Search
00
GBAF Logo
trophy
Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

Subscribe to our newsletter

Get the latest news and updates from our team.

Global Banking and Finance Review

Global Banking & Finance Review

Company

    GBAF Logo
    • About Us
    • Profile
    • Privacy & Cookie Policy
    • Terms of Use
    • Contact Us
    • Advertising
    • Submit Post
    • Latest News
    • Research Reports
    • Press Release
    • Awards▾
      • About the Awards
      • Awards TimeTable
      • Submit Nominations
      • Testimonials
      • Media Room
      • Award Winners
      • FAQ
    • Magazines▾
      • Global Banking & Finance Review Magazine Issue 79
      • Global Banking & Finance Review Magazine Issue 78
      • Global Banking & Finance Review Magazine Issue 77
      • Global Banking & Finance Review Magazine Issue 76
      • Global Banking & Finance Review Magazine Issue 75
      • Global Banking & Finance Review Magazine Issue 73
      • Global Banking & Finance Review Magazine Issue 71
      • Global Banking & Finance Review Magazine Issue 70
      • Global Banking & Finance Review Magazine Issue 69
      • Global Banking & Finance Review Magazine Issue 66
    Top StoriesInterviewsBusinessFinanceBankingTechnologyInvestingTradingVideosAwardsMagazinesHeadlinesTrends

    Global Banking & Finance Review® is a leading financial portal and online magazine offering News, Analysis, Opinion, Reviews, Interviews & Videos from the world of Banking, Finance, Business, Trading, Technology, Investing, Brokerage, Foreign Exchange, Tax & Legal, Islamic Finance, Asset & Wealth Management.
    Copyright © 2010-2025 GBAF Publications Ltd - All Rights Reserved.

    Editorial & Advertiser disclosure

    Global Banking and Finance Review is an online platform offering news, analysis, and opinion on the latest trends, developments, and innovations in the banking and finance industry worldwide. The platform covers a diverse range of topics, including banking, insurance, investment, wealth management, fintech, and regulatory issues. The website publishes news, press releases, opinion and advertorials on various financial organizations, products and services which are commissioned from various Companies, Organizations, PR agencies, Bloggers etc. These commissioned articles are commercial in nature. This is not to be considered as financial advice and should be considered only for information purposes. It does not reflect the views or opinion of our website and is not to be considered an endorsement or a recommendation. We cannot guarantee the accuracy or applicability of any information provided with respect to your individual or personal circumstances. Please seek Professional advice from a qualified professional before making any financial decisions. We link to various third-party websites, affiliate sales networks, and to our advertising partners websites. When you view or click on certain links available on our articles, our partners may compensate us for displaying the content to you or make a purchase or fill a form. This will not incur any additional charges to you. To make things simpler for you to identity or distinguish advertised or sponsored articles or links, you may consider all articles or links hosted on our site as a commercial article placement. We will not be responsible for any loss you may suffer as a result of any omission or inaccuracy on the website.

    Home > Technology > How comprehensive network intelligence can improve cyber resilience
    Technology

    How comprehensive network intelligence can improve cyber resilience

    How comprehensive network intelligence can improve cyber resilience

    Published by Jessica Weisman-Pitts

    Posted on November 7, 2022

    Featured image for article about Technology

    By John Moran Technical Director at Tufin

    IT infrastructure in financial organisations has grown in both size and complexity in recent years as companies undergo digital transformation. Networks are now more likely to be a blend of different architectures as businesses adopt multi-cloud approaches alongside legacy infrastructure.

    This shift has helped to establish a more efficient, agile way of working and facilitated the digital strategies that now underpin the financial sector.

    However, along with the advantages of digitalisation, these changes have also increased cyber risk exposure. How can CISOs and CIOs at financial institutions ensure they maintain control and visibility of these complex environments, and protect against cyber attacks?

    The rapid rise in financial IT complexity

    Digital transformation and cloud migration are critical business priorities for most industries but are particularly vital in the financial sector as consumers have grown to expect fast, reliable digital services.

