Is the IT head alone responsible for a security breach? Jayanta Bhowmik, CTO, Apeejay Surrendra, talks about how the mind set of all organizations need to change in order to make every individual realize their responsibility of securing their company data. Do you think that when it comes to security, business is yet to realize its significance and that more support is needed from their end to deploy sophisticated security solutions?Security is all encompassing today, touching everyone and having dependencies with all connected to business, and sometimes outside the business as well. So the issue of security has to get into the culture and DNA of the organization, the do’s and don’ts to be practised and adequate security responsibility to be taken by everyone.Today in India, although the knowledge and awareness is fast catching up, the legacy business houses still have a notion of this being an IT issue and therefore tend to have a careless approach towards security fundamentals and even have a lax attitude to planned security exercises, events, quizzes, certification and awareness mailers.Deployment of sophisticated solution alone is not enough, and can only succeed when necessary security culture and support available to supplement the solution, the features and security measures coming out of the solution is appreciated and accepted by the population. Hence not only support, I prefer business teams to be involved and be the stake holders in the implementation exercise of any such solution, then only the deployment can be successful and a proper return from the investment can be achieved satisfactorily.What do you prefer, a best of breed security solution or an end-to-end solution? Given a choice, I would ideally go for the best of breed solution for each of the security categories, just on shear technical grounds. But on a more realistic note, I would go for an end to end UTM option for ease of management, better controls and integration – probably a CIO and CISO would be happy to have a single console security management.Do you think that it is time to hand over security completely to a CSO?Yes it’s already the time to do so, as you need to have dedicated responsibility here, security management is no longer a part time role. This brings in domain expertise, accountability and focus towards the role.What according to you are the biggest security threats to your organization and how are you handling it?The biggest security threats and challenges are many, for example mobile apps and BYOD, but the latest threat landscape is so dynamic and fast with respect to the speed and innovation, that one can’t put one at the top of a list. We should therefore, focus more on people and non-technology challenges to address on priority as these are the biggest challenges than so called threats.Many security threats are hiding behind people and their behaviours, both inside and outside the company. It’s very critical to regulate the process through which information is disseminated across the employees and departments and how people deal with them, how they conduct themselves in internal and external forums, what they disclose in social networking and external forums, intentionally or otherwise. It’s important how an organization deals with induction and exits, how disgruntled employees and their exits are managed and what kind of strong security measures are taken during employee exits , their access and assets are controlled during the process, mobile and remote accesses are refreshed and so on. So I think the biggest challenge in India is to fast track the process of people’s maturity in majority of organizations – which are key to a secure corporate India. Related content feature Expedia poised to take flight with generative AI CTO Rathi Murthy sees the online travel service’s vast troves of data and AI expertise fueling a two-pronged transformation strategy aimed at growing the company by bringing more of the travel industry online. By Paula Rooney Jun 02, 2023 7 mins Travel and Hospitality Industry Digital Transformation Artificial Intelligence case study Deoleo doubles down on sustainability through digital transformation The Spanish multinational olive oil processing company is immersed in a digital transformation journey to achieve operational efficiency and contribute to the company's sustainability strategy. By Nuria Cordon Jun 02, 2023 6 mins CIO Supply Chain Digital Transformation brandpost Resilient data backup and recovery is critical to enterprise success As global data volumes rise, business must prioritize their resiliency strategies. By Neal Weinberg Jun 01, 2023 4 mins Security brandpost Democratizing HPC with multicloud to accelerate engineering innovations Cloud for HPC is facilitating broader access to high performance computing and accelerating innovations and opportunities for all types of organizations. By Tanya O'Hara Jun 01, 2023 6 mins Multi Cloud Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe