The hyperconnectivity of the world is the result of combined technological advancements in the past decade. While it ushers in a new space for innovation and bridges expansive distances and borders, it also poses a challenge especially in cybersecurity.
In the hyperconnected world cyberthreats can have unpredictable and even unprecedented consequences. It is the principal task of cybersecurity in the upcoming decade to not only keep up with the threats borne from this new space but also anticipate how these threats will evolve in parallel to further technological advancements.
In 2020, NTT sees below 5 key trends in Cybersecurity.
1. Zero Trust: Zero trust is maturing into digital trust
2.Cloud: Organisations are focusing on cloud-based security platforms
3. Secure by Design: Organisations now aim to be secure by design
4. Intelligence: Cybersecurity is becoming intelligence-driven
5. Compliance: Tighter regulation is affecting risk profiles
1. The CISO role becomes required across industries. The challenge for a CISO is not only structuring a team but also making it service-oriented to help business deploy the services in a secured way.
2. The skills gap widens, making it increasingly difficult to find, hire and retain security professionals. Uplifting the skills and capabilities of the team and working with trusted partners are the top priority. In addition, automation in cybersecurity architecture not only eases the skills gap, but also improves the cybersecurity maturity. Visibility, actionable threat intelligence and SOAR are the trends in security architecture.
3. Employ 'Breach and attack simulation' resources to prove the benefits of your investment and find the blind spot of your organization. Red team exercise or automated simulation practice are good approaches.
I think the major challenge is too much workload for IT security professional but the return is not up to par. (Smile)
Indeed what we have observed the major challenge is how to ensure you have a full coverage of Cyber Security in a smart way. For example, in Taiwan, we just observe the interest of NIST CyberSecurity Framework recently (CSF); however, CSF has been launch for years. Today computer network is complex boundary-less, lack of security professional is the major challenge of a lots of organization, if there is no clear Cyber Security management objective and metric, security team may forget to evaluate all the security needed and miss a serval pieces, causing silo and create Cyber Exposure gap.
Like recently containerization and DevOpsSec draw lots of attention, organization that adopted container technology like to deploy related security product. But in fact most of the time, container is the highest layer of an application, underneath there are container platform, database, private or public cloud infrastructure, and we are not talking about how to secure developer environment yet. All of these need to be secure, that's why having a Cyber Security objective and long term goal is very important.
For upcoming trend, we believe breaches will still happen, but as more and more defend in place to servers, we expect more and more breaches will start from end user devices or other devices like IoT devices.
Building Cybersecurity without Agents
The biggest challenge facing cybersecurity in 2020 is the increased frequency of zero day attacks. Businesses are underprepared to protect themselves against zero days, despite the investment they have made in protection platforms.
In the three years since HENNGE came to Taiwan, we have been searching for information about cloud and security from customers and the internet. With the growth of the cloud market in Taiwan, the need for security is also increasing. And this is what we want to share in CyberSec 2020.
Cyber attacks are indeed the new normal. Each year brings new security threats, data breaches and operational challenges.
In addition to the malware hidden in encrypted traffic becoming a big blind spot for corporate security, a large number of connected devices may cause large-scale DDoS attacks.In the digital transformation of enterprises, across multi-cloud environments application security is a challenge, unpredictable security breach in 5G networks will also threaten service availability.
2020 won’t be any different, particularly with the transformation to 5G mobile networks and the dramatic rise in IoT, by both consumers and businesses. The potential for massive and widespread cyber threats expands exponentially, ensuing that businesses, governments and consumers have to always be on their toes.
Facing faster communication attacks and more immediate cyber attacks