Close Menu
  • Home
  • Managing resilience
    • AI resilience
    • Business continuity
    • Business resilience
    • Climate resilience
    • C-suite and the board
    • DORA – the EU Digital Operational Resilience Act
    • Operational resilience
    • Organizational resilience
    • Supply chain resilience
    • Technology
  • Risk
    • Enterprise risk management
    • Operational risk
    • Threatscape
  • Cyber resilience
    • Cyber resilience updates
    • DORA – the EU Digital Operational Resilience Act
    • Product updates
More items
  • All News
  • Research
  • Jobs in Resilience
  • Resilience Resources
  • About Resilience Forward
X (Twitter) LinkedIn
  • Home
  • Managing resilience
    • AI resilience
    • Business continuity
    • Business resilience
    • Climate resilience
    • C-suite and the board
    • DORA – the EU Digital Operational Resilience Act
    • Operational resilience
    • Organizational resilience
    • Supply chain resilience
    • Technology
  • Risk
    • Enterprise risk management
    • Operational risk
    • Threatscape
  • Cyber resilience
    • Cyber resilience updates
    • DORA – the EU Digital Operational Resilience Act
    • Product updates
Login
LinkedIn Bluesky
Resilience Forward
Subscribe Now
  • All News
  • Research
  • Jobs in Resilience
  • Resilience Resources
  • About Resilience Forward
Resilience Forward
You are at:Home»Managing resilience»Business continuity»Almost two in three UK companies have lost data due to failed backups (Page 17)
Business continuity

Almost two in three UK companies have lost data due to failed backups

While the majority of UK companies have needed to recover data from a backup in the last year, the number who lost data in the process has increased.
September 1, 20233 Mins Read
male executive shows anguish looking at his laptop after a backup faiure

This is according to annual research of security leaders in large enterprises carried out by Apricorn. Of the 90% of companies that had been forced to turn to their backup system, only 27% were able to recover all of their information and documents – a drop from 45% in 2022.

Almost a third (32%) of the security decision makers surveyed attributed the unsuccessful recovery to a lack of robust backup processes, up from 2% in 2022. Meanwhile, 22% admitted ‘we don’t have sufficiently robust backups in place to allow rapid recovery from any attack’ – a rise from 15% in 2022.

With a quarter (24%) of respondents stating that ransomware has been the main cause of a data breach at their organisation – an increase from 15% last year – this indicates a significant point of weakness. Backups play a vital role in maintaining business continuity in the wake of a ransomware attack that involves the theft or compromise of key data, enabling the business to restore quickly from a clean data set.

Fewer companies today are successfully restoring all of their backed up data than in 2022. This fall is paralleled by a rise in recognition that backup processes are inadequate. Having processes in place is probably less than half the battle. For a business to respond effectively to an incident that has disrupted critical data – whether that’s a cyber attack, employee error, or technical failure – processes must be rigorously tested and rehearsed, and continuously refined and updated.

Jon Fielding, Apricorn, managing director EMEA

Apricorn’s research also uncovered a shift in companies’ backup strategies, from an automated approach to a manual approach. Backups were automated at half (50%) of the surveyed companies, a drop from 93% in 2022. Manual backups are now carried out at 48% of companies, a significant increase from 6% last year – with a rise from 1% to 16% backing up to personal storage repositories such as removable hard drives.

“The upsurge in manual backups is likely to be the result of an increasing trend for IT teams to give employees greater autonomy over routine tasks,” said Mr. Fielding. “It’s good news if more employees are being required to make local backups of the data they create and handle, especially when working remotely. However, this relies on people remembering to execute the backup – and to do it correctly. This is why a ‘belt and braces’ strategy that includes automated backups to a central location is vitally important.”

The percentage of companies backing up to both central and personal repositories is still fairly low, standing at 38% across both automated and manual approaches.

“Too many companies are still at risk from having a ‘single point of failure’,” says Jon Fielding. “They must embrace the 3-2-1 rule: have at least three copies of data, stored on at least two different media, at least one of which is offsite. This means that if one copy is compromised, the information can be quickly and fully restored. Ideally, one offsite location should be offline – for instance an encrypted removable hard drive or USB which can be disconnected from the network to create an ‘air gap’ between data and threat.”


The research was conducted by Censuswide with 201 security decision makers (manager level +) of large companies in the UK between 30.03.2023 – 06.04.2023. Censuswide abides by and employs members of the Market Research Society which is based on the ESOMAR principles and are members of The British Polling Council.

https://apricorn.com/

UK
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email WhatsApp
Previous ArticleBusinesses must adopt a transformative mindset to build resilience
Next Article Two-thirds of organizations have not yet implemented ESG controls

Related Posts

An exploding digital padlock illustrates the requirement for post-quantum cryptography.

Research breakthrough brings reliable quantum computers and Q-day closer to reality

September 10, 2026
A danger sign on a digital background.

New blob URL phishing technique evades detection by using legitimate Microsoft services

September 10, 2026
AI risks

Unmanaged AI workflows expose EMEA organizations to rising compliance and data risks

September 9, 2026
City skyline at sunset with bright light trails and a translucent blue smart-city grid overlay and GPS pins indicating locations.

AI world models: future possibilities for organizational resilience?

September 7, 2026
DRJ and BCI logos

DRJ and BCI publish guidance for governing, managing, and using AI in resilience

September 7, 2026
Decision making with over whelming information.

AI can find the vulnerability. Accountability still sits with your crisis leadership

September 7, 2026
Advertisement
Resilience First
This week's most read articles
Under pressure: An egg cracking under pressure applied by squeezing clamps form the sides.

Managing scenario testing for operational resilience

May 16, 2024
COSO logo

New COSO ERM guidance aims to help organizations with practical implementation

May 12, 2026
Close-up of a green-brown iris peering through a jagged tear in dark paper or wall material.

The blind spots in business continuity

September 2, 2026
Latest resources
Agentic AI Network workflow concept - Multi AI agents connected in a shape of a digital brain

The new identity challenge: securing AI agents through API governance

January 13, 2026
Load More

Subscribe to Updates

Get our Resilience Updates newsletter.

Most Popular Feature Articles
Three dark coloured light bulbs on a black background illustrate the concept of The Dark Triad in Crisis Management.

The Dark Triad in crisis management

Five stage crisis management framework

A five stage framework for a crisis management process

Blue interconnected gears and network nodes symbolizing automation and complex machinery.

Agent zero – the 2028 digital pandemic

Latest Reports
A futuristic red warning alert icon with glowing exclamation mark.

Cloud Security Alliance publishes Hugging Face Incident Initial Post-Mortem

A person hold a building door open for a person behind who is tailgating to get unauthorised access.

Security Culture: A Strategic Capability That Builds Resilience in a Volatile World

An identity icon with a map marker on it, indicating the concept of identity as a target for attackers. The icon is on a generic IT background predominantly in black and orange.

Identity-based approaches dominate initial access for ransomware attacks

A promo box for an article about resilience governance.
© 2026 Resilience Forward
  • About Resilience Forward
  • Newsletter
  • Newsfeed
  • Advertise
  • Call for Papers
  • Contact
  • Privacy Policy and Cookie Use
  • AI Use Policy

Type above and press Enter to search. Press Esc to cancel.

Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behaviour or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behaviour or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Ad Blocker Enabled!
Ad Blocker Enabled!
Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.

Sign In or Register

Welcome Back!

Login to your account below.

Lost password?