What (if anything!) makes you feel optimistic for the future of cybersec?
Sort by:
No one can shape or expect the future of Cyber Security, it will be always something unpredictable, and no one can cover 100% of security gaps of any systems, so we have to work a lot hard behind the hackers.
In talking to many of my Higher Ed peers, it is the #1 priority for tech leaders, and it's on the agendas for many board meetings, getting the attention and funding needed to deal with the surface area of risk. Automation is making strides in the toolsets, which is critical in battling armies of threat actors that rotate 24x7, and though not perfect, is promising to the typically understaffed cyber teams.
The cybersec will have significant progress because the alternative is impossible.
1. Increased risk due international context (Ukrainian war) flagged cybersec as one of the main defense domains.
2. Effects of real cyber attacks (attack on Ukrinian electrical infrastructure, unavailability of LNG american infrastructure etc) proved that the threat is real and with very high potential consequences.
3. Effects of cyber negligence (Cambridge Analytica by Facebook in Brexit debate, data stealing in American elections) showed the vulnerability of trust in front of manipulation of personal data
4. The huge time span from penetration time to awareness of a targeted attack (6-8 months in average) of banks and other significant companies raze the need of more cooperation between economical actors
The cost of cybersc going downwards (i.e. being overwhelmed by cyber attacks technologies) is much higher than the cost of (at least) matching the defenders with attackers.
Great question - its often easy to focus only on the many challenges! On the positive side I think the governance and regulatory environment around cybersec is maturing - there is a much greater focus on board and C-suite around this issue and funding is much more appropriate to address the challenges. AI technologies are also getting more sophisticated at sniffing out issues and we are starting to develop real paradigms and approaches (i.e. zero trust) to take a more structured approach to a complex and wide ranging issue.
The security space/industry is growing every day. I think a lot of bright minds and companies are targeting this space so that makes me optimistic that there will eventually be a solution for most problems.