




版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進(jìn)行舉報(bào)或認(rèn)領(lǐng)
文檔簡介
S
tate
of
theCISOA
globalreport
onpriorities,painpoints,
andsecuritygaps2023Surveyconductedby:Table
of
Contents3IntroductionandKey
Findings8SurveyReport
Findings9Two-Thirds
ofCompaniesAre
RollingOutMore
DigitalServicesNow
ThanTwo
Years
AgoNearly90%ofCISOssay
DigitalTransformation
IntroducesUnforeseenRisksTalent
Tops
the
ListofSecurityChallengesResultingfrom
DigitalTransformationLitigationConcernisTop
PersonalChallengeCreatedby
DigitalTransformationSupplyChainandAPIsare
BiggestSecurityControlGapsinDigitalInitiatives78%
ofOrganizationsPlaceaHigherPriorityonAPISecurityNow
vs.Two
Years
AgoNearlyAllCISOsPlantoPrioritizeAPISecurityover
the
Next
Two
YearsAVariety
ofGlobalDevelopmentsare
SignificantlyImpactingCISOsTodayTheStruggletoFindQualifiedCybersecurityTalent
isImpactingDigitalTransformationBoardsofDirectorsare
KnowledgeableaboutCybersecurityWhileSecurityBudgetsHave
Increased,SecuritySpendingPower
hasDecreasedDemographics101112131415161718192022AboutSaltSecurityStateofthe
CISOReport
20232Introduction
andKe
yFindingsStateofthe
CISOReport
20233Introduction
andMethodologyDigitalinitiativesrepresentthe
cornerstoneofbusinessinnovationtoday,
andthe
rolloutofthesenewserviceshashadatremendousimpactoncompaniesaroundthe
globe.Inthissurvey,
we
setouttodiscover
how
the
digital-firsteconomyhasspecificallyimpactedthe
roleofthe
CISO/CSO.
Inadditionto
bringingawarenesstothe
evolvingroleofthe
CISO,
the
surveystrove
todelveintothe
broaderbusinessramificationsofthesechanges,soorganizationscanbetterunderstandhow
digitalinitiativesare
impactingriskandhow
companiescanbetterprotectthemselves.becomeanincreasinglyattractivetargetfor
cybercriminals.Why?
They’rerelativelyeasytohack,attacksare
difficulttodetectandcan’tbefound
by
existingsecuritytooling,andthe
rewards
forsuccessfullyhackingAPIsare
veryhighbecauseAPIstransportcompanies’mostvaluabledigitaldata.Infact,the
attacksurfacehasgrown
sosignificantly,APIs
are
predicted
to
become
thebiggest
security
vulnerability
ever,accordingtoindustryresearchfirmGartner.Whileawarenessofthe
needfor
APIsecurityhasclearlygrown,
itsimplementationisnotyet
pervasive.Thesurveyasked
CISOsaboutthe
effectsofdigitalizationacrossanumberofdifferentdimensions–fromthe
topsecurityandpersonalchallenges,tothe
biggestsecuritycontrolgaps,to
the
struggleto
findgoodtalent,to
the
impactthatglobaltrendsare
having,tothe
cyberknowledgelevel
oftheirboardsofdirectors.Beingonthe
securityfrontlines,CISOsfeel
the
risksofdigitalizationmostsharply.Butthe
potentialimpactofadigitalbreachaffectsthe
entireenterprise,costingorganizationsnotonlyindamageto
theirbrandreputationbutalsoinmitigationcosts,fines,andpotentiallitigation.Therefore,increasingsecurityfor
thesevitaldigitalinitiativesmustbeapriorityfor
the
wholebusiness–notjustthe
securityteam.C-level
executives
mustdotheirpart
to
enableandaidthe
businessbyprioritizingandfundingnewsecurityrequirementscreatedby
digitalization.Digitaltransformationisallaboutmovingfast.To
drivebusinessacceleration,securitymust“notgetinthe
way”whilesimultaneouslyensuringthe
safetyofthe
organization’s
criticaldataandservices.Byclosingthetopsecuritycontrolgapscausedby
digitalization,companiescanhelpalleviatethe
concernthat“movingfastcouldputthe
businessatrisk.”Therapidpaceofthe
digital-firsteconomyhastransformedthe
roleofthe
CISO.
