Scot Walker (left), Director of Investigations at Paper Excellence Group, and Carlos Francisco (right), Regional Security Leader of Meta (Facebook), share security predictions at GSX 2023.

Sep 13 2023
Security

GSX 2023: Experts Discuss Upcoming Threats to Corporate Security

Speakers at Global Security Exchange in Dallas predicted future challenges and offered insights into solutions.

Predictions for the future of corporate security depend on who you ask. At Global Security Exchange 2023, speakers evaluated possibilities for the future of physical security and cybersecurity, basing their analysis on current trends, research and criminals’ mindsets.

Jon Clay, vice president of threat intelligence at Trend Micro, spoke on the changing landscape of ransomware in his Wednesday session “Preparing for the Next Era of Ransomware.” He noted that cybercriminals are seeking the most profitable attack opportunities.

Clay also said that shifts in preventing cyberattacks on the federal and global levels and the evolution of security technologies were impacting criminals’ approach to ransomware.

Click the banner below to become an Insider and gain exclusive insights after GSX 2023.

In a Tuesday session titled “What Will Corporate Security Look Like in 2033?” speakers said that global factors are influencing approaches to physical security. Carlos Francisco, the regional security leader of Meta (Facebook), and Scot Walker, the director of investigations at Paper Excellence Group, specifically mentioned increasing natural disasters and the baby boom generation aging out of the workforce as drivers of change.

Here's what corporate security teams need to know about the evolving landscape to make decisions for their technology solutions and business operations.

Attackers Will Target Different Tech with Ransomware

Business and security leaders should be cautious of network entry points that hackers are increasingly targeting, Clay noted.

“You’re going to start hardening up your exchange servers, your AD servers, much more effectively than we have in the past, so they’re going to have to look for new targets,” he said.

These targets will include cloud storage systems, Internet of Things (IoT) devices and other uncommon platforms.

“Today, unfortunately, a lot of these systems are left exposed,” Clay said. “When we look at the majority of cloud attacks today, they’re caused by misconfigurations of cloud assets.”

IoT devices are also being targeted because they’re always on and connected to the network, and they’re often crucial to a business’s operations. Beyond that, these technologies often harbor “forever day” vulnerabilities.

“Forever days are basically vulnerabilities in a software product that will never get fixed,” Clay said. “These IoT devices are not intended to be long-lasting, so manufacturers won’t ever bother to fix a bug that is found.”

KEEP READING: Develop an Internet of Things-centered security strategy.

Businesses also need to secure uncommon platforms such as automotive software. As vehicles are built to be smarter and feature more electric components, they become easier to hack, causing disruptions to business and giving cybercriminals an opportunity.

“We haven’t seen this much in the past, but moving forward they’re looking for new opportunities,” Clay added.

Mitigate Future Ransomware Attacks with These Best Practices

Clay also shared ways that businesses can better protect their networks from evolving ransomware attacks.

He recommended that security and IT professionals:

  • Regularly back up files according to the 3-2-1 rule
  • Harden administrative accounts with multifactor authentication
  • Enable advanced detection capabilities
  • Disable PowerShell (or secure it, if it is absolutely necessary)
  • Limit end users’ access to systems and administrative tools
  • Cultivate a security-aware culture

MORE FROM GSX: How can businesses overcome security’s weakest links?

Future Physical Security Will Rely on Drones and Robots

Francisco and Walker’s predictions for physical security technologies looked further into the future, forecasting changes that may come to pass by 2033. The duo looked at emerging technologies such as drones, robots and virtual reality. They anticipated the ways these capabilities will grow to address coming challenges in the next 10 years.

One of these challenges is a shift from public law enforcement to private security, Francisco and Walker said. They attributed this to two main factors: private security companies can pay more, and the large influx of individuals who joined the police after 9/11 are beginning to retire.

The solution, Francisco and Walker said, is a shift to uniformed officers who control a fleet of robots and drones. Robots make the ultimate security guards because they never get tired, never take a break and can always be on the lookout for suspicious activity.

Drone and robot technology slide

A slide from Carlos Francisco and Scot Walker’s presentation showing the benefits of using drone and robot technology for physical security. Image courtesy of GSX 2023.

The speakers noted that the human component will always be necessary: While unmanned technologies are great for observing and reporting, someone must be able to respond and mitigate.

Improvements in Training for Security Officers

Tuesday’s presenters also talked about the ways job training and security skills will change in the next 10 years. The impending workforce gaps, coupled with the capabilities of today’s technology, will create two big changes for future security professionals.

First, Francisco and Walker talked about the emergence of virtual reality and its applications to security training.

“In Facebook, we push to do a lot of things that are AI-driven,” Francisco said. He added that he anticipates virtual reality simulations will train security officers by 2033. These simulations will create more realistic training, and it will be cheaper than sending officers to a physical location for training.

The duo also predicted that physical security professionals will need to be trained in cybersecurity, including encryption, firewalls and hacking protection. This will allow them to protect businesses against digital attacks.

UP NEXT: How can tools like ChatGPT help businesses?

Keep this page bookmarked to stay up to date with GSX 2023 coverage, and follow us on X (formerly Twitter) at @BizTechMagazine or use the event hashtag, #GSX2023.

PHOTOGRAPHY BY REBECCA TORCHIA, COURTESY OF GSX
Close

Become an Insider

Unlock white papers, personalized recommendations and other premium content for an in-depth look at evolving IT