DATA BREACHES Q. HOW HAS RISK MANAGEMENT EVOLVED IN RECENT YEARS?
» Cyber risk management has shifted from a back-room IT discussion into an executive, board-level conversation and that’ s because there is a direct correlation between that risk and the cost to the business through realisation of those risks. Driven by rising threats and increasingly sophisticated attacks, modern governance now focuses heavily on business resilience i. e. driving down that risk.
To simplify board oversight, organisations now categorise risk into internal risks, which are those directly controllable across people, processes and technology, and external risks, such as third-party ecosystems and threat actors. These distinctions help leadership understand where direct controls apply, and where preparedness and business continuity strategies are necessary.
Q. IS THE INCREASED STATUS OF RISK MANAGEMENT SEEING SPEND INCREASE? WHERE SHOULD THAT SPEND BE DIRECTED?
» While cyber investment is growing, the market has been quick to capitalise on this and is now flooded with competing solutions that create significant noise and
92 October 2026