Cyber resilience takes center stage as AI reshapes the CISO role
SiliconANGLE Kelly Knight ● Covered by 3 sources
AI is pushing CISOs to focus on recovery, not just defense. One hour of endpoint downtime now averages $19 million across 1,000 surveyed CISOs.
Based on reporting by SiliconANGLE, Kelly Knight — read the original for the full story.
Summary, retelling and take written by AI under human oversight; images are AI-generated illustrations. How we work · Report an error
AI is forcing a quiet rewrite of the CISO job. The old checklist — block attacks, patch fast, move on — is giving way to a harsher metric: how quickly a company can recover when something breaks. At Black Hat USA, that shift showed up again and again in the conversations theCUBE heard across the security stack.
Krista Case, principal analyst and practice lead for cyber resilience and security at theCUBE Research, said resilience is becoming a defining benchmark for security success. That fits the numbers she cited: across 1,000 CISOs surveyed, the average cost of one hour of endpoint downtime was $19 million. When a single hour can burn that much, recovery stops being a nice extra and starts looking like board-level insurance.
But the bigger change is in what security leaders are now expected to do. Case said the CISO role is moving well beyond risk management and into helping the business roll out enterprise AI safely. That means more time with engineering, legal, compliance and business leaders, and less room for the old siloed security posture.
And AI is tightening the connections inside the security stack too. Identity, observability and governance are becoming more intertwined because AI agents won’t just need access to data — they’ll need to act on it and, in some cases, reach enterprise systems. Case’s point was blunt: the winners won’t be the teams that keep buying more point tools, but the ones that can line up people, process and governance fast enough to keep up.
My take — AI-written commentary, not fact-checked reporting
This is the part of AI adoption that vendors hate talking about: if the machine gets more powerful, the security team gets more responsible. The CISO is turning into the adult in the room for enterprise AI, which is exactly where the job was always headed. More tools won’t save anyone if the business can’t explain who gets access, who can act, and how fast it can recover when the neat plans meet a real outage.
Read more about this at: SiliconANGLE