Connect with us

Technology

Current Tech Market Conditions Leave Businesses Vulnerable to Insider Threat

Published

on

Quentyn Taylor tech market conditions

By Quentyn Taylor

How will GDPR regulations present new challenges for cyber security teams?  

GDPR legislation for both the UK and Europe has revolutionised the way businesses communicate, secure and store data, as well as holding businesses financially and personally accountable for when they fail to handle data correctly. In fact, GDPR fines hit a total of 97.29 million Euros in the first half of 2022, an increase of 92% over H1 2021.

This year, there has been an increasing number of fines centred around Article 32 of GDPR, which states that penalties can be enforced if companies have a lack of technical and security measures in place, even if this does not lead to a breach. While the focus will undoubtedly still be on enforcing reactive fines responding to data leaks, in 2023, penalising those that do not have adequate preventative measures will become increasingly more prominent. Ultimately, legislation has moved faster than many organisations can keep up with, particularly alongside the challenge of managing and executing IT security in a hybrid environment.  Next year, regulations will only become tighter, and organisations will be held up to increasingly higher scrutiny.

Where will IT investment be directed in 2023 and how will this impact the execution of security strategies?

Digitisation was critical in the shift to hybrid, and as a result, IT teams have enjoyed relatively high budgets in previous years while other business functions have been cut. However, now organisations are operating in a different landscape, with rising inflation and the threat of a global recession, many will begin to reassess all their budgets, IT included.

Despite this economic turbulence, security will remain a priority for investment. The threat landscape continues to develop at pace, and with financial and reputational damage attached to security breaches which could make or break some businesses as recession hits, minimising security budgets will be non-negotiable.

Yet, reducing IT budgets while increasing security investments present a problem when it comes to the execution of this strategy. Fundamental to the success of a security plan is whether it can be delivered via an operational IT team. Reducing spend for IT will inadvertently open organisations to attack, as security teams will not have the apparatus needed to implement their plans.

As we enter 2023, it is, therefore, critical for IT security leaders to consider their holistic IT strategy instead of viewing IT and security as two separate entities.

How will the global economic crisis impact the security industry?

Europe is still in a recovery state from the pandemic, and other macroeconomic pressures, such as energy shortages and soaring inflation rates are threatening how businesses can invest and grow. The tech industry has ultimately felt the crunch, with 12,000 tech jobs already being lost worldwide, the market is becoming increasingly more volatile and unpredictable.

Previously, the buoyancy of the tech sector meant many IT professionals were able to find a job by the end of the week if they were let go, but with this safety net removed, we will see cases of insider threat on the rise in 2023. Indeed, in Q3 2022, this peaked to its highest quarterly level to date accounting for nearly 35% of all unauthorised access threat incidents.

The current tech market conditions leave businesses vulnerable to insider threat, for example, some workers attempt to copy data and utilise it for their next employer. Cybercriminals will exploit this issue as well by keeping up with current trends in the tech sector, as they are able to implement new strategies that target those who are being laid off.

Organisations must ensure data is secured when employees leave the business and that it has not been transferred onto personal devices. Yet, according to our recent research, only 18% of IT decision-makers say they are able to track information across the full lifecycle. In response, businesses should increase visibility across their data journey, so organisations can identify when employees are printing and sharing information beyond company defences.

Quentyn Taylor – Senior Director of Information Security and Global Response at Canon EMEA

Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

Telco Ownership Changes Above 10% Now Subject to NCC Approval

Published

on

NCC

By Adedapo Adesanya

The Nigerian Communications Commission (NCC) and the Corporate Affairs Commission (CAC) have introduced a new regulatory requirement mandating prior approval for significant changes in the ownership structure of telecommunications companies operating in Nigeria.

This was contained in a statement jointly signed by the Director of Public Affairs at the NCC, Mrs Nnenna Ukoha and Head of Public Affairs at the Corporate Affairs Commission, Mr Rasheed Mahe.

According to a joint press release issued by the two agencies, the directive, which takes immediate effect, requires all licensed telecom operators seeking to transfer ownership or control of shares amounting to 10 per cent or more of their total share capital to first obtain a Letter of No Objection from the NCC before such transactions can be registered by the CAC.

The statement reads in part, “The directive, which takes immediate effect, requires all licensed communications companies seeking to transfer ownership or control of shares amounting to 10 per cent or more of their total share capital to obtain a Letter of No Objection from the NCC before such transactions can be registered with the CAC.

“The requirement is in line with the provisions of Section 90 of the Nigerian Communications Act 2003, Regulation 28(2) of the Competition Practices Regulations 2007, and Regulation 42 of the Licensing Regulations 2019, which empower the NCC to monitor transactions involving licensees and ensure fair competition within the sector.

“Under the new arrangement, the CAC will only process and register requests for changes in shareholding structures of telecommunications companies where the transaction involves 10 per cent or more of the company’s shares and is accompanied by evidence of prior approval from the NCC.

“According to the two regulatory agencies, the measure is aimed at strengthening oversight of significant ownership changes, preventing anti-competitive practices, and preserving a fair and competitive communications market. It is also expected to enhance transparency, boost investor confidence, provide greater regulatory certainty, and support the long-term stability and sustainability of Nigeria’s telecommunications industry.

The NCC and CAC reaffirmed their commitment to fostering a transparent, stable, and investor-friendly business environment. Both agencies pledged continued collaboration to promote fair market practices, strengthen regulatory compliance, and ensure the orderly development of Nigeria’s communications sector.”

