#1 Middle East & Africa Trusted Cybersecurity News & Magazine |

28 C
Dubai
Tuesday, June 3, 2025
HomeAsiaData Disappearing Act: 94% of UAE Orgs Lost Data in Past Year,...

Data Disappearing Act: 94% of UAE Orgs Lost Data in Past Year, Proofpoint Reports

Date:

Related stories

spot_imgspot_imgspot_imgspot_img

A recent report by Proofpoint paints a concerning picture of data security in the United Arab Emirates (UAE). The report, titled “Proofpoint’s Inaugural Data Loss Landscape report,” reveals that a staggering 94% of surveyed organizations in the UAE experienced data loss in the past year.

This alarming statistic highlights the urgent need for UAE businesses to prioritize robust data security measures.

UAE Organizations Hemorrhaging Data: Careless Employees Top Threat

Proofpoint’s report identifies careless employee behavior as the leading cause of data loss within UAE organizations. This includes accidental data leaks through emails, misconfigured cloud storage settings, and the use of unauthorized personal devices for work purposes. The report further emphasizes the significant risk posed by privileged users, such as HR and finance professionals, who have access to sensitive data. Proofpoint’s data shows that a mere 1% of users can be responsible for a staggering 88% of data loss incidents.

Beyond Careless Employees: A Multifaceted Threat Landscape

While careless employees pose a significant threat, the data loss landscape in the UAE is multifaceted. Here’s a closer look at some additional contributing factors:

  • Cyberattacks: Malicious actors can launch phishing attacks to trick employees into revealing sensitive data or exploit vulnerabilities in IT systems to gain unauthorized access.
  • Insider Threats: Disgruntled employees or those with malicious intent can deliberately leak or steal sensitive data.
  • Outdated Technology: Organizations using outdated software or unpatched systems are more vulnerable to cyberattacks and data breaches.
  • Lack of Awareness: Inadequate employee training on cybersecurity best practices can leave organizations susceptible to human error.

10 Actionable Steps to Fortify Data Security in the UAE

The Proofpoint report serves as a wake-up call for UAE organizations. Here are 10 steps businesses can take to safeguard their data:

  1. Data Classification: Implement a data classification system to identify and prioritize sensitive data.
  2. Employee Training: Provide comprehensive cybersecurity awareness training for all employees.
  3. Strong Password Policies: Enforce strong password policies and implement multi-factor authentication (MFA) for all accounts.
  4. Data Loss Prevention (DLP): Consider deploying Data Loss Prevention (DLP) solutions to monitor and control data movement.
  5. Endpoint Security: Implement robust endpoint security solutions to protect devices from malware and unauthorized access.
  6. Access Controls: Enforce stricter access controls to limit employee access to sensitive data based on the principle of least privilege.
  7. Regular Backups: Maintain regular and secure backups of critical data to facilitate recovery in case of a data loss incident.
  8. Incident Response Plan: Develop a comprehensive incident response plan to manage data breaches and other security incidents effectively.
  9. Security Culture: Foster a culture of cybersecurity within your organization, emphasizing data security best practices.
  10. Penetration Testing & Vulnerability Assessments: Conduct regular penetration testing and vulnerability assessments to identify and address weaknesses in your IT infrastructure.

Conclusion

The Proofpoint report underscores the critical state of data security in the UAE. By prioritizing employee training, implementing robust security controls, and fostering a culture of data protection, UAE organizations can significantly reduce their data loss risks and safeguard sensitive information. In an increasingly digital world, data security is no longer an option; it’s a necessity.

Ouaissou DEMBELE
Ouaissou DEMBELEhttp://cybercory.com
Ouaissou DEMBELE is a seasoned cybersecurity expert with over 12 years of experience, specializing in purple teaming, governance, risk management, and compliance (GRC). He currently serves as Co-founder & Group CEO of Sainttly Group, a UAE-based conglomerate comprising Saintynet Cybersecurity, Cybercory.com, and CISO Paradise. At Saintynet, where he also acts as General Manager, Ouaissou leads the company’s cybersecurity vision—developing long-term strategies, ensuring regulatory compliance, and guiding clients in identifying and mitigating evolving threats. As CEO, his mission is to empower organizations with resilient, future-ready cybersecurity frameworks while driving innovation, trust, and strategic value across Sainttly Group’s divisions. Before founding Saintynet, Ouaissou held various consulting roles across the MEA region, collaborating with global organizations on security architecture, operations, and compliance programs. He is also an experienced speaker and trainer, frequently sharing his insights at industry conferences and professional events. Ouaissou holds and teaches multiple certifications, including CCNP Security, CEH, CISSP, CISM, CCSP, Security+, ITILv4, PMP, and ISO 27001, in addition to a Master’s Diploma in Network Security (2013). Through his deep expertise and leadership, Ouaissou plays a pivotal role at Cybercory.com as Editor-in-Chief, and remains a trusted advisor to organizations seeking to elevate their cybersecurity posture and resilience in an increasingly complex threat landscape.

Subscribe

- Never miss a story with notifications

- Gain full access to our premium content

- Browse free from up to 5 devices at once

Latest stories

spot_imgspot_imgspot_imgspot_img

LEAVE A REPLY

Please enter your comment!
Please enter your name here