RSA 2024 Insights

RSA 2024 Insights

I just returned from an exciting RSA 2024 Conference, and wow, what an experience! Here are some of the insights I had from conversations with hundreds of CISOs:

  1. The Power of Community: While the RSA floor had its quiet moments (with some of the booths looking empty), the real magic was in the after-hour dinners and off-site meetups. The CISO community is more vibrant and connected than ever, showing strength in numbers and insight.
  2. AI Revolution: It's official—AI is the new gold. Most companies are now incorporating AI language prompts on top of their data, and just like being a “SaaS company is a given” so will “AI”.
  3. Commoditizing Attack Surface: It’s now table stakes to have external threat visibility. The coolest part? It's often baked right into many products at no extra charge. Talk about value!
  4. Top of Mind Trends: CISOs are zeroing in on (1) Identity Access Management, (2) Cloud Security, and (3) Third-Party Risk. These are the battlegrounds where cyber wars are fought and won. Over 60% of the data breaches are now due to negligence of Third Parties - so that positions the important work that SecurityScorecard does very well.
  5. Startup Tsunami: As the CEO of a thriving $100M+ ARR company, I'm swamped with pitches from Alliance and M&A partners. Tip for startups: Scale matters, quality products matter, and gimmicks don't cut it. ? Too many startups are burning capital, building point solutions, getting stuck at under $20M ARR and hoping someone will buy them. ? As the scrutiny for budgets gets tougher, some startups are even resorting to gimmicks (like 50% off on the price - remember 50% off nothing in value is still nothing!)?
  6. Metrics that Matter: If we can't measure it, we can't master it. KPIs are our roadmap to industry excellence. We need objective, trusted ways to measure and quantify risk.
  7. Platformization—Just a Buzzword? While 'one-stop-shop' sounds great, savvy CISOs know better than to put all their eggs in one vendor's basket. This is good news for startups - because CISOs want the best solutions out there.
  8. Public Sector :? I was very impressed by collaboration between public and private sectors. The public sector cyber heads that I met, were innovative, forward-looking thinkers who wanted to make a difference. Big opportunity ahead to make life for adversaries harder!
  9. Top CISOs are in demand: The job market for CISOs is thriving, and some Fortune 500 CISOs are making $1-$3M a year in compensation. This is now a legitimate executive position with a seat at the Board room.
  10. ?Investor Frenzy: There’s a gold rush in cybersecurity investment. Capital is eager and ready, but the capital is concentrated in best-of-breed companies (for example WIZ who has an amazing product announced a $1B investment at $12B valuation). ? Picking the right investor makes a big difference - funds like Evolution Equity, BoldStart Ventures, Sequoia Capital, CyberStarts, and so on - are the right partners who will help not just with capital but also with advice and CISO introductions.

I’m feeling supercharged and ready to take on the future with all these insights and connections. The next wave of cyber innovation can't come soon enough! Let's do this!

Are there any insights that you had from RSA that I missed?

????

#RSAC #Cybersecurity #Innovation #FutureReady #RSA2024

Abhi Bagchi

Product Builder | Networks, Cybersecurity, SaaS, GenAI | Ex-Cisco

7 个月

Thank you for a great summary. I agree 3. is a fantastic trend. Coming from the days when threat intel for BOT/APT was limited to Talos and a few others, is now accessible to most Cyber developers/users.

回复
Ilya Kabanov

Sr. Manager @ Google Cloud AI Protection

10 个月

Thank you for sharing Aleksandr Yampolskiy !

回复

Love the summary. Question - where are the 1-3MM security roles? That market has been stagnate for quite some time. There are so many strong #infosec leaders who cannot afford to leave their #CISO roles becuase commensurate compensation packages are not available or accessible.

回复
Eva Frankenberger CISSP CISA CISM CRISC GSTRT CIPP MBA

Observe & Discover, Invent & Innovate, Create & Solve CYBERSECURITY | RISK MANAGEMENT

10 个月

I would add to the #4 another, the 4th point - the organization’s AI protection. AI’s revolution as a technology vehicle will bring AI unique challenges beyond the traditional cyber security. The complexity and (still) the unknown territory for cyber teams will increase the risk for all kind of AI, whereever in the organization utilized. https://www.security-assurance.com/post/ai-s-potential-while-guarding-against-emerging-cyber-threats-a-call-to-action-for-cisos

回复

要查看或添加评论,请登录

Aleksandr Yampolskiy的更多文章

  • TBU: The Silent Productivity Killer—and How to Defeat It

    TBU: The Silent Productivity Killer—and How to Defeat It

    There’s a sneaky phenomenon that may creep into Startup conversations—especially among Managers or Investors—called…

    3 条评论
  • DeepSeek Article Observations and Security

    DeepSeek Article Observations and Security

    I had a bit of free time this evening, so I dove into the DeepSeek paper (https://arxiv.org/pdf/2412.

    47 条评论
  • Pros an Cons of "Founder Mode"

    Pros an Cons of "Founder Mode"

    I recently came across an article by Paul Graham "Founder Mode" (https://paulgraham.com/foundermode.

    6 条评论
  • De-personalizing decision making

    De-personalizing decision making

    Here's a post I sent to our team on one important cultural attribute at SecurityScorecard :"How do we depersonalize…

    8 条评论
  • Favorite Security Books

    Favorite Security Books

    Here is a list of my top 10 favorite books on IT Cybersecurity, which I assembled. Hope you find these useful and…

    6 条评论
  • Hunger

    Hunger

    The one quality I look for above all others when hiring people is 'hunger.' In my humble view, hunger is often a bigger…

    6 条评论
  • 5 Essential Tips for Staying Safe Online

    5 Essential Tips for Staying Safe Online

    This article has first appeared on https://www.meetup.

  • On Recent Events In Our Community

    On Recent Events In Our Community

    Dear all: I wanted to take a few moments to address the recent events here in the US on so many of our minds today…

  • Playing chess moves for your business in uncertain times

    Playing chess moves for your business in uncertain times

    "Playing chess moves for your business in uncertain times" From Aleksandr Yampolskiy, CEO and co-founder of…

    1 条评论
  • The 6 Best Cybersecurity Books for Summer 2018

    The 6 Best Cybersecurity Books for Summer 2018

    Summer is a great time to catch up on reading at the beach. Here are my six recommendations for books, related to cyber…

    3 条评论

社区洞察

其他会员也浏览了