The engagement begins by identifying systems, devices, applications, and infrastructure components included within scope. Cyberintelsys follows a structured methodology designed to identify vulnerabilities, assess risks, validate controls, and strengthen cybersecurity resilience. These frameworks provide structured guidance for evaluating cybersecurity controls, strengthening governance, identifying security gaps, and improving organizational security maturity.
RH-ISAC connects information security teams at the strategic, operational, and tactical levels to work together on issues and challenges, share timely and actionable threat intelligence, best practices, and benchmarks among each other – all with the goal of building better security for the retail and hospitality industries through collaboration. This is a complete reframing of how we think about security and in a large part today people recognize that it’s not a negotiable topic anymore. So how do you grow the people you have hired to allow them to continue to advance their career and skills, to remain current with whatever the emerging technology is and the emerging security needs. Ideally, we want to drive people to that internal AI ecosystem for their experimentation because we don’t necessarily want people who are using internet-facing tools risking things like data leak. Contact us today to secure your retail ecosystem, identify cybersecurity gaps, improve compliance readiness, strengthen cyber resilience, and support your long-term cybersecurity and business objectives.
And the main motive of these incidents was to steal customer data for financial gain. According to Verizon’s 2022 Data Breach Investigations Report, the retail industry experienced 629 incidents in 2022 out of which 241 confirmed data breaches. Retailers have access to a vast amount of customer data, including personal information, credit card details, and purchasing history.
Key Cyber Threats in Retail
It’s in our interest as members of the business and information security communities to help suppliers through cybersecurity issues. Where our merchandise supply chains are concerned, most of the mitigation of potential issues falls to our merchant teams. With our technology supply chain, we pay very close attention to companies that have security issues and want to quickly understand if those security issues have an intersection point with our environment or business processes. Security evaluations focused on payment processing environments and transaction security controls. Cyberintelsys offers comprehensive cybersecurity services https://scivast.com/articles/understanding-types-of-erp-systems/ designed to secure every layer of connected retail environments. Potential threats, vulnerabilities, and business impacts are identified and analyzed.
Frameworks & Compliance Standards in Retail Cybersecurity
- If companies use Customer Relationship Management (CRM) tools, then they need to have role-based access controls, multi-factor authentication, data encryption, and other such measures to secure customer and company data.
- While cyber insurance covers costs related to cyber threats, it does have a number of coverage exclusions.
- On an operational level, retail companies utilize threat intelligence by integrating it into their security operations centers and incident response processes.
- Companies must include scenarios involving third-party incidents in their incident response plans – e.g., how to disconnect quickly from a partner’s connections if that partner is breached, and how to work together on forensic investigations.
- These attacks can lead to unauthorised access to company systems, financial losses, and compromised customer data.
- These actions, while costly, were recognized as necessary investments to rebuild trust and reduce the likelihood of future incidents.
For industry professionals and researchers, the intersection of cybersecurity and corporate risk in retail offers valuable lessons in resilience and the necessity of aligning security efforts with business objectives. As the cyber landscape evolves – with new challenges such as supply chain attacks, ransomware cartels, and ever more sophisticated fraud techniques – the principles discussed here will remain vital. The Target breach, though costly, ultimately led to industry-wide improvements that have made the retail sector safer from cyber threats. No system can guarantee absolute security, but by learning from past incidents and continuously improving their cyber risk management, retail companies can make attacks far less likely to succeed and limit the impact of those that do occur. In response, they have increasingly adopted structured frameworks (like NIST CSF and ISO 27001) to organize their defenses and ensure no critical gaps, while also adhering to industry standards such as PCI DSS to protect payment information. The retail industry’s journey over the past decade – marked by incidents like the Target breach – vividly demonstrates that cybersecurity is integral to corporate risk management and business sustainability.
Retail Industry
At the same time, structural challenges, such as competing IT priorities and budget constraints, remain the top barriers to executing security initiatives. Security team sizes are expected to remain largely unchanged in 2026, with organizations prioritizing efficiency over expansion. At the same time, organizations are increasingly integrating AI into their security operations, particularly for threat detection, analysis, and reporting.
- E-commerce companies work with numerous vendors to support different aspects of their operations.
