Cybersecurity professionals in new layer of M&A scrutiny

Date:

Share post:

The 2014 Yahoo! Inc cyberattack that affected more than 500 million user accounts not only tarnished the reputation of the company but also impacted it financially. Verizon Communications Inc. which was on the process of acquiring Yahoo! cut the initial offer by $350 million.

The incident triggered a trend among other investors and enterprises, who started to add an extra level of scrutiny for the whole mergers and acquisition (M&A) process by hiring information security experts to screen targets for potential security risks.

Michael Bittan, head of Deloitte’s Cyber Risk Services unit in France, while talking to Bloomberg said, “There’s a risk you’re buying an empty shell. Cybersecurity is not about getting technical, it’s about business impact, and ultimately valuations. It will become a pillar of M&A decisions.”

According to a survey by NYSE, nearly 85 percent of the executives have found critical flaws and vulnerabilities at the audit stage. This affected the company’s decision to mend or even backing out from the M&A deals. “Beyond the obvious threats to cybersecurity, conducting an audit of cybersecurity protocols can also reveal vulnerabilities that could require significant expenditures for the acquiring company,” the survey report added.

The bigger concern, according to the report, was the lack of necessary technical skills among the people involved in the M&A process.

Fortunately, the trend of employing cybersecurity professionals during M&A process is growing. According to hackmageddon.com, there were as many as 1061 cyberattacks in 2016, which is poised to surge in the coming years. With cyberattacks hogging the limelight, experts feel that the likelihood of seeing more companies devaluating targets or even backing out after spotting vulnerabilities will increase.

Subscribe

Name(Required)
Privacy(Required)

Upcoming Events

Related articles

CyberSec Delhi Conference 2026

Securing India’s Power, Defence, Manufacturing & Industrial Ecosystems The CyberSec Delhi Conference 2026 will bring together policymakers, government stakeholders,...

SBOM, VEX, and AI: Dr. Allan Friedman on the Future of Software Supply Chain Security

A conversation on why software transparency is no longer optional, and how AI is about to make it...

Model-Borne Consequence: Why OT Security and Data Security Just Became the Same Job

For thirty years we told you industrial cybersecurity was fundamentally different from IT cybersecurity. We were right. Then...

Truth, Transparency, and a Subpoena: Inside TikTok’s Security Crisis with Roland Cloutier

How the former ByteDance CISO led a 3-billion-user platform through congressional hearings, an international ban threat, and the...