IBM Study: Average data breach cost in Saudi Arabia projected at SAR 27 million by 2026

Published:

CHAPTER X // CYBER AWARENESS CAMPAIGN
BEYOND THE BALLROOM
[C://ME] // CHAPTER X

REQUEST THE MEDIA KIT

Tell us where to send the Beyond the Ballroom media deck. Every field is required.

We will use these details to respond to your media-kit request. Privacy Policy

IBM Study: Average data breach cost in Saudi Arabia projected at SAR 27 million by 2026. A recent report from IBM reveals that organizations in Saudi Arabia are expected to face an average data breach cost of SAR 27 million by 2026. This study highlights the financial impact of cyber incidents, particularly in the financial services, industrial, and technology sectors. Following a breach, 62% of organizations plan to enhance their investment in security tools and governance, underscoring the urgent need for improved cybersecurity measures in the region.

IBM Study Highlights Rising Costs

The 2026 Cost of a Data Breach Report, released by IBM, indicates that organizations in Saudi Arabia are experiencing significant financial repercussions from data breaches. The report identifies that financial services organizations face the highest average breach costs at SAR 38 million, followed by the industrial sector at SAR 35.4 million and the technology sector at SAR 33 million. These figures reflect the growing financial burden of cyber incidents on the Kingdom’s digital economy.

Organizations that struggle to prioritize threats or lack the necessary cybersecurity skills are particularly vulnerable, leading to increased costs. The report emphasizes the importance of adopting a DevSecOps approach, utilizing endpoint detection and response tools, and implementing encryption to mitigate these costs.

AI-Enabled Breaches on the Rise

Among the malicious breaches reported, 25% were found to be AI-enabled. Organizations that extensively use AI and security automation recorded average breach costs of SAR 23.15 million, significantly lower than the SAR 32.08 million average for those without such capabilities. Despite the advantages of AI, 25% of organizations reported not utilizing AI or security automation in their operations, indicating a gap in cybersecurity practices.

This trend highlights the need for organizations to invest in AI-driven security solutions to reduce the financial impact of breaches and enhance their overall cybersecurity posture.

Investment in Cybersecurity Tools

Following a data breach, 62% of Saudi organizations indicated plans to increase their investments in security tools and governance. The highest priority for these investments is data loss prevention, with 60% of organizations focusing on this area. Other priorities include incident response planning and testing (52%), hiring skilled cybersecurity specialists (41%), and investing in quantum security and cryptography management tools (36%).

This proactive approach to cybersecurity investment reflects the growing recognition of the importance of robust security measures in safeguarding sensitive data and maintaining operational integrity.

Longer Breach Lifecycles Increase Costs

The report also reveals that organizations taking more than 200 days to identify and contain a breach faced average costs of SAR 32 million, compared to SAR 22 million for those that managed to do so in under 200 days. On average, organizations in Saudi Arabia took 226 days to identify a breach and 59 days to contain it, indicating a critical need for faster response strategies.

Moreover, only 37% of breached organizations reported encrypting sensitive data both at rest and in transit, highlighting significant gaps in encryption practices that could expose organizations to further risks.

This report is based on information published by www.zawya.com.

Follow Cyber Warriors Middle East for further regional cybersecurity developments.

Cyber Warriors Conclave Chapter X — Beyond the Ballroom

Related articles

Recent articles

NASA advances digital taxi and safe runway technologies for commercial aviation

NASA has made significant advancements in commercial aviation technologies aimed at enhancing safety and efficiency at airports. Researchers at NASA’s Ames Research Center, in...

Malicious Content Discovered on ‘third-party.com’ Domain Used in Over 1,700 Repositories

The domain "third-party.com," typically used as a documentation placeholder, has been identified as serving a ClickFix lure targeting Windows users while presenting a benign...

New MacSync Version Targets Crypto Enthusiasts with Advanced Infection Techniques

The emergence of the MacSync malware family marks a significant evolution in the landscape of cyber threats targeting macOS users, particularly those involved in...

Astrana Health Reports Data Breach Following Social Engineering Attack on Employees

Astrana Health has reported a data breach involving the theft of private and confidential information from its servers, following a social engineering attack that...