2019 Ponemon Study on Automation and Cybersecurity Staffing in Asia Pacific, United States and the UK shows an evolving Asia Pacific cybersecurity arena

By : Candra Mata | Tuesday, April 16 2019 - 11:16 IWST

Ponemon Institute
Ponemon Institute

INDUSTRY.co.id - Singapore, April 16, 2019 - DomainTools, a leader in domain name and DNS-based cyber threat intelligence, today announced the results of the study “Staffing the IT Security Function in the Age of Automation”, conducted in conjunction with the Ponemon Institute. 

More than 1,400 security professionals based across the Asia Pacific (APAC), US, and the UK provided answers on the impact that automation and artificial intelligence (AI) will have on the staffing of cybersecurity functions. All respondents in the study are responsible in attracting, hiring, promoting and retaining cybersecurity personnel within their organizations.

Universal Shortage of Cybersecurity Staff and Need for Automation

Results clearly indicated a shortage of cybersecurity staff across geographical regions (78% of all respondents admitted their teams are understaffed).

According to respondents, automation will provide a partial solution to the problem, relieving cybersecurity professionals of time-consuming and non-cost-effective tasks, such as malware analysis, which is either already automated (50%), or is planned to become so in the next three years (56%).

Only 35% of respondents, however, think that automation will reduce the headcount of their cybersecurity function: 40% even expect an increased need for hires with more advanced technical skills.

“Within just one year, the perspective around adoption of automated technologies has notably shifted among cybersecurity professionals,” said Dr. Larry Ponemon, chairman and founder of the Ponemon Institute. 

“Contrary to the popular belief that the rise of automation will threaten the job market, organizations now feel these technologies will help ease the current strain on resources, and offer the potential to promote job security for highly skilled staff, while strengthening cybersecurity defenses.”

UK and US respondents were much more confident that automation will improve their cybersecurity staff’s ability to do their job (59% and 65% of respondents, respectively) than APAC respondents (48%), who were also more likely to distrust AI as a cybersecurity tool (37% of respondents, compared to 31% in the UK and 24% in the US).

Asia Pacific Ahead in Cybersecurity Skills Availability 

Skills shortages also seemed to be lower in the APAC region (67%) compared to the UK (70%) and the US (78%), perhaps partially explaining the different level of reliance and trust on automation and AI across regions.

At the same time, the survey reported that 40% of respondents expect an increased need for hires with more advanced technical skills, aligning especially in Asia Pacific where governments and educational institutions are already accelerating specialized cybersecurity programs and initiatives, such as the ASEAN-Singapore Cybersecurity Centre of Excellence announced during the Asean Ministerial Conference on Cybersecurity (AMCC) in September 2018, where ASEAN nations are adopting a rules-based approach to regional cybersecurity frameworks. 

ASEAN, or the Association of Southeast Asian Nations, is a ten-nation group comprised of Brunei, Cambodia, Indonesia, Laos, Malaysia, Myanmar, the Philippines, Singapore, Thailand, and Vietnam.

Of those respondents who said AI is trusted as a security tool in their organizations, the majority listed staff shortages as the main reason why their enterprise has adopted the solution (53%).

“The results of the survey reveal that, overall, cybersecurity professionals are confident that automation will make their workload more manageable and will increase the accuracy of certain tasks, without jeopardizing their job security”, says Corin Imai, senior security advisor at DomainTools. 

“Although there are geographical differences in the level of confidence placed in AI and automation as cybersecurity tools, the reasons that motivate their adoption – relieving overworked teams, preventing downtime and business disruptions, reducing threats created by operating in the global digital economy, etc. – seem to be consistent across regions, suggesting that goals and expectations are aligned for organizations across the globe.”

News Comment

Today's Industry

World Bank Group (Images by ITU)

Kamis, 05 Maret 2020 - 07:23 WIB

World Bank Group Announces Up to $12 Billion Immediate Support for Covid-19 Country Response

As Covid-19 reaches more than 60 countries, the World Bank Group is making available an initial package of up to $12 billion in immediate support to assist countries coping with the health and…

Synopsys, Inc. (Images by PR Newswire)

Rabu, 04 Maret 2020 - 16:57 WIB

Better IoT Security Depends on Changes in Culture, habits

Ironically enough, the good news about the atrocious security of Internet of Things (IoT) devices might be that the bad news is getting a higher profile.Stories about security cameras getting…

Line Security Bug Bounty Program (Images by LINE Corporation)

Rabu, 04 Maret 2020 - 16:47 WIB

LINE Security Bug Bounty Program Report 2019

In late 2018 through early 2019, we began investigating the potential benefits of moving our program to HackerOne. After careful consideration, we concluded that we could likely improve the…

Check Point Software Technologies (Images by Acclaim)

Rabu, 04 Maret 2020 - 16:34 WIB

Check Point’s Hits Major Milestone as 100th Academic Institution Joins the Global Education

Check Point Software Technologies Ltd. NASDAQ: CHKP, a leading provider of cyber security solutions globally, has today announced that its Check Point SecureAcademy education initiative reached…

CloudGuard SaaS (Images by Check Point Software)

Kamis, 27 Februari 2020 - 14:08 WIB

Why are we still talking about email security?

with the rapid adoption of the internet and then the mobile internet, the email security market matured as enterprises understood that accessing proprietary information via the network exposed…