Startup DreamersStartup Dreamers
  • Home
  • Startup
  • Money & Finance
  • Starting a Business
    • Branding
    • Business Ideas
    • Business Models
    • Business Plans
    • Fundraising
  • Growing a Business
  • More
    • Innovation
    • Leadership
Trending

A Cybersecurity Primer For Businesses In 2025

July 14, 2025

Why Surcharging Is a Bad Move For Small Businesses — and What to Do Instead

July 14, 2025

Can’t Get an Email Back? These 7 Tips Will Make Sure You Get a Response Every Time

July 14, 2025
Facebook Twitter Instagram
  • Newsletter
  • Submit Articles
  • Privacy
  • Advertise
  • Contact
Facebook Twitter Instagram
Startup DreamersStartup Dreamers
  • Home
  • Startup
  • Money & Finance
  • Starting a Business
    • Branding
    • Business Ideas
    • Business Models
    • Business Plans
    • Fundraising
  • Growing a Business
  • More
    • Innovation
    • Leadership
Subscribe for Alerts
Startup DreamersStartup Dreamers
Home » Clorox Crisis Shows Cyber Risk’s Harsh Business Downside
Innovation

Clorox Crisis Shows Cyber Risk’s Harsh Business Downside

adminBy adminOctober 6, 20230 ViewsNo Comments6 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email

The Clorox cyberattack crisis warrants every board’s attention. The consumer-products giant spent over $500 million on IT upgrades and earned a spot on the 2023 Forbes Most Cybersecure Companies list. Nonetheless, an August breach halted its operations with devastating supply chain and business consequences.

While the cybercrime details remain unclear, Clorox disclosed that it was forced back to manual processes, as automation systems took nearly six weeks to normalize. That left retailers and consumers scrambling for merchandise. In terms of the financial aftermath, its preliminary FY2024 Q1 results suffered significantly:

  • “Order processing delays and significant product outages” dented quarterly sales by 28%.
  • Lower gross margins are anticipated, as “the impact of the cybersecurity attack more than offset the benefits of pricing, cost savings and supply chain optimization [and] lower cost absorption driven by lower volume.”
  • Quarterly earnings per share will show a loss rather than positive result.
  • Remediation efforts and expenditures will extend well into FY 2024.

The capital markets have not responded kindly, as Clorox shares are down over 25% since the August news, trading at or near five-year lows. That’s over $3 billion in lost market valuation.

The damage is measurable and the lessons should be clear. As cyber threats surge, the alarming scale, speed and scope of the upheaval at Clorox should motivate senior leaders in all organizations to question, assess and fortify business resilience, operational agility and technological readiness — before it’s too late.

Fight Fire With Fire

While no company is immune to cyber risk, strong, substantive digital era leadership is widely lacking. Here are four immediate, meaningful actions organizations can take to boost business resilience:

1. Seriously address board composition.

The SEC’s long-awaited cybersecurity regulations exclude board tech expertise. Not surprisingly, cyber expertise on boards remains rare. According to recent research by the Wall Street Journal, only “107 directors at 113 [S&P 500] companies had professional experience in cybersecurity.” Further, those leaders “held a total of 124 [2.3%] of S&P 500 board seats.”

Clorox was no exception. Astonishingly, despite the ongoing cyber crisis, its 2023 Proxy Statement reveals no plans for a board technology committee and none of the twelve seated and nominated directors has any credible tech experience. One member, Julia Denman, works in Microsoft’s audit and finance function. However, tech firm employment does not constitute the background cyber threats demand.

2. Equip the board with independent insights.

Chris Hetner, former senior cybersecurity advisor to SEC Chairs Mary Jo White and Jay Clayton and currently Nasdaq Center for Board Excellence Insights Council member and senior cyber risk advisor to the National Association of Corporate Directors (NACD), advocates mirroring risk transfer market methodologies. For instance, the NACD endorsed X-Analytics as the preferred boardroom cyber risk reporting solution for their over 23,000 members. X-Analytics is a patented and validated cyber risk decisioning platform that ties an enterprise’s cyber risk probability, severity and control effectiveness to financial loss probabilities.

Hetner explained, “Clorox’s shutdown reinforces that cybersecurity threats introduce business, operational and financial harm. Now’s the time to deliver effective executive and boardroom reporting that expresses cyber threats and resilience strategies through the business lens.”

3. Set business interruption tolerance and deploy capital accordingly.

Hetner urges boards to re-center cybersecurity discussions on “the financial and business impact associated with each digital risk type, such as intellectual property theft, business interruption, ransomware, loss of customer data or misappropriation of funds. That immediately connects continuous cyber risk assessment to strategy and balance sheet stress.”

