© Copyright Acquisition International 2026 - All Rights Reserved.

Article Image - Current Approach to Due Diligence  Requires Rethink
Posted 30th April 2015

Current Approach to Due Diligence Requires Rethink

Completing a corporate transaction without rigorous financial due diligence is unthinkable. Yet, despite numerous well publicised incidents of cybercrime, investors remain blasé about the potential impact of cyber risks on long term value.

Mouse Scroll AnimationScroll to keep reading

Let us help promote your business to a wider following.

Current Approach to Due Diligence Requires Rethink
Image

Current Approach to Due Diligence Requires Rethink

Completing a corporate transaction without rigorous financial due diligence is unthinkable. Yet, despite numerous well publicised incidents of cybercrime, investors remain blasé about the potential impact of cyber risks on long term value.

Deals continue to be made without understanding the potential impact of this ticking time bomb, which U.S. Deputy Treasury Secretary Sarah Bloom Raskin has warned could be “the most pressing operational risk of our time”.

Hackers are becoming increasingly adept not only at penetrating networks, but also avoiding detection once inside corporate systems. Indeed, most significant breaches are uncovered, only after cyber criminals have been lurking inside corporate systems for weeks or months.

To understand the value of an investment and reduce the likelihood of a future catastrophic event, companies and their advisers must ensure cyber resilience is assessed alongside other strategic criteria, before a deal is completed. Leaving a review until after a deal has been signed is a very significant mistake.

A security assessment starts with a wide-ranging review, carried out by an external third party. However, just because the security review is being done at the same time as a financial review, it must not be confused with an audit. It is crucially important for investors to avoid the all-too-common pitfall of treating the security assessment as a checklist audit of security systems. Such an IT audit often does nothing more than confirm that a company meets a certain predefined infrastructure standard. It almost never considers the actual circumstances in which a company operates and tends to ignore the risks that are unique to each company, even though those risks cause the greatest vulnerability. Instead, a proper security assessment must be a customised and risk-focused review, aimed at understanding actual risks and suggests bespoke risk mitigation options.

In addition to identifying security gaps in hardware and software used by a company, a security review will determine the extent to which security is seen as a companywide priority. Everyone involved in using the IT systems has a crucial role to play. Therefore, an important part of good security is ensuring that employees are knowledgeable about their role in protecting company data and do not become the weak link in the security chain. Individuals must be taught to be vigilant about their behaviours, which will make it more difficult for attackers to catch someone unaware. Users also need to understand what to do if they suspect a problem with their computers or activities.

Careless executives or employees represent a significant risk to cyber security, according to a poll of US companies. The Stroz Friedberg ‘On the Pulse: Information Security Risk in American Business’ survey found that a key challenge for companies is to strengthen cyber security awareness among top executives. The survey found that 87% of senior managers regularly use personal email or cloud account to work remotely, placing such information at a much greater risk of being breached. More than half (58%) of senior management also reported that they had accidentally sent sensitive information to the wrong recipient, compared to just one quarter of workers overall.

The strategy to protect information must recognise also that cyber security extends beyond the data held directly by an enterprise. Key assets, including commercial contracts, intellectual property and strategic plans, are commonly held by third parties involved, such as financial or legal advisers. A determined hacker will not only aim to penetrate a corporate network but also target the company’s legal advisers, consultants suppliers and anyone else likely to have valuable information. Corporates must, therefore, ensure their lawyers, brokers, accountants and suppliers are also secure. Indeed, both the UK and US governments have specifically warned law firms that they are the targets of sophisticated hackers and must be better prepared to defend their networks.

Senior executives and their professional advisers can no longer be blind to cyber risks. As such threats become increasingly commonplace and costly, the resilience of the entire supply chain, including financial and legal advisers, must be addressed, so that the long-term value of an investment can be safeguarded from the very beginning.

Seth Berman is executive managing director of Stroz Friedberg, an investigations, intelligence and risk management company. 

