Logo
Cybersecurity

AI Is Raising the Bar for Cybersecurity Talent

AI can process alerts faster than people ever could. The harder part is knowing when its answer is wrong.

ITSEC AsiaITSEC Asia
|
Sep 02, 2026
AI Is Raising the Bar for Cybersecurity Talent

For cybersecurity teams, AI is quickly moving from something experimental to something people actually use.

The World Economic Forum’s Global Cybersecurity Outlook 2026 found that 77% of surveyed organizations had adopted AI for cybersecurity. It is already being used for tasks such as phishing detection, intrusion response and user-behaviour analysis.

That sounds like good news for teams struggling with workload. And mostly, it is.

But AI doesn’t remove the need for skilled cybersecurity professionals. It changes what those professionals need to be good at.

Automation Can Do More. So Humans Have to Do More Too.

The same WEF research found that 54% of organizations considered insufficient knowledge or skills a barrier to using AI effectively in cybersecurity. Another 41% pointed to the need for human oversight.

That second number matters.

AI can analyse enormous amounts of information quickly. What it still struggles with is context: whether an unusual event is genuinely dangerous, how a technical issue affects the business and what action makes sense when the available information is incomplete.

Cybersecurity professionals increasingly need to:

  • Validate AI-generated findings rather than accept them automatically
  • Recognise when an automated recommendation doesn’t fit the situation
  • Investigate activity across cloud, endpoint, identity and network environments
  • Connect technical findings with actual business risk
  • Make decisions when there isn’t a neat textbook answer

In other words, knowing how to use AI is becoming useful. Knowing when not to trust it may be even more useful.

Indonesia Is Facing the Same Shift

Komdigi has been making a similar point.

In August 2026, Vice Minister of Communication and Digital Affairs Nezar Patria said AI was changing both cyber defence and cybercrime. He warned that agentic AI could allow attacks to operate more autonomously while AI-assisted social engineering and deepfakes were becoming harder to recognise.

His response was not simply “use more technology.”

Komdigi has called for stronger AI-based cybersecurity talent, closer collaboration between universities and industry and a move toward security by design, where security becomes part of how systems are built rather than something added after problems appear.

That requires people who understand both the tools and the consequences of using them.

Training Has to Catch Up With the Job

The World Economic Forum ranks networks and cybersecurity among the three fastest-growing skills expected through 2030. It also argues that as AI takes over more repetitive security tasks, professionals will spend more time on oversight, governance and higher-level decision-making.

That changes what good cybersecurity training should look like.

Learning concepts still matters. Certifications still have a role. But professionals also need opportunities to investigate, test assumptions and make decisions in conditions that resemble actual operations.

That is the direction behind ITSEC Cyber & AI Academy, which combines cybersecurity learning with hands-on exercises and scenarios informed by ITSEC Asia’s operational experience.

The goal isn’t to train people to compete with AI at processing information faster.

Machines already have a fairly comfortable lead there.

The goal is to develop professionals who know what the information means and what to do next.

Explore practical cybersecurity and AI training at ITSEC Cyber & AI Academy.

Share this post

You may also like

Data Protection and Cybersecurity Laws in the Asia-Pacific Region
Cybersecurity

Data Protection and Cybersecurity Laws in the Asia-Pacific Region

Info

Apart from sales and trade, the majority of internet users utilize it for socializing and interacting with peers online. For instance, there were 3.8 billion social media users in January 2020, which represents a 9 percent increase from the previous year. The advancements in internet and related communication technologies enable easy access to information from anywhere on the planet. For example, an online merchant operating in Thailand can offer their services to customers residing in the European Union and the United States. In order to address the dissemination of personal information, including financial, medical, and other types of personal data, worldwide through the internet, appropriate legal regulations need to be established to protect the personal data of citizens and the digital assets of organizations while working online. Following the implementation of the General Data Protection Regulation (GDPR) in the European Union (which came into effect on May 25, 2018), which governs data protection and privacy in EU countries and regulates the transfer of personal data outside the European Union and

ITSEC AsiaITSEC Asia
|
Jul 10, 2023 11 minutes read
Cybersecurity Roadmap: Why It Is Essential for Managing Enterprise Risk Today
Cybersecurity

Cybersecurity Roadmap: Why It Is Essential for Managing Enterprise Risk Today

INTRODUCTION Many organizations invest heavily in security tools, yet still struggle to explain their overall security posture. This is not always due to lack of technology, but often due to lack of direction. As digital environments grow more complex, security decisions are made across cloud platforms, remote endpoints, third-party integrations, and increasingly, AI-driven systems. According to findings highlighted in the World Economic Forum [https://www.weforum.org/], cyber risk today is less about a single vulnerability and more about how fragmented security efforts accumulate across interconnected environments. Without a clear plan, security initiatives tend to be reactive. Controls are added in response to incidents, audits, or vendor recommendations, rather than as part of a coordinated strategy. This is where a Cybersecurity Roadmap becomes critical. A roadmap provides a structured way to define priorities, sequence improvements, and align security with business risk. Industry guidance from NIST Cybersecurity Framework [https://www.nist.gov/cyberframework] emphasizes that this approach enables organizations to move from isolated security actions toward a cohesive and resilient defense posture. WHAT IS A CYBERSECURITY ROADMAP? A Cybersecurity Roadmap is a strategic,

ITSEC AsiaITSEC Asia
|
Jan 22, 2026 5 minutes read
Top Five Cybersecurity Threats to Small Business Owners
Cybersecurity

Top Five Cybersecurity Threats to Small Business Owners

According to a recent Verizon Data Breach Investigations Report, over the past two years, small and medium-sized businesses have become the primary target of cybercriminals, and they are now more affected by cyber breaches than large-scale businesses. Cyberattacks on SMEs have increased because cybercriminals have predicted that small and medium-sized enterprises have fewer resources to dedicate to their security. Most SMEs lack dedicated security professionals, and they are too small to afford them. This makes them vulnerable and easy targets for cybercriminals. In this context, neglecting security is no longer an option, and the assumption that your business is too small to attract the interest of cybercriminals is unrealistic. TOP FIVE CYBER THREATS AFFECTING SMALL AND MEDIUM-SIZED ENTERPRISES Incompatible Operating Systems and Software: Ensure that your computers and the software running on them are up to date. This is crucial and forms a solid foundation for good security practices. Hackers exploit vulnerabilities in outdated software and operating systems, often infiltrating organizations. Failing to apply software and operating system updates when they

ITSEC AsiaITSEC Asia
|
Jul 20, 2023 5 minutes read

Receive weekly
updates on new posts

Subscribe