• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

My TechDecisions

  • Best of Tech Decisions
  • Topics
    • Video
    • Audio
    • Mobility
    • Unified Communications
    • IT Infrastructure
    • Network Security
    • Physical Security
    • Facility
    • Compliance
  • RFP Resources
  • Resources
  • Podcasts
  • Project of the Week
  • About Us
    SEARCH
Network Security, News

Education Has a Higher-Than-Average Ransomware Impact

As ransomware continues to grow, recovery costs and timelines in the education sector outpace global averages, Sophos report finds.

July 18, 2022 Zachary Comeau Leave a Comment

VMware EXSi security
stock.adobe.com/kaptn

As virtually every industry sector is reporting an increase in cyberattacks and ransomware, the education sector remains one of the hardest hit of late, with recovery costs and timelines outpacing global averages, according to a new report from cybersecurity software provider Sophos.

The company’s survey of 5,600 IT professionals in higher education and K-12 across 31 countries found that like many other sectors, ransomware is a rising threat, as 56% of lower education and 64% of high education organizations were hit by ransomware last year, an increase from the 44% of education respondents that reported an attack in a similar 2021 report.

While the education experienced a lower attack rate than others, recovering after an attack is considerably more difficult among education IT departments, as higher and lower education have data encryption rates of 74% and 72%, respectively. Meanwhile, the global average encryption rate is 65%.

“These findings suggest that the education sector is poorly prepared to defend against a ransomware attack, and likely lacks the layered defenses needed to prevent encryption if an adversary does succeed in penetrating the organization,” Sophos explains in the report.

When it comes to paying the ransom, higher education institutions are more likely to pay than others, with a pay rate of 50%, compared to the global average of 46%. Lower education organizations paid 45% of the time.

As with any industry, paying a large ransom to a criminal does not guarantee the return of encrypted data for education organizations, as just 2% of both lower education and higher education organizations got all their data back after paying a ransom, a slightly lower rate than the 4% global average.

However, most education institutions surveyed used backups to restore their data, used by 76% of lower education and 70% of higher education organizations, compared to the global average of 73%.

Although the education attack rate is lower than other sectors, the financial and operational impact on education is higher than all other industry sectors. According to Sophos’ report, both lower ($1.58 million) and higher ($1.42 million) education organizations reported higher remediation costs than the global average due to high operational impacts and slower-than-average recovery times.

Due to a lack of resources, the education sector takes longer than average to recover from ransomware, but higher education has the slowest recovery time across all sectors with 9% reporting a recovery period of three to six months, more than double the global average of 4%. Further, 31% of higher education respondents took one to three months to recover, nearly double the global average of 16%. Overall, 40% of higher education organizations took over a month to recover, while the global average is 20%.

Also a factor in how the education sector responds to a ransomware attack is the cybersecurity insurance market, which is becoming expensive. According to Sophos, only 78% of education organizations have coverage, compared to the global average of 83%.

With ransomware payouts increasing, cybersecurity insurance is becoming more expensive, so insurers are becoming more selective about who they cover. That is leading to education organizations improving their cyber defenses, with 95% of lower education and 96% of higher education organizations doing so to secure insurance coverage, according to Sophos’ report. 

The company’s report includes a list of five recommendations, including protecting all points in the IT environment, proactively hunting for threats, hardening IT environments, creating ransomware response plans and keeping secure backups.

If you enjoyed this article and want to receive more valuable industry content like this, click here to sign up for our digital newsletters!

Tagged With: Education, ransomware

Related Content:

  • Cloud, SASE, Aryaka How the Cloud is Redefining Media Production and…
  • Singlewire Software mass notification interview Singlewire Software on Mass Notification Solutions
  • URI catchbox 1 Catchbox Plus: The Mic Solution That Finally Gave…
  • Engaging virtual meeting with diverse participants discussing creative ideas in a bright office space during daylight hours Diversified Survey: Workplace AV Tech is Falling Short,…

Free downloadable guide you may like:

  • Download TechDecisions' Blueprint Series report on Security Awareness now!Blueprint Series: Why Your Security Awareness Program is Probably Falling Short

    Learn about the evolution of phishing attacks and best practices for security awareness programs to ensure your organization is properly prepared to defend against them in this report from TechDecisions' Blueprint Series.

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Latest Downloads

Practical Design Guide for Office Spaces
Practical Design Guide for Office Spaces

Recent Gartner research shows that workers prefer to return to the office for in-person meetings for relevant milestones, as well as for face-to-fa...

New Camera Can Transform Your Live Production Workflow
New Camera System Can Transform Your Live Production Workflow

Sony's HXC-FZ90 studio camera system combines flexibility and exceptional image quality with entry-level pricing.

Creating Great User Experience and Ultimate Flexibility with Clickshare

Working and collaborating in any office environment today should be meaningful, as workers today go to office for very specific reasons. When desig...

View All Downloads

Would you like your latest project featured on TechDecisions as Project of the Week?

Apply Today!

More from Our Sister Publications

Get the latest news about AV integrators and Security installers from our sister publications:

Commercial IntegratorSecurity Sales

AV-iQ

Footer

TechDecisions

  • Home
  • Welcome to TechDecisions
  • Contact Us
  • Comment Guidelines
  • RSS Feeds
  • Twitter
  • Facebook
  • Linkedin

Free Technology Guides

FREE Downloadable resources from TechDecisions provide timely insight into the issues that IT, A/V, and Security end-users, managers, and decision makers are facing in commercial, corporate, education, institutional, and other vertical markets

View all Guides
TD Project of the Week

Get your latest project featured on TechDecisions Project of the Week. Submit your work once and it will be eligible for all upcoming weeks.

Enter Today!
Emerald Logo
ABOUTCAREERSAUTHORIZED SERVICE PROVIDERSYour Privacy ChoicesTERMS OF USEPRIVACY POLICY

© 2025 Emerald X, LLC. All rights reserved.