Skip to main content

How-much-to-spend-on-data-breach-protection

In a previous post, I discussed how much to spend on information security based on Gordon & Loeb's book Managing Cybersecurity Resources: A Cost-Benefit Analysis. The crux: spend no more than 37% of your expected loss.

Now, thanks to a new study by the Ponemon Institute (no relatoin to Pokemon) on the cost of business data breaches we have enough data to come up with a specific number to spend (at least for data breaches). And that number is:

# of data records * $182 * 37%

So there you have it. Go forth and budget.

Current rating: 2.3