u0131 raporda verilmi\u015ftir. Ayr\u0131ca raporda, \u015firket b\u00fcnyesinde tam zamanl\u0131 bir veri koruma sorumlusu (DPO) ve siber olay m\u00fcdahale merkezi olmas\u0131n\u0131n (veya olmamas\u0131n\u0131n) zarar\u0131 ne \u015fekilde etkileyebilece\u011fini ortaya koyulmakta ve daha pek \u00e7ok ilgin\u00e7 bilgi verilmektedir.<\/p>\n<p>Raporu indirmek i\u00e7in l\u00fctfen a\u015fa\u011f\u0131daki formu doldurun.<\/p>\n<div class=\"interactive\"><form id=\"mktoForm_23865\"><\/form><script>MktoForms2.loadForm(\"\/\/app-sj06.marketo.com\", \"802-IJN-240\", 23865);<\/script><script>\n            MktoForms2.whenReady(function(form) {\n                form.onSuccess(function(vals, tyURL) {\n                    document.location.href = tyURL;\n                    dataLayer.push({\n                        'event': 'addEvents_makeConversions',\n                        'event_id': 'd-n01-e11',\n                        'conversion_name': 'Marketo Form',\n                        'conversion_step': 'Form Fill Out',\n                        'conversion_param': jQuery(location).attr(\"href\"),\n                        'eventCallback' : function() {\n                            jQuery(location).attr('href',tyURL);\n                        }\n                    });\n                    return false;\n                });\n            });\n            <\/script><\/div><!-- RECAPTCHA -->\n        <style>.googleRecaptcha { padding: 20px !important; }<\/style>\n        <script>\n            var GOOGLE_RECAPTCHA_SITE_KEY = '6Lf2eUQUAAAAAC-GQSZ6R2pjePmmD6oA6F_3AV7j';\n\n            var insertGoogleRecaptcha = function (form) {\n            var formElem = form.getFormElem().get(0);\n\n            if (formElem && window.grecaptcha) {\n                var div = window.document.createElement('div');\n                var divId = 'g-recaptcha-' + form.getId();\n                var buttonRow = formElem.querySelector('.mktoButtonRow');\n                var button = buttonRow ? buttonRow.querySelector('.mktoButton[type=\"submit\"]') : null;\n\n                var submitHandler = function (e) {\n                var recaptchaResponse = window.grecaptcha && window.grecaptcha.getResponse(widgetId);\n                e.preventDefault();\n\n                if (form.validate()) {\n                    if (!recaptchaResponse) {\n                    div.setAttribute('data-error', 'true');\n                    } else {\n                    div.setAttribute('data-error', 'false');\n\n                    form.addHiddenFields({\n                        reCAPTCHAFormResponse: recaptchaResponse,\n                    });\n\n                    form.submit();\n                    }\n                }\n                };\n\n                div.id = divId;\n                div.classList.add('googleRecaptcha');\n\n                if (button) {\n                button.addEventListener('click', submitHandler);\n                }\n\n                if (buttonRow) {\n                formElem.insertBefore(div, buttonRow);\n                }\n\n                if (window.grecaptcha.render) {\n                    var widgetId = window.grecaptcha.render(divId, {\n                    sitekey: GOOGLE_RECAPTCHA_SITE_KEY,\n                });\n                formElem.style.display = '';\n                }\n            }\n            };\n\n            function onloadApiCallback() {\n            var forms = MktoForms2.allForms();\n            for (var i = 0; i < forms.length; i++) {\n                insertGoogleRecaptcha(forms[i]);\n            }\n            }\n\n            (function () {\n            MktoForms2.whenReady(function (form) {\n                form.getFormElem().get(0).style.display = 'none';\n                jQuery.getScript('\/\/www.google.com\/recaptcha\/api.js?onload=onloadApiCallback');\n            });\n            })();\n        <\/script>\n        <!-- END RECAPTCHA -->\n","protected":false},"excerpt":{"rendered":"<p>Siber g\u00fcvenlikle ve firmalar\u0131n\u0131n siber tehditlere y\u00f6nelik tutumu hakk\u0131ndaki g\u00f6r\u00fc\u015flerini payla\u015fmak isteyen yakla\u015f\u0131k 5000 i\u015f karar vericisinin kat\u0131ld\u0131\u011f\u0131 bir anket d\u00fczenledik.<\/p>\n","protected":false},"author":2706,"featured_media":6511,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1726,1194,1727],"tags":[730,1628,2029],"class_list":{"0":"post-6510","1":"post","2":"type-post","3":"status-publish","4":"format-standard","5":"has-post-thumbnail","7":"category-enterprise","8":"category-business","9":"category-smb","10":"tag-rapor","11":"tag-veri-ihlali","12":"tag-zarar"},"hreflang":[{"hreflang":"tr","url":"https:\/\/www.kaspersky.com.tr\/blog\/security-economics-2019\/6510\/"},{"hreflang":"en-in","url":"https:\/\/www.kaspersky.co.in\/blog\/security-economics-2019\/16736\/"},{"hreflang":"en-ae","url":"https:\/\/me-en.kaspersky.com\/blog\/security-economics-2019\/14124\/"},{"hreflang":"en-us","url":"https:\/\/usa.kaspersky.com\/blog\/security-economics-2019\/18698\/"},{"hreflang":"en-gb","url":"https:\/\/www.kaspersky.co.uk\/blog\/security-economics-2019\/16770\/"},{"hreflang":"es-mx","url":"https:\/\/latam.kaspersky.com\/blog\/security-economics-2019\/17854\/"},{"hreflang":"x-default","url":"https:\/\/www.kaspersky.com\/blog\/security-economics-2019\/28838\/"},{"hreflang":"pt-br","url":"https:\/\/www.kaspersky.com.br\/blog\/security-economics-2019\/14493\/"},{"hreflang":"pl","url":"https:\/\/plblog.kaspersky.com\/security-economics-2019\/11278\/"},{"hreflang":"ja","url":"https:\/\/blog.kaspersky.co.jp\/security-economics-2019\/24298\/"},{"hreflang":"en-au","url":"https:\/\/www.kaspersky.com.au\/blog\/security-economics-2019\/23505\/"},{"hreflang":"en-za","url":"https:\/\/www.kaspersky.co.za\/blog\/security-economics-2019\/23355\/"}],"acf":[],"banners":"","maintag":{"url":"https:\/\/www.kaspersky.com.tr\/blog\/tag\/rapor\/","name":"rapor"},"_links":{"self":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/6510","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/users\/2706"}],"replies":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=6510"}],"version-history":[{"count":4,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/6510\/revisions"}],"predecessor-version":[{"id":6720,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/posts\/6510\/revisions\/6720"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media\/6511"}],"wp:attachment":[{"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=6510"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=6510"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.kaspersky.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=6510"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}