Intelligent CISO Issue 79 | Page 51

COVER story

Faisal Khan , Associate Director for Information Security and Compliance , Dubai World Trade Centre , discusses how organisations can stay ahead of the most significant cybersecurity challenges , ensure the security of their digital infrastructure during high-traffic periods and deal with the cybersecurity implications of AI .

HOW A DYNAMIC ORGANISATION CAN PROACTIVELY MANAGE RISKS TO MAINTAIN A SECURE AND RESILIENT ENVIRONMENT

What are the most significant cybersecurity challenges currently facing large organisations , particularly those hosting or managing large-scale digital infrastructures ?
That ’ s a tricky question because the challenges we face are similar to those of any other large organisation , but the magnitude can vary depending on the organisation ’ s size and function . For instance , since we are involved in events and exhibitions , attracting people from all over the world , we need to tailor our cybersecurity controls to address those specific risks .
Like any other organisation , we are concerned about ransomware and phishing attacks . Phishing , in particular , is something that ’ s difficult to fully control , but having robust security awareness programmes in place helps mitigate the risk . Regular training ensures that our users are welleducated about recognising phishing attempts , suspicious emails and other potential threats . Phishing is often the starting point for more severe attacks , such as man-in-the-middle attacks , where attackers can intercept communications , alter invoices and redirect funds to different accounts .
Ransomware is , of course , a major concern for everyone , including myself as the Head of Information Security . Our focus is on maintaining a robust security environment with appropriate controls and measures . While I can ’ t promise 100 % security , I strive to ensure that our defences are aligned with best practices to protect the personal and financial information we handle .
Remote work has also introduced additional risks , as it ’ s challenging to monitor what ’ s happening on the other side of a remote connection . People often use personal Internet connections , which can lead to data leakage . Fortunately , we have implemented robust controls that allow us to have eyes on glass , even when employees are working remotely .
In summary , the challenges we face are similar to those of other organisations , but we take
WWW . INTELLIGENTCISO . COM 51