GITNUX MARKETDATA REPORT 2024

Cybersecurity In The Natural Gas Industry Statistics

The natural gas industry experiences an average of 22,660 cybersecurity incidents per day.

Highlights: Cybersecurity In The Natural Gas Industry Statistics

  • According to a Deloitte survey, around 20% of oil and gas companies have no cybersecurity plan in place on their operational technology.
  • The same Deloitte survey stated that 30% of respondents reported daily or weekly cyber-attacks.
  • It was estimated that up to 68% of oil and gas companies in North America had experienced atleast one significant cybersecurity incident in 2016.
  • According to Siemens, 75% of US oil and gas companies experienced atleast one cyber attack in 2016.
  • Companies in the energy sector, including natural gas, are the third most targeted by cyber criminals.
  • Around 93% of companies in the energy sector lack fully staffed cybersecurity teams.
  • Certain cybersecurity threats can cause a shutdown of US gas distribution for a month or more, as estimated by experts.
  • Half of the top ten total annual oil and gas incident counts are related to cyber espionage, indicating a high level of targetted attacks.
  • In 2013, energy companies were attacked 109 times, that number has doubled since.
  • Only 57% of security managers in the natural gas industry prioritize cyber threats in their report to the board, according to EY.
  • Phishing attacks are the leading cause of cybersecurity breaches in the oil and gas sector.
  • By 2020, cyber attacks cost natural gas and oil companies worldwide around 15 billion annually.
  • Nearly 70% of industrial control system (ICS) vulnerability advisories issued in 2020 affected the Energy sector, including natural gas.
  • Cybersecurity breaches can cost each individual organization upwards of $2.5 million per attack.
  • In a recent survey, 61% of IoT devices in the Oil and Gas industry, which includes natural gas, have been attacked.
  • Nearly 40% of all cyber attacks on critical infrastructure in 2012 was targetted at the energy sector, including natural gas.
  • As per ISC's estimates, 40% of all cyber attacks in the energy sector in 2013 were directed against the oil and natural gas subsector.

Table of Contents

The Latest Cybersecurity In The Natural Gas Industry Statistics Explained

According to a Deloitte survey, around 20% of oil and gas companies have no cybersecurity plan in place on their operational technology.

The statistic suggests that a significant portion, specifically 20%, of oil and gas companies lack a cybersecurity plan specifically tailored to address threats on their operational technology systems. This is concerning as operational technology plays a critical role in the functioning and safety of these industries, and is increasingly becoming a target for cyber attacks. The absence of a cybersecurity plan puts these companies at a higher risk of cyber incidents, such as data breaches, system disruptions, or even sabotage, which can have far-reaching consequences on operations, safety, and the environment. It highlights the importance of implementing robust cybersecurity measures to protect critical infrastructure and assets from cyber threats.

The same Deloitte survey stated that 30% of respondents reported daily or weekly cyber-attacks.

The statistic that 30% of respondents reported experiencing daily or weekly cyber-attacks, as indicated in the Deloitte survey, suggests a concerning prevalence of cyber threats in the surveyed population. This statistic highlights the significant risk and frequency at which individuals or organizations are targeted by cyber attackers, potentially leading to breaches of sensitive information, financial losses, and disruptions to operations. The high percentage of respondents experiencing such frequent cyber-attacks underscores the critical need for robust cybersecurity measures and proactive strategies to mitigate these risks and protect against evolving cyber threats in today’s digital landscape.

It was estimated that up to 68% of oil and gas companies in North America had experienced atleast one significant cybersecurity incident in 2016.

The statistic indicates that a substantial portion, specifically up to 68%, of oil and gas companies operating in North America encountered at least one significant cybersecurity incident during the year 2016. This suggests a prevalent vulnerability within the industry, highlighting the importance of bolstering cybersecurity measures to protect crucial infrastructure and sensitive data from potential threats. The high prevalence of cybersecurity incidents in a sector as critical as oil and gas could have far-reaching implications, underscoring the necessity for ongoing vigilance and investment in robust cybersecurity frameworks to safeguard against potential cyber threats and mitigate potential disruptions to operations.

According to Siemens, 75% of US oil and gas companies experienced atleast one cyber attack in 2016.

The statistic presented by Siemens indicates that a significant majority, specifically 75%, of oil and gas companies in the United States were affected by at least one cyber attack in the year 2016. This highlights the pervasive threat of cyber attacks within the industry, emphasizing the vulnerability of critical infrastructure such as oil and gas facilities to malicious cyber activities. The high percentage suggests that a large number of companies within this sector faced disruptions, breaches, or attempted intrusions on their systems and data, underscoring the importance of robust cybersecurity measures and strategies to safeguard against such threats in the future.

Companies in the energy sector, including natural gas, are the third most targeted by cyber criminals.

