FINLAND Trends and Developments Contributed by: Rosa Lång and Joona Linner, Lieke Attorneys Ltd
reflect both global dynamics and region-specific pat - terns. Increasing ransomware sophistication While ransomware remains a global concern, Finnish organisations have observed: • double and triple extortion tactics where attackers not only encrypt data but also threaten publication or denial of service impacts; • targeting of critical sectors, including healthcare, logistics and manufacturing; and • professionalisation of criminal networks with Ran - somware as a Service (RaaS) models lowering the barrier to entry for sophisticated attacks. Even when not state-sponsored, these campaigns may align with geopolitical interests indirectly by cre - ating widespread disruption. Blending of criminal and state-linked techniques Attack groups are adopting tactics that blur the tradi - tional lines between organised crime and state-linked operations. Examples include: • strategic exploitation of widely used software vul - nerabilities; • use of social engineering that leverages publicly available information; and • targeting of critical supply chains rather than indi - vidual endpoints. This convergence complicates detection and response, as indicators of compromise may not fit Finnish authorities are increasingly focused on demon - strable preparedness and maturity rather than check - box compliance. Evidence of this trend includes: • incident reporting frameworks that emphasise timeliness and detail, rather than simple threshold triggers; • guidance that encourages sector-specific risk modelling, especially within critical infrastructure; and traditional threat classifications. Elevated regulatory expectations
• public advisories and joint exercises that simulate real-world attack scenarios. The practical impact is that organisations are expected to translate legal obligations into tangible processes,
documentation and executive oversight. Strategic integration of cyber resilience
Rather than being a standalone IT function, cyber - security in Finland is being integrated into enterprise risk management and corporate governance routines. Boards and executives are increasingly involved in: • setting risk appetite statements; • approving resilience strategies; and • reviewing investment decisions tied to cyber risk mitigation. This shift reflects a broader understanding that cyber resilience affects insurance, reputation, regulatory standing and long-term sustainability. Not all indus - tries face the same threat or regulatory intensity, yet several sectors have seen notable shifts. Practical Considerations for Businesses Against this backdrop, organisations operating in Fin - land must approach cybersecurity as an enterprise- wide governance issue rather than a purely technical function. In the current regulatory and threat environ - ment, resilience is contractual, organisational and strategic in nature, intersecting with compliance obli - gations, operational continuity and liability exposure. Continuous risk evaluation is essential. Cyber risk is dynamic and influenced by technological develop - ments and geopolitical factors that may heighten sec - tor-specific vulnerabilities. Ongoing threat intelligence gathering, regular vulnerability assessments and pen - etration testing help identify weaknesses proactively. Scenario modelling and tabletop exercises further enable organisations to assess how cyber incidents would impact business continuity, crisis management and decision-making structures. Effective incident detection and response capabilities are equally critical. Investment in monitoring tools and skilled personnel enhances early detection of anoma - lous activity, thereby limiting operational and reputa -
116 CHAMBERS.COM
Powered by FlippingBook