Categories: M&A, Strategy


You Might Also Like
Read Full PostRead - Eye Icon
What Sustainable Wealth Looks Like Beyond Short Term Gains
Finance
27/01/2026What Sustainable Wealth Looks Like Beyond Short Term Gains

Many of us wonder how to build a financially secure future, moving beyond living from one payslip to the next. The path to wealth isn’t about lottery wins or risky schemes; it’s about building sustainable habits and making your money work for you.

Read Full PostRead - Eye Icon
International engineering consultancy Thornton Tomasetti to acquire MMI Engineering
Leadership
14/06/2018International engineering consultancy Thornton Tomasetti to acquire MMI Engineering

Thornton Tomasetti, the international engineering consultancy, has agreed to acquire MMI Engineering (“MMI”), the technical consulting specialist focused on the risk management of man-made and natural hazards across the oil and gas, nuclear, utilities and

Read Full PostRead - Eye Icon
Should You Fund Your Startup With Personal Credit Cards? Pros, Cons & Key Considerations
News
17/08/2022Should You Fund Your Startup With Personal Credit Cards? Pros, Cons & Key Considerations

Getting a new business off the ground when you don’t have the necessary capital saved up can be quite tricky. Risk capital sources such as angel investors, and VCs give a hard pass to the large majority of small businesses, unless they have breakthrough idea

Read Full PostRead - Eye Icon
How a Tungsten Carbide Manufacturer Supports Global Precision Engineering Growth
Strategy
29/05/2026How a Tungsten Carbide Manufacturer Supports Global Precision Engineering Growth

Precision engineering has become a quiet driver of global business growth. It supports the machines, tools, medical devices, aerospace systems, automation equipment, and industrial components that keep modern production moving. The work is not always visible t

Read Full PostRead - Eye Icon
How to Ensure a Successful Transition from E- commerce to Brick-and-Mortar Sales
News
29/04/2024How to Ensure a Successful Transition from E- commerce to Brick-and-Mortar Sales

Meta Description: Explore how you can successfully move from online selling to physical stores and take advantage of the best of both worlds with our expert tips and strategies. As entrepreneurs in the digital age, we have seen tremendous growth and success th

Read Full PostRead - Eye Icon
Building a Successful Fitness Business
News
17/05/2024Building a Successful Fitness Business

Embarking on a journey to become a professional personal trainer can be as exhilarating as it is transformative. For those aspiring to turn their passion for fitness into a lucrative career, acquiring the right credentials is a crucial step. Choosing to enrol

Read Full PostRead - Eye Icon
What lessons has the pandemic taught us about the fluidity of labour in the run up to Brexit?
Innovation
25/11/2020What lessons has the pandemic taught us about the fluidity of labour in the run up to Brexit?

So much time and angst has been spent on the B word since May 2016, much of it around the issue of fluidity of labour across borders. But what this year has shown is that technology and talent refuse to recognise borders: try building a wall in the cloud. So m

Read Full PostRead - Eye Icon
Ringier Africa Deals Group Acquires Nigerian Online Shopping Platform DealDey
Finance
23/03/2016Ringier Africa Deals Group Acquires Nigerian Online Shopping Platform DealDey

Ringier Africa Deals Group, a newly-founded joint venture between Swiss Ringier Africa AG and South African Silvertree Internet Holdings (Pty) Ltd, today announces it has acquired one of Nigeria’s biggest online shopping platforms, DealDey.

Read Full PostRead - Eye Icon
Enhancing Heavy Equipment Production with Cutting-Edge Technology
News
09/08/2024Enhancing Heavy Equipment Production with Cutting-Edge Technology

Enhancing Heavy Equipment Production with Cutting-Edge Technology Heavy equipment production is crucial for various industries, including construction, mining, and agriculture. Machines such as bulldozers, excavators, and tractors are essential for performing



Our Trusted Brands

Acquisition International is a flagship brand of AI Global Media. AI Global Media is a B2B enterprise and are committed to creating engaging content allowing businesses to market their services to a larger global audience. We have a number of unique brands, each of which serves a specific industry or region. Each brand covers the latest news in its sector and publishes a digital magazine and newsletter which is read by a global audience.

Arrow