• CERTIFICATE
    • Eminent VARs of India
    • Best OEM 2023
  • SYNDICATION
    • AMD
    • DELL TECHNOLOGIES
    • HITACHI
    • LOGMEIN
    • MICROSOFT
    • RIVERBED
    • STORAGECRAFT
    • THALES
  • EVENTS
  • GO DIGITAL
  • INFOGRAPHICS
  • PRESS
    • Press Release PR News Wire
    • Press Release Business Wire
    • GlobeNewsWire
  • SPECIAL
    • WHITE PAPER
    • TECHNOMANIA
    • SME
    • SMART CITY
    • SERVICES
    • EDITOR SPEAK
    • CSR INITIATIVES
    • CHANNEL GURU
    • CHANNEL CHIEF
    • CASE STUDY
  • TECHTREND
    • VAR PANCHAYAT
    • TELECOM
    • SOFTWARE
    • POWER
    • PERIPHERALS
    • NETWORKING
    • LTE
    • CHANNEL BUZZ
    • ASK AN EXPERT
  • SUBSCRIBE
  • Apps
  • Gaming
  • KDS
  • Security
  • Telecom
  • WFH
  • Subscriber to Newsletter
  • April Issue
  • Blogs
  • Vlogs
  • Faceoff AI
    

HOME
NEWS

New ThoughtLab Report Cites Keys to Cybersecurity Success


By VARINDIA - 2022-07-19
New ThoughtLab Report Cites Keys to Cybersecurity Success

by Augusto Barros, VP and Cybersecurity Evangelist, Securonix

 

A May 2022 study and ebook, “Cybersecurity Solutions for a Riskier World”, by ThoughtLab seeks to answer the age-old question, “How can organizations drive the best cybersecurity performance in a world of escalating digital risks?” Many of its findings are both eye opening and relevant to all organizations that are looking to strengthen their cybersecurity posture.

 

ThoughtLab interviewed cybersecurity experts and conducted a benchmark study of cybersecurity investments, practices, and performance at more than 1,200 companies in 14 market sectors and 16 countries. Respondents ranged from C-suite executives to direct reports with responsibility for cybersecurity and the widely-respected NIST Framework was used to measure the level of progress organizations had made in tackling cybersecurity.

 

Respondents by industry

 

Here are just a few of the findings from “Cybersecurity Solutions for a Riskier World”:

 

We’re entering a new era of cybersecurity risk and complexity, thanks to—among other factors—the pandemic-driven digitalization and transformation of business and work, a trend towards partner and supplier ecosystems, and evolving technologies such as the multi-cloud, IoT, and 5G. Material breaches rose by almost 25 percent in 2021. Organizations are increasing their spending in cybersecurity to try to adapt to this new environment.

 

Many organizations are not ready for this new era. Even before the war in Ukraine, 27% of executives, a whopping 40 percent of chief security officers and a third of CISOs said their organizations were unprepared for the rapidly evolving threat landscape. Respondents cite—among other reasons—partner and supplier risk, cybersecurity initiatives that don’t keep up with digital transformation, inadequate budgets, lack of executive support, and a shortage of skilled workers.

 

The cybersecurity skills shortage is a key impediment to high performance. It’s no surprise that the most advanced cybersecurity performers tend to have larger IT, OT, and cybersecurity staff than lower performers and those employees make up a larger percentage of the overall staff count. They also have more cybersecurity specialists as a percentage of their IT staff than most organizations.

 

Unfortunately, hiring experienced cyber professionals will only get more challenging as organizations upgrade their cybersecurity strategies to confront the changing security landscape. In fact, the report concludes that the global cybersecurity workforce would have to grow by 65% to keep up with expected demand.

 

ThoughtLab cites outsourcing as one solution for organizations that can’t get the cybersecurity expertise in house. In fact, organizations that are more advanced in the NIST Framework tend to outsource their security operations centers, bug bounty programs, and privacy management.

 

However, automation may be another solution, as we discuss in Automation, the Key to the Cybersecurity Skills Shortage. The automation offered by advanced next-gen SIEM platforms can help organizations stay ahead of, prioritize, and respond to a large number of emerging threats, allowing staff to focus their resources on the most critical. We don’t expect automation and AI to fully replace humans, but organizations must reach higher productivity levels in threat detection and response to mitigate the pressure to hire more resources as the intensity of threats and volume of data grows.

 

A risk-based approach to cybersecurity is a key to high performance. Leaders in risk-based management saw fewer security incidents and material breaches in 2021 than beginners. In fact, those ahead in their NIST implementation tended to have a strategy centered on a risk-based approach and supply chain risk management, which are vital in this era of pandemic supply chain disruptions and geopolitical challenges from the war in Ukraine. Organizations that are most advanced in supply chain risk management show faster times to detect, mitigate, and respond to such attacks.

 

To succeed, organizations must move from simple detection to continuous monitoring, particularly for anomalies and detected events, according to the report. Organizations in the NIST advanced stage tend to have these areas well covered, but their gulf with lower performers is very wide.

Investing in advanced SIEM and SOAR solutions, can help drive better monitoring and results. A SIEM delivers more visibility and data points to help teams make more granular decisions and makes it easier to filter and spot patterns in huge amounts of security data, but only if it has the right analytical capabilities, according to the report.

 

The good news is that organizations are understanding better the importance of increased visibility and threat detection and response capabilities. The study found that more than a quarter of organizations have invested in SIEMs, with just under a quarter planning to make a substantial investment over the next two years. Users cite a host of benefits advanced SIEMS provide, including faster threat detection and higher quality security data, particularly for SIEMs supported by advanced analytics.

