CISOs fear getting the blame for mega data breaches

  • Report finds AI-driven threats are evolving quicker than firms can keep up with
  • Organizations use countless dashboards and security tools, adding to confusion
  • Simplification starts with one “trusted” data source

Amid the tide of rising cyber threats, two in three (65%) security leaders fear they’ll be blamed in the event of a major breach, making the role less desirable and potentially even leaving many companies struggling to fill roles.

New research from Panaseer found the average cyber incident cost per impacted enterprise is $14 million annually, which is the equivalent of 73% of their security budget – a budget that clearly failed them in the first place, to have become victims of attacks.

With increasingly complex systems, Panaseer found that three in four attacks exploited multiple control failures, with nearly two-thirds reporting that attackers bypassed controls they believed should have prevented breaches.

The CISO role is no longer as appealing

The landscape is being further amplified by a rise in AI-driven threats – more than three-quarters (77%) worry that these are evolving faster than teams can respond.

As it currently stands, organizations use an average of 61 security tools and 58 dashboards, performing or responding to 28 audits annually that take on average eight days to prepare.

“The complexity of the IT landscape, sprawl of cyber tools and fast-evolving threat environment, compounded by growing regulator demands, make it very difficult to achieve even basic hygiene,” CEO Jonthan Gill noted.

Although 77% agree that traditional tools aren’t fit for today’s threat landscape, it seems that more isn’t better either – many report costly delays in audits or fail to prove control effectiveness to leadership.

“For CISOs, it is a case of water, water everywhere, but not a drop to drink,” Gill added. Panaseer calls for widespread simplification, starting with a “single, trusted source of ground truth data” and dashboards that speak the languages of stakeholders and auditors.

“Without this, security teams cannot track controls and progress; businesses cannot understand risk; and enterprises will continue losing millions to preventable breaches.”

Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds. Make sure to click the Follow button!

And of course you can also follow TechRadar on TikTok for news, reviews, unboxings in video form, and get regular updates from us on WhatsApp too.

Read more @ TechRadar

Latest posts

Apple sues OpenAI for allegedly stealing hardware secrets

Apple has sued OpenAI, alleging that engineers stole Apple secrets to advance the AI startup's hardware plans. In its complaint, Apple says it uncovered...

The FCC is cracking down on DJI tech that dodged the foreign drone ban

The Xtra Muse and the DJI Osmo Pocket 3. | Photo by Sean Hollister / The Verge Last year, we told you about Xtra, the...

Meta turns off the Instagram feature that let users make AI deepfakes of public accounts

Following significant backlash, Meta is turning off the feature it announced this week that let users generate AI images based on content from public...

No, Flock isn’t threatening people for debating surveillance

On Thursday, the Instagram account for a lecture series in Newport Beach, CA posted a photo of what appeared to be a cease and...

Netflix is turning into YouTube

Netflix has shows and movies. And video games. And live sports. And podcasts. And also, apparently, YouTube videos? For a company that used to...

Spotify will let you fine-tune your weekly Release Radar playlist

Spotify is giving listeners control to fine-tune what gets surfaced for them in Release Radar - one of its most popular weekly playlists. The...

Nvidia’s biggest RAM supplier just had a trillion-dollar debut on Wall Street

SK Hynix CEO Kwak Noh-Jung. | Image: Michael Nagle/Bloomberg via Getty Images As the AI boom boosts demand for RAM, SK Hynix - one of...

ICE is threatening to deport witnesses of its latest shooting

Department of Homeland Security. | Image: The Verge Advocates are demanding that the Department of Homeland Security release bodycam footage of the fatal shooting of...

A decade later, Pokémon Go finally made good on its original promise

When Niantic dropped the first Pokémon Go trailer in 2015, it was hard to grasp how a bunch of players could work together to...

What went wrong with OnePlus? [Video]

From a darling of the early Android era to a husk on the brink of becoming completely irrelevant, just what went wrong for OnePlus? Read...