Sunday, 23 November 2025
25.2 C
Singapore
21 C
Thailand
20.9 C
Indonesia
26.9 C
Philippines

C-suite’s rush to adopt AI exposes critical security blind spots

A new Tenable report warns that outdated security strategies are leaving organisations exposed as AI adoption surges.

As businesses accelerate their use of artificial intelligence, a new report has found a widening gap between innovation and security readiness. The Tenable State of Cloud and AI Security 2025 study warns that leadership teams are relying on outdated strategies and reactive performance measures, leaving organisations vulnerable to preventable cyberattacks.

Reactive security metrics mask real risks

The research, commissioned by Tenable and conducted with the Cloud Security Alliance, surveyed more than 1,000 IT and security professionals globally, including in Singapore. It highlights a culture of measuring failure rather than preventing it. Many organisations continue to track incidents only after they happen, instead of focusing on reducing future risks and strengthening resilience.

The most commonly monitored cloud security key performance indicator, cited by 43% of respondents, is the frequency and severity of security incidents. This rear-facing approach provides little insight into emerging threats. Although organisations reported an average of 2.17 cloud-related breaches in the past 18 months, just 8% categorised any as severe. Experts suggest this downplays the seriousness of incidents and hides underlying weaknesses. Among the most frequent causes of breaches were misconfigured cloud services (33%) and excessive permissions (31%) — both avoidable with stronger controls.

AI adoption outpaces security preparedness

The move towards AI is amplifying the issue. While 55% of companies have adopted AI for business operations, security measures have not kept pace. More than a third (34%) of those using AI reported experiencing an AI-related breach.

A critical mismatch also exists between what leaders fear and what is causing real damage. Security teams worry about advanced, “AI-native” threats such as model manipulation, but most breaches stem from long-standing issues. Exploited software vulnerabilities (21%), insider threats (18%), and misconfigured settings (16%) were among the leading causes of AI-related security incidents.

“Leaders are understandably excited about the promise of AI, but they are applying 21st-century technology to a 20th-century security mindset,” said Liat Hayun, VP of Product and Research at Tenable. “They are measuring the wrong things and worrying about futuristic AI threats while ignoring the foundational weaknesses that attackers are exploiting today. This isn’t a technology problem; it’s a leadership and strategy issue.”

Leadership under pressure to rethink strategy

The report places responsibility on the C-suite for maintaining outdated assumptions that hinder risk management and stall investment in security fundamentals. In modern IT environments — where 82% of organisations run hybrid operations and 63% use multiple cloud providers — executives often overestimate the security offered by their platforms. This misjudgment leads to reliance on reactive metrics and underinvestment in proactive measures.

Visibility and complexity are major hurdles, with 28% of leaders citing a lack of transparency and 27% struggling with the scale of their environments. Yet few are addressing these issues directly. Only 20% prioritise unified risk assessment across their systems, and just 13% are working to simplify and consolidate their security tools.

The study concludes that without a strategic reset led by senior executives, security teams will remain in a reactive mode, unable to scale or adapt to modern threats. As AI adoption deepens and hybrid cloud use expands, organisations that fail to address these leadership-level missteps risk exposing themselves to avoidable breaches and long-term damage.

Hot this week

Cloudera expands unified data platform with AI-powered federation and lineage

Cloudera updates its platform with AI-powered federation and lineage to improve enterprise data access, governance and automation.

Cloudera and Intel partner to drive enterprise AI adoption in Asia Pacific

Cloudera and Intel partner to accelerate enterprise AI adoption across APAC with scalable deployments powered by Intel Xeon 6.

Neo4j uses graph intelligence to map fan predictions for Stranger Things’ final season

Neo4j launches HopperGraph, an AI-powered visualisation that maps fan theories to predict the final season of Stranger Things.

Google unveils Antigravity, an agent-first coding tool built for Gemini 3

Google launches Antigravity, a new agent-first coding tool for Gemini 3 designed to enhance autonomous software development.

Kintone reports 36.4% sales surge in first half of 2025 as Southeast Asia demand grows

Kintone reports strong H1 2025 growth with rising enterprise adoption and new generative AI tools driving its global expansion.

Meta explores an AI briefing tool aimed at Facebook users

Meta is developing Project Luna, an AI tool designed to deliver personalised morning Facebook briefings to users.

Final Fantasy Tactics remake brings renewed challenge to modern consoles

A modern remake of Final Fantasy Tactics brings updated visuals, classic strategy gameplay and steep challenges to today’s major consoles.

HP and Dell turn off HEVC support on selected laptop models

HP and Dell turn off HEVC support on selected laptops, limiting browser playback and prompting users to rely on third-party software.

Microsoft adds on-device AI support to the Advanced Paste tool in Windows 11

Microsoft updates Advanced Paste in Windows 11 with on-device AI support, new model options and an improved interface.

Related Articles

Popular Categories