 

The growth of cloud and multi-cloud computing is also driving SIEM upgrades to newer solutions that can accommodate the scale and integrate well with cloud infrastructure and applications. A COO of a German healthcare provider said that his most effective security investment was a SIEM.

 

Organizations are embracing automation at record levels for accurate detection, workflow optimization, and response time acceleration. The report found the organizations with better incident dwell time use AI and ML compared to 17% of organizations with poor dwell time performance. Automation is also a great way to supplement staff work at a time when cyber talent is in short supply, according to the report. A CISO of a US energy firm said that automation can actually help attract cyber talent, as recruits know they won’t be spending a lot of time working on lower-level mundane tasks.

 

High performers draw on the latest technology but avoid product proliferation. The survey found that organizations who have not experienced breaches have invested in both fundamentals such as email security and identity management and more specialized cloud access security brokers, cyber risk models, and SIEMS. They take a multivendor approach but prioritize consolidation over product proliferation. More advanced organizations have made more progress in tool and infrastructure consolidation than lower performers. Mature consolidation trends, such as the convergence of SIEM, UEBA, and SOAR are good opportunities for organizations trying to keep product proliferation under control.

See What’s Next in Tech With the Fast Forward Newsletter

SECURITY
View All
Zscaler announces AI innovations to its Data Protection Platform
Technology

Zscaler announces AI innovations to its Data Protection Platform

by VARINDIA 2024-05-20
SHIELD to enhance Swiggy’s fraud prevention and detection capabilities
Technology

SHIELD to enhance Swiggy’s fraud prevention and detection capabilities

by VARINDIA 2024-05-20
Axis Communications announces its first thermometric camera designed for Zone/Division 2
Technology

Axis Communications announces its first thermometric camera designed for Zone/Division 2

by VARINDIA 2024-05-20
SOFTWARE
View All
Hitachi Vantara and Veeam announce Global Strategic Alliance
Technology

Hitachi Vantara and Veeam announce Global Strategic Alliance

by VARINDIA 2024-05-16
Adobe launches Acrobat AI Assistant for the Enterprise
Technology

Adobe launches Acrobat AI Assistant for the Enterprise

by VARINDIA 2024-05-11
Oracle Database 23ai offers the power of AI to Enterprise Data and Applications
Technology

Oracle Database 23ai offers the power of AI to Enterprise Data and Applications

by VARINDIA 2024-05-10
START - UP
View All
Data Subject Access Request is an integrated module within ID-REDACT®
Technology

Data Subject Access Request is an integrated module within ID-REDACT®

by VARINDIA 2024-04-30
SiMa.ai Secures $70M Funds from Maverick Capital
Technology

SiMa.ai Secures $70M Funds from Maverick Capital

by VARINDIA 2024-04-05
Sarvam AI collaborates with Microsoft to bring its Indic voice LLM to Azure
Technology

Sarvam AI collaborates with Microsoft to bring its Indic voice LLM to Azure

by VARINDIA 2024-02-08

Tweets From @varindiamag

Nothing to see here - yet

When they Tweet, their Tweets will show up here.

CIO - SPEAK
Automation has the potential to greatly improve efficiency and production

Automation has the potential to greatly improve efficiency and production

by VARINDIA
Various approaches are followed to enhance efficiency, productivity, and cost-effectiveness

Various approaches are followed to enhance efficiency, productivity, and cost-effectiveness

by VARINDIA
Technology can be leveraged in several ways to boost efficiency, productivity and reduce cost

Technology can be leveraged in several ways to boost efficiency, productivity and reduce cost

by VARINDIA
Start-Up and Unicorn Ecosystem
GoDaddy harnesses AI power for new domain name recommendations

GoDaddy harnesses AI power for new domain name recommendations

by VARINDIA
UAE’s du Telecom selects STL as a strategic fibre partner

UAE’s du Telecom selects STL as a strategic fibre partner

by VARINDIA
JLR and Dassault Systèmes extend partnership for All Vehicle Programs worldwide

JLR and Dassault Systèmes extend partnership for All Vehicle Programs worldwide

by VARINDIA
Rapyder partners with AWS to accelerate Generative AI led innovation

Rapyder partners with AWS to accelerate Generative AI led innovation

by VARINDIA
ManageEngine integrates its SIEM solution with Constella Intelligence

ManageEngine integrates its SIEM solution with Constella Intelligence

by VARINDIA
Elastic replaces traditional SIEM game with AI-driven security analytics

Elastic replaces traditional SIEM game with AI-driven security analytics

by VARINDIA
Infosys and ServiceNow to transform customer experiences with generative AI-powered solutions

Infosys and ServiceNow to transform customer experiences with generative AI-powered solutions

by VARINDIA
Crayon Software Experts India inaugurates its ISV Incubation Center in Kolkata

Crayon Software Experts India inaugurates its ISV Incubation Center in Kolkata

by VARINDIA
Dassault Systèmes to accelerate EV charging infrastructure development in India

Dassault Systèmes to accelerate EV charging infrastructure development in India

by VARINDIA
Tech Mahindra and Atento to deliver GenAI powered business transformation services

Tech Mahindra and Atento to deliver GenAI powered business transformation services

by VARINDIA
×

Reproduction in whole or in part in any form or medium without express written permission of Kalinga Digital Media Pvt. Ltd. is prohibited.

  • Distributors & VADs
  • Industry Associations
  • Telco's in India
  • Indian Global Leaders
  • Edit Calendar
  • About Us
  • Advertise Us
  • Contact Us
  • Disclaimer
  • Privacy Statement
  • Sitemap

Copyright varindia.com @1999-2024 - All rights reserved.