I Securely Resolve: CISOs, IT Security Leaders Share 2024 Resolutions

With the aim of fortifying defenses and navigating changing risks, IT security leaders shared their New Year's resolutions, with a focus on their planned initiatives and strategic objectives to bolster organizational security posture.
The New Year's resolutions discussed by CISOs and security leaders for 2024 shed light on a multifaceted approach to shoring up cybersecurity practices as the evolving impact from artificial intelligence and generative AI loom over the industry.
Other resolutions highlighted the need for building a robust security culture amid evolving technologies and regulatory landscapes, emphasizing the risks associated with human error and AI-driven attacks.
It's important to understand the business' critical products and processes, be able to model out potentially disruptive scenarios, and determine if the organization's BC/DR and IR plans sufficiently mitigate the associated risks.
Rinki Sethi, CISO, Bill In 2024, security and IT leaders have an opportunity to be proactive and make significant security improvements, including building a strong culture of security.
Katie McCullough, CISO, Panzura As we embrace the New Year, organizations should adopt resolutions that not only fortify their defenses but also ensure agility and resilience.
A paramount resolution is to establish mechanisms that guarantee minimal impact in the event of a security breach.
This proactive approach in risk management requires continuous monitoring and evaluation of the organization's security posture to identify potential vulnerabilities.
This means designing cybersecurity measures that are robust yet user-friendly, ensuring that security protocols do not hinder productivity or user experience.
Devin Ertel, CISO, Menlo Security I would begin the year by conducting a thorough risk assessment, identifying potential vulnerabilities, and strategically allocating resources to address the most pressing concerns.
This involves a judicious allocation of financial resources to implement robust security measures.
Striking the right balance between investment in cutting-edge technologies and ensuring the scalability and sustainability of security initiatives is paramount.
Many organizations started implementing passwordless authentication to enhance security and improve the user experience.
Let your peers and leaders know what you could bring to manage security risks in common business scenarios, including acquisitions, new products or service launches, investments, market entry, or downsizing.
To be proactive, CISOs should be completing or updating an overall maturity assessment of their organization, updating their risk registers, and ensuring a solid two- to three-year roadmap is established for their organization.
Risk register updates should result in mitigation and controls that bolster an organization's ability to withstand a cyberattack.
Dana Simberkoff, Chief Risk, Privacy, and Information Security Officer, AvePoint AI is coming and resistance is futile.
Considering this, security and privacy professionals must work with their IT and business counterparts to develop and implement generative AI acceptable-use policies.
Especially given how quickly applications of AI and machine learning have impacted our work, and how quickly this technology changes, security and privacy teams need to be agile in the new year.
Otherwise, you may end up finding that security by obscurity is no longer a fallback defense.


This Cyber News was published on www.darkreading.com. Publication date: Fri, 29 Dec 2023 14:00:06 +0000


Cyber News related to I Securely Resolve: CISOs, IT Security Leaders Share 2024 Resolutions

