News and insights

Major Cybersecurity Advances in 2024

January 08, 2025

As we welcome 2025, it is essential to highlight the significant progress made in the field of cybersecurity. Instead of focusing solely on cyberattacks and security breaches, let’s take a closer look at the positive developments reshaping the digital ecosystem. Here are three major advancements that marked the year 2024:

Here are three major advancements that marked the year 2024:

The Rise of the "Secure by Design" Principle

In 2024, the concept of "Secure by Design" gained significant traction. Driven by the CISA (Cybersecurity and Infrastructure Security Agency), more than 250 companies, including tech giants like Microsoft, Google, and AWS, committed to integrating security measures from the earliest stages of software design.

The goal? To shift the responsibility for security from end users to software publishers and manufacturers.

As Jen Easterly, Director of CISA, pointed out:

We must shift the security burden away from individuals to manufacturers, who are best positioned to manage these risks.

Expected Impacts:

  • High demand for hybrid profiles: Managers, project leaders, and product owners with cybersecurity skills will be in high demand.
  • Adoption of generative AI: IT professionals and developers will increasingly rely on AI to integrate security into code and infrastructure.
  • Prioritization of security patches: Bug fixes will take precedence in project roadmaps over new feature development.

The Rise of Encryption and Post-Quantum Cryptography

2024 saw a strong stance from U.S. agencies such as the FBI and CISA, encouraging citizens to encrypt their communications for the first time. This recommendation aims to enhance data protection in the face of growing cyber espionage threats.

Post-Quantum Cryptography (PQC):

The year also witnessed significant progress in post-quantum cryptography. The NIST (National Institute of Standards and Technology) finalized three encryption standards designed to withstand future quantum computer attacks.

Corporate Adoption:

Major players like Apple and Google quickly integrated these advancements into their strategies. For instance, Google unveiled its Willow quantum chip, highlighting the urgency of preparing for the post-quantum era.

Human-Centered Cybersecurity

Cybersecurity is not just about technology; it also relies on human behavior.

In 2024, cybersecurity awareness programs reached new maturity levels. Companies emphasized user-centered approaches to enhance collective security.

Key Trends:

  • Behavioral incentives: Practical tools like password complexity indicators and real-time alerts encourage users to adopt safer practices.
  • Gamification: Interactive and gamified workshops help employees better understand cybersecurity challenges while increasing engagement.
  • Empathy: Personalized training incorporating emotional intelligence makes cybersecurity awareness more accessible and impactful.

Toward a Culture of Cybersecurity:

he goal is to make cybersecurity a cultural norm within organizations. Just as software is now designed to be secure by default, humans must become the first line of defense against cyber threats.