Top-7 security and risk management trends for 2019 - Gartner

Seven emerging security and risk management trends that will impact security, privacy and risk leaders in the longer term have been identified by research and advisory company Gartner.

The research and advisory company is also a member of the S&P 500.
 
These trends are expected to have broad industry impact and significant potential for disruption.

The top-7 trends are:
 
Risk appetite statements are becoming linked to business outcomes

As IT strategies become more closely aligned with business goals, the ability for security and risk management (SRM) leaders to effectively present security matters to key business decision makers gains importance.

Create simple, practical and pragmatic risk appetite statements that are linked to business goals and relevant to board-level decisions.
 
Security operations centres are being implemented with a focus on threat detection and response

The shift in security investments from threat prevention to threat detection requires an investment in security operations centres (SOCs) as the complexity and frequency of security alerts grow.

The need for SRM leaders to build or outsource a SOC that integrates threat intelligence, consolidates security alerts and automates response cannot be overstated.
 
Data security governance frameworks will prioritise data security investments

Data security is a complex issue that cannot be solved without a strong understanding of the data itself, the context in which the data is created and used, and how it is subject to regulation.

Rather than acquiring data protection products and trying to adapt them to suit the business need, leading organisations are starting to address data security through a data security governance framework (DSGF).
 
Passwordless authentication is achieving market traction

Passwordless authentication, such as Touch ID on smartphones, is starting to achieve real market traction. The technology is being increasingly deployed in enterprise applications for consumers and employees, as there is ample supply and demand for it.
 
Security product vendors are increasingly offering premium skills and training services

The number of unfilled cyber-security roles is expected to grow from 1 million in 2018 to 1.5 million by the end of 2020, according to Gartner.
While advancements in artificial intelligence and automation certainly reduce the need for humans to analyse standard security alerts, sensitive and complex alerts require the human eye.

Investments being made in cloud security competencies as a mainstream computing platform

The shift to cloud means stretching security teams thin, as talent may be unavailable and organisations are simply not prepared for it.

Gartner estimates that the majority of cloud security failures will be the fault of the customers through 2023.
 
Increasing presence of Gartner's CARTA in traditional security markets

A key component to CARTA is to continuously assess risk and trust even after access is extended.

Email and network security are two examples of security domains where solutions increasingly focus on detecting anomalies even after users and devices are authenticated.

We live in a world where facts and fiction get blurred
In times of uncertainty you need journalism you can trust. For 14 free days, you can have access to a world of in-depth analyses, investigative journalism, top opinions and a range of features. Journalism strengthens democracy. Invest in the future today. Thereafter you will be billed R75 per month. You can cancel anytime and if you cancel within 14 days you won't be billed. 
Subscribe to News24
Rand - Dollar
16.26
-0.3%
Rand - Pound
19.86
-0.3%
Rand - Euro
16.78
-0.5%
Rand - Aus dollar
11.53
-0.4%
Rand - Yen
0.12
-0.5%
Gold
1,786.47
-0.3%
Silver
20.41
-0.9%
Palladium
2,257.50
+0.1%
Platinum
958.50
+1.3%
Brent Crude
97.40
+1.1%
Top 40
63,759
+1.0%
All Share
70,419
+1.0%
Resource 10
65,093
+0.9%
Industrial 25
85,685
+1.2%
Financial 15
15,832
+0.5%
All JSE data delayed by at least 15 minutes Iress logo
Company Snapshot
Government tenders

Find public sector tender opportunities in South Africa here.

Government tenders
This portal provides access to information on all tenders made by all public sector organisations in all spheres of government.
Browse tenders