For
CISOsaroundthe
world,the
adoptionofdigitalizationhasmadesecuringcriticaldatamorechallengingthaneverbefore.
Butthe
challengesextendbeyond
businessimpacts.CISOscitemany
personalchallengesthathave
alsoresultedfromthe
accelerationofdigitalization.They
fear
potentiallitigationasaresultofsecuritybreaches,theyhave
morejob-relatedstress,theyworryaboutpersonalliability,andtheyoftendon’thave
enoughtimetofulfillthe
requirementsoftheirjob.Globaltrendshave
alsoplayed
apart
intransformingthe
CISOrole–inparticular,the
speedofAIadoption.AIhasbecomemorewidelyusedby
cybercriminalsacrossthe
globe,givingthemtheabilityto
dramaticallyscaletheirattacksandcauseharmtoorganizations.To
counterthesethreats,CISOsthemselvesmustharnessthe
power
ofAIfor
good,usingitto“catch”andstopAI-drivenattacks,puttingmorepressureonthemtoquicklyadoptnewsolutionstosafeguardtheirandtheircustomers’criticalassets.MethodologyTo
getmoreinsightintocurrentpriorities,securitygapsandpainpointsfor
C-level
securityleaders,we
commissionedasurveyof300CISOs/CSOs.GlobalSurveyzResearch,anindependentsurveycompany,
administeredthe
surveyonline.Respondentsrepresentedcompaniesinthe
US,UK,Western
Europe(France,Netherlands)andBrazil,with500ormoreemployees,acrossavarietyofindustries,includingfinancialservices(includingfintech),healthcare,insurance,pharmaceutical,andeCommerce.Perhapsthe
mostsignificantfindingsare
the
securitycontrolgapsthathave
arisenasaconsequenceofnewdigitalinitiatives.Digitalizationhasgeneratedmultiplesecuritythreatsandrisks,the
biggestamongthemthe
applicationprogramminginterface(API).Foundationaltohow
applicationsare
builttoday,
APIsalsoplay
acrucialroleinothertopareasofCISOconcern,includingthird-partyvendors/supplychainsandcloud-basedapplications.Thishugeandexpandingattacksurfacegivesbadactorsmany
accesspointsintoorganizations’digitalapplicationsanddata.Consequently,APIshaveTherespondentswere
recruitedthroughaglobalB2Bresearchpanelandinvitedviaemailtocompletethe
survey,
withallresponsescollectedduringApril2023.
Theaverage
amountoftimespentonthe
surveywas7minutesand30seconds.Theanswerstomostofthe
non-numericalquestionswere
randomizedtoprevent
orderbiasinthe
answers.Stateofthe
CISOReport
20234Key
FindingsThe
Healthcare
and
Financial
Services
industries
face
the
biggest
security
impact
dueto
the
rapid
pace
of
digital
transformation
initiativesAlmost
half
of
CISOs
worldwide
haveconcerns
that
a
security
breach
in
their
organizationmay
result
in
personal
litigation
and
liability12Theproliferationofmoderndigitalservicesandapplicationscontinuestocomplicatethesecuritylandscapeandintroducenewsecuritycontrolgaps.89%ofCISOsworldwideagreethatmovingfastwithdigitaltransformationcanintroduceunforeseenrisksinsecuringorganizationdata(Figure
2).However,
ofthosewhoagreemoststrongly(37%),the
toptwo
industries(Figure
3)are
healthcare(47%)andfinancialservicesortechnologies(43%),whichmakes
sense,asthesesectorsare
experiencingacomparativelyhighlevel
ofdigitalinnovationanddisruption.Virtuallyallrespondents(99%)admittheyfacepersonalchallengesasaresultofdigitaltransformation(Figure
6),withthe
topconcernsbeingpersonallitigationstemmingfromsecuritybreaches(48%)andincreasedpersonalrisk/liability(45%).Withseveral
high-profileCISOlawsuitsmakingwaves
recently,the
trendofsecurityleadersoptingfor
rolesbelowCISOlevel,
orrequestingindemnification,isgrowing.CISOshave
fearsofbeingfound
personallyliableinthe
event
ofasecuritybreach,potentiallyputtingtheirown
livelihoodatrisk.To
alleviatefears,organizationsneedsecurityprocessesandtoolingthatprovide
CISOswithacomprehensiveviewintopotentialsecurityrisks.Withproven
riskmitigationcapabilities,CISOscanmoreeffectivelydemonstrateandclosesecuritycontrolgaps,gainingreassuranceandloweringtheirconcernsregardingpersonalliability.At
atimewhenthe
CISOroleismoreimportantthanever,
senior-level
companyexecutives
cannotrisklosingthe
bestcandidatestoworriesover
