Challenges in Cyber Defence
Cyber defence is a key issue for decision-makers in companies and authorities who want to counteract the steadily growing risk of cybercrime. In recent years in particular, attacks such as ransomware have increased significantly and are causing considerable economic damage. The challenges lie not only in direct defence but also in adapting to new threats, which are becoming increasingly technically complex and can be automated.
In the field of cyber defence, many executives report facing constantly increasing demands. For example, the rise of intelligent, AI-powered attacks is putting decision-makers under increasing pressure to adapt their systems and strategies. Questions are also frequently raised about regulatory changes, which are setting new standards for security at the EU level, for instance with the NIS 2 Directive. Companies and administrations face the task of integrating these requirements into their IT security concepts.
Cyber defence through new technologies and regulatory frameworks
In cyber defence, modern technologies such as artificial intelligence and machine learning play an ever-increasing role. These technologies help to detect attacks faster and respond to them automatically. Experts report, for example, that AI-based systems can more effectively ward off phishing attacks or automated ransomware attacks. At the same time, it is clear that technical solutions alone are not sufficient. Legal requirements, such as the implementation of the NIS-2 Directive into national laws, compel companies to implement comprehensive security and risk management systems.
The safeguarding of digital sovereignty is also becoming increasingly important in this context. Companies must design their IT infrastructure in such a way that it is not only protected against current attacks but can also respond flexibly to new threats. In many cases, a tiered concept of technical, organisational, and personnel cyber defence is recommended.
BEST PRACTICE at company XYZ (name changed due to NDA contract)
The company invested early in AI-based detection systems and combines these with regular employee training. This has enabled them to detect ransomware attacks early and limit their scope. At the same time, an integrated crisis management system was established, which allows for rapid, coordinated responses to security incidents.
Cyber defence as a holistic task: prevention, monitoring and response
Decision-makers report that cyber defence today is not just a technical task, but also encompasses organisational aspects. Preventive measures such as employee awareness training, regular security updates, and continuous risk analysis are essential. In addition, many experts recommend relying on specialised cyber defence teams that continuously monitor the current threat landscape and act in case of an emergency.
Working with external partners, such as specialised cyber defence centres or the police, provides many individuals in charge with additional security. These institutions not only support incident analysis but also by providing knowledge on current attack methods and through coordinated investigations.
BEST PRACTICE at ABC (name changed due to NDA contract)
Close cooperation has been established with the Central Contact Points for Cybercrime (ZAC). Through this partnership, the company benefits from up-to-date situational assessments and can continuously refine and adapt its defence strategies against cyberattacks.
Collaboration as key in cyber defence
In practice, it also emerges that cyber defence is often only successful through the collaboration of various departments and external experts. Decision-makers report how important it is to break down information silos and foster dialogue on IT security, compliance, and risk management. Only in this way can weaknesses be identified early and measures implemented quickly.
Furthermore, companies should continuously support their employees with new impetus on cyber defence topics, for example through regular training, workshops, and the promotion of a security culture. This helps to reduce human error and prevent attacks specifically targeting employees.
BEST PRACTICE at DEF (name changed due to NDA contract)
The company relies on an integrated awareness programme that includes interactive training, attack simulations, and an open dialogue about cyber threats. This programme has significantly improved security competence and has recorded a notably lower number of successful attacks since its introduction.
My analysis
Cyber defence remains a complex and ever-changing challenge. Decision-makers in companies and administrations should not rely solely on technical solutions but should also adapt organisational structures and focus on cooperation. The integration of modern technologies such as artificial intelligence offers great opportunities, but must be supplemented by targeted training and clear processes. Only those who react flexibly and combine various measures can sustainably strengthen cyber defence and thus mitigate the risks of cybercrime.
Further links from the text above:
[1] Cybersecurity Trends 2024 – Challenges and Opportunities
[2] Prevention and combating of cybercrime – Court of Auditors
[3] Cyber Insurance: Risks and Trends 2024
[4] Cybercrime – How to protect yourself and your business













