Logo
Cybersecurity

AI Is Raising the Bar for Cybersecurity Talent

AI can process alerts faster than people ever could. The harder part is knowing when its answer is wrong.

ITSEC AsiaITSEC Asia
|
Sep 02, 2026
AI Is Raising the Bar for Cybersecurity Talent

For cybersecurity teams, AI is quickly moving from something experimental to something people actually use.

The World Economic Forum’s Global Cybersecurity Outlook 2026 found that 77% of surveyed organizations had adopted AI for cybersecurity. It is already being used for tasks such as phishing detection, intrusion response and user-behaviour analysis.

That sounds like good news for teams struggling with workload. And mostly, it is.

But AI doesn’t remove the need for skilled cybersecurity professionals. It changes what those professionals need to be good at.

Automation Can Do More. So Humans Have to Do More Too.

The same WEF research found that 54% of organizations considered insufficient knowledge or skills a barrier to using AI effectively in cybersecurity. Another 41% pointed to the need for human oversight.

That second number matters.

AI can analyse enormous amounts of information quickly. What it still struggles with is context: whether an unusual event is genuinely dangerous, how a technical issue affects the business and what action makes sense when the available information is incomplete.

Cybersecurity professionals increasingly need to:

  • Validate AI-generated findings rather than accept them automatically
  • Recognise when an automated recommendation doesn’t fit the situation
  • Investigate activity across cloud, endpoint, identity and network environments
  • Connect technical findings with actual business risk
  • Make decisions when there isn’t a neat textbook answer

In other words, knowing how to use AI is becoming useful. Knowing when not to trust it may be even more useful.

Indonesia Is Facing the Same Shift

Komdigi has been making a similar point.

In August 2026, Vice Minister of Communication and Digital Affairs Nezar Patria said AI was changing both cyber defence and cybercrime. He warned that agentic AI could allow attacks to operate more autonomously while AI-assisted social engineering and deepfakes were becoming harder to recognise.

His response was not simply “use more technology.”

Komdigi has called for stronger AI-based cybersecurity talent, closer collaboration between universities and industry and a move toward security by design, where security becomes part of how systems are built rather than something added after problems appear.

That requires people who understand both the tools and the consequences of using them.

Training Has to Catch Up With the Job

The World Economic Forum ranks networks and cybersecurity among the three fastest-growing skills expected through 2030. It also argues that as AI takes over more repetitive security tasks, professionals will spend more time on oversight, governance and higher-level decision-making.

That changes what good cybersecurity training should look like.

Learning concepts still matters. Certifications still have a role. But professionals also need opportunities to investigate, test assumptions and make decisions in conditions that resemble actual operations.

That is the direction behind ITSEC Cyber & AI Academy, which combines cybersecurity learning with hands-on exercises and scenarios informed by ITSEC Asia’s operational experience.

The goal isn’t to train people to compete with AI at processing information faster.

Machines already have a fairly comfortable lead there.

The goal is to develop professionals who know what the information means and what to do next.

Explore practical cybersecurity and AI training at ITSEC Cyber & AI Academy.

Share this post

You may also like

API Security Testing: Why APIs Have Become a Prime Target for Attackers
Cybersecurity

API Security Testing: Why APIs Have Become a Prime Target for Attackers

Modern applications rarely operate in isolation. From mobile apps and cloud platforms to payment gateways and third-party integrations, APIs (Application Programming Interfaces) have become the invisible backbone of digital services. Organizations rely on APIs to connect systems, exchange data and accelerate innovation. Unfortunately, attackers rely on them too. As API adoption continues to grow, APIs have emerged as one of the fastest-growing attack surfaces in cybersecurity. Misconfigured or vulnerable APIs can expose sensitive information, disrupt business operations and provide attackers with a direct path into critical systems. This is why API Security Testing has become an essential part of modern application security. WHAT IS API SECURITY TESTING? API Security Testing is the process of identifying and validating vulnerabilities within APIs before they can be exploited by malicious actors. Unlike traditional web application testing, API security assessments focus on how applications communicate with each other and whether those interactions can be manipulated or abused. The objective is not simply to find vulnerabilities but to understand how weaknesses within APIs could impact business operations and data security. WHY

ITSEC AsiaITSEC Asia
|
Jun 15, 2026 5 minutes read
Cybersecurity in 2026 The Rise of Strategic Resilience and Practical Protection
Cybersecurity

Cybersecurity in 2026 The Rise of Strategic Resilience and Practical Protection

Cybersecurity in 2026 is defined by a fundamental shift in mindset. The question organizations now face is no longer “Can we prevent every attack?” but “Can we survive, adapt, and continue operating when an attack inevitably happens?” As cyber threats grow faster, more automated, and more business-disruptive, security is evolving from a purely technical function into a core pillar of organizational resilience. This evolution marks the rise of strategic resilience and practical protection, where cybersecurity is measured not by perfection, but by preparedness, prioritization, and recovery. MEASURING CYBERSECURITY BY BUSINESS IMPACT, NOT TECHNICAL METRICS For years, cybersecurity focused on building stronger walls: firewalls, intrusion prevention, and threat blocking. In 2026, that approach alone is no longer sufficient. Attacks are inevitable, and the real differentiator is how well an organization absorbs impact and recovers. Business resilience reframes cybersecurity as a continuity challenge. Downtime, data unavailability, and operational disruption now represent direct financial and reputational risk. As a result, leadership teams increasingly evaluate security through questions like: How quickly can we detect incidents? How

ITSEC AsiaITSEC Asia
|
Feb 09, 2026 4 minutes read
Indonesia’s Cybersecurity Talent Problem Is Becoming a Skills Problem
Cybersecurity

Indonesia’s Cybersecurity Talent Problem Is Becoming a Skills Problem

cybersecurity indonesia
cyber security indonesia
cybersecurity di indonesia
cyber security di indonesia
cybersecurity in indonesia
cyber security in indonesia

Indonesia needs more cybersecurity professionals. That part is obvious. What is becoming less obvious is whether the real problem is still about numbers. The 2026 SANS | GIAC Cybersecurity Workforce Research Report found that 60% of surveyed organizations said their teams lacked the right skills to defend against current threats. More concerning, 27% reported breaches directly linked to capability gaps. That changes the conversation. A company can have a security team, a dashboard full of alerts and a stack of expensive tools. The harder question is whether the people behind them know what to do when something unusual happens. CYBERSECURITY WORK IS MOVING FAST Artificial intelligence is making that question harder. AI can already help with alert analysis, vulnerability prioritization and repetitive investigation tasks. Attackers can use the same technology to make attacks faster and easier to scale. In August 2026, Vice Minister of Communication and Digital Affairs Nezar Patria warned that agentic AI could allow cyberattacks to operate with less direct human involvement. He also highlighted threats such as harvest

ITSEC AsiaITSEC Asia
|
Sep 01, 2026 3 minutes read

Receive weekly
updates on new posts

Subscribe