personalriskorlitigation.Becauseofferingdigitalserviceshasbecomecriticalintheseindustriestoremaincompetitiveandmeetconsumerexpectations,healthcareandfinancialservicesorganizationsintroducenewdigitalservicesatafasterpace.Consequently,thesesectorsseemore“pain”andchallengesearlier–andmorefrequently–thaninotherindustries.Paradoxically,the
surveyalsoshowsthatthesesectorshave
the
mostdifficultyjustifyingthe
costofsecurityinvestmentsto
protectnewdigitaltransformationinitiatives(Figure
5),makingthe
CISOroleinhealthcareandfinancialserviceseven
morechallenging.Stateofthe
CISOReport
2023578%
of
CISOs
areprioritizing
API
security
more
highly
than
two
years
ago,
and
95%
ofCISOs
say
API
security
is
a
planned
priority
overthe
next
two
yearsThe
speed
of
AI
adoption
is
the
global
development
most
impacting
the
CISO’s
role34Multipleglobaldevelopmentsare
contributingtothe
complexityofthe
CISOrole,includingmacro-economicuncertainty,the
geo-politicalclimate,andlayoffs
(Figure
11).ButtheleadingglobaltrendimpactingCISOsworldwide–whencombiningrespondents’ratingsofmedium,high,andveryhighimpact–isthe
speedofAIadoption(94%).Withthe
growthofthe
digital-firsteconomyover
the
pastcoupleofyears,the
usageofAPIshasexploded.Asthe
gluethatdrivesalldigitalinitiatives,APIseitherdirectlyorindirectlyimpactmostofthe
topsecuritycontrolgaps.They
alsohave
the
mostpotentialtoimpedethe
successofanorganization’s
digitaltransformationprograms.Giventhe
factthatAPIsare
embeddedintoalldigitalservices,it
’s
notsurprisingthat78%
ofrespondentssay
theirorganizationsare
prioritizingAPIsecuritymorehighlynow,
comparedto2021(Figure
8).Moreover,
CISOssay
APIsecurityprioritizationwillincreasefurther,with95%ofCISOsworldwidereportingtheirorganizationshave
madeAPIsecurityaplannedpriorityover
the
nexttwo
years.Thebiggestsecuritycontrolgapfor
CISOsintheirdigitalinitiatives(Figure
7)issupplychain/third-partyvendors(38%).Becauseeffectivedatasharingacrossthirdparties
andsupplychainsreliesonAPIstofunction,thisgapalsofurther
highlightsthe
APIsecuritypainpoint.Businessinnovation,digitalization,cloudmigration,andeffectiveAPIsecurityare
alltightlyinterrelated.Working
ontheseinitiativesinaunifiedway
helpsbusinessesreducetheirrisk.TheriseofAIinvirtuallyeveryindustryhastransformedthe
securitylandscape,andCISOsworryabouthow
thisdynamicwillaffecttheirorganizations.AIservesasauniquecyberdefensetoolwithitsabilityto
quicklyanalyzelargevolumesofdataandassessandlearnfrompotentialattacks.However,
AIcanalsobeasecuritythreat.Cybercriminalshave
alreadyturnedtoAIfor
itsabilityto
provide
newways
to
attackorganizations’infrastructures.UsingmorewidelyavailablegenerativeAItechnologies,suchasChatGPT,for
example,badactorscangeneratemaliciousemailsandeven
scriptattacksatamuchfasterrate.CISOsmustalwaysunderstandthe
adversary,andthe
adversaryisusingAI.AsCISOslearntonavigatethe
associatedthreatsandsecurityramificationsofAI,theymustalsolearntoharnessAI“defensively”for
theirorganization’s
security.Stateofthe
CISOReport
2023691%
of
CISOs
say
hiring
of
qualified
cybersecurity
talent
remains
a
significant
issue
todeliver
digital
transformation
initiatives5Becausedigitalservicesintroducenewtypesofcybersecurityattacks,itsdefensedemandsnewknowledgeandcapabilities,makingthe
hiringofqualifiedtalentessential.91%ofCISOssay
thatqualifiedcybersecuritytalentiscriticaltotheirabilitytodeliverdigitaltransformationinitiatives(Figure
12).Inaddition,CISOscitethe
lackofqualifiedcybersecuritytalentasthe
topsecuritychallengeresultingfromdigitalization.(Figure
4).Theshortage
ofsufficientlyqualifiedtalentmakesitharderfor
organizationstofindandhirepeoplewhounderstandthe
newtechnologiesandhave
the
skillsnecessarytoaddressthe
newsecurityrisksandchallenges.Moreover,
the
inabilitytofindandretainqualifiedsecuritytalentcanhinderCISOs’–andbusinesses’–successinadigital-firstworld.Asorganizationsacceleratetheirdigitaltransformationefforts,theynaturallyincreasetheuseofAPIsinmany
areasofbusinessandAI.Soit'spromisingtoseethattheirAPIsecurityeffortsare
finallymovingupward.
