The Top 23 Security Predictions for 2023 (Part 2)
After a year full of data breaches, ransomware attacks and real-world cyber impacts stemming from Russia’s invasion of Ukraine, what’s next? Here’s part 2 of your annual roundup of security industry forecasts for 2023 and beyond.

Last week I covered my top 12 security predictions for the coming year. Be sure to check that out, and then dive into predictions 13-23, plus some bonus reports that take us from 24-30, and even some additional cyber forecasts from startups and others in the “honorable mention” category.
AWS has a new ebook called CJ Moses’ Security Predictions in 2023 and Beyond.
- Security Will Be Integral to Everything Organizations Do
- Diversity Will Help Address the Continued Security Talent Gap
- Automation Driven by AI/ML Will Enable Stronger Security
- People Will Drive Greater Data Protection Investment
- More Advanced Forms of Multi-Factor Authentication Will Become Pervasive
- Quantum Computing Will Benefit Security
14) Presidio — Presidio’s 2023 Cybersecurity Predictions
- Exponential growth in ransomware attacks will continue in 2023.
- We will see additional insider threat/disgruntled separated employee attacks as organizations weather the pending economic storm.
- Identity is the cornerstone of all cybersecurity best practices. There is not a single framework that does not start with ensuring identity is locked down. From account take over (ATO), financial fraud schemes and East/West traffic movement to elevated privilege, phishing/vishing and deepfakes, it all starts with identity.
- We anticipate a focused effort to attack cloud infrastructure in 2023. This will drive increased adoption of Cloud Security Posture Assessments (CSPA) ahead of moves to production.
- Security initiatives in 2023 will be measured by how well they contribute to a zero-trust model.
- The importance of a secure PKI architecture will come to the forefront in 2023, as insecure PKI environments present a vulnerability that is becoming widely exploited.
In addition, this HelpNetSecurity video that offers in-depth commentary on ransomware trends by Dave Trader from Presidio is worth watching.
- A C-level executive will be fired for their firm’s use of employee monitoring.
- A Global 500 firm will be exposed for burning out its cybersecurity employees.
- At least three cyber insurance providers will acquire a managed detection and response (MDR) provider.
- Cultural Cohesion in a modern work environment by Yael Koch Warschawski
- Technology trends, changes and the impact they have on cybersecurity by Nadir Izrael
- A CISO’s Prediction by Curtis Simpson
- 5 healthcare cybersecurity predictions for 2023 by Mohammad Waqas
- Top 5 trends in OT and ICS Security for 2023 by Steve Gyurindak
- Six Public Sector Cybersecurity Predictions for 2023 by Joe Hamblin
- Top 5 trends in IoT Cyber by Chris Dobrec
- A steady stream of self-inflicted, “oh my god-level” breaches. Self-inflicted security breaches, or data breaches that result because of a preventable vulnerability, are said to make up as much as 90 percent of data breaches. In 2022, we’ve seen a number of breaches from large, well-known companies with millions of customer records, and Fernando predicts we’ll see even more in 2023.
- Increased adoption of secure access service edge (SASE). Omdia has gone on record a handful of times about the buzz around SASE, so it’s no surprise that Fernando believes this framework will continue to rise among cloud-first organizations in 2023.
- The rise of product security and the fall of overarching security budgets controlled by CISOs. As product security takes on more responsibilities previously assigned to security teams, budget is likely to shift, and Fernando predicts we’ll see this take shape in 2023.
19) Atos Group offers their 2023 Trends and Predictions in video format (see below).
- Multi-extortion attacks on the rise
- Cyber-resilience will drive down the cost of recovery
- Supply chain security will be a priority
- Time to build a cybersecurity compliance program
- Keep the human factor central to your strategy
20) Sentinel One — SentinelOne’s Cybersecurity Predictions 2023 | What’s Next?
- Driving Painful Lessons Home
- Cybersecurity Only Works When “It Just Works”
- No One Gets to Opt Out of Cybersecurity in 2023
- The Disruptors Are Here, And They Aren’t Going Away
- No More Hiding Behind Our Macs
- AI Goes Mainstream and the Distribution of Disinformation Rises
- New Year, New Scams (including cryptocurrencies, investment scams, fake loans and metaverse scams.)
- The Rise of ChromeOS Threats
- Web3 Threats will take advantage of FOMO
- Advancement for the security industry and collaboration
- Data-driven intelligence key
- Ransomware threats are here to stay
- Threat actors will innovate new extortion tactics
- The cloud will become a net-positive for cybersecurity
BONUS ITEMS WORTH REVIEWING
- Post Quantum and Cryptography Will Pose New Challenges
- Consumer Identity Protection Will Lead to New Strategies
- Increasing Cloud Complexity Will Accelerate Adoption of Automated Tools
- Technology Evaluation Strategies Will Create a New C-Level Role
- New Roles for Board Members in Cybersecurity
- Platform consolidation to decrease tooling duplication, high operational costs and complex integration requirements.
