enterprisesecuritymag

| | APRIL - 2021ENTERPRISE SECURITY6The COVID­19 crisis has made a significant impact on the cybersecurity landscape. The sector's existing challenges -- including the cybersecurity skills shortage, under­resourced security programs and increasingly fragmented estates -- have been exacerbated as organizations scramble to enable their remote workforce and secure expanded network perimeters. While this critical work has been taking place, cybercriminals and nation­state threat actors have been working hard to capitalize on the chaos.The increasing adoption of undefended new technologies like Internet of Things (IoT) and escalation in cybercrime activity have given rise to more damaging breaches. The ensuing regulatory and legal scrutiny have revealed the shortcomings of this traditional approach. This raises the question about the limitations of traditional vulnerability management and what steps can be taken to drive a new, risk-centric approach designed to expose imminent threats (for mitigation) and more effectively reduce risk across the expanding attack surface.While organizations were vulnerable and distracted, hackers developed new ransomware samples and advanced existing tools to attack critical infrastructure -- including vital research labs and health care organizations. The sophistication of the malware and methods used by attackers over the first half of 2020 highlight just how complex cybersecurity management has become. Add to this the 20,000 new vulnerabilities likely to be reported in 2020, and it's clear that the burden placed on security teams is only going to increase -- even if we manage to enter a post­COVID reality later this year. If organizations do not have full visibility over their entire security environment, and if they are unable to focus remediation on their most exposed vulnerabilities, then they could fall victim to attack at a time when business continuity, brand trust and fiscal stability are paramount.Ultimately, organizations that are planning to "upgrade" their existing vulnerability and patch management practices should move beyond looking at the "what is", in terms of their current security posture. A better approach is to augment tools with emerging security analytics and cyber risk management capabilities that allow for a scenario and objective-based approach that assesses the "what could be", and predicts the impact and outcomes of potential threats.Let us know your thoughts.The Emerging Landscape of Vulnerability ManagementEditorialRussell Thomas Managing Editor editor@enterprisesecuritymag.comAPRIL - 05 - 2021, Volume 07 - 02 Published by ValleyMedia, Inc. ISSN 2691-4034To subscribe to ENTERPRISE SECURITYVisit www.enterprisesecuritymag.com Copyright © 2021 ValleyMedia, Inc. All rights reserved. Reproduction in whole or part of any text, photography or illustrations without written permission from the publisher is prohibited. The publisher assumes no responsibility for unsolicited manuscripts, photographs or illustrations. Views and opinions expressed in this publication are not necessarily those of the magazine and accordingly, no liability is assumed by the publisher thereof.Managing EditorRussell ThomasEditorial StaffAaron PierceAlex D'SouzaAva GarciaJustin S GonsalvesJoshua ParkerVisualizersIssac GeorgeSalesAlena D'Souzaalena@enterprisesecuritymag.comEmail:sales@enterprisesecuritymag.comeditor@enterprisesecuritymag.commarketing@enterprisesecuritymag.com*Some of the Insights are based on the interviews with respective CIOs and CXOs to our editorial staff
< Page 5 | Page 7 >