Business Daily Media

Men's Weekly

.

Australian security sector’s biggest challenge is still awareness: Sophos research

  • Written by Business Daily Media

Sophos, a global leader in next-generation cybersecurity, today announced the findings of the third edition of its survey report, The Future of Cybersecurity in Asia Pacific and Japan, in collaboration with Tech Research Asia (TRA). The study reveals a lack of boardroom awareness of cybersecurity, and a broad assumption from executives that their company will never get attacked, despite rising ransomware incidences, impact and cost. 

Cybersecurity education is an issue, and it starts at the top

Despite cybersecurity expenditure and self-assessed maturity increasing in Asia Pacific and Japan (APJ) organisations over the past 12 months, only 52 per cent of Australian companies surveyed believe their board truly understands cybersecurity. In addition, the top frustration expressed by cybersecurity professionals in Australia is that cybersecurity is frequently relegated in priority. 

Eighty per cent of Australian respondents also believe cybersecurity vendors do not provide them with the information they need to help educate executives, and 95 per cent of Australian companies agree their biggest security challenge in the next 24 months will be the awareness and education of employees and leadership. 

The top two attack vectors of concern for APJ organisations are directly addressable by ongoing education and awareness campaigns: phishing or whaling attacks, and weak or compromised employee credentials. 

“With ransomware attacks continuing to become more complex, organisations need a genuine, actionable cybersecurity education program. The current reactionary tendencies we’re seeing have created an ‘attack, change, attack, change …’ cycle regarding cybersecurity strategies, which is putting cybersecurity teams constantly on the backfoot. Shifting priorities to become more proactive must start at the top and requires direction from executives, including investments in awareness and education across entire organisations,” Aaron Bugal, global solutions engineer, APJ, at Sophos. 

The skills shortage continues to wreak havoc

The skills shortage continues to be a key focus area in organisations across the region. Sixty-nine per cent of Australian firms surveyed expect to have some problems with recruiting cybersecurity employees over the coming 24 months; 15 per cent expect to face a major challenge. 

With recruiting continuing to pose issues, companies have identified the priority areas they feel skills and capabilities need to be increased for internal security specialists. These include:

  • Cloud security policies and architecture
  • ‘Train the trainer’ employee and executive cybersecurity training skills
  • Software vulnerability testing
  • Staying up to date with the latest threats
  • Policy compliance and reporting 

Cybersecurity professionals’ top frustrations

The survey also highlights that cybersecurity professionals face a variety of challenges and frustrations in their roles, most of which are related to awareness, perception, messaging, and education. The top three frustrations in Australia are: 

  1. Cybersecurity is frequently relegated in priority
  2. There is not enough budget for security
  3. Executives assume cybersecurity is easy and cybersecurity personnel over exaggerate threats and issues 

Additional frustrations experienced by cybersecurity professionals across the region include:

  • Executives thinking there is nothing that can be done to stop attacks
  • Inability to keep up with pace of security threats
  • Not enough investment and time into training general staff 

“Cybersecurity professionals continue to face many frustrations in their roles this year, with many feeling their warnings and messages fall on deaf ears. Apart from lacking skilled security specialists, many of the other frustrations are directly addressable through education and awareness programs, starting at the executive and board level. The challenge for cybersecurity professionals faced with low levels of security understanding among company boards is that many are unlikely to invest in the necessary programs to alleviate these frustrations,” said Bugal. 

“The issue isn’t technology, it’s education. Increasing spend on cybersecurity won’t help unless organisations understand from the top down the true nature and critical threat that cyberattacks constitute to their organisational capabilities, their customers and their own existence.” 

Cybersecurity education must become a focus. The following is a five-step approach to help bring organisations up to speed on cybersecurity education: 

  1. Boards need help to understand it’s impossible to protect everything, and learn to prioritise the most critical information, data and systems to protect.
  2. Education courses on basic principles, genuine likelihood of an attack, attack vectors, threat actors, and other terminology should be available to all staff.
  3. Once basics are clearly defined, organisations need to develop strategy and integrate with digital transformation programs.
  4. The focus then becomes more operational in nature: applying legislation, breach response protocol, ransom payment policy, gap assessments, and future roles and obligations.
  5. Businesses need to clearly understand compliance, the regulatory environment under which the business operates, what’s legally required when breached and what are the appropriate controls around data security and management.

From Check-in to Touchdown: How AI and smarter systems are transforming the travel industry

Richard Valente, VP of Customer Experience Strategy at TP in Australia, explores how IT-BPM outsourcing is revolutionising the travel sector throu...

