Insight #1
The U.S. has launched the Shields Ready campaign: a campaign “about making resilience during incidents a reality by taking action before incidents occur.” I love this focus on critical national infrastructure with a heavy reliance on threat modeling and risk assessments. I look forward to the Cybersecurity & Infrastructure Security Agency (CISA) pushing this forward.
Insight #2
We need a shift in the security market to fixing instead of just finding. Yes, finding is important, but if you are reporting on the number of risks you find and not anything about how quickly you are fixing or mitigating the issues, it's time to rethink that.
Insight #3
Research has found that 54% of businesses want Artificial Intelligence (AI) regulation so they can feel comfortable investing in it. When it comes to security leaders, 95% want regulation for AI in cybersecurity. These are interesting stats: They show the difference in business and security concerns and should scream to businesses that security is a business problem.