Cyber risk belongs in the boardroom, not IT
- Published
- Letters to the Editor

If directors were legally accountable for cyber failures, they would stop treating resilience as a technical afterthought
Sir,
I read your recent piece on calls to make company boards legally liable for cyber failures (‘Make boards liable for cyber attacks, security chief warns’) with a mix of recognition and frustration. Recognition, because anyone who has worked inside a large organisation knows cyber risk is already existential. Frustration, because it has taken this long for many boards to treat it as anything other than a technical nuisance to be delegated downwards.
Boards are legally accountable for financial controls, audit failures and regulatory breaches, yet cyber resilience — which as we have seen can easily shut a business down overnight — is still too often handled several layers below director level. When an attack hits, responsibility suddenly rises to the top. Until then, it frequently disappears into PowerPoint updates and risk registers few directors truly interrogate.
I am sympathetic to concerns about over-regulation, but voluntary responsibility has clearly failed. If directors faced real legal consequences for ignoring cyber risk, conversations in boardrooms would change quickly. Cyber would stop being a quarterly update and start being treated like liquidity, solvency and compliance.
The question now is not whether boards should be accountable, but how quickly the law will catch up with reality. As with so many areas of governance, the risk is that regulation arrives only after the damage is already done.
Yours faithfully,
Andrew Collins
Reading, UK
Sign up to The European Newsletter
TOP STORIES
-
Facebook owner Meta signs Texas solar deal with Turkish renewables firm -
UK universities take top four places in European global rankings -
Hurghada gets new 442-room Red Sea resort as Britons chase year-round sun -
Home routers named ‘Europe’s forgotten internet security risk’ -
New documentary explores water safety as Europe confronts soaring drowning deaths -
Venice tourists say £43 day-trip fee will turn city into ‘playground for the rich’ -
King Charles to reveal personal tax bill for first time -
AI lab says brain-like engine could slash chatbot bills by 98 per cent -
Explorer who pulled out of Titan sub dive says damning report proves disaster was inevitable -
Britain to rank among Europe’s hottest places as 40C heatwave closes in -
Sir Keir Starmer says he will become a family man after quitting as UK PM -
EasyJet rejects reported £4.7bn takeover approach from U.S investment firm -
Street-by-street maps to reveal where England’s poorest communities face worst environmental risks -
Stanley Johnson: the Government must ‘follow Ukraine back into Europe’s green network’ -
Ukraine joins European environment network in major conservation step after war damage to land and wildlife -
Titan firm never proved doomed hull was safe, damning report finds -
Europe’s €4bn Frankfurt terminal named among world’s most beautiful airports -
The fist-bumping, selfie-taking humanoid guide that could usher sightseeing tours into the AI age -
EU says ‘time for change’ on child social media safety after survey links platforms to youth distress -
China offers UK coastal rescue lessons as Yancheng wetlands hailed by conservation figures -
UK’s under-16s social media ban risks giving parents false comfort, experts warn -
What Elon Musk’s US$1,100,000,000,000 fortune could buy -
NYC woman who held funeral for ChatGPT 'lover' calls for safeguards over AI companionship -
‘Sleeper-cell’ hackers are stealing company data now for future attacks, warns ISF chief -
Juncker and Keller-Sutter to address Zurich finance summit as banks face AI and regulation shake-up



























