Secure by Design – A proactive approach to protecting your organization

Secure by Design – A proactive approach to protecting your organization

With digital transformation in the spotlight, and rightly so, it makes much sense to adopt a cybersecurity mindset to thwart growing threats from cybercriminals. What follows naturally is switching to a secure by design philosophy, as briefly introduced in my last article.

?Put simply, secure by design implies embedding cybersecurity principles at every stage of the lifecycle. As a result, enterprises can quickly formulate ways to ward off these threats and reduce risk. However, it means security must gain top priority from day zero in any endeavor at the enterprise level and involve all employees and other stakeholders, not just the cybersecurity team.

While this sounds perfect at a conceptual level, how does it translate into everyday activities for an enterprise? It begins with instilling a cybersecurity mindset into every employee. While propagating a culture change is a topic for another article, this one dwells on what secure by design implies for enterprises daily.

?First, with every action that an employee takes, these two simple questions must be posed and answered satisfactorily –

?1.????Is my enterprise secure? Typically, this is the cybersecurity team’s purview. This team plays a key role in securing the enterprise by devising appropriate policies, standards, processes and procedures- ??In addition, they track the effectiveness of such execution through monitoring and reviewing the adherence of various teams to the SbD principles.?They also implement and operate core cyber controls.

?2.????Am I doing it securely? Perhaps, the most critical realization emerging from this question is that enterprise cannot be secured only by the cyber security team, but it must be intertwined with the IT fabric and functions of the enterprise. Secure SDLC, DevSecOps, prioritized vulnerability remediation, zero-day patching, naming convention for the assets, access governance, secure cloud visibility are few of the examples. Extending it beyond the conventional IT realm, is another example that entails adopting zero-trust architecture as data proliferates across multiple access points and devices. Clearly, this broadens the attack surface, and a security first mindset is required to help protect the businesses across the different tenets of cyber threats.

?This shift in how security is integrated into the overall fabric of digitization sets the ball rolling for a secure by design approach across the organization. With secure by design, security is considered as an integral part of project lifecycle and not as an afterthought.

Infosys CyberSecurity: https://www.infosys.com/services/cyber-security.html ??

#fortifycyber #cybersecurity #SbD

Suresh Krishnan

Strategic IT Leadership & Delivery | AI & Machine Learning Advocate | PMP? Certified | Enterprise Architect | P&C Insurance Solutions Expert | Duck Creek Technology Specialist | Prompt Engineering

2 年

Great article!

回复
Bhanu Murthy Chilamakuri

Senior Director - Client Services at Infosys

2 年

Fantastic Views Kumar

回复
Ambika Prasad

Leading Data Privacy and Protection Delivery Unit

2 年

Well said Kumar...SBD is one of the way to move towards proactive security posture enhancement for any organization.

回复
Naveen L.

Founder & CEO of WeXL AI

2 年

Excellent way to protect the organization ..

回复

要查看或添加评论,请登录

Kumar M.的更多文章

  • Seven imperatives to build a “security-first” mindset

    Seven imperatives to build a “security-first” mindset

    Cyberthreats are rampant especially in the current situation, and enterprise cyber teams are being extra vigilant – no…

    10 条评论
  • Six Key Cybersecurity Strategies that should be considered during Digital Transformation

    Six Key Cybersecurity Strategies that should be considered during Digital Transformation

    My previous article discussed at length about six key drivers for successful digital transformation. While digital…

    6 条评论
  • Six Key Drivers for Successful Digital Transformation

    Six Key Drivers for Successful Digital Transformation

    Digital is the future Digital transformation has taken the world by storm and fast reshaping the way we conduct…

    4 条评论
  • Reflections....

    Reflections....

    Happy New Year 2020! We could deliver stellar growth last year in our unit, thanks to meticulous planning & relentless…

    20 条评论
  • Hi-Tech vs. Hi-Touch in HR

    Hi-Tech vs. Hi-Touch in HR

    It has been more than a month I was at PeopleFirst HRExcellence awards and one of the topics discussed at this event…

    4 条评论
  • People First Indeed !

    People First Indeed !

    Last week I was in Mumbai for the PeopleFirst HR Excellence Awards, 2018 edition as a jury member. I must confess it…

    6 条评论

社区洞察

其他会员也浏览了