Security News > 2023 > October > CISOs struggling to understand value of security controls data

CISOs struggling to understand value of security controls data
2023-10-26 03:00

Many CISOs are grappling with the conundrum of the purpose and value of security controls data in supporting critical business decisions, according to Panaseer.

Only 36% of security leaders are totally confident in their security data and use it for all strategic decision making.

95% said they are highly or somewhat confident that security controls are working effectively all the time, and 88% declared that they trust their security data is accurate.

79% of responding organizations admitted they have been surprised by a security incident that evaded their controls-indicating that data on the status of controls is either inaccurate, or not being properly interpreted to improve security posture.

"The industry needs to change if we are to solve the CISO security controls conundrum, and Continuous Controls Monitoring can be the catalyst. It isn't a better reporting tool, it's a way of knowing what to do next - making day-to-day cybersecurity firefighting easier and getting ahead of the game on strategic risk," argues Panaseer Security Evangelist, Marie Wilcox.

"At the moment, many leaders don't know that security controls data can help them do this. It's understanding the value of a big picture view, and single source of truth rather than multiple siloed perspectives."


News URL

https://www.helpnetsecurity.com/2023/10/26/security-controls-data-value/