Gartner identifies three top trends in cyber security for 2024. The first trend is the adoption of generative artificial intelligence (GenAI), which introduces new risks and challenges related to data confidentiality, copyright infringement, and unvetted AI-generated content. The second trend is implementing continuous threat exposure management (CTEM) programs to address the expanding attack surface and potential blind spots in organizations. The third trend is the evolving identity and access management (IAM) approach, focusing on IAM hygiene, hardening IAM systems, and adopting an identity-first security model. IT security leaders are advised to improve organizational resilience, coordinate cyber security decision-making, and implement outcome-driven metrics and human-centric approaches to enhance the security function’s performance.
The Cybersecurity and Infrastructure Security Agency (CISA) and Microsoft have announced progress on providing free logging capabilities to federal agencies. Microsoft will enable logs and increase the log retention period for all federal agencies using Microsoft Purview Audit. The free logging capabilities will help agencies meet requirements under an August 2021 OMB directive on log management.
The FBI and CISA are working to mature the Joint Ransomware Task Force, aiming to improve collaboration, identify ransomware groups, and enhance government response. The task force has already made significant contributions, such as informing entities about vulnerabilities and issuing guidelines for protection. Efforts are being made to share intelligence and provide relief to victims. A cyber incident reporting mandate for critical infrastructure companies is expected to help address the data deficit and better understand the scale of the problem.
And speaking of CISA, Axios covers increasing tensions between the Department of Homeland Security (DHS) and Republican leaders, particularly in relation to CISA. It highlights the physical threats faced by CISA’s leadership and the challenges they face in addressing election disinformation.
Privacy concerns in the insurance industry are becoming as significant as ransomware attacks, according to experts. Claims related to mishandling personally identifiable information (PII) could rival the cost of ransomware attacks. Privacy claims can take years to resolve but can result in catastrophic losses over time. Cyber insurance underwriters are increasingly concerned about privacy, second only to ransomware.
Nearly 80% of firms hit by ransomware in the last two years were compromised a second time, according to research from Cybereason. Of the organizations that paid a ransom, only 47% got their data back uncorrupted.
CISA is doing good work, and IT service providers should leverage these initiatives by integrating government-recommended practices into their cybersecurity strategies. Engaging with public agencies for insights and resources can enhance the effectiveness of cybersecurity measures. Not everything needs to be politicized, and IT service professionals should push back here.
Identity management requires regular access control audits, widely implementing multi-factor authentication, and adopting zero trust principles. Even if you’re not there, there’s lots to do.

