Top 5 Cybersecurity Trends of 2021

you ever wonder what the trends for 2021 are gonna be well i do but you know what i focus on cyber security i'm gonna tell you about the top five trends i'm looking at for 2021 coming up now [Music] hello everybody my name is adam gordon an entrepreneur here at it pro tv i'm coming at you today with the top five global cyber security trends for 2021 that myself people like me in our industry are thinking a lot about to help you better understand security and be prepared [Music] my number one is cloud and more specifically cloud threats now you may say well adam this is all about cyber security trends not cyber security threats why are we talking about cloud threats well the reality is cloud computing's been around for some time according to idc the global cloud services market is actually projected to reach over 1 trillion that's trillion with a t 1 trillion dollars in the next few years as of 2024 so it's been something we've been focused on for some time in terms of the growth of cloud but the growth of cloud is actually not only a trend it's also potentially a concerning area we really have to pay attention to because rapid cloud migration is actually bringing on a whole host of new security threats as well as challenges and opportunities for us we see things like cloud-based security threats that are emerging based around things such as misconfigured cloud storage so where we're putting all that data that we're creating and moving into the cloud is great because we have access to it 24 7. it's scalable we can use it on demand anybody can be given access to it as long as we have the right kind of access control in place but if we misconfigure that cloud storage well bad people get to see our data and that's never a good thing reduced visibility and control we're essentially outsourcing management of more and more of our traditional on-premises infrastructure to cloud service providers think the microsoft's the amazons the googles of the world not that they're doing a bad job quite the opposite they're doing a great job but the problem is they're doing that great job for hundreds thousands and now millions of customers globally at scale every day the more and more people that onboard onto these platforms potentially more issues and concerns we have as we give away the ability to directly manage and oversee our infrastructure and our data we reduce our visibility and therefore by extension our control over those systems and again if we're not careful about configuration access control and threat management we run the risk potentially of increasing the likelihood of a data breach or some sort of a negative outcome and consequence that let's be honest we'd rather not have we also want to think about the fact that when our data lives in the cloud we have to worry about it not just being there all the time what happens when we no longer want to be in that cloud they want to go to a different cloud and as a result we want to move our data as well as all of our infrastructure from one platform to another well cloud migration is not a new thing it happens all the time but our data may or may not be completely deleted removed and disposed of securely when we leave a cloud vendor's platform an incomplete data deletion is also a very concerning trend as well as the meteor growth we're experiencing with regards to cloud services overall so we really have to pay attention to the details when we're thinking about cloud and finally with regards to cloud as a security trend for 2021 we want to focus on cloud applications our ability to service our users our customers on demand and provide data provide access to services through cloud apps is just amazing it is what's driving this meteoric growth in cloud services remember close to an over 1 trillion in overall booked business and revenue by 2024 that's a big number but those cloud apps are not always as secure as they should or could be and vulnerable cloud apps are also part of the overall security trend we have to be paying attention to really do our best to make sure we bake security in and we securely design and secure those apps at every stage of our development life cycle to ensure beyond any reasonable doubt that our users are going to be secure while using them and our data is going to be secure while flowing through them all right so number two ai artificial intelligence integration everybody hears the word ai and they get a little spooky and freaked out by the fact that robots are coming to take over the world and machines are going to enslave all of us well that may or may not happen but the reality is it's not happening in 2021 what is happening is that a.i artificial intelligence and the merging of that with cyber security is continuing to drive huge growth in our sector and it's continuing to provide huge additional benefits to us from an information management and i.t security perspective according to the latest numbers we see projected growth in a.i in the cyber security realm growing from approximately just around 9 billion annually in 2019 to just over 38 billion over the next few years by 2026 analyzing risk data from structured as well as unstructured resources is one of the key things that ai integration provides the ability for us to do let's be honest we as humans are really good at managing very small amounts of information over very small amounts of time to do very structured specific things we're not really good at managing huge volumes of information over long periods of time to understand trends we're just not wired to do that but computers using artificial intelligence and machine learning as well as business intelligence capabilities like data visualization are perfectly suited to do this and ai is able to provide threat intelligence really allowing us to see the patterns in emerging data flows and activity on our networks that we as individual humans are just not capable of perceiving and to do so by reducing the time to make critical decisions and allowing our security teams to respond in almost near real time to remediate those threats [Music] number three extended detection and response what we call xdr not to be confused with edr which is enhanced detection and response kind of an earlier generation of our thought process and handstand or endpoint detection and response you're referred to either ways but this is kind of a next generation thought process when we talk about xdr collecting and or correlating data that enables visibility and context into advanced threats that are streaming through our systems and happening all around us is what the name of the game is when we talk about xdr threats can be analyzed prioritized hunted and remediated allowing us to hopefully prevent proactively security breaches before they occur but at a minimum if we can't get to them before they occur react to them in near real time trying to prevent them from getting out of hand and causing the kinds of global data breaches that companies are wrestling with every day so when we think about xdr we think about proactive protection providing unified visibility across multiple stacks of infrastructure and across multiple attack vectors this is cutting edge technology that allows us to peer into the vortex look over the realm into the black hole and see all the bad actors staring back at us and selectively target them to try to prevent them from hurting us number four data privacy in what we call third party indoor supply chain risk management that cool acronym scrm one you're gonna hear a lot about and really is something that you're gonna have to be focused on when we think about data privacy and supply chain risk management or third party and vendor risk management i think of them as a trend for security in 2020 it's becoming more focused formalized and actually disciplines in their own right these are two distinctly different set of activities but they are merging together because the impact of data management and data privacy across all aspects of an organization is becoming amplified more and more due to regulatory compliance issues across multiple different levels at the local regional federal and even international landscape levels we see more compliance regulation taking place more interest in understanding identifying and managing pii personally identifiable information and phi protected health information among two main categories of data as a result of this we have a need not only to be compliant but we have a need to ensure downstream compliance compliance of our supply chains and those extended supply chains that are direct first line vendors are relying on to supply us if we don't have knowledge and visibility into those activities of those providers there's no way we as the primary owner and manager of customer data can be expected to secure that data successfully and enhance and therefore reach compliance the problem is we give access to our systems where our data that we have to secure is to other external actors and without allowing them and asking them and indeed coercing and forcing them in some cases to behave appropriately line up with our expectations of regulation and compliance line up with our policies and our activities to ensure that they will not transfer risk into our organization we are unfortunately not exercising due diligence and not acting with due care this is going to be a big one and this is going to be one you definitely want to watch out for in the coming years [Music] this is a fun one because it's really exciting to say and yes we really do pronounce it sassy secure access service edge what we call sase this is the idea of taking our wan our wide area network and converging it merging it with network security services like our casbis our cloud access security brokers that do access control for us from hybrid environments into and out of our cloud infrastructure f-w-a-a-s what we call flash or firewall as a service and of course what conversation about sasu would be complete without zero trust and zero trust architectures we merge all of that into a single cloud delivered service model this is all about bringing security right to the edge of our cloud infrastructure and our service provisioning and making remote access and cloud-based services as tightly controlled and secure as they can be according to gartner 40 percent of businesses are looking to adopt or implement sassy by 2024 that means that meteor growth in the sassy area is being experienced we're at less than one percent adoption as of 2018 we're moving from less than one to forty over the space of about five or six years this is meteoric growth in a service area we base this service upon the identity of the entity who is essentially asking for access real-time context what's going on around us in the operational environment enterprise security and compliance policies that have to be enforced and applied and a continuous assessment of the risk and trust interactions associated with those activities throughout the lifetime of that session or that connection and we allow identities to be associated with people with groups of people think like branch offices where lots of people work devices applications services and even iot systems and or edge computing locations all the things and places we need all the security we want and must have all in one really cool fun to say word sassy is the name of it and sassy is what you're going to be looking to do as you secure your cloud edges all right everybody so that's my top five security trend list for 2021 what's yours well i got news for you whether you want to tell me or not i know a place you can go and check out more security training and find out about all the cool emerging trends that you're going to have to deal with in the coming months days weeks and of course years that's it pro tv you can come check us out for all your training needs especially if you want security related courses you can come hang out and train with me and or all of the entertainers that i work with we're always doing really cool new and innovative stuff and you can check us out at and or on our youtube channel i've been adam gordon and i'll see you soon
Published: Tue May 18 2021
