Cybersec -Analysis: CISO and CIO converge

CISO and CIO converge

The roles of the CIO and CISO in an organisation are growing towards each other, driven by the need for both innovation and integrated security. ‘Security is increasingly becoming an integral part of IT strategy.’

TEXT: WILLIAM VISTERIN  IMAGE: SHUTTERSTOCK

‘Whereas the CIO’s role used to focus mainly on directing, hiring and scheduling ICT staff, they are now expected to lead digital transformation and drive innovation,’ says Dennis De Hoog, business manager secure at Wortell.

The role of the CISO has also become more strategic. ‘From operational security to an integrated cybersecurity strategy,’ argues De Hoog.

Meanwhile, a tension between innovation and security is emerging. ‘In 2025, CISOs will have to embrace AI without compromising security, while at the same time managing complex hybrid cloud environments and stricter regulations,’ explains Deryck Mitchelson, head of worldwide executive engagement at Check Point.

Convergence

It is precisely this need for both innovation and security that is bringing CIOs and CISOs together. ‘The CISO of the future will need to be not only technically savvy, but also a strong communicator and strategic leader,’ suggests Mitchelson.

According to him, by 2025, CISOs will not only be responsible for cybersecurity, but also for broader business risks. ‘In turn, CIOs will expand their responsibilities to include information security and risk management as part of their IT strategy.’

At the same time, CIOs and CISOs face a common challenge. ‘Raising awareness at board level,’ suggests Dennis De Hoog. ‘It is essential that board members are made aware of their important role and the associated responsibilities when it comes to security and compliance.’