Strong SLAs critical for vulnerability management

Service level agreement SLA

A new report from crowdsourced security company Intigriti highlights the need for strong cybersecurity practices and service-level agreements (SLAs) for vulnerability management.

Globally, 75 percent of businesses fail to respond to critical vulnerabilities within 24 hours, consequences of which could include customer dissatisfaction, loss of business, and reputational damage.

Continue reading

Enterprises struggling to implement GenAI

hands working with AI

In spite of growing interest and enthusiasm for generative AI, significant challenges are emerging that threaten the success of projects, according to a new report.

The study, from Enterprise Strategy Group (ESG) and Hitachi Vantara, surveyed 800 IT and business leaders across the US, Canada, and Western Europe and finds only 44 percent of organizations have well-defined and comprehensive policies regarding GenAI.

Continue reading

How AI is changing the customer service experience [Q&A]

Humanoid Robot Call Center

Artificial intelligence is having an impact on more and more areas of our lives. In the customer service field it's increasingly being used to improve customer experience and create more effective interactions.

But how good is AI at dealing with customers? And are businesses using it effectively? We spoke to Josh Kim, co-founder and CEO of AI-based chat and customer experience platform Channel Talk, to learn more.

Continue reading

How AI is changing the role of enterprise developers [Q&A]

Futuristic robot artificial intelligence huminoid AI programming coding

Artificial intelligence is making its way into many areas of business and IT. Software development is just one area where it's starting to have a major impact on productivity and working patterns.

To learn more we spoke to Varun Mohan, CEO of AI coding assistant Codeium, which uses proprietary large language models (LLMs) to aid with software development and has recently announced a $65 million funding round.

Continue reading

78 percent of organizations view AI as an emerging tech risk

Risk-dial

A new study from cloud-based risk management platform AuditBoard finds 78 percent of organizations are tracking AI as an emerging risk while simultaneously adopting the technology themselves.

The report, based on a survey of over 400 security professionals in the US, finds more than half of enterprises surveyed report using AI to improve efficiency and enhance their digital risk posture.

Continue reading

How the IT infrastructure landscape is evolving [Q&A]

cloud

Earlier this year the MACH Alliance published new research looking at the evolving landscape of IT infrastructure, highlighting the growing importance of MACH technologies.

We spoke to Casper Rasmussen, MACH Alliance president, to find out about the key trends, insights, and implications shaping the digital landscape in 2024 and beyond.

Continue reading

How risk profiling can help prevent cyberattacks [Q&A]

Third party risk domino effect

Recent cyberattacks like Volt Typhoon, BlackCat ransomware syndicate, and NuGet serve as stark reminders of the critical importance of monitoring cyber risks as these attacks could all have been prevented.

We spoke to Randy Watkins, chief technology officer at Critical Start, to discuss why organizations must know the difference between cyber risks and threats, and how those enterprises that fail to mitigate against cyber risk will remain reactive, and ultimately fall behind their competitors.

Continue reading

63 percent of organizations fall victim to supply chain attacks

supply chain

A new study from Checkmarx reveals that 63 percent of organizations surveyed have been victims of a supply chain attack in the last two years, while 18 percent have suffered an attack in the last year.

Even more worrying is that that 100 percent of the large enterprises represented by 900 AppSec professionals responding from the United States, Europe and Asia-Pacific have been the victims of a software supply chain attack at some point.

Continue reading

Shadow SaaS -- a persistent problem and how to confront it [Q&A]

Shadow IT

There's an abundance of apps and SaaS solutions readily available these days to make the lives of employees easier and perform many work-related tasks. And the list keeps growing, with the likes of ChatGPT and Gemini paving the way for more AI-driven virtual assistants.

This is all well and good, unless your organization doesn't sanction the use of the software in question, turning something seemingly innocuous into shadow SaaS -- and a security risk. We spoke to John Stringer, head of product at data loss prevention specialist Next DLP, to learn more.

Continue reading

WatchGuard makes enterprise-grade threat detection available for all organizations

Threat concept

Smaller businesses are often more at risk of cyberattack simply because they lack the resources of their larger counterparts.

WatchGuard Technologies is looking to change that with the launch of an open XDR solution that delivers levels of visibility into east/west and north/south network traffic previously only available to large enterprises with the resources to manage their own security operations center.

Continue reading

Enterprises could get a false sense of security from single sign-on

Business login

Enterprises could be exposing themselves to by increasingly relying on single sign-on (SSO) according to a new report from Doyensec, in collaboration with Teleport.

Although sold by identity providers (IdPs) for their convenience and security, SSO solutions can amplify the impact of breaches. The research shows these impacts can be significantly mitigated once additional layers of security are placed between the IdP and the linked applications and services.

Continue reading

Remote workers put corporate data at risk

Home remote worker security

New global research from secure storage maker Apricorn into the security and storage of data finds corporate information is knowingly put at risk by 55 percent of mobile workers.

The research, carried out by Censuswide among 604 UK and US IT security decision makers, also finds that 63 percent expect their mobile/remote workers to expose their organization to the risk of a data breach. 43 percent in the UK (40 percent in the UK and US combined) say their mobile/remote workers don't care about security.

Continue reading

Enterprises plan to increase AI investment

robot artificial intelligence money

Enterprise IT and operations leaders are planning to significantly increase their AI investments over the next 18 months, according to an independent global survey announced today by Celigo.

The survey of 1,200 people finds businesses are realizing positive results from early AI deployments, including greater productivity and efficiency, enhanced customer experience and reduced costs. Consequently 97 percent say they will increase their AI expenditure through 2025 to accelerate AI transformations across corporate departments.

Continue reading

Enterprises struggle to detect hybrid cloud breaches

Cloud crime lock

A new survey of over 1,000 Security and IT leaders across Australia, France, Germany, Singapore, UK, and the USA, shows a decline in detection and response capabilities year-on-year.

The Hybrid Cloud Security Report from Gigamon shows that as hybrid cloud environments grow in complexity and threat actors launch a barrage of concealed attacks, 65 percent of respondents believe their existing security tooling cannot effectively detect breaches.

Continue reading

SIEMs cover less than 20 percent of attack techniques

Security breach incident

Security information and event management (SIEM) systems used by enterprises only have detections for 38 (19 percent) of the 201 techniques covered in the MITRE ATT&CK v14 framework according to a new report.

CardinalOps analyzed more than 3,000 detection rules, 1.2 million log sources and hundreds of unique log source types from real-world SIEM instances across Splunk, Microsoft Sentinel, IBM QRadar, and Sumo Logic.

Continue reading

Load More Articles