He suggested that cybersecurity consideration start with how much business interruption an enterprise is willing to tolerate. Boards, CEOs and CFOs must first understand the costs of a “six hour, daylong or weeklong” shutdown. Accepting that downside then more easily defines the justifiable capital allocation for adequate countermeasures,” Hetner explained.

That’s thinking differently — with a much higher chance of better outcomes. “The default tendency of CIOs and CISOs is to rely on periodic tactical and technical reports to justify tech solutions spending that may suppress risk,” Hetner highlighted. “That too often gets ‘lost in translation’ when engaging board members and the wider c-suite — leaving leadership unsure of precisely what they are funding and where residual gaps remain.”

Hetner emphasized, “When a leadership team possesses an aggregate view of risk tied to financial exposure, they can then best decide how much risk to accept, transfer or deploy capital to manage.” That downside-first view raises cybersecurity from a technical afterthought to the business strategy forefront.

4. Simulate cyberattack responses.

Last year, CNBC’s CFO Council Summit attendees participated in a ransomware attack simulation. Most senior executives felt quite unprepared, scrambled for legal advice and all paid the ransom. Noname Security CISO Karl Mattson observed. “The CFOs really struggled with calculating the break-even point of ‘to pay or not to pay. In our simulation, we realized that our business really does have a threshold of pain and lost revenue, above which the ransom payment is entirely rational. We had to build that cost/loss model on the fly.”

In the Clorox case, SafeBreach CISO Avishai Avivi, told IndustryWeek, “The fact that it will take Clorox more than a month to recover normal operations is not a good sign. It indicates to me that the adversary was able to penetrate the backbone of Clorox operations and impact multiple systems.”

He added, “While Clorox indicated in their August notification that they have activated their business continuity plan (BCP), the fact that they have still not recovered full operational capability indicates that their BCP was not complete for this particular type of disruption. A good BCP [includes] a recovery time objective (RTO). It is very rare that an RTO will be longer than a month.”

Most executives stand unready to credibly make such estimates. That’s because few have ever challenged themselves with realistic simulations.

Roll The Bones

Cyber criminals are targeting larger and seemingly more secure targets daily. Even well-funded and highly-touted Clorox was not ready, willing and able enough to withstand its breach. Who else is relying on chance over serious change?

Read the full article here

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Articles

A Cybersecurity Primer For Businesses In 2025

Innovation July 14, 2025

Today’s Extra Clues And Answers

Innovation July 13, 2025

One Of The Best Action Movies Ever Made Lands On Netflix Today

Innovation July 12, 2025

Today’s NYT Mini Crossword Clues And Answers For Friday, July 11th

Innovation July 11, 2025

Taylor Vs. Serrano 3 Will Set A World Record—Here’s How To Watch

Innovation July 10, 2025

UiPath CTO Details ‘Office Layout’ For Agents, Robots And Humans

Innovation July 9, 2025
Add A Comment

Leave A Reply Cancel Reply

Editors Picks

A Cybersecurity Primer For Businesses In 2025

July 14, 2025

Why Surcharging Is a Bad Move For Small Businesses — and What to Do Instead

July 14, 2025

Can’t Get an Email Back? These 7 Tips Will Make Sure You Get a Response Every Time

July 14, 2025

How to Build a Side Hustle That Stands on Its Own — Without Burning Out

July 14, 2025

Tornado Cash Made Crypto Anonymous. Now One of Its Creators Faces Trial

July 14, 2025

Latest Posts

‘Obvious’ Side Hustle: From $300k Monthly to $20M+ in 2025

July 13, 2025

The Smart Way to Scale From Single- to Multi-Unit Ownership

July 13, 2025

How I Turned My Hobbies Into Profitable Side Businesses

July 13, 2025

Linda Yaccarino Tried to Tame X. Now She’s Out as CEO

July 13, 2025

One Of The Best Action Movies Ever Made Lands On Netflix Today

July 12, 2025
Advertisement
Demo

Startup Dreamers is your one-stop website for the latest news and updates about how to start a business, follow us now to get the news that matters to you.

Facebook Twitter Instagram Pinterest YouTube
Sections
  • Growing a Business
  • Innovation
  • Leadership
  • Money & Finance
  • Starting a Business
Trending Topics
  • Branding
  • Business Ideas
  • Business Models
  • Business Plans
  • Fundraising

Subscribe to Updates

Get the latest business and startup news and updates directly to your inbox.

© 2025 Startup Dreamers. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Press Release
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.

GET $5000 NO CREDIT