• About
  • Subscribe
  • Contact
Tuesday, February 3, 2026
  • Login
FutureCISO
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
No Result
View All Result
FutureCISO
No Result
View All Result
Home FutureCISO Process Compliance and Governance

9 in 10 of security leaders do not balance data security and business goals

FutureCISO Editors by FutureCISO Editors
February 11, 2025
9 in 10 of security leaders do not balance data security and business goals

Photo by Tara Winstead: https://www.pexels.com/photo/red-check-mark-on-box-in-close-up-view-8850709/

Share on FacebookShare on Twitter

A Gartner survey reveals that just 14% of security and risk management (SRM) leaders effectively balance the need to secure data assets with the necessity of using data to achieve business objectives. The survey, which gathered insights from 318 senior security leaders across various industries and organisational sizes from June to August 2024, highlights a significant challenge in data governance.

While 35% of respondents indicated they prioritise securing data assets and 21% focus on leveraging data for business goals, the overwhelming majority struggle to manage both effectively. “With only 14% of SRM leaders able to secure their data while supporting business goals, many organizations face increased vulnerability to cyber threats, regulatory penalties, and operational inefficiencies,” commented Nathan Parks, senior specialist in Research at Gartner. He emphasised that this imbalance can jeopardise competitive advantage and erode stakeholder trust.

Gartner has outlined five key actions that SRM leaders can take to align data security with business needs. Firstly, organisations should aim to reduce governance-related friction by establishing processes that co-create data security policies with end users, incorporating their feedback to enhance compliance and usability.

Secondly, aligning governance efforts across departments is crucial. By partnering with other internal functions, organisations can identify overlaps and synergies, ensuring a more cohesive approach to data security. Thirdly, SRM leaders should delineate non-negotiable security requirements for handling previously unknown data security risks, providing clarity and structure in a complex environment.

Additionally, Gartner suggests defining high-level guardrails for decisions related to generative AI (GenAI). This includes establishing parameters for when to pause or stop a GenAI tool or feature, allowing for business experimentation while maintaining security boundaries.

Related:  Critical vulnerabilities plague high-risk sectors, warns Black Duck

Finally, working collaboratively with data and analytics (D&A) teams is essential for securing top-down buy-in on data security initiatives. By fostering an environment of cooperation, organisations can better integrate security into their overall business strategy.

These recommendations aim to empower SRM leaders to enhance their data protection efforts while supporting business objectives, ultimately leading to a more secure and efficient organisational framework. As the landscape of data security continues to evolve, addressing these challenges will be vital for maintaining trust and resilience in the face of emerging threats.

Tags: GartnerSecurity and risk management
FutureCISO Editors

FutureCISO Editors

No Result
View All Result

Recent Posts

  • Commvault unveils unified data vault for enhanced S3 Data Protection
  • AI activity surges 91%, exposing security gaps"
  • Digital identities at risk with legacy PKI
  • 75% of security incidents now identity-related
  • Visibility confidence plummets as identity-related attacks dominate

Categories

  • Artificial Intelligence
  • Blogs
  • CISO
  • CISO strategies
  • Cloud, Platforms and Ecosystems
  • Cloud, Virtualization, Operating Environments and Middleware
  • Compliance and Governance
  • Compliance and Governance
  • Compliance and Governance|People
  • Compliance and Governance|Technology
  • Computer, Storage, Networks, Connectivity
  • Culture and Behaviour
  • Culture and Behaviour|People
  • Cyber risk management
  • Cyber risk management
  • Cyberattacks and data breaches
  • Cybersecurity careers
  • Cybersecurity careers
  • Cybersecurity operations
  • Cybersecurity operations
  • Data Protection
  • Data Protection
  • Endpoint Security
  • FutureCISO
  • Governance, Risk and Compliance
  • Governance, Standards and Regulations
  • Incident Response
  • Network Security
  • People
  • Process
  • Remote work
  • Resources
  • Risk Management
  • Risk Management
  • Security
  • Technology
  • Training and awarenes
  • Videos
  • Vulnerabilities and threats
  • Vulnerabilities and threats
  • Webinars and PodChats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCISO serves the interests of the Chief Information Security Officer (CISO) and the information security profession. Its purpose is to provide relevant and timely industry insights around all things important to security professionals and organisations that recognize and value the importance of protecting the organisation’s data and its customers’ privacy.

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

[wpli_login_link]

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
  • Events
  • Login

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl