Blurring the lines between data management and cybersecurity

Issue 1 2023 Information Security, Infrastructure


Hemant Harie.

In the past, data management and cybersecurity would fall under separate domains, but with more organisations making the shift to the cloud, data management and data protection have merged, essentially blurring the lines between the two.

While data management focuses on processes that include a combination of different functions aimed at ensuring data in corporate systems is accurate, available and accessible; cybersecurity deals with protecting digital information from unauthorised access, corruption or cyberattacks.

Considering that data is the lifeblood of any modern enterprise, it makes sense that data management has become a key part of cybersecurity. An organisation’s cybersecurity strategy is only as good as its backup, so if an organisation’s entire production environment is secure but its backup is not, its data will remain vulnerable.

In essence, cybersecurity measures must be in place on an organisation’s backup system to ensure that it is as safe as the production environment. By achieving this, the lines between cybersecurity and data management start to blur.

Not adding real value

Conversely, there would be little point to having backup systems if an enterprise’s production environment is not secure, meaning that data management would ultimately not add much value to a business without adequate cybersecurity measures in place.

For example, modern enterprises require a strategic, first-world, as-a-service authentication model, which means that their backup solutions also need similar security systems for authentication. This is because all IT solutions need to adhere to an enterprise’s cybersecurity strategy; otherwise, they become the vulnerability in that organisation’s business planning.

Data breaches could have varying effects on different companies, depending on the type of data they own and the type of data that is compromised. In the worst-case scenario, an organisation could suffer legal consequences resulting from a data breach, which could effectively put it out of business.

Do the proper due diligence

It is thus crucial for organisations to ensure that they perform the best possible due diligence to prevent cyber threats by putting the best cybersecurity strategy in place. The pace at which cyber threats evolve – in both frequency and sophistication – means that a breach will likely occur eventually. However, an organisation can avoid legal liability if it can demonstrate that it had taken all reasonable measures to prevent one.

Aside from legal issues, reputational damage is another consequence that could result from a data breach. According to a Security Compass whitepaper, titled Why Cybersecurity is Important for Your Brand Reputation, trust is critical to building a successful business. Drawing on various sources, the whitepaper states that people were over six times more likely to pay a premium for a product and had higher brand loyalty for highly trusted brands. Additionally, it states that 52% of consumers would consider paying more for the same products or services from a provider with better data security.

Thus, it is critical that data management and cybersecurity go hand-in-hand and organisations must ensure that consistent security becomes their standard. The goal of a security strategy is not to eliminate all risk – as this is all but impossible – but to reduce risk to a level that is congruent with the risk appetite of the organisation.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

AI projects are failing at alarming rates
AI & Data Analytics Infrastructure
As organisations around the world accelerate their investments in artificial intelligence, digital transformation and data analytics, a growing number of industry experts are warning that many companies are still approaching these initiatives in fundamentally flawed ways.

Read more...
Africa’s largest Zero Trust platform
NEC XON Information Security Commercial (Industry)
Africa has reached a significant cybersecurity milestone with the successful deployment of the continent’s largest Palo Alto Networks Prisma Access and Prisma Access Browser Zero Trust environment, supporting secure remote access for more than 40 000 users for a large enterprise in Africa.

Read more...
Supply chain attacks top threat over 12 months
Information Security
Supply chain attacks have become the most prevalent cyberthreat confronting businesses over the past year, according to a new Kaspersky global study, with nearly one-third of companies worldwide experiencing a supply chain threat in the past year.

Read more...
From vibe hacking to flat-pack malware
Information Security AI & Data Analytics
HP issued its latest Threat Insights Report, with strong indications that attackers are using AI to scale and accelerate campaigns, and that many are prioritising cost, effort, and efficiency over quality.

Read more...
NEC XON secures mobile provider’s hybrid identities
NEC XON Access Control & Identity Management Information Security Commercial (Industry)
For a leading South African telecommunications operator, identity protection has become a strategic priority as identity-centric attacks proliferate across the industry. The company faced mounting pressure to secure both human and non-human identities across complex hybrid environments.

Read more...
Cloud security in visitor management and access control
SA Technologies Access Control & Identity Management Infrastructure Residential Estate (Industry) Commercial (Industry)
Cloud has become the default platform for modern security operations, from visitor management portals and remote access control to incident logging, reporting, analytics, and integrations. But “in the cloud” does not mean “someone else is securing it for us”.

Read more...
Microsoft 365 security is a ticking time bomb
Information Security
Across boardrooms and IT departments, a dangerous assumption persists that because data is stored in Microsoft 365 and Azure, it is automatically secure. This belief is fundamentally flawed and fosters a false sense of protection.

Read more...
Rise in malicious insider threat reports
News & Events Information Security
Mimecast Study finds 46% of SA organisations report a rise in malicious insider threat reports over the past year: reveals disconnect between security awareness and technical controls as AI-powered attacks accelerate.

Read more...
New campaign exploiting Google Tasks notifications
News & Events Information Security
New phishing scheme abuses legitimate Google Tasks notifications to trick corporate users into revealing corporate login credentials, which can then be used to gain unauthorised access to company systems, steal data, or launch further attacks.

Read more...
New commercial and technical appointments at Veeam
News & Events Infrastructure
Veeam Software has announced two senior appointments in its South African business as it continues to invest in local market growth and partner and customer engagement.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.