Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Articles - Information Security Buzz Expert Panel Question Series – The Year of the Unexpected
Articles

Information Security Buzz Expert Panel Question Series – The Year of the Unexpected

ISBuzz TeamBy ISBuzz TeamFebruary 5, 2017Updated:December 27, 20216 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

As part of our expert panel question series, we have the following question for the month of Jan 2017 to our expert panel members followed by their responses.

Jan 2017 Question: We have witness number of global events in 2016 such as US Presidential election and Brexit. Will these global events will have any affect on Cyber Security in 2017? How do you see Cyber Security will enfold in 2017 given the global events in 2016?

Expert Responses:

NEIRA JONES: 

information security buzz expert panelThe Year of the Unexpected…

From all the surprises on the political front, with the US presidential elections, Brexit in the UK, fast demonetisation in India, numerous Chinese regulations, 2016 certainly has been the year of global events… But global impact didn’t confine itself to politics: last year was also where the Internet of Things was harnessed to create the biggest ever DDoS attack, where SWIFT members were repeatedly hacked, where the Panama Papers got leaked and where cybercrime figures were for the first time included in global fraud figures in the UK showing a 55% year-on-year increase, fact that we, in the security and fraud industries, had always suspected…

In 2017, and because I like technology, I always start the year with CES (http://www.ces.tech/)… This time, the automotive industry made headlines by embracing technology is so many diverse ways. From autonomous vehicles to innovations in payments and financial services in general, the many facets have been dissected by many before me. The possibilities are endless. Consequently, hyper-connectivity and digitisation (and this is not just about cars) and their many benefits cannot happen without opening the flood gates on data. And we’ll all agree that protecting that ever-increasing data is a challenge. Indeed, governments are scrambling about trying to catch up with criminals by developing regulations to cope with “X” (You can decide whether “X” is IoT, Autonomous Vehicles, Artificial Intelligence, Big Data, etc.). Regulatory risk has never been so much in the limelight, not only because we have imminent regulations such as the 2nd Payments Service Directive, the 4th & 5thAnti-Money Laundering Directives, the General Data Protection Regulation, and the many others being developed worldwide. This systemic complexity can only be handled through better automation, supported by technologies, such as behavioural analytics, artificial intelligence, blockchain, etc. which, whilst suited to improve efficiency, agility and speed, are now key to solving regulatory and security challenges. Indeed, many firms are racing to acquire stakes in such technology companies, and the level of VC investment mirrors this trend.

If we go by the Financial Conduct Authority Definition of RegTech as the “adoption of new technologies to facilitate the delivery of regulatory requirements”, what I have been predicting for many years is actually happening: the convergence of information security and fraud prevention solutions through usage of technologies. No longer are threat intelligence or behavioural analytics, and the likes, confined to the SOC: the fraud prevention departments are now the new audience. And that’s a good thing.

My prediction: 2017 will be the year of RegTech (and let’s watch all those security companies jumping on the new buzzword…) (https://www.entrepreneur.com/article/288207).

PROFESSOR JOHN WALKER

john walkerAs we enter 2017 post the Festive Season, I am of a mind to align the Cyber Security [Insecurity} debate with the Pantomime ‘Sleeping Beauty’ – why? Well after so many years of denial, and pushing this subject to the back of the table, it is like the Prince has kissed the lips of the powerful and mighty, resulting in this subject finally gaining a positive reaction from both the current, and President Elect Donald Trump as a matter to be taken very seriously indeed. And this can only be a good thing for all the Global Community. However what action is attached to such acknowledgments is yet to be seen.
On the wider imposition of Brexit [whatever that means], when it comes to security we have been told that we are more secure together. However here I have my doubts, as with the recent outrages in Berlin the attacker had been on active watch lists of some Intelligence Communities, but which nevertheless still manifested in the loss of innocent lives to the hands of a known, and what should have been a tagged terrorist actor.
My conclusion here is – no matter US, UK, in or out of the EU, when it comes to the Cyber Security Threat and the sharing of Intelligence, these are two subjects which must be agnostic of any politic.

Brian A. McHenry

BrianBy the time this piece gets published, Donald Trump will have been inaugurated as the 45th President of the United States. Surprisingly few incidents of cyber mischief and mayhem occurred on election night, aside from the organic denial of service that occurred on the Canadian immigration website. However, the ongoing investigation and speculation about Russian hackers who may or may not have worked to influence the election is likely the new state of normal. While there’s consensus that a lot of nation-state espionage has occurred over the last two decades, not the least of which was the infamous Stuxnet worm, attribution of those activities has become increasingly difficult. In 2017, we’re likely to see increased activity with suspected links to nation states, but what remains to be seen is whether attribution will improve via the deployment of better security sensors, logs, and analytical tools.

Meanwhile, many of the so-called “hacktivist” groups such as Anonymous have crumbled, and even WikiLeaks seems to have lost credibility and direction. High profile attacks and breaches will not be carried out by hacktivist groups driven by the tumult in the geo-political landscape. Instead, we will continue to see good, old-fashioned thieves looking to get rich quick, such as the attacks carried out against banks cited by SWIFT again just last month. Ransomware continues to proliferate, and has even mutated as with the MongoDB vulnerability. Within days of MongoDB’s insecure defaults becoming public, terabytes of data were wiped from databases and held ransom for Bitcoins. Cyber revolution may be coming, but the headlines will still be about major and minor cyber heists.

You can read our expert panel members biographies here.

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Exploited Faster, Patched Slower: Verizon DBIR 2026 Shows Security Teams Losing Ground

May 20, 20265 Mins Read

Security’s Blind Spot: The Threats Hiding in “Low-Severity” Alerts

May 6, 20265 Mins Read

Visual data is the blind spot in enterprise security: that’s about to change

May 4, 20267 Mins Read
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}