The statistic indicates that companies operating in the energy sector, particularly those dealing with natural gas, rank as the third most targeted industry by cyber criminals. This suggests that these energy companies face a relatively high risk of cyber attacks compared to other sectors. The potential motivation behind such targeting could include the sensitive nature of the data and infrastructure within the energy industry, making it an attractive target for hackers seeking financial gain, espionage, or disruption of operations. Consequently, companies within the energy sector, especially those involved in natural gas, should prioritize cybersecurity measures to safeguard their systems, data, and operations from potential cyber threats.

Around 93% of companies in the energy sector lack fully staffed cybersecurity teams.

The statistic that around 93% of companies in the energy sector lack fully staffed cybersecurity teams highlights a significant gap in cybersecurity preparedness within the industry. This implies that a vast majority of energy companies may be inadequately equipped to defend against cyber threats and safeguard critical infrastructure and data. Without a dedicated and fully staffed cybersecurity team, these companies are likely more susceptible to cyberattacks, data breaches, and other security incidents that could have far-reaching consequences, not just for the organizations themselves but also for the larger energy grid and supply chain. Addressing this deficiency in cybersecurity resources is crucial for enhancing the resilience and security of the energy sector against evolving cyber threats.

Certain cybersecurity threats can cause a shutdown of US gas distribution for a month or more, as estimated by experts.

The statistic suggests that certain cybersecurity threats have the potential to severely disrupt the distribution of gas within the United States for an extended period, such as a month or more. This estimation is based on the analysis and expertise of cybersecurity professionals who have identified vulnerabilities in the gas distribution infrastructure that could be exploited by malicious actors. A shutdown of this magnitude could have significant implications for key sectors of the economy and national security, underscoring the critical importance of robust cybersecurity measures to protect essential infrastructure systems from potential attacks.

Half of the top ten total annual oil and gas incident counts are related to cyber espionage, indicating a high level of targetted attacks.

The statistic “Half of the top ten total annual oil and gas incident counts are related to cyber espionage, indicating a high level of targeted attacks” suggests that a significant portion of the reported incidents in the oil and gas industry are linked to cyber espionage activities. This finding highlights the vulnerability of the sector to targeted cyber attacks, which are specifically aimed at extracting valuable information or disrupting operations within oil and gas companies. The high proportion of incidents attributed to cyber espionage underscores the importance of cybersecurity measures within the industry and the need for increased vigilance to protect critical infrastructure from potential threats in the digital landscape.

In 2013, energy companies were attacked 109 times, that number has doubled since.

The statistic “In 2013, energy companies were attacked 109 times, that number has doubled since” indicates a significant increase in the frequency of attacks targeting energy companies over time. This suggests a concerning trend of escalating security threats impacting energy infrastructure and operations. The doubling of attacks from 2013 indicates a rapid growth in these security incidents, highlighting the vulnerability and attractiveness of energy resources as targets for cyber or physical attacks. Such a trend underscores the critical importance of strengthening security measures, implementing robust risk management practices, and fostering collaboration between energy companies and cybersecurity experts to mitigate these increasing threats effectively.

Only 57% of security managers in the natural gas industry prioritize cyber threats in their report to the board, according to EY.

The statistic indicates that a relatively low percentage, specifically 57%, of security managers within the natural gas industry prioritize cyber threats when reporting to the board. This suggests that a significant portion of security managers may not be fully emphasizing the potential risks and implications posed by cyber threats within their sector. Given the critical nature of cybersecurity in safeguarding sensitive data, infrastructure, and operations within the natural gas industry, this statistic underscores the importance of increasing awareness and attention to cyber threats at the executive level to ensure proactive measures are taken to mitigate potential cyber risks.

Phishing attacks are the leading cause of cybersecurity breaches in the oil and gas sector.

The statistic indicates that phishing attacks are the most common method used by cybercriminals to compromise the cybersecurity defenses of companies in the oil and gas sector, resulting in breaches. Phishing attacks typically involve deceptive emails or messages designed to trick employees into divulging sensitive information such as login credentials or financial data. These attacks can lead to unauthorized access to critical systems and data, causing disruption to operations, financial losses, and potential risks to safety and security. Therefore, organizations in the oil and gas sector need to prioritize cybersecurity awareness training, implement robust email security measures, and establish incident response protocols to mitigate the risks posed by phishing attacks.

By 2020, cyber attacks cost natural gas and oil companies worldwide around 15 billion annually.

