SHARE
Facebook X Pinterest WhatsApp

Small Business Administration Failing at Cybersecurity, Just Like Small Businesses

2016 Security Trends: What’s Next for Data Breaches? In recent hearings on Capitol Hill, Congress pushed the Small Business Administration (SBA) for its cybersecurity failings. Lawmakers claim that SBA isn’t following recommendations made by the Government Accountability Office to put more emphasis on cybersecurity. As the House Small Business Committee reported: Until SBA fully implements […]

Written By
SP
Sue Poremba
Jan 7, 2016
Slide Show

2016 Security Trends: What’s Next for Data Breaches?

In recent hearings on Capitol Hill, Congress pushed the Small Business Administration (SBA) for its cybersecurity failings. Lawmakers claim that SBA isn’t following recommendations made by the Government Accountability Office to put more emphasis on cybersecurity. As the House Small Business Committee reported:

Until SBA fully implements all of the required IT management initiatives, the agency cannot provide reasonable assurance that its IT investments are cost-effective, meet agency goals, or are effectively managed.

I understand the concern. After all, look at the fallout from the Office of Personnel Management (OPM) breach. Victims of that breach go well beyond government employees and contractors. (One of my holiday “gifts” was the formal letter from OPM telling me that my personal information was compromised, but I’m not a government employee or contractor. However, my personal information was required as part of someone else’s background check. You see how these breaches can spread well beyond the anticipated borders.) We also know that government agencies overall aren’t doing a good enough job with cybersecurity from multiple breaches over the past couple of years. So no, it doesn’t make sense that the SBA isn’t doing enough to meet standards set in September – unless there are budget issues, which seems to be the primary stumbling block for so many organizations.

This news about the SBA got me thinking, though. Have small businesses themselves been doing a better job at stepping up their cybersecurity game?

According to a recent article posted to Sys-Con Media, the answer would be no. Surprisingly, there is still the belief that cyberattacks happen to large corporations or to government entities, that cybercriminals have no interest in small businesses. On top of that, the article stated:

Statistics say that more than half of all small businesses in the U.S. don’t provide security training for their employees, only one quarter conduct outside party security tests, and more than 40% don’t produce backup copies of their most important business files, in case something goes wrong.

I think it would be helpful, although a tough task, to regularly report on all breaches, so companies realize that it isn’t just the “big guys” who suffer from attacks. The more we all know, the more seriously cybersecurity will be approached. But it would be just as helpful if government agencies like the SBA would step up as the example and put their own cybersecurity house in order, while assisting small businesses to do the same. In 2016, with the increasing threats being brought into the workplace via the Internet of Things and smarter hackers, budgeting and implementing cybersecurity have to be a priority.

Sue Marquette Poremba has been writing about network security since 2008. In addition to her coverage of security issues for IT Business Edge, her security articles have been published at various sites such as Forbes, Midsize Insider and Tom’s Guide. You can reach Sue via Twitter: @sueporemba

SP

Sue Poremba is freelance writer based on Central PA. She's been writing about cybersecurity and technology trends since 2008.

Recommended for you...

Observability: Why It’s a Red Hot Tech Term
Tom Taulli
Jul 19, 2022
Top GRC Platforms & Tools in 2022
Jira vs. ServiceNow: Features, Pricing, and Comparison
Surajdeep Singh
Jun 17, 2022
IT Business Edge Logo

The go-to resource for IT professionals from all corners of the tech world looking for cutting edge technology solutions that solve their unique business challenges. We aim to help these professionals grow their knowledge base and authority in their field with the top news and trends in the technology space.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.