{"id":24599,"date":"2018-09-10T08:54:48","date_gmt":"2018-09-10T07:54:48","guid":{"rendered":"http:\/\/www.intelligentcio.com\/eu\/?p=24599"},"modified":"2018-09-12T08:22:40","modified_gmt":"2018-09-12T07:22:40","slug":"survey-highlights-security-implications-of-digital-transformation","status":"publish","type":"post","link":"https:\/\/www.intelligentcio.com\/eu\/2018\/09\/10\/survey-highlights-security-implications-of-digital-transformation\/","title":{"rendered":"Survey highlights security implications of Digital Transformation"},"content":{"rendered":"<p>Fortinet, a global leader in broad, integrated and automated cybersecurity, has announced the findings of its new <em>2018 Security Implications of Digital Transformation Survey<\/em>, which provides insights into the state of cybersecurity in organisations around the world.<\/p>\n<p>The findings come from an independent survey of more than 300 Chief Information Security Officers (CISOs) and Chief Security Officers (CSOs) at 2,500+ employee organisations around the world.<\/p>\n<p><strong>Digital Transformation (DX), the overwhelming business trend leveraging IT<\/strong><\/p>\n<p>According to the survey, a majority of organisations have already begun their Digital Transformation process, with 67% of respondents stating that their organisations started implementing DX more than a year ago and 95% saying that they are at least trialling a solution today.<\/p>\n<p><strong>Security challenges to Digital Transformation <\/strong><\/p>\n<p>While it\u2019s generally acknowledged that DX can fundamentally change how an organisation operates and delivers value to its customers, DX can also increase the risk of cyberattacks.<\/p>\n<p>The proliferation of endpoints, increasingly distributed networks and the exponentially increasing volumes of data and network traffic are all sources of concern for IT security teams and IT departments. CISOs and CSOs certainly agree \u2013 85% cite security as the largest hurdle for implementing DX.<\/p>\n<p>Key findings from the survey include:<\/p>\n<ul>\n<li>The median respondent estimates that 25% of their network infrastructure is not protected against security threats. This is due to a number of factors \u2013 an expanding attack surface that DX can bring, the growth in the volume and level of sophistication of the threats themselves and a lack of staff with the necessary security skills<\/li>\n<li>The median organisation participating in the survey experienced 20 cyberattack related intrusions in the past 24 months, with four of these resulting in outages, data loss or compliance events<\/li>\n<li>Two sources of risk are of special concern to CISOs and CSOs: the rise of polymorphic attacks (85%) \u2013 threats that constantly morph or change \u2013 and vulnerabilities in DevOps (81%)<\/li>\n<\/ul>\n<p>\u201cThe Digital Transformation or DX wave appears to be sweeping away everything that stands before it and cybersecurity worries have emerged as a significant obstacle to the transformation process,\u201d said Alain Penel, Regional Vice President- Middle East, Fortinet.<\/p>\n<p>\u201cCurrently, four areas stand out as particularly acute cybersecurity pain points for organisations adopting a DX approach: cloud computing, with a particular focus on multi-cloud environments; IoT \u2013 a burgeoning threat landscape; and rising regulatory pressure.<\/p>\n<p>\u201cIt is crucial to understand that while organisations are turning to DX to achieve growth as well as other key business objectives, DX processes also require an equivalent security transformation with the integration of security into all areas of digital technology.<\/p>\n<p>\u201cThis results in fundamental changes to how security is architected, deployed and operated, highlighting why organisations need a programmatic approach to DX and security transformation, one where they are tied in lockstep with each other.\u201d<\/p>\n<p><strong>Securing Digital Transformation with a holistic and strategic approach<\/strong><\/p>\n<p>Looking more deeply into the data, the survey shows remarkable differences between the top-tier organisations \u2013 those that have not suffered a damaging attack during the past two years \u2013 and bottom-tier organisations \u2013 those that suffered 16 attacks which have caused damage during the same time frame. Each group comprised approximately one-third of respondents.<\/p>\n<p>The survey shows that top-tier organisations tended to take a more holistic and strategic approach to security. Among the findings, these top-tiers organisations are:<\/p>\n<ul>\n<li>A total of 76% more likely to integrate security systems to form a unified security architecture<\/li>\n<li>A total of 38% more likely to share threat intelligence across their organisation<\/li>\n<li>A total of 34% more likely to make sure safeguards work everywhere (on-premises cloud, IoT, mobile, etc.)<\/li>\n<li>A total of 24% more likely to build in compliance controls for centralised tracking and reporting, for both industry and security standards<\/li>\n<li>A total of 24% more likely to have automated more than half of their security practices<\/li>\n<li>A total of 20% more likely to have end-to-end visibility across all environments<\/li>\n<\/ul>\n<p>Penel said: \u201cThe implications are clear. Holistic and integrated security strategies are more effective than siloed, reactive ones. A strategic approach becomes increasingly important as an organisation\u2019s attack surface increases with the proliferation of devices, whether for a mobile workforce or as part of an IoT initiative and the adoption of cloud, particularly multi-cloud, environments.<\/p>\n<p>\u201cFurther, a comprehensive strategy that unifies IT tools and processes across all parts of the network is necessary for addressing advanced threats such as polymorphic attacks, as well as new vulnerabilities that sneak in because of DevOps. At the same time, integration of security elements is a fundamental requisite for an organisation seeking to automate workflows and threat intelligence sharing.\u201d<\/p>\n<p><strong>Methodology for the study<\/strong><\/p>\n<p>For the <em>\u20182018 Security implications of Digital Transformation Survey<\/em>\u2019, 300 security leaders were surveyed across Australia, Asia, Europe and North America. As CISOs\/CSOs, all participants are responsible for security at an organisation with more than 2,500 employees. The organisations where they work are active in a variety of industries, such as education, government, financial services, healthcare, technology and energy.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Fortinet, a global leader in broad, integrated and automated cybersecurity, has announced the findings of its new 2018 Security Implications of Digital Transformation Survey, which provides insights into the state of cybersecurity in organisations around the world. The findings come from an independent survey of more than 300 Chief Information Security Officers (CISOs) and Chief [&hellip;]<\/p>\n","protected":false},"author":28,"featured_media":24685,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[57,6617,93],"tags":[8887,8888,3877,8889,4969,564,76,2338,8890],"class_list":["post-24599","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-enterprise-security","category-research","category-top-stories","tag-2018-security-implications-of-digital-transformation-survey","tag-alain-penel","tag-cisos","tag-csos","tag-cyberattack","tag-cybersecurity","tag-digital-transformation","tag-fortinet","tag-regional-vice-president-middle-east"],"acf":[],"publishpress_future_workflow_manual_trigger":{"enabledWorkflows":[]},"_links":{"self":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/24599","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/users\/28"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/comments?post=24599"}],"version-history":[{"count":3,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/24599\/revisions"}],"predecessor-version":[{"id":24622,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/posts\/24599\/revisions\/24622"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/media\/24685"}],"wp:attachment":[{"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/media?parent=24599"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/categories?post=24599"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intelligentcio.com\/eu\/wp-json\/wp\/v2\/tags?post=24599"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}