CISOs losing confidence in securing Public Data, Says Research

Cybersecurity leaders across state governments are becoming increasingly concerned about their ability to protect public data from sophisticated cyberattacks, according to new research.

The findings indicate a significant decline in confidence among Chief Information Security Officers (CISOs), highlighting the growing challenges faced by government agencies as cyber threats continue to evolve.

The research shows that the percentage of state cybersecurity leaders who said they were “extremely” or “very” confident in their ability to secure public data has fallen sharply. In 2022, 48 percent of respondents expressed a high level of confidence in their cybersecurity capabilities. By 2026, however, that figure had dropped to just 22 percent.

The findings are part of the 2026 NASCIO-Deloitte Cybersecurity Study, which examines the changing cybersecurity landscape and the challenges confronting state governments. The decline in confidence reflects growing concerns that traditional security approaches may no longer be sufficient to deal with the speed, scale and sophistication of modern cyber threats.

One of the major factors highlighted by the study is the rapid development of artificial intelligence (AI). While AI is creating new opportunities for organizations to strengthen their cybersecurity defenses, it is simultaneously transforming the threat landscape. Cybercriminals can also use AI to automate attacks, identify vulnerabilities, create convincing phishing campaigns and potentially bypass existing security controls.

The study therefore emphasizes that AI is not simply another technology being incorporated into cybersecurity operations. It is changing the nature of cyber risks themselves. As attackers gain access to increasingly sophisticated AI-powered tools, security teams may find it more difficult to detect and respond to threats before significant damage occurs.

Another concern is that the advantages traditionally provided by defensive cybersecurity strategies could be diminishing. Security measures that were considered effective against conventional attacks may not provide the same level of protection against emerging AI-enabled threats. This creates an increasingly difficult environment for CISOs, who must protect sensitive government systems and public information while also keeping pace with rapidly changing technologies.

The decline in confidence among state cybersecurity leaders serves as an important warning for governments and public-sector organizations. Public agencies hold vast amounts of sensitive information, making them attractive targets for cybercriminals and other malicious actors. A successful attack could potentially disrupt essential public services, expose confidential information and undermine public trust.

The findings also underline the need for governments to continuously invest in cybersecurity, modernize their defenses and strengthen the skills of cybersecurity professionals.

Collaboration between government agencies, technology providers and cybersecurity experts will become increasingly important as threats evolve.

As AI continues to reshape both cyberattacks and cyber defenses, the challenge for CISOs will be to ensure that security strategies evolve at the same pace. The sharp decline in confidence suggests that organizations cannot afford to rely solely on existing defenses and must prepare for a cybersecurity environment that is becoming more complex and unpredictable.

Join our LinkedIn group Information Security Community!

Naveen Goud
Naveen Goud is a writer at Cybersecurity Insiders covering topics such as Mergers & Acquisitions, Startups, Cyber Attacks, Cloud Security and Mobile Security

No posts to display