Cybersecurity requires a new approach

September 2019 Information Security

From digital transformation through to the arrival of the Fourth Industrial Revolution (4IR), decision-makers are changing their views on how technology can benefit the organisation. But while much attention is placed on things like data analysis, the cloud, and automation, cybersecurity has fallen by the wayside.

Given the greater connectedness between businesses, their customers and partners, it is easy to understand how the focus has shifted to finding better ways of nurturing relationships for a common good. This has resulted in finding more innovative ways of extracting meaningful insights from the data at their disposal, giving way to artificial intelligence and machine learning complementing human intelligence. But when it comes to safeguarding that data, many are still reliant on using anti-virus and firewall solutions.

Changing threat landscape

It seems counter-intuitive, and yet businesses continue to combat sophisticated security threats in the digital age with traditional tools. If other digital solutions have evolved and been embraced, why the hesitance to adopt the same approach around cybersecurity?

According to a recent survey, only a quarter of business leaders across the Europe, Middle East, and Africa are confident in their current cybersecurity solutions. And despite three quarters of business leaders believing their security solutions are outdated, only 42% admitted to acquiring new tools over the past year.

Furthermore, 35% of South African IT decision-makers are expecting some form of attack to occur not within years or months, but days. Given this context, it has become paramount that not only must investments in new security products increase, but mind-sets also must change if companies are to keep their data safe from compromise.

Not about money

It seems that spending patterns have already started to change. Worldwide spending on cybersecurity topped more than $114 billion last year with the market expected to grow to $124 billion at the end of this year. Changing security risks, business needs, and industry changes are the main reasons driving this. Of course, it is one thing to implement new solutions and something else entirely to foster a cultural change inside the business.

Sadly, nearly a third of IT security respondents say that it takes up to a week to address a cybersecurity issue. In today’s real-time environment, this is not good enough. Recently, City Power in Johannesburg was hit by a ransomware attack that not only compromised its databases but left many clients unable to buy prepaid electricity. Imagine the reputational (and financial) damage of taking a week to resolve this.

Clearly, existing cybersecurity policies are not adequate. The biggest shortcoming in the rush to become cyber vigilant is outdated software. Organisations must therefore move beyond their traditional way of managing cybersecurity. Just like they have embracing other innovations for the digital age, so too must they closely examine how their existing IT security systems need to be overhauled.

Slow and inefficient practices are resulting in businesses losing their confidence in their ability to combat the latest cyber threats. Throwing money at the problem will not make it go away. A fundamental change to how cybersecurity is managed in the organisational structure is necessary if the business is to be protected against more sophisticated digital threats.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Africa’s largest Zero Trust platform
NEC XON Information Security Commercial (Industry)
Africa has reached a significant cybersecurity milestone with the successful deployment of the continent’s largest Palo Alto Networks Prisma Access and Prisma Access Browser Zero Trust environment, supporting secure remote access for more than 40 000 users for a large enterprise in Africa.

Read more...
Supply chain attacks top threat over 12 months
Information Security
Supply chain attacks have become the most prevalent cyberthreat confronting businesses over the past year, according to a new Kaspersky global study, with nearly one-third of companies worldwide experiencing a supply chain threat in the past year.

Read more...
From vibe hacking to flat-pack malware
Information Security AI & Data Analytics
HP issued its latest Threat Insights Report, with strong indications that attackers are using AI to scale and accelerate campaigns, and that many are prioritising cost, effort, and efficiency over quality.

Read more...
NEC XON secures mobile provider’s hybrid identities
NEC XON Access Control & Identity Management Information Security Commercial (Industry)
For a leading South African telecommunications operator, identity protection has become a strategic priority as identity-centric attacks proliferate across the industry. The company faced mounting pressure to secure both human and non-human identities across complex hybrid environments.

Read more...
Microsoft 365 security is a ticking time bomb
Information Security
Across boardrooms and IT departments, a dangerous assumption persists that because data is stored in Microsoft 365 and Azure, it is automatically secure. This belief is fundamentally flawed and fosters a false sense of protection.

Read more...
Rise in malicious insider threat reports
News & Events Information Security
Mimecast Study finds 46% of SA organisations report a rise in malicious insider threat reports over the past year: reveals disconnect between security awareness and technical controls as AI-powered attacks accelerate.

Read more...
New campaign exploiting Google Tasks notifications
News & Events Information Security
New phishing scheme abuses legitimate Google Tasks notifications to trick corporate users into revealing corporate login credentials, which can then be used to gain unauthorised access to company systems, steal data, or launch further attacks.

Read more...
Making a mesh for security
Information Security Security Services & Risk Management
Credential-based attacks have reached epidemic levels. For African CISOs in particular, the message is clear: identity is now the perimeter, and defences must reflect that reality with coherence and context.

Read more...
What’s in store for PAM and IAM?
Access Control & Identity Management Information Security
Leostream predicts changes in Identity and Access Management (IAM) and Privileged Access Management (PAM) in the coming year, driven by evolving cybersecurity realities, hybridisation, AI, and more.

Read more...
The challenges of cybersecurity in access control
Technews Publishing SMART Security Solutions Access Control & Identity Management Information Security
SMART Security Solutions summarises the key points dealing with modern cyber risks facing access control systems, from Mercury Security’s white paper “Meeting the Challenges of Cybersecurity in Access Control: A Future-Ready Approach.”

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.