Sometimescompaniescanbepennywisebutpoundfoolishwhenitcomestosecurityinvestments.Butgiventhe
highcostofmajorpersonaldatabreaches,APIsecurityhastoriseinprominence,anddososharply,inthe
nearfuture.”–AntonChuvakin,securityadvisoratOfficeofthe
CISO,
GoogleCloudWe
are
enteringthe
newrealityofthe
“AI
era”ofcyber.
CISOsknow
thatAIattacksare
evolvingandbecomingincreasinglysophisticated–andthatthey’regrowingatanunprecedentedrate.Withsecurityteamsalreadyatcapacitydefendingabroadattacksurface,the
impactofescalatingAIthreats–aswell
asthe
necessitytoimplementanAIoffense–clearlyweighsheavilyontoday
’s
CISOs.”–EdAmoroso,founderandCEOofTAG
InfoSphereStateofthe
CISOReport
20237Survey
ReportFindingsStateofthe
CISOReport
20238Two-Thirds
of
Companies
Are
RollingOutMore
DigitalServicesNow
Than
Tw
o
Years
AgoTwo
thirds(66%)ofCISOsworldwidesay
thattheyare
deployingmoredigitaltransformationinitiativesnow
comparedtotwo
yearsago.Digitalserviceshave
becomeessentialtodelivermodernbusinessinnovation,maintainacompetitiveadvantage,andgeneraterevenue
growth.Companieslaggingbehindindigitaltransformationinitiativeswillfinditincreasinglydifficulttocompetewiththosewhoare
embracingnewdigitalservicesandthrivingasaresult.Figure
1:
Frequency
of
rolling
out
new
digital
services
compared
to
two
years
ago2%AlotlessAlittleless10%Alotmore25%Aboutthe
same22%Alittlemore41%More,
comparedto202166%Stateofthe
CISOReport
20239Nearly90%of
CISOssay
Digital
Transformation
Introduces
Unforeseen
Risks89%ofCISOssay
thatmovingfastwithdigitaltransformationinitiativesintroducesunforeseenrisksinsecuringcompanydata,whileonly10%slightlydisagreewiththatclaim,andamere1%verymuchdisagree.Figure
2:
Moving
fast
with
digital
transformation
initiatives
canintroduce
unforeseen
risks
in
security
vital
company
data10%1%Figure
3:
“Very
Much
Agree”,
byIndustryVery
muchdisagreeSlightlydisagreeFinancialservicesandhealthcareorganizationsappeartofeel
the
painofdigitalizationmoreacutelythanotherindustries.While37%ofCISOsworldwidesay
they“verymuchagree”thatdigitalservicescreateadditionalrisk,the
numberjumpsto43%for
CISOsinfinancialservicesand47%for
CISOsinhealthcareorganizations.Healthcare
47%FinancialServices/Very
muchagree37%43%Technologies35%33%28%Retail&eCommercePharmaceuticalInsuranceSlightlyagreeFor
theseindustries,inparticular,participatinginthedigitaleconomyisatopbusinesspriority.Theabilityto
innovate
andbringnewservicestomarketquicklyisessentialtomeetchangingcustomerexpectationsintheirsectors.Moreover,
ensuringthe
safetyofcriticalfinancialandpersonalhealthdataintheseindustriesisalsoparamount.52%Agree89%Stateofthe
CISOReport
2023
10Talent
Tops
theList
of
SecurityChallengesResultingfrom
Digital
TransformationCISOsworldwidesay
the
lackofqualifiedcybersecuritytalentistheirbiggestsecuritychallengeresultingfromdigitalization.Newmethodsofsecurityattacksandincreasingrisksrequirenewqualifications.Inaddition,alackofqualifiedtalentalsoincreasescompetitionacrosscompaniestofindandhire
