July 7, 2016 By Munish Gupta 2 min read

As the world awoke on the morning of June 24 to the reality of the U.K. leaving the European Union — also known as Brexit — many had questions. After all, the vote results in a lot of chaos in the boardroom, as well as ambiguity about current investments and security initiatives. There are several gray areas that will undoubtedly lead to anxiety among senior IT and security leaders.

How Will Brexit Affect Security?

Here are three key areas of business that the Brexit will impact.

1. Data Protection and Compliance

As a part of the European Union, British companies were mandated to follow the same set of security and data protection controls as their European neighbors. Companies were spending a lot of money on compliance programs to align with EU demand and reap the benefits of a single market.

But with the Brexit, there is clear ambiguity about the next course of action. Organizations are unsure if they have to align with EU laws or if Britain will come up with its own policy for the companies operating within its borders.

For example, British organizations were readying themselves to address new General Data Protection Regulation (GDPR) requirements mandated by European law. Now they are unsure if they should continue with their programs or if the British government will enact new data security and privacy laws. What will happen to the current initiatives and investments? There is no clear answer to that.

2. Cloud Hosting

Cloud hosting services will also feel the consequences of the Brexit. With Britain part of the EU, European companies were enjoying the benefits of leveraging cloud service providers based in the U.K. and vice versa. But with Brexit, it’s going to be difficult because EU law mandates hosting data in EU geographies. Cloud providers will have to go back to the drawing board and plan for future demands accordingly.

For example, Amazon Web Services (AWS) doesn’t have a data center in U.K. at present, but it has planned one. Now AWS will be challenged to speed up the commissioning of that center to serve customers within the country.

Smaller players in the industry will also be impacted. Take cloud hosting provider Datapipe, which has two data centers in Europe — in Amsterdam and Frankfurt — and was leveraging London data centers for other European clients. Now Datapipe will have to plan for additional capacity in Europe itself.

3. Skilled Labor

Britain and the EU had free access to the European markets, but that’s going to change with Brexit. I can see both U.K. and European organizations already struggling to get the required skill sets from staffers, and that will be amplified when labor laws across borders change. Organizations will be forced to spend money and time on visas and other legal requirements in addition to recruiting and training employees. It could also mean more limited opportunities for cybersecurity workers across Europe.

The road ahead looks tough. Of course, much will stem from the road map we get from British and EU authorities, but we won’t have that information for months.

More from CISO

Why security orchestration, automation and response (SOAR) is fundamental to a security platform

3 min read - Security teams today are facing increased challenges due to the remote and hybrid workforce expansion in the wake of COVID-19. Teams that were already struggling with too many tools and too much data are finding it even more difficult to collaborate and communicate as employees have moved to a virtual security operations center (SOC) model while addressing an increasing number of threats.  Disconnected teams accelerate the need for an open and connected platform approach to security . Adopting this type of…

The evolution of a CISO: How the role has changed

3 min read - In many organizations, the Chief Information Security Officer (CISO) focuses mainly — and sometimes exclusively — on cybersecurity. However, with today’s sophisticated threats and evolving threat landscape, businesses are shifting many roles’ responsibilities, and expanding the CISO’s role is at the forefront of those changes. According to Gartner, regulatory pressure and attack surface expansion will result in 45% of CISOs’ remits expanding beyond cybersecurity by 2027.With the scope of a CISO’s responsibilities changing so quickly, how will the role adapt…

X-Force Threat Intelligence Index 2024 reveals stolen credentials as top risk, with AI attacks on the horizon

4 min read - Every year, IBM X-Force analysts assess the data collected across all our security disciplines to create the IBM X-Force Threat Intelligence Index, our annual report that plots changes in the cyber threat landscape to reveal trends and help clients proactively put security measures in place. Among the many noteworthy findings in the 2024 edition of the X-Force report, three major trends stand out that we’re advising security professionals and CISOs to observe: A sharp increase in abuse of valid accounts…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today