I Securely Resolve: CISOs, IT Security Leaders Share 2024 Resolutions - With the aim of fortifying defenses and navigating changing risks, IT security leaders shared their New Year's resolutions, with a focus on their planned initiatives and strategic objectives to bolster organizational security posture. The New Year's ...
2 years ago Darkreading.com
Proofpoint's CISO 2024 Report: Top Challenges Include Human Error & Risk - In Proofpoint's 2024 Voice of the CISO report, the cybersecurity company found that CISOs are dealing with people-centric threats more than ever. Plus, cybersecurity budgets often don't change, and AI can help and hurt CISOs' efforts. Regarding the ...
1 year ago Techrepublic.com
How the Evolving Role of the CISO Impacts Cybersecurity Startups - It helps startups striving to meet the ever-evolving needs of CISOs, who are simultaneously seeking the elusive but paramount buy-in from business users and executives. The CISO role has evolved dramatically in the past few years in response to ...
2 years ago Darkreading.com
Human error still perceived as the Achilles' heel of cybersecurity - While fears of cyber attacks continue to rise, CISOs demonstrate increasing confidence in their ability to defend against these threats, reflecting a significant shift in the cybersecurity landscape, according to Proofpoint. CISOs' confidence is ...
1 year ago Helpnetsecurity.com
The CISO’s Role In Ensuring Compliance Amid Evolving Cyber Threats - By extending compliance and security requirements to third-party relationships, organizations can reduce their exposure to external threats and ensure that their entire supply chain operates in accordance with regulatory standards. As a result, ...
8 months ago Cybersecuritynews.com
Overtaxed State CISOs Struggle with Budgeting, Staffing - Though the number of scarily understaffed offices has dropped — just two respondents reported having one to five full-time employees, down from six in 2022 — more than half of state CISOs report that their staff lack the competencies necessary to ...
1 year ago Darkreading.com
The New CISO: Rethinking the Role - Dating back to the 1990s, the role of CISO was more technical and IT-focused. CISOs face more risks than can be resolved, are expected to balance security with operational capability, and must convince leaders to invest in protection. Today, CISOs ...
1 year ago Darkreading.com
Why Modern CISOs Must Be Business Translators, Not Just Technologists - This evolution means that modern CISOs must excel as technologists and business translators professionals who can bridge the gap between complex technical realities and the organization’s strategic objectives. By translating technical risks into ...
8 months ago Cybersecuritynews.com
Security tools fail to translate risks for executives - Organizations are struggling with internal communication barriers, which hinder their ability to address cybersecurity threats, according to Dynatrace. The results indicate that CISOs encounter challenges in aligning security teams with the C-suite, ...
1 year ago Helpnetsecurity.com
How CISOs Can Successfully Lead Security Transformation in Hybrid Work Environments - Additionally, CISOs must work closely with HR, IT, and business leaders to integrate security considerations into every aspect of the employee lifecycle, from onboarding to offboarding, ensuring that security remains top of mind as roles and work ...
8 months ago Cybersecuritynews.com
What do CISOs need to know about API security in 2024? - According to Postman's 2023 State of the API Report, roughly 66% of participants indicated that their APIs contribute to generating revenue. A recent ESG survey on API security showed that 92% of organisations using APIs have experienced a breach in ...
2 years ago Cybersecurity-insiders.com
How CISOs Can Build Trust with Stakeholders in a Data-Driven Era - By aligning security with business goals, speaking the language of stakeholders, and using data to highlight achievements, CISOs can cement their role as indispensable partners in the data-driven era. By adopting these strategies, CISOs can transform ...
8 months ago Cybersecuritynews.com
Cybersecurity Training for Business Leaders - This article explores the significance of cybersecurity training for business leaders and its crucial role in establishing a secure and resilient business environment. By examining the key components of effective training programs and the ...
1 year ago Securityzap.com
Five New Year Resolutions to Secure Your Data in 2024 - Not the usual promises to hit the gym more but resolutions to boost the security of your organization's data. New Year Resolutions are an age old tradition that stems from our desire to do things better. With this in mind, here are five data security ...
2 years ago Securityboulevard.com
Why CISOs and CTOs Must Collaborate More Than Ever in Today’s Security Landscape - When CTOs view CISOs as strategic partners rather than barriers to innovation, and CISOs champion security as a driver of business value, organizations can respond quickly to threats while confidently pursuing new opportunities. CTOs leading these ...
8 months ago Cybersecuritynews.com
How CISOs Can Prepare for Evolving Data Privacy Regulations - This article explores how CISOs can proactively address the challenges of evolving data privacy regulations, focusing on strategic leadership, operational best practices, and future-proofing security programs in a dynamic global landscape. In the ...
8 months ago Cybersecuritynews.com
Security is a Team Sport - How CISOs Collaborate Across the Org - In today’s complex cybersecurity landscape, the role of the Chief Information Security Officer (CISO) has evolved dramatically from a purely technical position to a strategic leadership role that demands business acumen and ...
8 months ago Cybersecuritynews.com
Why CISOs and CIOs Should Work Together More Closely - Although there are overlaps in the goals and responsibilities of the CIO and the CISO, there are also challenges that get in the way of a more cohesive relationship, including reporting lines, organizational structures, budgets, and risk appetites. A ...
2 years ago Feedpress.me
Top Security Frameworks Used by CISOs in 2025 - By focusing on these strategic implementation approaches, CISOs can derive maximum value from security frameworks while operating within resource constraints, ultimately strengthening organizational resilience against the complex threat landscape of ...
8 months ago Cybersecuritynews.com
Top 5 Cybersecurity Risks CISOs Must Tackle in 2025 - The role of CISOs has transformed significantly, shifting from purely technical guardians to strategic business leaders who must balance security imperatives with organizational objectives. Rather than viewing cybersecurity as merely a technical ...
8 months ago Cybersecuritynews.com
25 Best Managed Security Service Providers (MSSP) - 2025 - Pros & Cons: ProsConsStrong threat intelligence & expert SOCs.High pricing for SMBs.24/7 monitoring & rapid incident response.Complex UI and steep learning curve.Flexible, scalable, hybrid deployments.Limited visibility into endpoint ...
6 months ago Cybersecuritynews.com
Soft Skills Every CISO Needs to Inspire Better Boardroom Relationships - In a recent survey of CISOs, 86% of respondents said the role has changed so much that it's almost become a different job altogether from what it once was. In addition to their traditional responsibility of defending organizations from an ...
2 years ago Darkreading.com
CISOs Face 2025 Cyber Threats with Shrinking Budgets and High Demands - Below, we explore the evolving role of CISOs under three critical themes: navigating budget constraints, addressing emerging threats, and redefining leadership in cybersecurity. In 2025, successful CISOs are not just technical experts but strategic ...
8 months ago Cybersecuritynews.com
Navigating the New Age of Cybersecurity Enforcement - Many equate this move as akin to a bomb going off for people working in the CISO role. CISOs are now faced with unprecedented potential liability risks, prompting the need for a proactive approach to legal exposure for security executives. To shed ...
2 years ago Darkreading.com
The CISO Role Is Changing. Can CISOs Themselves Keep Up? - The role of chief information security officer has expanded in the past decade thanks to rapid digital transformation. Now CISOs have to be far more business-oriented, wear many more hats, and communicate effectively with board members, employees, ...
1 year ago Darkreading.com