the
rightpeople.Figure
4:
Top
security
challenges
arising
fromdigital
transformation40%36%TalentSoftwareadoptionButatalentshortage
isn’tthe
onlychallengefacingCISOs.Infact,CISOsfacemanychallengesduetodigitaltransformation,andtheyconsidermosttobeofnearlyequallevels
ofconcern.Thisrealityforces
CISOstodevote
timeandresourcestoaddressmultiplechallengessimultaneouslytomitigatesecuritythreatseffectively.Changingenvironments
35%35%34%31%29%28%ComplianceCostjustificationStakeholdersupportBudgetInaddition,while34%percentofCISOSworldwidecite“difficultiesjustifyingthecostofsecurityinvestments”asakey
challenge,thatfigurejumpsfor
financialservicesandhealthcareCISOs,to43%and38%respectively(Figure5).Asseenfrompreviousresponses,financialservicesandhealthcareCISOsexperiencethesecurityrisksofdigitaltransformationmorekeenlythanthe
worldwideaverage(Figure
3).Disturbingly,thesefindingsshow
theyalsoexperiencethe
biggestchallengesinjustifyingnewsecuritycoststo
cover
thoserisks.UserneedsFigure
5:
Difficulty
justifying
cost
of
security
investments,
byindustry43%38%33%28%27%FinancialServices/TechnologiesHealthcareRetail&e-CommerceInsurancePharmaceutical*Questionallowedmorethanoneanswerandasaresult,
percentageswilladduptomorethan100%Stateofthe
CISOReport
2023
11Litigation
Concernis
To
pPersonal
ChallengeCreated
byDigital
TransformationCISOsidentifynumerouspersonalchallengesfromdigitaltransformation(Figure6).At
the
verytopofthe
listare
concernsover
personallitigationstemmingfrombreaches(48%)andincreasedpersonalrisk/liability(45%).Recenthigh-profileCISOlawsuitshave
likelycontributedtotheseconcerns.Figure
6:
Top
personal
challenges
fromdigital
transformationConcernsover
personallitigation48%stemmingfrombreaches45%43%38%37%31%1%Thepotentialimpactoftheseconcernscanbegrave
for
businesses.Anecdotally,we
have
heardofqualifiedCISOsconsideringtakingarolealevel
belowCISO,
andmany
are
requestingindemnificationorinsurancetocompensatefor
the
risk.ThistrendcouldpotentiallyleadtoaleadershipgapandtocompaniespayingCISOshighersalariestoattractthemdespitethe
riskofpersonallitigationassociatedwiththeirjob.Increasedpersonalrisk/liabilityExpandedresponsibilitiesandnotenoughtimetofulfillMorejob-relatedstressBiggerteamstomanageTo
solvethisissue,businessleadersmustcollaboratemorecloselywithCISOsandensurethatappropriateprecautionsare
inplacetoprotectthe
business.Second,CISOsmustbeequippedwithsecuritysolutionsthatprovide
acomprehensiveviewofallvarious,intertwinedrisks.Withgreatervisibilityandcontext,CISOscandemonstrateprogressonriskmitigationandreducesecuritycontrolgaps,loweringthe
riskofpersonalliabilityasaresultofabreach.IfCISOslackthe
neededvisibility,theycan’tdetectorprevent
potentialthreats.LackofpersonaltimeDon'tfaceany
personalchallenges*Questionallowedmorethanoneanswerandasaresult,
percentageswilladduptomorethan100%Inadditiontoupendingmany
traditionalsecurityapproaches,the
digital-firsteconomyhasimpactedalotofusCISOsonaverypersonallevel.
