4 Tech Trends That Will Impact Risk and Compliance Efforts in 2014

Can companies enforce restrictions for personal devices? What levels of support should corporate IT departments provide for these devices? Should organizations be authorized to wipe the devices clean of data if they are stolen?

Big Data Will Be Used to Drive Risk Decision-Making

In 2013, the buzz around big data prompted companies worldwide to start developing tools and processes that could analyze massive volumes of enterprise data, and transform it into meaningful insights. Pilot programs were launched, and data sources identified.

In 2014, we are likely to see the fruits of that labor. Big data will now be used to drive risk-informed decision-making. Organizations will leverage advanced big data analytics to filter through enterprise data, identify patterns of potential risk, and develop risk predictions and forecasts. Big data tools will be accessible not only to statisticians and engineers but also to regular business users and management teams.

Big data will be especially beneficial to information security and IT risk management. It will offer us the chance to aggregate and correlate data from a variety of sources—including vulnerability scanners, fraud detectors, identity access management systems, and threat advisory feeds—in order to derive meaningful risk and threat intelligence that can, in turn, be used to detect and predict advanced attacks.

Internet Security Will Witness New Innovations

The proliferation of Internet-based applications, anytime-anywhere connectivity, mobility, unlimited data storage capacity, and of course, advanced cloud computing models has allowed businesses to manage almost all their activities and data online.

In the process, cybersecurity risks and issues have become more troubling than ever. No organization is safe from these threats, which are growing increasingly sophisticated and complex, and entering through multiple access points in corporate data and systems. The 2013 Symantec Internet Security Threat Report revealed that last year alone, there was a 42 percent increase in targeted attacks.

But the actual situation on the ground may be far more dangerous than reported – 57 percent of malware analysts say that their organizations have not disclosed data breaches, according to a blind survey conducted by ThreatTrack Security.

Faced with these risks, organizations are likely to step up their cybersecurity efforts in 2014 by monitoring their Internet activities more closely, strengthening cybersecurity controls, and streamlining security processes. We might also see more collaboration with peers and experts in the field, and a greater focus on investing skills and resources in developing new cybersecurity innovations.

Conclusion

I’m excited to see what the year 2014 holds in terms of new technology opportunities. As always, the companies that strike a good balance between these opportunities and the associated risks will be the ones to succeed. On that note, I wish you and your business a successful and profitable year ahead.

Author: Shellye Archambeau

Ms. Archambeau is the CEO of MetricStream, a Silicon Valley-based, Governance, Risk, Compliance (GRC) and Quality Management software company that helps companies around the world improve their business performance. Under Ms. Archambeau's leadership, MetricStream has grown into a recognized global market leader with over 1000 employees around the world. The company has been recognized for growth and innovation, and has been consistently named a leader in GRC by leading independent analyst firms. Ms. Archambeau has proven global business expertise combined with public policy passion. As a member of the board of directors for the Silicon Valley Leadership Group, a nationally recognized organization focused on fostering a cooperative effort between business and government officials to address major public policy issues affecting Silicon Valley, Ms. Archambeau has led initiatives and Washington, DC delegations to address regulatory compliance and improve governance. She served on the Board of Directors, and the Audit and Technology committees for media research company, Arbitron, Inc. [NYSE: ARB] from 2005 until acquired by Nielsen in 2013. She currently serves on the board of directors of Verizon Communications Inc. [NYSE, NASDAQ: VZ], a global leader in delivering broadband and other wireless and wireline communications services. Ms. Archambeau is a sought after speaker who has presented on GRC issues around the world to Fortune 500 corporations, members of Congress, and associations including IIA, ISACA, and NASDAQ. Ms. Archambeau is frequently quoted in top-tier media including the Wall Street Journal, New York Times, Compliance Week, Silicon Valley Business Journal, and currently pens a column on leadership and entrepreneurship for Xconomy. In April 2013, Ms. Archambeau was named the “#2 Most Influential African American in Technology” by Business Insider.