    As a result, spending on cloud services in banking is forecast to grow by more than 16 percent year-on-year through 2024, to $77 billion worldwide, a much faster pace of growth compared to the 4.5 percent annual increase in overall IT budgets.

    However, multi-cloud and hybrid environments also add to the complexity. As IT environments expand and take on more moving parts it becomes increasingly difficult for IT and security teams to maintain effective visibility over all assets and traffic and identify security vulnerabilities.

    This can quickly result in unnoticed weaknesses open to exploitation by cyber attackers.

    How growing network complexity increases cyber risk

    This challenge is, again, more pronounced in the financial sector as many organisations are stuck with large amounts of legacy infrastructure. The static documents and manual processes common in managing the topology of legacy systems are often outdated and this can result in overlapping policies and processes across different environments. Legacy infrastructure might, for example, contain systems that are not included in regular automated software patches or policy updates, allowing old vulnerabilities and access policies to persist.

    A lack of visibility into the expanding digital environment also means financial firms can lose track of where files are located and how they can be accessed. The result of which is that highly sensitive assets, such as databases of customers’ Personally Identifiable Information (PII) or accounts and applications with high levels of privileged system accesses, could be left unsecured and unmonitored.

    All of this increases the likelihood of the dreaded ‘unknown unknown’ – a security risk that the organisation has no idea exists and is therefore making no effort to resolve. Further, it all adds up to making effective vulnerability management close to impossible. Without a big picture view, CISOs cannot possibly begin prioritising risks and forming an effective strategy.

    Meanwhile, criminal gangs are well-aware of these issues and are specifically targeting such weaknesses in their attacks. Financial firms have more to lose than most industries from cyber risk exposure since the sector is one of the most tightly regulated.

    How can financial firms regain visibility?

    Visibility and discovery are everything when it comes to security. If you can’t see it, you can’t secure it.

    In today’s digitally driven, hyperconnected world, CISOs and their teams have no shortage of data about their IT environments. Security solutions provide a constant stream of threat data, while resources like the National Vulnerability Database offer an external view of threats.

    But having access to raw threat data by itself does not translate into achieving network visibility. Financial organisations have developed such complex and fragmented environments, and the external threat landscape moves so quickly, that even the biggest security team has no chance of sifting through all this information manually to gain an idea of what’s going on.

    Rather, data must be combined with contextual knowledge about the company’s unique network infrastructure and operations. An automated approach offers the best opportunity for achieving this. Automated tools can absorb the streams of internal data, such as vulnerability scans and threat alerts, and combine it with external data to create a highly contextualised view of the company’s risk posture.

    Understanding the entire network topology drives operational benefits

    Accurately prioritising vulnerabilities and formulating an effective response to potential security incidents, requires comprehensive internal network intelligence. By gaining a contextual view of the entire network topology, across physical networks and hybrid cloud platforms, security teams will finally regain visibility of potential threats and network access anomalies.

    Achieving this enables accurate prioritisation of vulnerabilities and security events, decreasing the likelihood of a major security incident, and increasing operational resiliency. Rather than being bombarded with a stream of raw data, CISOs and their teams will be able to confidently zero in on the most important issues. For example, perhaps there is a list of hundreds of potential vulnerabilities that need addressing – but it’s apparent that a handful of them concern systems that are exposed to untrusted networks or contain highly critical data.

    The ability to accurately and effectively prioritise cyber risk will boost a financial firm’s operational resilience, enabling them to better protect core systems and safeguard their customer data. Further, it will also serve to keep them on the right side of strict financial regulatory authorities.

    Once security teams have achieved a contextual view of their entire IT network topology, they can ensure that they maintain visibility as their environment continues to grow. This means that they can continue to protect critical assets and identify threats no matter how their own systems, or the external threat landscape, change and evolve.