Thefactthatmy
peershighlighted‘concernsoverpersonallitigationstemmingfrombreaches’astheirtoppersonalconcernshouldbealarmingtoeveryoneinthe
industry.Qualifiedleadersmay
decidenottopursuethe
roleiforganizationsdon’thave
the
rightcybertoolsorprocesses,oriftheyconsiderthe
personalrisktoohigh.”–Mike
Towers,
ChiefDigitalTrust
OfficeratTakeda
PharmaceuticalsInternationalStateofthe
CISOReport
2023
12SupplyChainand
APIsare
BiggestSecurityControl
GapsinDigitalInitiativesCISOsidentifysupplychainorthird-partyvendors(38%),APIadoption(37%),andcloudadoption(35%)asthe
topthreesecuritycontrolgapsresultingfromtheirdigitalinitiatives.Figure
7:
Biggest
security
control
gaps
in
digital
initiatives38%37%35%34%33%32%28%27%Supplychain/thirdparty
vendorsAPIadoptionWiththe
growthofthe
digital-firsteconomyover
the
pastcoupleofyears,theusageofAPIshasexploded.Asthe
deliverymechanismfor
sharingdataacrossdigitalservicesandapplications,APIsrepresentthe
key
componentofdigitaltransformation.APIsalsoplay
aparticularlycriticalroleinCISOs’firstandthirdconcerns–supplychain/third-partyvendorsandcloudadoption.Becausethoseservicesrely
onAPIstorun,organizationsmay
beseeinga“doubleimpact”oftheneedfor
APIsecurity,bothtoprotectthe
APIstheyknow
theyare
writingtosupportkey
applicationsandthe
APIsessentialtosupplychainandcloudinitiatives.CloudadoptionIncompletevulnerabilitymanagementOutdatedsoftwareandhardwareShadowITSecurityrequirementshave
grown
exponentiallywithdigitalization,andwe’re
movingfasterthanever
withthosedigitalprojects.Objectivedataonthe
securitychallengesbringsmoreawarenesstothe
problemsetandhelpsuscraftways
to
work
togethertocreateastrongerandsafercybersecurityculture.”ZerotrustInsiderthreats–JulieChickillo,VP,
headofcybersecurityatGuildEducation*Questionallowedmorethanoneanswerandasaresult,
percentageswilladduptomorethan100%Stateofthe
CISOReport
2023
1378%of
Organizations
Place
aHigherPriorityon
APISecurityNow
vs.
Tw
o
Years
AgoAlongwiththe
immenseopportunityfueledby
APIscomespotentialrisks.Moreover,
ifunaddressed,theseriskscouldpotentiallyimpedethe
successofanorganization’s
digitaltransformationprograms.Thesurveyfindingsshow
thatorganizationsare
startingto
recognizethatprotectingdigitalinitiativesdemandsprioritizationofeffectiveAPIsecurity.Whileitisnotsurprisingthat78%
ofCISOsviewitasahigherprioritythantwo
yearsago,itisabitofamysterythat5%ofCISOsworldwidesay
APIsecurityisnow
alowerpriority.Figure
8:
How
organizations
prioritize
API
security
nowcompared
to
two
years
ago1%Muchlowerpriority4%SomewhatlowerpriorityFigure
9:
Which
industries
rate
API
security
a
“much
higherpriority”
nowFinancialServices/43%TechnologiesThesame37%35%Retail&eCommercePharmaceuticalpriority17%Muchhigherpriority37%Inaddition,outofthe
78%
ofCISOswhosay
APIsecurityisahigherpriority,34%reportthatAPIsecurityisa“muchhigher”priority.Lookingatthedataby
industry,however,
we
seethat43%offinancialservicesCISOssay
APIsecurityisa“muchhigher”priority–9%higherthanthe
globalSomewhatHealthcare
32%higherpriority43%25%Insuranceaverage.
