Blog

The CTEM Divide: Why 84% of Security Programs Are Falling Behind

2026 study shows 84% of security programs lag due to lack of Continuous Threat Exposure Management (CTEM). Only 16% adopted CTEM, which enhances visibility and threat awareness. Despite 87% awareness, implementation struggles arise from organizational inertia and budget issues. Security complexity increases risk, making CTEM essential for managing high-stakes challenges. Without it, traditional security approaches fail to scale, urging leaders to reconsider their strategies.

https://thehackernews.com/2026/02/the-ctem-divide-why-84-of-security.html

Protecting the ICT Supply Chain: a Step-By-Step Guide to the New EU Security Framework

The European Commission proposed a new cybersecurity package, including a revised Cybersecurity Act (CSA2) and amendments to NIS2, to strengthen the EU’s cybersecurity resilience. The CSA2 introduces a five-step mechanism to address non-technical risks in the ICT supply chain, potentially prohibiting NIS2 organizations from using ICT equipment from high-risk suppliers, particularly those from countries posing cybersecurity concerns. This framework aims to protect the EU’s ICT supply chain, with potential implications for connectivity and space operators.

https://accesspartnership.com/opinion/protecting-the-ict-supply-chain-a-step-by-step-guide-to-the-new-eu-security-framework/

AI Fueled Massive Surge in Fraud Losses Last Year, Study Finds

AI-driven fraud surged last year, surpassing traditional methods, with attacks against U.S. customers rising 1,210% and losses hitting $1 billion, according to Pindrop research. Generative AI and deepfakes enabled fraudsters to automate scams effectively. Key targets included contact centers and urgent payment requests, with tactics involving synthetic identities. Nearly 71% of U.S. companies reported increased AI fraud attempts, highlighting a significant shift in the fraud landscape. The retail sector was particularly affected, with fraudsters automating low-dollar refund scams.

https://www.ciodive.com/news/ai-fueled-massive-surge-fraud-losses-pindrop-retail/811904/

The Data Visibility Crisis IT Teams Aren’t Talking About

IT teams face a data visibility crisis, struggling to track data across multi-cloud environments. A Veeam survey shows nearly 60% report reduced visibility due to expanding SaaS and cloud usage. This gap can lead to compliance issues, as seen with TikTok's €530 million fine. Data escapes view through various channels, complicating management. Existing tools in platforms like Microsoft 365 and Google Workspace can aid in data discovery, but more advanced tools may be needed for regulated industries. Building visibility processes into onboarding and offboarding is essential for maintaining oversight, ultimately improving incident response and compliance readiness.

https://www.spiceworks.com/security/the-data-visibility-crisis-it-teams-arent-talking-about/

How the Growing AI Workforce Is Changing the CIO Role

CIOs are evolving to manage hybrid teams comprising humans and AI agents, shifting from tech managers to workforce orchestrators amidst the rise of AI in businesses. AI agents help automate repeatable tasks in IT and operations but require clear governance and careful implementation to ensure accountability and effectiveness. CIOs must strategically assess which tasks suit AI, focusing on low-risk, high-effort responsibilities. Measuring AI agent productivity involves more than cost—considering accuracy, reliability, and overall value is crucial. Challenges include governance, talent management, and fostering organizational change to embrace AI integration.

https://www.cio.com/article/4126383/how-the-growing-ai-workforce-is-changing-the-cio-role.html

When We See White Smoke, We Know We Have a New CISO

CISO Series highlights cybersecurity leadership and relationships. David Spark and Andy Ellis host, featuring Russ Ayres discussing effective communication of security metrics to the board, emphasizing storytelling over mere numbers. The episode explores AI's potential impact on cybersecurity roles, advocating for a balance of specialists and generalists. The show discusses the cyclical nature of point solutions and platform integration in security tools, concluding with a segment comparing deepfake attacks and zero-day exploits, leaning towards zero-days being worse due to accountability.

https://cisoseries.com/when-we-see-white-smoke-we-know-we-have-a-new-ciso/

69% of CISOs Open to Career Move — Including Leaving Role Entirely

69% of CISOs are considering job changes due to overwhelming responsibilities, lack of authority, and exhaustion, leading some to consider leaving cybersecurity altogether. The role is increasingly seen as unsustainable without proper support, compensation, and influence in decision-making. This talent exodus is driven by systemic failures in role design, with CISOs often having high responsibility but inadequate power, causing many to seek alternative career paths. Addressing these issues requires restructuring the role to enhance authority and support for CISOs.

https://www.csoonline.com/article/4127704/69-of-cisos-open-to-career-move-including-leaving-role-entirely.html

Never Settle: How CISOs Can Go Beyond Compliance Standards to Better Protect Their Organizations

CISOs should prioritize resilience over merely meeting compliance standards to combat emerging cybersecurity threats effectively. While compliance sets basic security protocols, it may not address new risks adequately. CISOs are encouraged to enhance their strategies by extending their risk assessment timeframes, adopting scenario-based methodologies, and quantifying potential losses. Engaging with organizational leadership on these matters year-round can shift perceptions of cybersecurity from a cost to an essential investment in business sustainability.

https://www.csoonline.com/article/4128920/never-settle-how-cisos-can-go-beyond-compliance-standards-to-better-protect-their-organizations.html

How Top CISOs Solve Burnout and Speed up MTTR Without Extra Hiring

Top CISOs address SOC burnout and improve MTTR by prioritizing sandbox-first investigations and automating triage processes. This strategy reduces decision fatigue, lowers manual workload, and increases efficiency without requiring additional hiring. As a result, SOCs experience faster alert resolution, reduced escalations, improved detection rates for threats, and enhanced team retention. Effective utilization of evidence-based responses through platforms like ANY.RUN streamlines operations and fosters a more sustainable work environment.

https://thehackernews.com/2026/02/how-top-cisos-solve-burnout-and-speed.html

Scroll to Top