Question of the day: we're a company with around 1,000 employees, and we regularly take backups (internally and in the cloud). We are confident that we can recover quickly from a ransomware attack. Within 1 day, we'll be back in production. The impact will be low, we're confident.
However, we're curious to know what the financial impact would be of a ransomware attack targeting our organization? Taking into account the fact that we have functional backups.
Answer
You have functional backups and I assume you test them regularly. Good for you!
Based on our experience in the field, and assuming that your backups are working well, here's a minimum estimate of what a major ransomware attack will cost you (e.g. domain controller encrypted and unavailable):
As for getting back into production in 1 day, forget it. The day is used to digest the shock, stop the bleeding (contain the incident), manage communication, check your backups or talk to your Cloud provider to find out when backups might be available... and also check that you're not making the headlines.
To sum up, it will be a minimum of 1 million$ if you have backups that work well.