RetailandeCommerceCISOsfollow
at37%.Viewaspriority78%Financialservicesandretail/eCommercehave
beenparticularlyimpactedby
economicshiftsandhaveturnedtodigitalizationtodrivebusinessgrowthinitiatives.Therefore,
itstandsto
reasonthattheywouldhave
prioritizedAPIsecuritytoagreaterdegreeover
the
previoustwo
years.Stateofthe
CISOReport
2023
14Nearly
AllCISOsPlanto
Prioritize
APISecurityover
theNext
Tw
o
YearsCISOsare
well
awareoftheirever-expanding
APIecosystemandtheirorganization’s
increasingrelianceuponthem.APIsdrivegrowthandprofitabilityandenablethesebusinessestodelivertheirdigitalgoodsandservices.WithoutAPIsecurityprogramsthatprotectthesecrucialconnectivitytools,companiesputeverythingatrisk–speedtomarket,competitiveadvantage,andthe
branditself.Figure
10:
Plans
for
prioritizing
API
security
overthe
next
two
years2%3%Very
lowpriorityLowpriorityTherefore,
it
’s
nosurprisethatAPIsecurityisatthe
forefront
ofsecurityleaders’mindsandtheyexpectittobecomeaneven
higherpriorityinthe
comingyears.Infact,95%ofCISOsworldwidesay
theirorganizationshave
madeAPIsecurityaplannedpriorityover
the
nexttwo
years.Criticalpriority19%Mediumpriority17%Thisfindingalsoalignswithotherindustryresearch.TheGartner
2022InnovationInsightfor
APIProtectionreport,for
example,found
that“securityleadersare
lookingfor
additionalsecuritycapabilitiestoprotecttheirAPIs.They
are
expandingbeyond
theirexistingAPIgateways(GWs)andweb
applicationandAPIprotection(WAAP)
solutions–especiallyinindustryverticalswithhighsecurityrequirements.”Highpriority59%Giventhe
growingimportanceofAPIsover
the
lastseveral
yearsfor
enablingmodernbusinesses,itissurprisingthatAPIsecurityhasbecomemainstreamonlyrecently.Thefactthatsecurityframeworksandregulationsare
slow
to
evolve
ispartly
toblame,buthopeisonthe
horizon.TheFederal
FinancialInstitutionsExamin
溫馨提示
- 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
- 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
- 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會(huì)有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
- 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
- 5. 人人文庫網(wǎng)僅提供信息存儲(chǔ)空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護(hù)處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負(fù)責(zé)。
- 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請與我們聯(lián)系,我們立即糾正。
- 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時(shí)也不承擔(dān)用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。
最新文檔
- 2025年上半年寧波市北侖區(qū)(開發(fā)區(qū))選調(diào)事業(yè)編制7人易考易錯(cuò)模擬試題(共500題)試卷后附參考答案
- 2025年上半年寧波市保險(xiǎn)行業(yè)協(xié)會(huì)招考易考易錯(cuò)模擬試題(共500題)試卷后附參考答案
- 2025年上半年寧波交運(yùn)資源開發(fā)限公司招聘易考易錯(cuò)模擬試題(共500題)試卷后附參考答案
- 2024重慶鐵路綜合交通樞紐有限公司招聘12人筆試參考題庫附帶答案詳解
- 2025年夜光傘項(xiàng)目可行性研究報(bào)告
- 浙江專用2024年高中化學(xué)3-3課時(shí)32含硅礦物與信息材料2課時(shí)練無答案蘇教版必修1
- 2025年全棉紗卡面料項(xiàng)目可行性研究報(bào)告
- 2024湖北十堰市房縣國有企業(yè)招聘及考察筆試參考題庫附帶答案詳解
- 2024江西吉安市吉水縣旅游開發(fā)投資有限公司編外人員招聘2人筆試參考題庫附帶答案詳解
- 2024廣西憑祥市友誼關(guān)旅游開發(fā)有限公司招聘11人筆試參考題庫附帶答案詳解
- 既有住宅加裝電梯業(yè)主意愿征集表
- 危險(xiǎn)源及危險(xiǎn)源辨識(shí)教材課件
- 烹飪營養(yǎng)與衛(wèi)生知識(shí)考核試題題庫與答案
- 走近人工智能
- 制造業(yè)信息化管理系統(tǒng)架構(gòu)規(guī)劃
- 藍(lán)色卡通風(fēng)好書推薦教育PPT模板
- 《納米復(fù)合材料》第2章 納米復(fù)合材料概論
- 宮頸癌HPV疫苗知識(shí)培訓(xùn)(課堂PPT)
- 2019版外研社高中英語必選擇性必修一單詞表
- 常用電工儀器儀表使用方法
- 建設(shè)工程綠色施工圍蔽指導(dǎo)圖集
評論
0/150
提交評論