2023 CISO现状报告-23页-WN7.pdf





《2023 CISO现状报告-23页-WN7.pdf》由会员分享,可在线阅读,更多相关《2023 CISO现状报告-23页-WN7.pdf(23页珍藏版)》请在淘文阁 - 分享文档赚钱的网站上搜索。
1、State of the CISOA global report on priorities,pain points,and security gaps2023Survey conducted by:2State of the CISO Report 2023Table of ContentsIntroduction and Key FindingsSurvey Report FindingsTwo-Thirds of Companies Are Rolling Out More Digital Services Now Than Two Years AgoNearly 90%of CISOs
2、 say Digital Transformation Introduces Unforeseen RisksTalent Tops the List of Security Challenges Resulting from Digital TransformationLitigation Concern is Top Personal Challenge Created by Digital TransformationSupply Chain and APIs are Biggest Security Control Gaps in Digital Initiatives78%of Or
3、ganizations Place a Higher Priority on API Security Now vs.Two Years AgoNearly All CISOs Plan to Prioritize API Security over the Next Two YearsA Variety of Global Developments are Significantly Impacting CISOs TodayThe Struggle to Find Qualified Cybersecurity Talent is Impacting Digital Transformat
4、ionBoards of Directors are Knowledgeable about CybersecurityWhile Security Budgets Have Increased,Security Spending Power has DecreasedDemographicsAbout Salt Security3891011121314151617181920223State of the CISO Report 2023Introduction and Key Findings4State of the CISO Report 2023Introduction and M
5、ethodologyDigital initiatives represent the cornerstone of business innovation today,and the rollout of these new services has had a tremendous impact on companies around the globe.In this survey,we set out to discover how the digital-first economy has specifically impacted the role of the CISO/CSO.
6、In addition to bringing awareness to the evolving role of the CISO,the survey strove to delve into the broader business ramifications of these changes,so organizations can better understand how digital initiatives are impacting risk and how companies can better protect themselves.The survey asked CI
7、SOs about the effects of digitalization across a number of different dimensions from the top security and personal challenges,to the biggest security control gaps,to the struggle to find good talent,to the impact that global trends are having,to the cyber knowledge level of their boards of directors
8、.The rapid pace of the digital-first economy has transformed the role of the CISO.For CISOs around the world,the adoption of digitalization has made securing critical data more challenging than ever before.But the challenges extend beyond business impacts.CISOs cite many personal challenges that hav
9、e also resulted from the acceleration of digitalization.They fear potential litigation as a result of security breaches,they have more job-related stress,they worry about personal liability,and they often dont have enough time to fulfill the requirements of their job.Global trends have also played a
10、 part in transforming the CISO role in particular,the speed of AI adoption.AI has become more widely used by cyber criminals across the globe,giving them the ability to dramatically scale their attacks and cause harm to organizations.To counter these threats,CISOs themselves must harness the power o
11、f AI for good,using it to“catch”and stop AI-driven attacks,putting more pressure on them to quickly adopt new solutions to safeguard their and their customers critical assets.Perhaps the most significant findings are the security control gaps that have arisen as a consequence of new digital initiati
12、ves.Digitalization has generated multiple security threats and risks,the biggest among them the application programming interface(API).Foundational to how applications are built today,APIs also play a crucial role in other top areas of CISO concern,including third-party vendors/supply chains and clo
13、ud-based applications.This huge and expanding attack surface gives bad actors many access points into organizations digital applications and data.Consequently,APIs have become an increasingly attractive target for cyber criminals.Why?Theyre relatively easy to hack,attacks are difficult to detect and
14、 cant be found by existing security tooling,and the rewards for successfully hacking APIs are very high because APIs transport companies most valuable digital data.In fact,the attack surface has grown so significantly,APIs are predicted to become the biggest security vulnerability ever,according to
15、industry research firm Gartner.While awareness of the need for API security has clearly grown,its implementation is not yet pervasive.Being on the security front lines,CISOs feel the risks of digitalization most sharply.But the potential impact of a digital breach affects the entire enterprise,costi
16、ng organizations not only in damage to their brand reputation but also in mitigation costs,fines,and potential litigation.Therefore,increasing security for these vital digital initiatives must be a priority for the whole business not just the security team.C-level executives must do their part to en
17、able and aid the business by prioritizing and funding new security requirements created by digitalization.Digital transformation is all about moving fast.To drive business acceleration,security must“not get in the way”while simultaneously ensuring the safety of the organizations critical data and se
18、rvices.By closing the top security control gaps caused by digitalization,companies can help alleviate the concern that“moving fast could put the business at risk.”MethodologyTo get more insight into current priorities,security gaps and pain points for C-level security leaders,we commissioned a surve
19、y of 300 CISOs/CSOs.Global Surveyz Research,an independent survey company,administered the survey online.Respondents represented companies in the US,UK,Western Europe(France,Netherlands)and Brazil,with 500 or more employees,across a variety of industries,including financial services(including fintec
20、h),healthcare,insurance,pharmaceutical,and eCommerce.The respondents were recruited through a global B2B research panel and invited via email to complete the survey,with all responses collected during April 2023.The average amount of time spent on the survey was 7 minutes and 30 seconds.The answers
21、to most of the non-numerical questions were randomized to prevent order bias in the answers.5State of the CISO Report 2023Key FindingsThe Healthcare and Financial Services industries face the biggest security impact due to the rapid pace of digital transformation initiativesThe proliferation of mode
22、rn digital services and applications continues to complicate the security landscape and introduce new security control gaps.89%of CISOs worldwide agree that moving fast with digital transformation can introduce unforeseen risks in securing organization data(Figure 2).However,of those who agree most
23、strongly(37%),the top two industries(Figure 3)are healthcare(47%)and financial services or technologies(43%),which makes sense,as these sectors are experiencing a comparatively high level of digital innovation and disruption.Because offering digital services has become critical in these industries t
24、o remain competitive and meet consumer expectations,healthcare and financial services organizations introduce new digital services at a faster pace.Consequently,these sectors see more“pain”and challenges earlier and more frequently than in other industries.Paradoxically,the survey also shows that th
25、ese sectors have the most difficulty justifying the cost of security investments to protect new digital transformation initiatives(Figure 5),making the CISO role in healthcare and financial services even more challenging.21Almost half of CISOs worldwide have concerns that a security breach in their
- 配套讲稿:
如PPT文件的首页显示word图标,表示该PPT已包含配套word讲稿。双击word图标可打开word文档。
- 特殊限制:
部分文档作品中含有的国旗、国徽等图片,仅作为作品整体效果示例展示,禁止商用。设计者仅对作品中独创性部分享有著作权。
- 关 键 词:
- 2023 CISO现状报告-23页-WN7 CISO 现状 报告 23 WN7

限制150内