Author: Julia Streets, MBE, CEO, Streets Consulting
What a timely, important and rich conversation we had on the MainStage at Sibos in Frankfurt this week. Rightly billed as a ‘Big Issue Debate’, security is of huge concern, and it’s only becoming yet more complex and urgent.
We covered everything from the latest tech disruptions to the harsh reality of legacy systems, the crucial importance of humans in the mix and the necessary conversation of legacy.
The velocity of innovation right now is extreme. It is a pivotal time, where the very tools we rely on for efficiency and growth are also opening new doors to risk.
Artificial Intelligence is the perfect example of this duality. On one hand, AI is proving invaluable for defence, used for real-time fraud detection, security vulnerability scanning, anomaly detection, and augmenting our cyber defence teams at a huge scale. It helps reduce the time required to detect and resolve issues.
On the flip side, AI is fueling the threat landscape. We heard about the staggering 3,000% increase in deep fake scams in 2023, a surge that coincided with the release of GPT. AI enables the creation of sophisticated phishing attacks and deep fakes, exposing existing vulnerabilities we might have “kicked down the road,” particularly issues surrounding identity.
Meanwhile, Quantum Computing threatens today’s existing security models. The panellists agreed that while not every machine will become a quantum computer, it will necessitate industry-wide protection via quantum-safe cryptography. Quantum is expected to be hugely disruptive as it will affect every device and every piece of software we use.
In this hyper-connected world, a single point of failure can instantly ripple across markets. Our discussion quickly shifted from merely preventing technology from breaking to focusing on how fast we can recover and get back to normal – agility is paramount.
Here are some of the positive steps the industry is taking:
We also tackled the tough questions of legacy and regulation. Legacy is increasingly viewed as a mindset issue. It is challenging because replacing one end-of-life system might require replacing five or more interdependent applications. Dealing with legacy means managing all dimensions, from monolithic mainframes to modern AI, requiring significant investment in training.
Regulators are essential to keeping the industry safe, particularly given AI-driven risks like ‘disinformation, deep fakes, and discrimination’. Institutions are responding by building strong governance frameworks, such as BNY Mellon’s platform “Eliza,” to work lockstep with regulators, ensuring that innovation remains safe and ethical.
When it comes to the human element, the panel agreed: the strongest firewall for an enterprise is a well-trained employee. Culture must shift from being merely compliance-driven to a model of dynamic, continuous learning and adoption.
The key takeaway from our rich discussion is clear: we are likely underestimating how fast the change is coming. My thanks to all the panellists for such a comprehensive and open discussion.
| Cookie | Duration | Description |
|---|---|---|
| cookielawinfo-checkbox-analytics | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics". |
| cookielawinfo-checkbox-functional | 11 months | The cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional". |
| cookielawinfo-checkbox-necessary | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary". |
| cookielawinfo-checkbox-others | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other. |
| cookielawinfo-checkbox-performance | 11 months | This cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance". |
| viewed_cookie_policy | 11 months | The cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data. |