Intelligent CISO Issue 47 | Page 18

cyber trends
ANTHONY J . FERRANTE , GLOBAL HEAD OF CYBERSECURITY AT FTI CONSULTING , OUTLINES HIS TOP 10 CYBERSECURITY PREDICTIONS FOR 2022 .

Why cyberrisk mitigation should be top

priority for every organisation he evolutionary

T nature of cyberattacks is well known . Cyber actors continually improve on already sophisticated techniques and keeping pace is a never-ending challenge . With a threat landscape that has never been as vast or dispersed due to a hybrid workforce , cyber-risk mitigation should be the top priority for every organisation across the globe . Based on how quickly things change , predicting what is to come is difficult , but assessing what has already occurred can be a helpful indicator for preparations . Here are 10 predictions that the global FTI Cybersecurity team expects to see in 2022 .

1 . Regulatory hammers will fall
• Background : Cybersecurity-focused regulation , specific to government agencies and their related entities , was a focus in 2021 . In October , the Department of Justice announced the Civil Cyber-Fraud Initiative , which will ‘ utilise the False Claims
Act to pursue cybersecurity related fraud by government contractors and grant recipients .’ A month later , the Biden Administration issued a mandate requiring ‘ federal agencies patch hundreds of cybersecurity vulnerabilities that are considered major risks for damaging intrusions into government computer systems .’
• Prediction : Between the increase in regulation and public demand for organisations to do all they can to protect sensitive user information , expectations for proper cybersecurity measures to be implemented are high . The private industry tends to follow suit with actions and guidelines established by the government , so it ’ s safe to assume that similar basic cybersecurity requirements , at a minimum , will expand beyond the public sphere and organisations will face consequences for failing to comply .
2 . Critical infrastructure will remain a significant target
• Background : The consequences of the critical infrastructure sector suffering a cybersecurity incident are so dire that the Cybersecurity and Infrastructure Security Agency ( CISA ) and the Federal Bureau of Investigation ( FBI ), release periodic reminders to stay vigilant . The complex nature and connectedness of digital and physical assets in critical infrastructure , combined with reliance on legacy equipment , make proper cyber-risk mitigation coordination a challenging task .
• Prediction : The proliferation of Internet of Things ( IoT ) devices within the Operational Technology ( OT ) space is growing rapidly and the efficiency they provide is often prioritised over security . This afterthought mentality carries
18 www . intelligentciso . com