RSA 2024 Insights

RSA 2024 Insights

I just returned from an exciting RSA 2024 Conference, and wow, what an experience! Here are some of the insights I had from conversations with hundreds of CISOs:

  1. The Power of Community: While the RSA floor had its quiet moments (with some of the booths looking empty), the real magic was in the after-hour dinners and off-site meetups. The CISO community is more vibrant and connected than ever, showing strength in numbers and insight.
  2. AI Revolution: It's official—AI is the new gold. Most companies are now incorporating AI language prompts on top of their data, and just like being a “SaaS company is a given” so will “AI”.
  3. Commoditizing Attack Surface: It’s now table stakes to have external threat visibility. The coolest part? It's often baked right into many products at no extra charge. Talk about value!
  4. Top of Mind Trends: CISOs are zeroing in on (1) Identity Access Management, (2) Cloud Security, and (3) Third-Party Risk. These are the battlegrounds where cyber wars are fought and won. Over 60% of the data breaches are now due to negligence of Third Parties - so that positions the important work that SecurityScorecard does very well.
  5. Startup Tsunami: As the CEO of a thriving $100M+ ARR company, I'm swamped with pitches from Alliance and M&A partners. Tip for startups: Scale matters, quality products matter, and gimmicks don't cut it.   Too many startups are burning capital, building point solutions, getting stuck at under $20M ARR and hoping someone will buy them.   As the scrutiny for budgets gets tougher, some startups are even resorting to gimmicks (like 50% off on the price - remember 50% off nothing in value is still nothing!) 
  6. Metrics that Matter: If we can't measure it, we can't master it. KPIs are our roadmap to industry excellence. We need objective, trusted ways to measure and quantify risk.
  7. Platformization—Just a Buzzword? While 'one-stop-shop' sounds great, savvy CISOs know better than to put all their eggs in one vendor's basket. This is good news for startups - because CISOs want the best solutions out there.
  8. Public Sector :  I was very impressed by collaboration between public and private sectors. The public sector cyber heads that I met, were innovative, forward-looking thinkers who wanted to make a difference. Big opportunity ahead to make life for adversaries harder!
  9. Top CISOs are in demand: The job market for CISOs is thriving, and some Fortune 500 CISOs are making $1-$3M a year in compensation. This is now a legitimate executive position with a seat at the Board room.
  10.  Investor Frenzy: There’s a gold rush in cybersecurity investment. Capital is eager and ready, but the capital is concentrated in best-of-breed companies (for example WIZ who has an amazing product announced a $1B investment at $12B valuation).   Picking the right investor makes a big difference - funds like Evolution Equity, BoldStart Ventures, Sequoia Capital, CyberStarts, and so on - are the right partners who will help not just with capital but also with advice and CISO introductions.

I’m feeling supercharged and ready to take on the future with all these insights and connections. The next wave of cyber innovation can't come soon enough! Let's do this!

Are there any insights that you had from RSA that I missed?

💥🔒

#RSAC #Cybersecurity #Innovation #FutureReady #RSA2024

Abhi Bagchi

Product Builder | Cloud Infrastructure, Networks, Cybersecurity, SaaS, GenAI

1y

Thank you for a great summary. I agree 3. is a fantastic trend. Coming from the days when threat intel for BOT/APT was limited to Talos and a few others, is now accessible to most Cyber developers/users.

Like
Reply
Ilya Kabanov

Sr. Manager @ Google AI Safety & Security

1y

Thank you for sharing Aleksandr Yampolskiy !

Like
Reply

Love the summary. Question - where are the 1-3MM security roles? That market has been stagnate for quite some time. There are so many strong #infosec leaders who cannot afford to leave their #CISO roles becuase commensurate compensation packages are not available or accessible.

Like
Reply
Eva Frankenberger CISSP CISA CISM CRISC GSTRT CIPP MBA

Observe & Discover, Invent & Innovate, Create & Solve CYBERSECURITY | RISK MANAGEMENT

1y

I would add to the #4 another, the 4th point - the organization’s AI protection. AI’s revolution as a technology vehicle will bring AI unique challenges beyond the traditional cyber security. The complexity and (still) the unknown territory for cyber teams will increase the risk for all kind of AI, whereever in the organization utilized. https://www.security-assurance.com/post/ai-s-potential-while-guarding-against-emerging-cyber-threats-a-call-to-action-for-cisos

Like
Reply

Aleksandr - comprehensive summary and mirrors some of what I heard. Thanks for sharing !

Like
Reply

To view or add a comment, sign in

More articles by Aleksandr Yampolskiy

  • 10 Lessons Learned from Scaling

    Scaling a startup is messy, humbling, and extremely rewarding. Here are 10 things I learned while scaling…

    28 Comments
  • TBU: The Silent Productivity Killer—and How to Defeat It

    There’s a sneaky phenomenon that may creep into Startup conversations—especially among Managers or Investors—called…

    3 Comments
  • DeepSeek Article Observations and Security

    I had a bit of free time this evening, so I dove into the DeepSeek paper (https://arxiv.org/pdf/2412.

    45 Comments
  • Pros an Cons of "Founder Mode"

    I recently came across an article by Paul Graham "Founder Mode" (https://paulgraham.com/foundermode.

    5 Comments
  • De-personalizing decision making

    Here's a post I sent to our team on one important cultural attribute at SecurityScorecard :"How do we depersonalize…

    7 Comments
  • Favorite Security Books

    Here is a list of my top 10 favorite books on IT Cybersecurity, which I assembled. Hope you find these useful and…

    6 Comments
  • Hunger

    The one quality I look for above all others when hiring people is 'hunger.' In my humble view, hunger is often a bigger…

    6 Comments
  • 5 Essential Tips for Staying Safe Online

    This article has first appeared on https://www.meetup.

  • On Recent Events In Our Community

    Dear all: I wanted to take a few moments to address the recent events here in the US on so many of our minds today…

  • Playing chess moves for your business in uncertain times

    "Playing chess moves for your business in uncertain times" From Aleksandr Yampolskiy, CEO and co-founder of…

    1 Comment

Others also viewed

Explore content categories