Close Menu
  • Home
  • Managing resilience
    • AI resilience
    • Business continuity
    • Business resilience
    • Climate resilience
    • C-suite and the board
    • DORA – the EU Digital Operational Resilience Act
    • Operational resilience
    • Organizational resilience
    • Supply chain resilience
    • Technology
  • Risk
    • Enterprise risk management
    • Operational risk
    • Threatscape
  • Cyber resilience
    • Cyber resilience updates
    • DORA – the EU Digital Operational Resilience Act
    • Product updates
More items
  • All News
  • Research
  • Jobs in Resilience
  • Resilience Resources
  • About Resilience Forward
X (Twitter) LinkedIn
  • Home
  • Managing resilience
    • AI resilience
    • Business continuity
    • Business resilience
    • Climate resilience
    • C-suite and the board
    • DORA – the EU Digital Operational Resilience Act
    • Operational resilience
    • Organizational resilience
    • Supply chain resilience
    • Technology
  • Risk
    • Enterprise risk management
    • Operational risk
    • Threatscape
  • Cyber resilience
    • Cyber resilience updates
    • DORA – the EU Digital Operational Resilience Act
    • Product updates
Login
LinkedIn Bluesky
Resilience Forward
Subscribe Now
  • All News
  • Research
  • Jobs in Resilience
  • Resilience Resources
  • About Resilience Forward
Resilience Forward
You are at:Home»Managing resilience»Business resilience»Resilience and cybersecurity: preparing for adversity and change
Business resilience

Resilience and cybersecurity: preparing for adversity and change

October 4, 20247 Mins Read
A female face looking to the future superimposed with digital icons.

By Tarquin Folliss OBE

We are living in a time of rapid technological change, where cybersecurity is no longer just about building strong defences but about developing organizational resilience. The concept of ‘secure’ is evolving as the threat landscape shifts, forcing organizations to adapt and innovate. In 2024, cybersecurity is no longer defined by the ability to prevent attacks but  to respond, recover, and adapt to adversity.

The last five years have been turbulent for the cybersecurity sector. The COVID-19 pandemic forced a massive shift to remote working, expanding the attack surface as millions of workers transitioned from secure office networks to potentially vulnerable home setups. This shift brought new challenges, making it harder for IT teams to maintain control over network security and pushing organizations to rethink their strategies. The pandemic accelerated digital transformation which exposed new vulnerabilities that cybercriminals have been quick to exploit.

In 2024 the cybersecurity landscape has continued to evolve, shaped by several factors:  emerging technology, particularly the rapid proliferation of AI-driven threats, increasing geopolitical tensions, and a persistent shortage of skilled cybersecurity professionals. Resilience has become the buzzword to meet these challenges, but what does resilience mean for cybersecurity specifically? How can organizations prepare themselves to manage adversity and change?

The evolving face of cyber threats

As mentioned above, the pandemic caused a shift to remote working that could only have been accomplished with technology.  It brought into sharp relief the extent to which organizations are reliant on IT.  IT is no longer a function within businesses but the critical component and defending it has become paramount.  The scourge of ransomware and the rise of online fraud remind us of the consequences should we fail to do so. In the post-pandemic world we face new challenges which require us to become even more resilient.

One of the most significant developments  over the last 18 months has been the emergence  of artificial intelligence (AI) in the public consciousness and its potential impact on cyber threats.

AI is becoming something of a double-edged sword in cybersecurity. it offers the tantalising potential to manage the increasing burden of information swamping cybersecurity teams,  enhancing defences through predictive analytics, automated threat detection and advanced incident response. Cybercriminals have been quick to leverage AI’s potential too, to launch more sophisticated attacks that can evade traditional security measures. AI-enabled malware that can identify vulnerabilities and exploit them at speed, better targeted phishing campaigns, and deepfake technology are just a few examples of how cyber threats are becoming more complex and harder to detect.

To mitigate these emerging threats, organizations need to develop resilience strategies enabling them to adapt and respond quickly to a cyber event. Organizations must invest in AI-driven security capabilities and other technologies to keep pace with the evolving threat landscape but will also have to devote resources in time and effort to prepare themselves and their people to identify those threats and respond effectively when an event occurs. A proactive approach to threat intelligence, continuous monitoring, and rapid response capabilities are effective tools in the armoury but resilience is first and foremost about people: fostering a culture of learning and adaptation, where  an organization’s workforce as well as its cybersecurity teams are constantly updating their knowledge and skills to stay ahead of adversaries.

Geopolitical threats and cybersecurity

Geopolitical tensions are also reshaping the current cybersecurity landscape. Offensive cyber has always been a tool of statecraft, with nation-states using cyber operations to achieve strategic objectives.  Cyberspace’s inbuilt ambiguities make it the perfect grey zone between open conflict and peace as adversaries have been quick to recognise.  They have exploited it to mount aggressive influence operations and to disrupt critical infrastructure as well as doubling down on traditional espionage and intellectual property theft.  Cyberspace is now firmly a domain of warfare where the risk of miscalculation and escalation is ever present.

In this context, the threat landscape has become more complex and resilience goes beyond technical defences. For governments,  it requires a comprehensive strategy that includes diplomacy, defence, security, and legislation. The public and private sectors must work together to develop frameworks for cyber resilience that address the complexities of geopolitically motivated attacks. This may involve strengthening international cooperation, establishing norms of behaviour in cyberspace, and building alliances to deter malicious actors.

For organizations, resilience in the face of geopolitical cyber threats means ensuring that contingency plans are in place with which they are familiar and have practiced. This includes conducting regular risk assessments, investing in appropriate cyber insurance, and building redundancy into critical systems. It also means staying informed about the geopolitical landscape and understanding how it could impact their cybersecurity posture.

