GDPR

What will cyber security look like in 2020?

It’s true; the future of cyber security is AI. It’s advancing daily, and eventually, all antivirus and general security protection will be provided by AI-enabled analysis. But we’re some way off this yet, and despite advances, AI is only one element in building our security defences against future cyber threats.  It is important to take a…


It’s true; the future of cyber security is AI. 

It’s advancing daily, and eventually, all antivirus and general security protection will be provided by AI-enabled analysis. But we’re some way off this yet, and despite advances, AI is only one element in building our security defences against future cyber threats.  It is important to take a risk and business-centric approach to gathering and examining threat intelligence and making informed decisions on this at Board level. 

Black Friday deals: see all the best offers right now!

Risks to an organisation can emerge despite having made significant investment in security controls.  We can become complacent once that initial investment has been made and forget that buying a tool is the beginning, and not the end, of the journey. SIEM products provide the best example of this. So, we have a big tick on the spreadsheet next to ‘security’, but does it really mean that the organisation’s defence is any better? 

The effectiveness of the product is conditional upon the organisation’s depth of expertise in being able to tune the solution to the specific and properly defined protective security monitoring objectives. It’s rare that organisations have the necessary in-house skills to be able to do this and if they do, you can be sure they will be ‘headhunted’ before too much longer. This complacency, of just investing in software and thinking that it will meet all our requirements ‘out of the box’ rather than understanding potential threats and how the product can help us to manage these, is likely to be leaving your organisation open to attack. 

About the author

Neil Kell is the Director of Evolve Secure Solutions, part of the CSI Group.

Sector-specific security threats

Risk is coming from all around and your defence may not be as strong as it can be because – it hasn’t been managed correctly; it hasn’t been tailored to your environment; strategic decisions haven’t been made, or you bought a product and you don’t completely understand how to get the best out of it. 

With much confusion still existing around cyber security, and an industry that is driven by selling the latest security products, leaning solely on technology to address threats to your organisati

Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

GDPR

GDPR complaints filed against TikTok, Temu for sending user data to China

Non-profit privacy advocacy group “None of Your Business” (noyb) has filed six complaints against TikTok, AliExpress, SHEIN, Temu, WeChat, and Xiaomi, for unlawfully transferring European user’s data to China and infringing European Union’s general data protection regulation (GDPR). …

Non-profit privacy advocacy group “None of Your Business” (noyb) has filed six complaints against TikTok, AliExpress, SHEIN, Temu, WeChat, and Xiaomi, for unlawfully transferring European user’s data to China and infringing European Union’s general data protection regulation (GDPR). …
Read More

Continue Reading
GDPR

From GDPR to privacy act: What businesses can learn

New privacy laws put Australian businesses under pressure to secure consumer data…

New privacy laws put Australian businesses under pressure to secure consumer data…
Read More

Continue Reading
GDPR

The Analytics Black Hole: Hotels, Data and the Cost of Overregulation

The hospitality industry has been caught in a digital vortex in the past two years. What used to be a straightforward task (tracking web traffic and performance metrics) has devolved into a Kafkaesque ordeal. Regulations like the Digital Markets Act and GDPR were introduced under the guise of fairness and privacy but have left hotels

The hospitality industry has been caught in a digital vortex in the past two years. What used to be a straightforward task (tracking web traffic and performance metrics) has devolved into a Kafkaesque ordeal. Regulations like the Digital Markets Act and GDPR were introduced under the guise of fairness and privacy but have left hotels drowning in incomplete data and distorted performance insights…
Read More

Continue Reading
GDPR

독일 해커 단체 “폭스바겐, AWS 보안 관리 부실로 대규모 데이터 유출”

폭스바겐의 대규모 데이터 유출 사고는 AWS 환경의 접근 권한 보안 관리 미흡에서 비롯됐다는 분석이 제기됐다. 독일 해커 단체가 운영하는 보안 컨퍼런스 카오스 커뮤니케이션 콘그레스에서 12월 27일 발표된 자료에 따르면, 이번 사고는 폭스바겐 내부 보안 관행의 중대한 허점에서 비롯됐다. 보안 전문가는 폭스바겐이 글로벌 자동차 제조업체임에도 불구하고, GDPR을 포함한 규제를 위반하며 1,500만 대 이상의 차량에서 수집된 민감한

폭스바겐의 대규모 데이터 유출 사고는 AWS 환경의 접근 권한 보안 관리 미흡에서 비롯됐다는 분석이 제기됐다. 독일 해커 단체가 운영하는 보안 컨퍼런스 카오스 커뮤니케이션 콘그레스에서 12월 27일 발표된 자료에 따르면, 이번 사고는 폭스바겐 내부 보안 관행의 중대한 허점에서 비롯됐다.

보안 전문가는 폭스바겐이 글로벌 자동차 제조업체임에도 불구하고, GDPR을 포함한 규제를 위반하며 1,500만 대 이상의 차량에서 수집된 민감한 고객 데이터를 암호화하거나 적절하게 처리하지 않았다고 설명했다…
Read More

Continue Reading