Skip to content
Business Company News, Information Technology

Moving beyond ‘cyberwashing’ to ensure robust digital security

Monash University 2 mins read

A new Monash University report highlights the growing problem of organisations resorting to ‘cyberwashing’ to mislead the public about their data privacy practices and recommends measures to build a genuine culture of cybersecurity.

 

‘Cyberwashing’ occurs when organisations exaggerate or misrepresent their cybersecurity credentials to appear more secure than they actually are. 

 

This includes using vague language like "state-of-the-art security" without giving details, engaging in practices that contradict their privacy policies, lacking independent verification of their cybersecurity, over-emphasising the skills of their cybersecurity staff, and failing to openly discuss the causes and impacts of data breaches they have suffered. 

 

Lead author of the report, cybersecurity expert Professor Nigel Phair from Monash University’s Faculty of Information Technology, said cyberwashing creates a false sense of security and can have serious consequences for consumers and businesses alike.

 

The report, published in the Journal of Risk Management in Financial Institutions, outlines steps that organisations can take to ensure genuine attempts at robust cybersecurity are made, including backing up security claims with regular independent audits and transparent compliance with industry standards, training staff to understand cybersecurity complexities, and providing customers with accurate information about their cybersecurity practices. 

 

“Over the past few years, we have seen several high-profile data breaches in Australia, including those affecting Optus, Medibank and Latitude Financial Services. In each case, these organisations faced significant criticism and legal action after suffering data breaches despite claiming to have robust cybersecurity practices in place,” Professor Phair said. 

 

“This kind of cyberwashing erodes trust in organisations and, as we have seen, can result in severe financial, reputational and legal consequences, especially in the event of a data breach.”

 

The report also stresses the need for effective risk management and the importance of robust enforcement by regulators to deter cyberwashing.

 

“Companies should be improving their risk management policies and subsequent control implementation. Cyber insurance policies should require organisations to meet certain security standards and report accurate information about their cybersecurity practices,” Professor Phair said. 

 

“These efforts should be coupled with a properly functioning legislative enforcement framework that dissuades organisations from cyberwashing, like penalties under Australia’s Security of Critical Infrastructure Act 2018.

 

“A genuine commitment to cybersecurity, rather than misleading claims, is essential for protecting sensitive data and maintaining trust in the digital age.” 

 

Future research needs to include if company directors are asking questions in the boardroom surrounding cybersecurity messaging and any accompanying action.

 

Lead author of the report, Professor Nigel Phair from Monash’s Department of Software Systems and Cybersecurity at the Faculty of Information Technology, is available for interviews. 

 

Read the full report titled ‘Cyberwashing: The disconnect between cyber security claims and real practices’. 

 

MEDIA ENQUIRIES 

Teju Hari Krishna 

T: +61 450 501 248

E: media@monash.edu 

For more Monash media stories, visit our news and events site

More from this category

  • Information Technology
  • 13/03/2025
  • 08:11
QuestionPro

QuestionPro and MarketCulture Partner to Help Companies Drive Customer-Centricity and Business Growth

SAN FRANCISCO, March 12, 2025 (GLOBE NEWSWIRE) -- QuestionPro, a global leader in online survey and research services, and MarketCulture, a leading provider of employee and customer engagement tools and analytics, today announced a strategic partnership. This collaboration empowers companies to build and sustain a customer-centric culture, a crucial driver of customer satisfaction, loyalty, and business growth.This partnership integrates MarketCulture's proven MRI Benchmark methodology with QuestionPro's robust employee engagement platform. This synergy provides a seamless solution for organizations to gather, analyze, and act on employee feedback, uncovering blind spots that hinder growth and performance. This integrated approach empowers businesses to leverage…

  • Business Company News
  • 13/03/2025
  • 08:00
Monash University

Monash Expert: Impacts of climate, managing risk, value and insurance protection

Monash Business School’s Green Lab is hosting its third roundtable: Managing risk, value and insurance protection on 14 March. These roundtables are held in collaboration with the National Academy of Public Administration in Washington DC. The roundtable will cover the impact of extreme weather events on insurance, the future of the insurance industry, and how as global average temperatures rise, the scale and frequency of extreme events is increasing, creating greater loss and damage, corresponding to a rise in insurance premiums. The roundtable panel will consist of international leading academics and practitioners. Building comparative knowledge, the roundtables are intended to…

  • Business Company News, Foreign Affairs Trade
  • 13/03/2025
  • 07:30
Enterprise Ireland

St. Patrick’s Day Highlights €465M in Irish-Australian Innovation Trade

Irish Trade Hits Historic Global High as Enterprise Ireland Unveils Several Local Initiatives Thursday 13 March 2025: Companies supported by the Government of Ireland…

  • Contains:

Media Outreach made fast, easy, simple.

Feature your press release on Medianet's News Hub every time you distribute with Medianet. Pay per release or save with a subscription.