In a comprehensive survey conducted by Team8, a striking picture emerges of the evolving challenges faced by Chief Information Security Officers (CISOs) in the age of artificial intelligence (AI). As organisations integrate AI technologies more deeply within their infrastructures, CISOs have identified several emerging threats and areas requiring immediate attention, prompting many to increase their budgets for 2024 significantly.

One of the predominant concerns highlighted in the report is the potential for AI-powered phishing attacks. Seventy-five per cent of respondents identified these attacks as the greatest threat to their organisations, illustrating the need for more robust security measures to combat AI-facilitated cybercrime. Additionally, deepfake-enhanced fraud, which involves the use of AI to create convincing fake audio or video, was cited by 56% of CISOs as a significant threat, underlining the growing complexity in cyber deception tactics.

The survey also shed light on the internal challenges organisations face in securing AI systems. 'Lack of expertise' was noted by 58% of respondents as a key obstacle, closely followed by the challenge of 'Balancing security with usability,' which 56% of CISOs see as a potential hindrance to implementing effective security measures. Reflecting on these challenges, 41% of CISOs indicated plans to explore solutions to manage the AI development lifecycle within the next couple of years, whilst 36% stressed the importance of prioritising data privacy in third-party AI applications. Tools for discovering and mapping Shadow AI usage, noted by 33%, are also on the radar as essential investments.

Issues of data protection remain a significant concern for CISOs, as many feel that current solutions do not adequately address emerging threats. Key areas needing advancement include protection against insider threats and next-generation Data Loss Prevention (DLP), recognised by 65% of respondents, alongside third-party risk management (46%), and AI application security (43%). Moreover, managing human identity and creating security executive dashboards, each highlighted by 40% of participants, are seen as critical to bolstering the overall security climate.

The role of a CISO is becoming increasingly scrutinised, with 54% reporting heightened oversight from organisational leaders over the past year. Despite increased budgets and responsibilities, this augmented scrutiny is taking a personal toll on some CISOs. More than half stated that their personal well-being has been impacted due to potential liability concerns. In response, 32% have taken proactive steps to mitigate personal legal risk, such as seeking legal advice, purchasing additional insurance, or renegotiating contracts to protect themselves against potential fallout from security incidents.

Overall, the Team8 report paints a complex picture of the present and future landscape facing CISOs. With AI's capabilities both aiding and challenging the domain of cybersecurity, the need for strategic adaptation and resource allocation is more critical than ever. As organisations navigate this terrain, continued innovation and strategic investments in security technologies and practices will be essential to counter the multifaceted threats posed by AI advancements.

Source: Noah Wire Services