- Technologies like multifactor authentication, one-time passwords, and just-in-time provisioning are used to further secure third-party access.
- These attacks align with findings that 43% of the retail violations involve compromised credentials, a vulnerability exploited in the M&S case.
- The impact on consumers is severe, extending beyond immediate financial loss to potential identity theft.
- Retailers are facing an increasingly hostile cyber threat environment, as attackers grow more sophisticated in exploiting the structural complexities that define how the sector operates.
- In retail specifically, there is additional pressure from multiple overlapping attack paths all at once, such as ransomware, credential theft, and vulnerability exploitation, seeing a 2x increase in targeting and success rates for attackers.
This alignment of best practices and frameworks helps retailers systematically reduce the added risk that comes from doing business in an interconnected marketplace. By integrating third-party risk considerations into their overall enterprise risk management – including board-level discussions https://nutritioninpill.com/cvs-buying-ohio-pharmacy-chain-closing-all-but-three-akron-beacon-journal/ and risk registers – organizations can better ensure that their vendors and suppliers do not become an Achilles’ heel in their cyber defenses. Clear communication channels between the retailer and vendors are key so that if one detects an anomaly related to the other, it can be swiftly communicated. Companies must include scenarios involving third-party incidents in their incident response plans – e.g., how to disconnect quickly from a partner’s connections if that partner is breached, and how to work together on forensic investigations.
Register your interest for Europe’s leading cybersecurity event
As this is an ongoing situation, and only limited production has resumed at the time of writing four weeks later, this ransomware attack has had a huge impact across JLR themselves and their suppliers. It’s part of the identity fabric, not supervised, and incredibly attractive to attackers because of it. The lesson here is exactly what we highlighted in last year’s report, non-human identities and integrations via APIs and OAuth across cloud and your different SaaS vendors must be monitored for anomalous activity. The list of victims is long, and includes BeyondTrust, CloudFlare, CyberArk, Nutanix, Palo Alto Networks, Qualys, Rubrik, Tenable and Zscaler. OAuth tokens are very powerful, and once in the hands of criminals, only revoking them and the integration will offer protection, not MFA or resetting credentials, unlike compromised user credentials.
A large-scale AWS intrusion reveals how AI-assisted attackers can… Behavioral analytics tools that detect anomalous data access patterns and AI-powered fraud detection algorithms are recommended, reducing false positives by 63%. Retailers are increasingly adopting AI-driven solutions, with automated threat detection reducing breach identification time by 40%. A 2024 study tracking 2,500 breach victims found 68% reduced online purchases from affected brands, while 42% deleted accounts entirely.
UpGuard’s Updated Cyber Risk Ratings
VIENNA, Va., May 28, 2026 /PRNewswire/ — The Retail & Hospitality Information Sharing and Analysis Center (RH-ISAC) today announced the 2026 schedule for its Regional Workshop series, a global program designed to bring cybersecurity practitioners together for in-person collaboration, threat intelligence sharing, and professional development. From grocery distribution and car rental to secret government messaging, cyber adversaries exploit weakest links—vendors, contractors, unpatched systems. In May, cybercriminals infiltrated TeleMessage, a compliance messaging app used by US government officials—including those from FEMA, CBP, etc.
Continuous education, clear policies, and simulated phishing tests can significantly reduce human-related security incidents. Strengthening third-party risk management and requiring compliance with security standards can reduce this exposure. Supply chain and third-party attacks exploit weak cybersecurity practices among vendors or partners connected to a retailer’s system. Retailers are frequent targets of these due to the increasing reliance on interconnected digital systems and customer databases. It involves implementing secure payment processing, protecting Point-of-Sale (POS) systems, and monitoring networks for suspicious activity. Learn what cybersecurity for retail means, why it’s important, and the best practices for teams to follow to ensure cybersecurity safety in retail establishments.
It also illustrates how its impact can spread across supply chains and critical https://legaleaglefirm.uk/meta-and-amazon-settle-uk-antitrust-probes-over-use-of-third-party-data-to-benef services. These cybersecurity incidents demonstrate how quickly attackers can exploit a single vulnerability. These solutions block zero-day exploits, malicious links, impersonation attempts and compromised identities at the email and collaboration layer, preventing threats from reaching your critical systems.