Continue Reading

Technology

Rising Cyber Threats Could Undermine Business Sustainability, Profitability—ISSAN

Published

on

David Isiavwe ISSAN President

By Modupe Gbadeyanka

The relevant stakeholders have been urged to take urgent action to curb the rising sophistication of cyber threats, which could undermine business sustainability and profitability.

This call was made by the Information Security Society of Africa – Nigeria (ISSAN) during its monthly meeting held in collaboration with MAXUT Consulting.

The group noted that identity theft, mobile fraud, ransomware, and social engineering attacks are threats to organisations, especially those who may struggle to protect information assets, maintain operational resilience, and address vulnerabilities before they can be exploited.

The president of ISSAN, Mr David Isiavwe, who doubles as the Executive Director for Risk Management at Nova Bank, stressed that cybercriminals are deploying increasingly sophisticated attack methods targeting individuals, businesses, critical national infrastructure, and strategic assets.

Among the threats highlighted were identity theft, Business Email Compromise (BEC), phishing, ransomware, WhatsApp account hijacking, Distributed Denial-of-Service (DDoS) attacks, payment card fraud, cryptocurrency-related attacks, and other forms of social engineering.

According to him, the increasing frequency and sophistication of cyberattacks mean cybersecurity can no longer be viewed solely as an IT issue but as a critical business and national security priority.

To address these challenges, he urged organisations to adopt proactive risk management practices, implement continuous monitoring systems, promptly address vulnerabilities, and invest in regular cybersecurity awareness programmes for employees and customers.

Also, the importance of leveraging emerging technologies such as Artificial Intelligence (AI), Machine Learning (ML), and automation to enhance threat detection and response capabilities was emphasised.

“No organisation can successfully confront today’s cyber threats in isolation. Information sharing, collaboration, and collective vigilance remain essential to protecting our digital ecosystem and safeguarding public trust,” the ISSAN leader said at the event, which featured a technical presentation titled, Confronting the New Mobile Threat Landscape: Beyond User Authentication.

ISSAN reaffirmed its commitment to promoting cybersecurity awareness, capacity building, information sharing, and industry collaboration to strengthen Nigeria’s cyber resilience and support a secure digital economy.

Continue Reading

Technology

Zoho Launches Nathu La Server

Published

on

Zoho Nathu La Server

By Modupe Gbadeyanka

A designed-in-house server known as Nathu La has been launched by a global technology company, Zoho Corporation.

Nathu La is engineered with hardware-rooted security at every layer of the stack. Its indigenous IP-driven approach reduces dependency on external entities for security audits, firmware updates, and licensing continuity.

The solution aligns with open-source software principles and reflects Zoho’s broader commitment to building sustainable, secure, and scalable digital infrastructure. It also supports the growing global focus on digital sovereignty, local innovation ecosystems, and high-performance computing capabilities.

The platform was introduced by the company as part of a pivotal step in its journey towards building its full technology stack, from the hardware layer to software applications.

With Nathu La, Zoho has achieved equivalent performance with 12-18 per cent lower power consumption and 20-30 per cent lower total cost of ownership (TCO), thereby reducing inference costs.

The Nathu La server, comprising Intel® Xeon® 6 processors, was developed collaboratively with Intel, leveraging their enablement capabilities and technical expertise.

The design philosophy behind Nathu La is rooted in the Open Compute Project (OCP), emphasising modularity, thermal efficiency, and ease of maintenance. This enables Zoho’s data centres to significantly reduce total cost of ownership and power consumption.

Zoho plans to host its applications on the Nathu La server platform, enabling the company to optimise the full software-hardware stack for its specific workloads, reduce costs, improve performance, and strengthen data governance for its global customers. This will also help bring down inference costs for Zoho’s AI usage.

The Nathu La server motherboard and chassis platform is the result of five years of R&D across hardware, firmware, and systems management. Based on Intel® Xeon® 6 Processors, the server is designed to optimise performance for virtualisation (VM), High Performance Computing (HPC), AI inference, and storage applications. This results in improved performance of Zoho applications for end users.

The server features customised power delivery subsystems, an in-house DC-SCM (Data Centre Secure Control Module) design, and modular chassis options compatible with diverse end-user environments, offering flexibility across deployment types.

All modular components – including the DC-SCM and NIC (Network Interface Card) – were designed in-house by Zoho’s hardware engineering team and assembled through electronics manufacturing partners, enabling tighter integration and quality control across the platform. Over five patents have been filed covering advanced thermal management and cost-optimised server architecture designs.

“Zoho Corporation has invested in building its own technology stack from the ground up over the last three decades. The Nathu La server launch is in line with that goal.

“With our strategy of using contextual, right-sized models, running on our own platform, on our own servers, in our own data centres, we are compounding the benefits accrued from owning and operating our entire technology stack. This ensures that our solutions are more sustainable and accessible for businesses.

“These long-term R&D investments we are making at every layer of the stack are aimed at delivering customer value,” the Country Head for Zoho Nigeria, Mr Kehinde Ogundare, stated.

In 2020, Zoho established a small R&D team in Nagpur, a Tier 2 town in India, focused on projects such as server design and systems engineering.

Members of the Nathu La R&D team include hires from SETU – short for Students’ Engagement for Transformative Upskilling – an initiative designed to build a pipeline of industry-ready engineers, with a focus on advanced learning in Electronics System Design and Manufacturing (ESDM).

Continue Reading

Trending