The statistic states that by the year 2020, natural gas and oil companies globally incurred approximately $15 billion in annual costs due to cyber attacks. This figure represents the financial impact that cyber security breaches have had on the energy sector, encompassing expenses related to data breaches, ransomware attacks, system downtime, regulatory fines, and other security incident response activities. Such attacks can disrupt operations, compromise sensitive information, and pose significant risks to the stability and reputation of companies in the natural gas and oil industry. As cyber threats continue to evolve and escalate in sophistication, it is crucial for organizations in this sector to invest in robust cybersecurity measures to safeguard their systems, assets, and data from malicious actors.

Nearly 70% of industrial control system (ICS) vulnerability advisories issued in 2020 affected the Energy sector, including natural gas.

The statistic indicates that a significant portion of the vulnerability advisories for industrial control systems (ICS) issued in 2020 were targeted at the Energy sector, particularly affecting natural gas operations. This suggests that the Energy sector, responsible for producing, generating, and distributing energy resources such as natural gas, faced a higher risk of cyber threats and vulnerabilities in their ICS infrastructure compared to other sectors. The prevalence of such advisories highlights the importance of implementing robust cybersecurity measures within the Energy sector to protect critical infrastructure and ensure the reliable and secure operation of energy systems.

Cybersecurity breaches can cost each individual organization upwards of $2.5 million per attack.

The statistic indicates that cybersecurity breaches have the potential to inflict significant financial damage on organizations, with the cost per attack averaging around $2.5 million. This figure includes expenses related to remediation efforts, loss of sensitive data, system downtime, legal fees, and damage to the organization’s reputation. The high cost associated with cyber attacks underscores the importance of investing in robust cybersecurity measures to protect against increasingly sophisticated threats. Organizations that fail to prioritize cybersecurity risk facing substantial financial losses, operational disruptions, and reputational harm.

In a recent survey, 61% of IoT devices in the Oil and Gas industry, which includes natural gas, have been attacked.

The statistic indicates that in a recent survey conducted on the Oil and Gas industry, specifically focusing on IoT devices used in the sector, 61% of these devices have experienced cyber attacks. This finding suggests a significant vulnerability within the industry, particularly in the context of increasing digitization and connectivity through IoT technologies. The high percentage of attacks on IoT devices in the Oil and Gas sector underscores the importance of cybersecurity measures to protect critical infrastructure, ensure operational integrity, and safeguard against potential threats to the industry’s data and systems. Addressing these vulnerabilities is crucial to maintaining the reliability and security of operations in the Oil and Gas sector.

Nearly 40% of all cyber attacks on critical infrastructure in 2012 was targetted at the energy sector, including natural gas.

The statistic indicates that in 2012, approximately 40% of all cyber attacks on critical infrastructure targeted the energy sector, specifically including natural gas facilities. This suggests that the energy sector, which plays a vital role in the functioning of various aspects of society, was particularly vulnerable to cyber threats during that time. Such attacks have the potential to disrupt energy supplies, damage infrastructure, and compromise sensitive information, posing significant risks to national security and public safety. Consequently, the energy sector, especially natural gas facilities, needs to prioritize cybersecurity measures to protect against future cyber threats and ensure the resilience of critical infrastructure systems.

As per ISC’s estimates, 40% of all cyber attacks in the energy sector in 2013 were directed against the oil and natural gas subsector.

According to ISC’s estimates, in 2013, the energy sector experienced a significant threat from cyber attacks, with 40% of all attacks targeting the oil and natural gas subsector specifically. This statistic suggests that the oil and natural gas subsector was particularly vulnerable to cyber threats compared to other parts of the energy sector. The high proportion of cyber attacks directed at this specific subsector highlights the importance of implementing robust cybersecurity measures within the oil and natural gas industry to protect critical infrastructure, sensitive data, and operational systems from potential threats and unauthorized access.

References

0. – https://www.www.siemens.com

1. – https://www.www.globalsign.com

2. – https://www.www2.deloitte.com

3. – https://www.unit42.paloaltonetworks.com

4. – https://www.www.ibm.com

5. – https://www.us-cert.cisa.gov

6. – https://www.www.csoonline.com

7. – https://www.www.eesi.org

8. – https://www.www.energy.gov

9. – https://www.www.ey.com

10. – https://www.threatpost.com

11. – https://www.www.cnbc.com

12. – https://www.www.isc2.org

How we write our statistic reports:

We have not conducted any studies ourselves. Our article provides a summary of all the statistics and studies available at the time of writing. We are solely presenting a summary, not expressing our own opinion. We have collected all statistics within our internal database. In some cases, we use Artificial Intelligence for formulating the statistics. The articles are updated regularly.

See our Editorial Process.

Table of Contents

... Before You Leave, Catch This! 🔥

Your next business insight is just a subscription away. Our newsletter The Week in Data delivers the freshest statistics and trends directly to you. Stay informed, stay ahead—subscribe now.

Sign up for our newsletter and become the navigator of tomorrow's trends. Equip your strategy with unparalleled insights!