Cisco reveals best practices for optimal cybersecurity in the enterprise
En el estudio que acaba de presentar, ‘Security Outcomes 2021’, pone de relieve como los programas que incluyen actualizaciones tecnológicas proactivas (SaaS y cloud) son una de las mejores opciones. La integración tecnológica es el segundo factor más importante para una cibeseguridad efectiva.
Cisco ha presentado su estudio Security Outcomes 2021, que ofrece a los responsables de ciberseguridad una visión práctica para decidir dónde centrar sus esfuerzos el próximo año.
Basado en consultas realizadas a 4.800 profesionales de Seguridad, TI y Privacidad, de compañías de diversos tamaños y sectores en 25 countries (incluido España), analiza el nivel de éxito actual de los programas de ciberseguridad y las prácticas más efectivas para alcanzarlo y mejorarlo.
Globalmente, los programas que incluyen actualizaciones tecnológicas proactivas de las soluciones aumentan un 12,7% la probabilidad de tener éxito. Como no todas las compañías tienen el presupuesto y el personal para lograr esta proactividad, las soluciones de seguridad SaaS y cloud constituyen una de las mejores opciones, ya que son asequibles, sencillas de desplegar e integrar, y con actualizaciones automáticas.
La integración tecnológica es el segundo factor más importante para una cibeseguridad efectiva, aumentando la probabilidad de éxito un 10,5%. La de soluciones también resulta clave para crear una sólida estrategia de seguridad que asuman todos los trabajadores, y facilita la retención del talento, ya que los profesionales demandan una operativa transparente con alertas coordinadas.
For your part, la respuesta a tiempo frente a incidentes -tanto para amenazas como para eventos no planificados- increases success by almost a 5%. This underscores the growing importance of remediation time versus cyber threat detection time. Techniques such as Threat Hunting, AI/ML and greater automation allow reducing these times.
Situation in Spain
In Spain, the most relevant factor is the joint work between the Security Department and IT, which can increase the program's success by a 22% according to respondents. The second practice that contributes most to success (20%) consists of having metrics on program performance.
Also, timely response to incidents increases the likelihood of success by a 17%, while technological updating represents a 10% more success to the cybersecurity strategy.
Cybersecurity professionals need to make quick and informed decisions. But they often rely on dozens of tools from multiple vendors, making coordinated responses to cyber threats and unplanned events difficult, emphasizes Eutimio Fernández, director de Ciberseguridad de Cisco España.
Cybersecurity programs analysis
The report also analyzes the current success of cybersecurity programs based on 11 objectives, framed in three categories: managing risks, operating efficiently and supporting the business.
According to the global average, organizations are more successful in complying with regulations; gaining the trust of executives; avoiding major security incidents; facilitating daily business operations; managing major risks; and optimize the response to incidents.
Retain cybersecurity professionals, gaining employee trust/confidence and minimizing unplanned work are the objectives in which organizations are currently least successful.
In Spain, the results are almost identical to the global average. The only difference is that Spanish companies find it more difficult to 'operate profitably'.
Recommendations:
- Keep infrastructure up to date.
- Integrate technological and security solutions (Integrated defense).
- Invest in technological 'quality and quantity'.
- If the budget is tight, opt for SaaS and Cloud solutions, which include automatic renewals and updates.
- Create a safety culture that workers accept and defend.
- Analyze other successful safety practices that are not considered.
¿Te gustó este artículo?
Subscribe to our NEWSLETTER and you won't miss anything.
