Intelligent CISO Issue 19 | Page 33

 PREDI C TI VE I NTEL L I GE NC E Eliminating the blind spot CISOs and their teams face increasing pressure to manage the sophisticated new cyberthreats that are constantly emerging, with visibility a crucial part of staying one step ahead. Hesham Elsherif, Principal System Engineer at A10 Networks, tells us how the company’s Thunder SSLi product can be seamlessly deployed to bolster an organisation’s cybersecurity defence and, critically, eliminate the blind spot. H How would you describe the overall threat landscape? Day after day, cyberattacks and threats are increasing in complexity and in volume, which represent a daily challenge for executives to block and disarm these threats. IOT, 5G, IPv6, Office365 and NFV are all newcomers to the Middle East and these technologies will change the rules. Infrastructure needs to be adapted to accommodate the rapid growth and new user behaviour to ensure safe communication and to eliminate security threats. In 2019, according to Ponemon Institute and IBM Securities, US$3.92 million is the average cost of a data breach and US$150 is the average cost per record lost. There has been a 650% increase in trojan-based malware threats and a www.intelligentciso.com | Issue 19 195% increase in ransomware in Q1 2019 according to the HIPAA Journal. A total 90% of breaches were caused by phishing as per a Retruster report. And almost 50% of cyberattacks use encryption to evade security, as 94% of all Internet traffic is encrypted according to the Google Transparency Report/Dark Reading. What are some of the most complex network security challenges that enterprises and large organisations are encountering? I would say building a skilled security team that is capable of identifying priorities and executing on a plan is key. This begins with assessing the assets (data and infrastructure) up to correlating between different security Hesham Elsherif, Principal System Engineer at A10 Networks reports and analyses. This helps to establish a vision, but before that the CISO has to ensure that vision is comprehensive and that an assessment is built based on accurate reports and measured analysis. Without 33