Lack of internal resources and exploding cybercrime a ‘perfect storm’ for CISOs and their teams
Some 1,691 U.S. and U.K information security leaders across multiple verticals, including enterprise, consulting, government and education, provided insights into their cyber risk concerns and plans for 2018.
Overall, the survey revealed a coming “perfect storm”, where the problem of staff shortages collides with escalating cybercrime, leaving organisations ill-equipped to manage and respond to cyber risks and threats that are accelerating in an era of digital transformation, pervasive connections and increasingly sophisticated attack strategies sponsored by nation-states and rogue actors.
As the Spectre and Meltdown security flaws in Intel chips dominated the news in early 2018, and after a year of major security breach announcements and settlements, including Equifax, Yahoo and Anthem, the following findings are hardly surprising:
- 67 percent of cybersecurity leaders do not have sufficient staff to handle the daily barrage of cyber alerts they receive
- 60 percent expect digital threats to grow as their organisations increase online engagement with customers
- The top three digital threats information security leaders fear are phishing and malware attacks on employees and customers; brand impersonation, abuse, and reputational damage; and information breaches
- The top risk organisations face today is a lack of experienced staff to monitor and help protect networks from cybercrime
- Currently, 37 percent of firms have engaged a managed security services provider (MSSP) to help monitor and manage cyber threats
“The RiskIQ 2018 CISO Survey illuminates a growing industry-wide problem, which is that cybercrime is growing at scale, and enterprises are already experiencing critical staff shortages. That’s one reason 1 in 3 organisations have engaged with an MSSP to combat cyber risks and threats, and we expect that number to grow as the competition for top security talent gets far more intense,” said Lou Manousos, CEO at RiskIQ.
More information on the RiskIQ 2018 CISO Survey is available via infographic (https://www.riskiq.com/infographic/ciso-survey-results/) and blog (https://www.riskiq.com/blog/external-threat-management/ciso-survey-results/).
RiskIQ is the leader in digital threat management, providing the most comprehensive discovery, intelligence, and mitigation of threats associated with an organisation’s digital presence. With more than 75 percent of attacks originating outside the firewall, RiskIQ allows enterprises to gain unified insight and control over web, social, and mobile exposures. Trusted by thousands of security analysts, RiskIQ’s platform combines advanced internet data reconnaissance and analytics to expedite investigations, understand digital attack surfaces, assess risk, and take action to protect business, brand, and customers. Based in San Francisco, the company is backed by Summit Partners, Battery Ventures, Georgian Partners, and MassMutual Ventures. Visit RiskIQ.com or follow us on Twitter.
© 2018 RiskIQ, Inc. All rights reserved. RiskIQ is a registered trademark of RiskIQ, Inc. in the United States and other countries. All other trademarks contained herein are property of their respective owners.
020 3861 3845