    Related Posts
    Treasury transformation must be built on accountability and trust
    Treasury transformation must be built on accountability and trust
    Financial services: a human-centric approach to managing risk
    Financial services: a human-centric approach to managing risk
    LakeFusion Secures Seed Funding to Advance AI-Native Master Data Management
    LakeFusion Secures Seed Funding to Advance AI-Native Master Data Management
    Clarity, Context, Confidence: Explainable AI and the New Era of Investor Trust
    Clarity, Context, Confidence: Explainable AI and the New Era of Investor Trust
    Data Intelligence Transforms the Future of Credit Risk Strategy
    Data Intelligence Transforms the Future of Credit Risk Strategy
    Architect of Integration Ushers in a New Era for AI in Regulated Industries
    Architect of Integration Ushers in a New Era for AI in Regulated Industries
    How One Technologist is Building Self-Healing AI Systems that Could Transform Financial Regulation
    How One Technologist is Building Self-Healing AI Systems that Could Transform Financial Regulation
    SBS is Doubling Down on SaaS to Power the Next Wave of Bank Modernization
    SBS is Doubling Down on SaaS to Power the Next Wave of Bank Modernization
    Trust Embedding: Integrating Governance into Next-Generation Data Platforms
    Trust Embedding: Integrating Governance into Next-Generation Data Platforms
    The Guardian of Connectivity: How Rohith Kumar Punithavel Is Redefining Trust in Private Networks
    The Guardian of Connectivity: How Rohith Kumar Punithavel Is Redefining Trust in Private Networks
    BNY Partners With HID and SwiftConnect to Provide Mobile Access to its Offices Around the Globe With Employee Badge in Apple Wallet
    BNY Partners With HID and SwiftConnect to Provide Mobile Access to its Offices Around the Globe With Employee Badge in Apple Wallet
    How Integral’s CTO Chidambaram Bhat is helping to solve  transfer pricing problems through cutting edge AI.
    How Integral’s CTO Chidambaram Bhat is helping to solve transfer pricing problems through cutting edge AI.

    Why waste money on news and opinions when you can access them for free?

    Take advantage of our newsletter subscription and stay informed on the go!

    Subscribe

    Previous Technology PostFraud is Only Skyrocketing, and Incremental Learning is the Tech to Combat it
    Next Technology PostBanking on AI for your customer engagement

    More from Technology

    Explore more articles in the Technology category

    Why Physical Infrastructure Still Matters in a Digital Economy

    Why Physical Infrastructure Still Matters in a Digital Economy

    Why Compliance Has Become an Engineering Problem

    Why Compliance Has Become an Engineering Problem

    Can AI-Powered Security Prevent $4.2 Billion in Banking Fraud?

    Can AI-Powered Security Prevent $4.2 Billion in Banking Fraud?

    Reimagining Human-Technology Interaction: Sagar Kesarpu’s Mission to Humanize Automation

    Reimagining Human-Technology Interaction: Sagar Kesarpu’s Mission to Humanize Automation

    LeapXpert: How financial institutions can turn shadow messaging from a risk into an opportunity

    LeapXpert: How financial institutions can turn shadow messaging from a risk into an opportunity

    Intelligence in Motion: Building Predictive Systems for Global Operations

    Intelligence in Motion: Building Predictive Systems for Global Operations

    Predictive Analytics and Strategic Operations: Strengthening Supply Chain Resilience

    Predictive Analytics and Strategic Operations: Strengthening Supply Chain Resilience

    How Nclude.ai   turned broken portals into completed applications

    How Nclude.ai turned broken portals into completed applications

    The Silent Shift: Rethinking Services for a Digital World?

    The Silent Shift: Rethinking Services for a Digital World?

    Culture as Capital: How Woxa Corporation Is Redefining Fintech Sustainability

    Culture as Capital: How Woxa Corporation Is Redefining Fintech Sustainability

    Securing the Future: We're Fixing Cyber Resilience by Finally Making Compliance Cool

    Securing the Future: We're Fixing Cyber Resilience by Finally Making Compliance Cool

    Supply chain security risks now innumerable and unmanageable for majority of cybersecurity leaders, IO research reveals

    Supply chain security risks now innumerable and unmanageable for majority of cybersecurity leaders, IO research reveals

    View All Technology Posts