• About
  • Subscribe
  • Contact
Friday, May 9, 2025
    Login
FutureCISO
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
No Result
View All Result
FutureCISO
No Result
View All Result
Home Process Compliance and Governance

9 in 10 of security leaders do not balance data security and business goals

FutureCISO Editors by FutureCISO Editors
February 11, 2025
9 in 10 of security leaders do not balance data security and business goals

Photo by Tara Winstead: https://www.pexels.com/photo/red-check-mark-on-box-in-close-up-view-8850709/

Share on FacebookShare on Twitter

A Gartner survey reveals that just 14% of security and risk management (SRM) leaders effectively balance the need to secure data assets with the necessity of using data to achieve business objectives. The survey, which gathered insights from 318 senior security leaders across various industries and organisational sizes from June to August 2024, highlights a significant challenge in data governance.

While 35% of respondents indicated they prioritise securing data assets and 21% focus on leveraging data for business goals, the overwhelming majority struggle to manage both effectively. “With only 14% of SRM leaders able to secure their data while supporting business goals, many organizations face increased vulnerability to cyber threats, regulatory penalties, and operational inefficiencies,” commented Nathan Parks, senior specialist in Research at Gartner. He emphasised that this imbalance can jeopardise competitive advantage and erode stakeholder trust.

Gartner has outlined five key actions that SRM leaders can take to align data security with business needs. Firstly, organisations should aim to reduce governance-related friction by establishing processes that co-create data security policies with end users, incorporating their feedback to enhance compliance and usability.

Secondly, aligning governance efforts across departments is crucial. By partnering with other internal functions, organisations can identify overlaps and synergies, ensuring a more cohesive approach to data security. Thirdly, SRM leaders should delineate non-negotiable security requirements for handling previously unknown data security risks, providing clarity and structure in a complex environment.

Additionally, Gartner suggests defining high-level guardrails for decisions related to generative AI (GenAI). This includes establishing parameters for when to pause or stop a GenAI tool or feature, allowing for business experimentation while maintaining security boundaries.

Related:  Cisco Hypershield unveiled to secure data centres and clouds 

Finally, working collaboratively with data and analytics (D&A) teams is essential for securing top-down buy-in on data security initiatives. By fostering an environment of cooperation, organisations can better integrate security into their overall business strategy.

These recommendations aim to empower SRM leaders to enhance their data protection efforts while supporting business objectives, ultimately leading to a more secure and efficient organisational framework. As the landscape of data security continues to evolve, addressing these challenges will be vital for maintaining trust and resilience in the face of emerging threats.

Tags: GartnerSecurity and risk management
FutureCISO Editors

FutureCISO Editors

No Result
View All Result

Recent Posts

  • DDoS attacks surge in Asia Pacific, claims Cloudflare
  • Reimagining security for the AI Era
  • PodChats for FutureCISO: Articulating the business value of security in 2025
  • New standard for cybersecurity at the storage layer
  • Cybersecurity challenges persist despite improved defenses

Categories

  • Blogs
  • Compliance and Governance
  • Culture and Behaviour
  • Cybersecurity careers
  • Data Protection
  • Endpoint Security
  • Incident Response
  • Network Security
  • People
  • Process
  • Resources
  • Risk Management
  • Technology
  • Training and awarenes
  • Videos
  • Webinars and PodChats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCISO serves the interests of the Chief Information Security Officer (CISO) and the information security profession. Its purpose is to provide relevant and timely industry insights around all things important to security professionals and organisations that recognize and value the importance of protecting the organisation’s data and its customers’ privacy.

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
Login

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl