Redefining the CISO for the AI era

Redefining the CISO for the AI era

As Artificial Intelligence (AI) disrupts every industry, how has it affected cybersecurity? Like every other industry, there’s a lot of change and only forward-thinking leaders who respond will remain.??

The role of chief information security officers (CISOs) is undergoing a seismic shift. No longer just focused on preventing risks, the most successful CISOs are visionaries who are focused on value creation and innovation. They must help their companies use AI safely and unlock its full potential, driving innovation and growth.?

Not only that, but they also need the support of executive teams who value them as advisors on how to safely accelerate the adoption of AI.?

Secure creators are leading the way with AI?

The EY 2024 Global Cybersecurity Leadership Insights Study identifies "secure creators" as leaders in using AI to improve cybersecurity. These innovators use AI to:?

  • Cut the time it takes to detect and respond to cyber incidents by half?
  • Achieve over 92% accuracy in identifying threats??
  • Increase efficiency by up to 40%??

By automating tasks and scaling operations, secure creators address the global shortage of cybersecurity skills, giving them a significant advantage. They are not just keeping up with threats, they’re setting the pace.?

Overcoming AI adoption hurdles?

Adopting AI in cybersecurity comes with challenges. Cybercriminals exploit vulnerabilities, and compliance risks arise from not following protocols. The study emphasises the need for education and training at the intersection of AI and cybersecurity, urging CISOs to take on more inclusive and advisory roles.??

For example, Gajan Ananthapavan, Global Head of Security Operations, Intelligence and Influence at ANZ Bank, highlights how AI can be used in cybersecurity to automate tasks. He says, “Currently, threat hunting is a manually intensive process which involves coding and developing scripts, and then running them across our environment. We are looking to automate large parts of that process, to help identify malicious activity and respond faster.”?

The evolving CISO role?

To drive AI adoption securely, CISOs must:?

  • Expand automation judiciously?
  • Remain vigilant on AI project cybersecurity?
  • Repurpose cybersecurity for data-intensive areas?
  • Balance automated and manual oversight?

Open communication within and outside the enterprise is vital to align cybersecurity with business goals, enabling innovation. CISOs must become trusted advisors who show the way to ‘yes’ – responsibly and strategically.?

Cybersecurity as a Strategic Asset??

With the support of forward-thinking executive teams, CISOs can go beyond their traditional role to become a key part of technological innovation and add real value to business operations. By clearly explaining the strategic value of cyber security, leading CISOs give companies the confidence to adopt AI securely, turning it from a cost centre into a growth engine.?

In this pivotal moment, the CISOs who can clearly articulate the value of cybersecurity will be most successful. Those who demonstrate cybersecurity is both a protective force and a competitive advantage will position their companies for lasting success.?

Richard Bergman, EY Global Cyber Transformation Leader said, "CISOs have a critical opportunity to seize generative AI as a way to turn cybersecurity from a security guard into a value creator."?

Richard Bergman Gajan Ananthapavan Richard Watson Piotr Ciepiela

This communication provides general information which is current at the time of production.? The information contained in this communication does not constitute advice and should not be relied on as such.? Professional advice should be sought prior to any action being taken in reliance on any of the information.? Ernst & Young disclaims all responsibility and liability (including, without limitation, for any direct or indirect or consequential costs, loss or damage or loss of profits) arising from anything done or omitted to be done by any party in reliance, whether wholly or partially, on any of the information.? Any party that relies on the information does so at its own risk.? Liability limited by a scheme approved under Professional Standards Legislation.

要查看或添加评论,请登录

社区洞察

其他会员也浏览了