The difference between these terms lies in their focus and approach within dealing with cyber threats. Cyber security focuses on preventing cyber attacks and protecting systems, networks and data from unauthorised access, damage or theft. These include measures taken to ward off threats, such as firewalls, anti-virus software and encryption. The emphasis is on prevention and protection. Cyber resilience goes beyond prevention and focuses on the ability to fend off and recover from a cyber attack, and to adapt.
It includes not only security, but also recovery processes, crisis management and continuity of operations. The focus is on resilience and recovery after an attack. Another difference is that cyber security deals mainly with the technical aspects, whereas cyber resilience looks at the bigger picture and includes organisational and human factors, such as staff training, crisis plans and business continuity.