The ongoing ‘people’ crisis in cybersecurity

One of the most pressing challenges is the persistent shortage of skilled cybersecurity professionals. This is not a new problem, but it has been exacerbated by the increasing complexity of the threat landscape. The demand for cybersecurity talent continues to outstrip supply, leaving organizations vulnerable to attacks due to understaffed and overworked security teams.

Resilience in this context means rethinking how organizations approach talent management in cybersecurity. This involves investing in training and development programs to upskill existing employees, creating pathways for new talent to enter the field and crucially developing career pathways to retain that talent. Organizations must also embrace diversity and inclusion, recognising that a diverse workforce brings a broader range of perspectives and problem-solving approaches.

Resilient organizations will leverage technology to augment human skills. Automation, AI, and machine learning will help alleviate some of the burdens on cybersecurity teams by handling routine tasks and enabling faster decision-making. However, technology alone is only part of solution.  Resilient organizations focus on building a strong culture, led from the top, which empowers employees at all levels to take ownership of security and encourages communication across the whole enterprise. 

Building a resilient cybersecurity future

If, in 2024, resilience is the cornerstone of cybersecurity, then culture is the foundation. It is about more than just surviving in the face of adversity; it is about thriving in the face of challenges. Organizations that prioritise and invest time and resources in resilience are better equipped to navigate a shifting threat landscape, respond quickly to incidents, and emerge stronger on the other side.

To build resilience, it is incumbent on the leadership of the organization to set the tone by promoting the right business culture and leading from the front.  From this, a comprehensive approach to cybersecurity is achieved, integrating security into every aspect of the business, from the boardroom to the frontline. This  requires hard work and continuous investment in the cyber trinity of technology, processes, and people, as well as a commitment to innovation and adaptability.

Resilience demands a mindset shift. Instead of viewing cybersecurity as a defensive measure, organizations should see it as an enabler of growth and innovation. By building resilient systems, processes, and teams, organizations can take calculated risks, explore new opportunities, and manage change.

Conclusion

Resilience defines our approach to cybersecurity in 2024.  Agile and adaptable organizations are better equipped to face the challenges posed by AI-driven threats, geopolitical tensions, and talent shortages. Developing a culture that  focuses on business resilience, they can not only withstand adversity but also thrive in an increasingly complex and interconnected world. The future of our prosperity depends on it.

The author

Tarquin Folliss OBE is Vice Chairman of SASIG Events, the networking and thought-leadership cybersecurity forum. He is also an International Cyber Expo Advisory Council Member.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email WhatsApp
Previous ArticleStart, Establish, Manage, and Optimise: a GRC maturity model
Next Article Growing distrust for threat detection tools as SOC teams struggle to identify real attacks

Related Posts

An exploding digital padlock illustrates the requirement for post-quantum cryptography.

Research breakthrough brings reliable quantum computers and Q-day closer to reality

September 10, 2026
A danger sign on a digital background.

New blob URL phishing technique evades detection by using legitimate Microsoft services

September 10, 2026
AI risks

Unmanaged AI workflows expose EMEA organizations to rising compliance and data risks

September 9, 2026
City skyline at sunset with bright light trails and a translucent blue smart-city grid overlay and GPS pins indicating locations.

AI world models: future possibilities for organizational resilience?

September 7, 2026
DRJ and BCI logos

DRJ and BCI publish guidance for governing, managing, and using AI in resilience

September 7, 2026
Decision making with over whelming information.

AI can find the vulnerability. Accountability still sits with your crisis leadership

September 7, 2026
Advertisement
Resilience First
This week's most read articles
Logos of the Amazon cloud services AWS on a heap on a table.

New Level 1 DORA Workbook released for AWS customers regulated under DORA

November 26, 2024
Close-up of a green-brown iris peering through a jagged tear in dark paper or wall material.

The blind spots in business continuity

September 2, 2026
AI risks

Unmanaged AI workflows expose EMEA organizations to rising compliance and data risks

September 9, 2026
Latest resources
DRJ and BCI logos

DRJ and BCI publish guidance for governing, managing, and using AI in resilience

September 7, 2026
Load More

Subscribe to Updates

Get our Resilience Updates newsletter.

Most Popular Feature Articles
Three dark coloured light bulbs on a black background illustrate the concept of The Dark Triad in Crisis Management.

The Dark Triad in crisis management

Five stage crisis management framework

A five stage framework for a crisis management process

Blue interconnected gears and network nodes symbolizing automation and complex machinery.

Agent zero – the 2028 digital pandemic

Latest Reports
A futuristic red warning alert icon with glowing exclamation mark.

Cloud Security Alliance publishes Hugging Face Incident Initial Post-Mortem

A person hold a building door open for a person behind who is tailgating to get unauthorised access.

Security Culture: A Strategic Capability That Builds Resilience in a Volatile World

An identity icon with a map marker on it, indicating the concept of identity as a target for attackers. The icon is on a generic IT background predominantly in black and orange.

Identity-based approaches dominate initial access for ransomware attacks

A promo box for an article about resilience governance.
© 2026 Resilience Forward
  • About Resilience Forward
  • Newsletter
  • Newsfeed
  • Advertise
  • Call for Papers
  • Contact
  • Privacy Policy and Cookie Use
  • AI Use Policy

Type above and press Enter to search. Press Esc to cancel.

Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behaviour or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Manage Cookie Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behaviour or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
Ad Blocker Enabled!
Ad Blocker Enabled!
Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.

Sign In or Register

Welcome Back!

Login to your account below.

Lost password?