Enterprises’ Confidence in Cybersecurity Readiness: A False Sense of Security?
The rapid digitization of infrastructure in today’s hyperconnected world presents complex challenges, significantly expanding the threat surface for cyber attacks. However, despite the apparent confidence exhibited by 80% of surveyed companies in dealing with evolving threats, Cisco’s 2024 Cybersecurity Readiness Index reveals a glaring disparity. Only a meager 3% of organizations have achieved the “Mature” level of readiness required to effectively withstand today’s cybersecurity risks. In response, nearly all (97%) of the companies surveyed plan to bolster their cybersecurity budgets over the next 12-24 months.
Conducted by an independent third party, Cisco’s Index evaluated the readiness of 8,136 private sector security and business leaders across 30 global markets. The assessment was based on an analysis of 31 solutions and capabilities spanning five key pillars: identity intelligence, machine trustworthiness, network resilience, cloud reinforcement, and AI fortification.
Comparing global statistics for company readiness between 2022-2023 and 2023-2024 reveals surprising changes. The proportion of companies classified as “Mature” plummeted from 15% to a mere 3% this year. Conversely, there was an increase in “Formative” companies by 13%, accompanied by a decline in “Progressive” companies by 4%. Additionally, more companies categorized as “Beginners” were included in the index this year.
According to Raymond Janse van Rensburg, VP of specialists and solutions engineering at Cisco APJC, this shift should not be viewed as a static comparison due to the inclusion of “a lot more capabilities” in this year’s benchmark.
Peter Molloy, managing director of global security sales operations at Cisco APJC, highlighted the challenges posed by the increasingly interconnected world driven by digitization and other factors. He emphasized the need for secure and resilient connectivity amidst the complexity and risks inherent in today’s IT and security practices.
The COVID-19 pandemic catalysed significant changes in infrastructure, leading to a shift from centralized to decentralized enterprise computing environments as employees transitioned to remote work. This transformation resulted in the proliferation of devices, services, applications, and users beyond the corporate firewall, exacerbating cybersecurity challenges.
Despite the confidence expressed by some CXO-level executives, the data suggests a concerning reality. Key findings from the study underscore the urgent need for enhanced cybersecurity measures, given the rising costs of cyber incidents and critical talent shortages.
The Cisco report offers recommendations to address these challenges, emphasizing the adoption of a platform approach to security and investments in platform-centric technologies. Additionally, securing unmanaged devices, fortifying Wi-Fi networks, leveraging AI technologies for automation, and addressing talent gaps are crucial steps for strengthening cybersecurity posture in today’s hybrid environment.
As organizations navigate the evolving threat landscape, proactive measures and strategic investments are imperative to bridge the gap between confidence and readiness in cybersecurity.
You can also check our news article Protecting Industry 4.0: SGS Advocates for Cybersecurity with IEC 62443