The ransom is rarely the expensive part. Forensics, legal advice, telling people, the weeks of lost work and the customers who quietly go elsewhere usually cost far more. Estimate what a breach would actually cost you.
—
likely total cost of the breach
—
central estimate
—
you would bear
1. The breach
Records, not systems.
2. What you already have in place
Preparation does not stop a breach. It does change what one costs, sometimes by a great deal.
The data was encryptedAnd the keys were not compromised
Tested incident response planWritten down and rehearsed, with named people
Offline or immutable backupsTested restores in the last six months
Security monitoringYou would find out yourself, not from a customer
Staff trained and know how to report
Cyber insurance in place
3. Where the money goes
4. Regulatory exposure
5. What moves the number
Every line on that table gets smaller with preparation
Hamilton Group reduces the cost of the breach you have not had yet — encryption, immutable backups, monitoring that catches it early, and a plan that means nobody is improvising. Book a free review.
An estimate for planning, not a prediction. Figures are built from typical UK ranges for small and mid-sized businesses and will not match any particular incident — real costs depend on what was taken, how quickly it was found, who was affected and how they react. Regulatory outcomes in particular are highly variable and are shown separately rather than added in, because most reported breaches result in no monetary penalty. Nothing here is legal, insurance or accounting advice, and it does not model criminal liability, director duties or contractual penalties in your client agreements.