The present and future of IT security
Mobile working and virtualisation could boost security - this and other insights on the past, present and future of IT security from Gartner research vice president Jay Heiser.

Security, like the rest of the IT industry, changes fast. Techniques that businesses have previously used such as defending the perimeter' are now becoming rapidly redundant as remote working and the use of mobile devices become a major part of day to day working life.
Analysts at Gartner continually look at security in IT and are very well-qualified to give an unbiased view of what will come in the future, especially when it comes to security and the business working side by side.
Ahead of this year's IT Security Summit held in London, IT PRO interviewed Research Vice President Jay Heiser, who has 22 years experience in the IT industry before moving to Gartner four years ago.
Businesses causing their own trouble
Heiser said that he felt it was the nature of business to make its own vulnerabilities. "The threat environment is outside of our control," he said. "In terms of digital theft, the criminal threat is becoming more significant."
Generally, businesses were becoming more complex and distributed, giving criminals more opportunity to make money. He stressed that complexity was by no means a bad thing, but there had to be balance when it came to these growth issues and the needs of security. "The profession of those people who stop things from happening to computers [in the security industry] puts a premium on vision, which is about looking down the road and anticipating the potential impact of the things businesses need to have," he said.
Gartner particularly emphasises the alignment between IT risk management and business, which Heiser said has traditionally not been areas well-understood by IT security professionals. "Traditional security people have always said this is bad you would be an idiot to do this'," Heiser claimed. "They seemed to be certain in their own minds, despite not understanding where the money came from."
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
He said that in an ideal world, the world of security needed to align with business without losing the basic expertise. "That's key, because these are arcane things [the expertise], and people who are really good at this are in most part people who do not care about business," Heiser added.
"The leadership trick is to make use of these people who have special skills but don't see the big picture."
Bringing the web into the picture
In the last year one of the big things Gartner was seeing was consumerisation of technology as well as the rise of Web 2.0. While it has had been around for quite some time, businesses are still trying to get a handle on it. Heiser described how Web 2.0 leveraged existing vulnerabilities of minor significance which were then mashed' up with other capabilities to create new repurposed vulnerabilities.
Businesses could now buy applications, hardware and integrate with partners without getting IT involved, such as the use of Software as a Service, with the security ramifications still not yet appreciated.
Mobile working and virtualisation boost security?
The analyst went on to say that remote working and the increased use of smartphones was a two-edged sword when it came to IT security. Of course it had the potential to increase risk, but Heiser said that new technologies could also keep information safer as it would involve accessing data remotely rather than having to carry it around, such as with laptops.
-
Cleo attack victim list grows as Hertz confirms customer data stolen
News Hertz has confirmed it suffered a data breach as a result of the Cleo zero-day vulnerability in late 2024, with the car rental giant warning that customer data was stolen.
By Ross Kelly
-
Lateral moves in tech: Why leaders should support employee mobility
In-depth Encouraging staff to switch roles can have long-term benefits for skills in the tech sector
By Keri Allan
-
Cloud investment “expected to continue” indefinitely after strong start in 2024, experts suggest
News The sector shows positive signs of growth as cloud infrastructure offerings and AI adoption projects ramp up
By George Fitzmaurice
-
The end of the slowdown? Global cloud spending is set to surge by 20% in 2024 as enterprises ramp up migration plans and capitalize on generative AI
News Global cloud spending will surge in the year ahead, analysis shows, marking a shift away from a period of ruthless optimization
By George Fitzmaurice
-
Budgets are still tight, but ‘cloud slowdown’ claims haven’t quite materialized in 2023
Analysis Positive cloud spending forecasts for 2024 suggest there’s light at the end of the tunnel for enterprises
By Ross Kelly
-
Cloud to drive surge in European IT spending next year
News Investment in cloud security and IaaS is expected to to fuel a surge in IT spending
By Emma Woollacott
-
Harmful effects of “cloud concentration” now a key concern for IT leaders
News Overreliance on a single provider is a byproduct of intense efforts to consolidate complex IT estates
By Ross Kelly
-
Two-thirds of firms will invest in big data this year, claims Gartner
News Majority of organisations will be using big data technology within the next two years, research suggests.
By Jane McCallion
-
Gartner sets out cloud security market trends
News Market watcher claims compliance will be key cloud market driver to 2016.
By Caroline Donnelly
-
Global SaaS deployments are rising sharply, research suggests
News Uptake across all geographies is rising, with Asia Pacific leading the way, claims Gartner.
By Jane McCallion