- Securing both remote and hybrid workers as organizations make decisions about long-term in-office requirements.
- Adapting security for increased cloud dependency
- Managing and securing data that live everywhere.
- Visibility, control, protection and remediation in response to supply chain attacks, IoT attacks and ransomware.
- Machine Learning and Artificial Intelligence Assimilate into the Cyber Ecosystem
- Polymorphic Malware grows (in various ways listed)
- More BOTs on the Warpath
- IoT Expands Everywhere in 2023
- Ransomware Will Continue To Be a Prime Concern
- Prediction #1: Shadow APIs Will Lead to Unforeseen Breaches
- Prediction #2: Multi-Factor Authentication Will Become Ineffective
- Prediction #3: Troubles with Troubleshooting
- Prediction #4: Open Source Software Libraries Will Become the Primary Target
- Prediction #5: Ransomware Will Expand on the Geopolitical Stage
HONORABLE MENTION SECURITY PREDICTION LISTS
Accenture — From VentureBeat, Accenture shares 9 cybersecurity predictions for 2023
- Geopolitics, economic uncertainty and destructive cyber attacks will challenge leads to step up
- Evolving threat tactics require renewed focus on digital identity
- Broader talent pools will strengthen cybersecurity
- Protecting people: Cybersecurity for critical infrastructure will take a central role
- Increasingly automated responses will become core tech for the cyber-resilient business
SANS — Via VentureBeat, here are4 cybersecurity predictions for 2023 — SANS analysts look ahead
SlashNext — 7 Network Security Trends & Predictions for 2023
Extrahop — Cybersecurity Predictions: Cloud Security Trends for 2023
SimpliLearn — Top 10 Cybersecurity Trends to Watch Out For in 2023
IT Security Wire — Five Major Trends that will Transform Cybersecurity Landscape in 2023
CPO Magazine — Expert predictions for the next 5 years
- Attacks on shared infrastructure
- Malware takeovers
- Cyber-kinetic attacks
Radware (via Spiceworks.com) — Cloud Security: 5 Predictions on What Lies Ahead for 2023
Help Net Security — 5 cybersecurity predictions for 2023
Bangkok Post — Making security predictions for 2023: “First, cybersecurity will be the cornerstone of everything.”
Information Security Buzz — Experts’ Responses: Cyber Security Predictions 2023
Optiv (via CRN) — Five Big Cybersecurity Bets For 2023 From Optiv CEO Kevin Lynch
Bernard Marr (via Forbes) — The Top Five Cybersecurity Trends In 2023
Venturebeat — Not to be outdone by Forbes, VentureBeat offers this piece: 31 CISOs share their security priorities and predictions for 2023
Digicert — 8 Things to Expect in 2023
Neustar Security Services (via VMblog) — Emerging Security Threats to Watch in 2023
KnowBe4 (via NBCnews11.com) — KnowBe4’s Team of Cybersecurity Experts Release Top Five Predictions for 2023
Snowflake (via Cybersec Asia) — Data predictions for 2023
LogRythm via Digital Journal — Threat experts share 2023 cybersecurity predictions
MIT Review – What’s next in cybersecurity?
Logpoint – Logpoint 2023 predictions: The year of the business-driven CISO
AWARDS
Best & Most Comprehensive Vendor Report Overall: Trend Micro — FUTURE / TENSE: TREND MICROSECURITY PREDICTIONS FOR 2023
Most Creative: WatchGuard — Watchguard’s 2023 Cybersecurity Predictions. Their videos were again outstanding and fun. Also, love No. 5 on their list: “A Novel Robotaxi Hack Will Result in a Dazed and Confused AI Car.”
Least Reported But Most Likely Prediction: Kaspersky — The entire list titled Advanced threat (APT) predictions for 2023 might apply, but items two and three are most likely:
- Mail servers become priority targets
- The next WannaCry
Scariest: Mandiant (now part of Google) — Destructive attacks, information operations and other cyber aggression from The Big Four: Russia, China, Iran and North Korea.” (Read their report for more details.)
Most Common: Trouble coming for MFA and cloud (because of misconfigurations).
FINAL THOUGHTS
Wired magazine recently released the article: “Cyber Warfare Is Getting Real.” Another piece worth reading.

See More Stories by Dan Lohrmann
*** This is a Security Bloggers Network syndicated blog from Lohrmann on Cybersecurity authored by Lohrmann on Cybersecurity. Read the original post at: https://www.govtech.com/blogs/lohrmann-on-cybersecurity/the-top-23-security-predictions-for-2023-part-2