Online Christmas shoppers fund climate and biodiversity projects via HealthPost's Click Sphere for Good initiative

Online shoppers with HealthPost’s Flora & Fauna have made 11,000 contributions towards climate and biodiversity projects when ordering parcel ...

US landmark settlement protects SMEs, highlighting flaws in the RBA's proposed blanket card surcharging ban for Australia

Aussie SMEs warn RBA not to ignore global trends, with the current sledgehammer approach threatening business viability and increasing inflation ...

Thryv Australia named Employer of Choice for third consecutive year at Australian Business Awards

Thryv® (NASDAQ: THRY), Australia’s provider of the leading small business marketing and sales software platform, has been awarded the Employer of ...

RogersDigital.com Announces the Launch of TheBulletin.au, a Destination for Business, Policy and Financial Insight

RogersDigital.com has announced the launch of TheBulletin.au, a new national digital publication designed to deliver sharp, data-driven reporting ...

Controlling business spend is helping finance leaders to forecast with confidence

Forecasting has always been central to financial planning; however, traditional methods based on historical trends are no longer enough. Economic ...

hacklink hack forum hacklink film izle hacklink สล็อตเว็บตรงคลิปหลุดไทยbahsegelcasibom girişcasibomjojobetjojobet girişholiganbetholiganbet girişbets10kavbetcasibomRoyal Reelsroyal reelsbetkolikKayseri Escortjojobet girişjojobettaraftariumNişantaşı EscortbetpaselexbetbettiltStreameastcasibomKalebetPadişahbetfixbetaviator gameÜsküdar Evden Eve Nakliyatmatbettimebettimebettimebetbahisoistanbul escort telegramcasibomcasibompantheraproject.netcasibomjojobetjojobet girişmarsbahiscasibomstreameast한국야동meritking girişสล็อตjojobet girişholiganbet girişpornopadişahbetBetigmacasibomBetigmaBetlora girişgiftcardmall/mygiftgaziantep escorteb7png pokiesbest online casino australiabest online pokies australiareal money pokies online australiabcgame96 casinocrown155 hk casinohb88kh casinopadişahbetzirvebetmarsbahisgalabetistanbul escortjojobetgooglebets10bets10betasusmatbetolimposcasinobetbabajojobet 1115jojobet 1115olabahis girişbets10zbahis girişblooketasyabahis girişpinbahis girişdumanbet girişjojobetStreameastmostbetizmit escortdaftar situs judi slot gacor hb88 indonesiaJojobet 1114mostbetmostbetmostbetorisbetroyalbetbahis siteleri 2025matbet girişcasinowon girişkavbetjojobetgiftcardmall/mygift check balance visapusulabetjojobetซื้อหวยออนไลน์grandpashabetcasibomcasibom girişsadfasdfsdfasdasdasdasdmeritking girişjojobetjojobettaraftariumpin up azSlot Heart Casinomamibet logincasinomedklarna.sebetworld96 online casino cambodiajojobet 1115www.giftcardmall.com/mygiftwww.giftcardmall.com/mygiftCasibomtm menards loginartemisbetbetwoonsekabet girişe wallet casino australiabetasusplay aristocrat pokies onlineholiganbet girişjojobetmaltcasino girişcanlı maç izlejojobet girişsahabetcasibomcasibomlunabetzbahis güncel girişzbahisjojobet girişcasibomcasibom girişdeneme bonusu veren sitelerPinup AZhazbetjojobetrokubet girişmostbetcasibom girişsitus slot gacorkralbetGalabetmigliori casino non aamsasyabahis girişgoogle hit botuCasibom Girişdizipalkulisbetkulisbetkulisbetkulisbetbetwoonizmit escortGanobetmostbetshrooms online canadamarsbahis girişeSIM Evropaapp di scommesse 2026pusulabetjojobetjojobet girişartemisbetbetasusholiganbet girişmeritking girişcasibomCasino WinnitacasibomMarsbahisizmir escort telegramMeritking Girişmarsbahiscasibom girişholiganbet güncel girişjojobetbetciogiftcardmall/mygiftbetlikeqqmamibetpusulabet güncel girişholiganbet girişcasibomcasibomjojobetmatadorbet güncel girişMATADOR BETPadişahbetcasinolevantsekabetmarsbahisjojobet girişmeritkingbetcioextrabetmatbetbaywinmatbetjojobet