Skip to content Skip to Search
Skip navigation

UAE cybersecurity is failing, say IT executives

Mohammed Al Kuwaiti, head of cybersecurity for the UAE government. Lack of resources and too many manual processes are just a few of the IT safety issues facing companies Wam
Mohammed Al Kuwaiti, head of cybersecurity for the UAE government. Lack of resources and too many manual processes are just a few of the IT safety issues facing companies
  • Rise in undetected attacks
  • Lack of IT skills a priority
  • Human error undermines tech

Inadequate technology is one of the primary causes of data breaches suffered by UAE companies, despite huge investments made by IT departments in the Gulf state to combat cyberattacks, say experts.

Companies in the Mena region spent $2.8 billion on cybersecurity last year, according to US technology research and consulting firm Gartner. 

Yet a report by Trellix, a US cybersecurity company, found that over half of chief information security officers (CISOs) surveyed in the UAE whose organisation had suffered a cyberattack, said their technology did not detect the breach.

Other top causes included issues due to the organisation’s lack of resources, lack of IT skills and too many manual processes, which hurt the mean time to detect or repair.

The UAE is faced with around 50,000 attacks a day “and the number is only increasing”, the Gulf state’s head of cybersecurity Dr Mohamed Al Kuwaiti said in a statement in May this year.

Trellix’s study interviewed 500 security officers, each with a minimum of 1,000 UAE employees, from industries including energy and utilities, healthcare, public sectors, manufacturing and production and financial services. Every respondent experienced at least one cyber incident in the past five years.

One head of information security and risk management at a leading bank in the UAE, who did not wish to be named, told AGBI that there is little technology can do.

“When implementing a new solution, security leaders often lean towards advanced features, overlooking the set-up of basic security controls, under the assumption that they come automatically. However, that is not the case,” the bank official said.

“For instance, though we receive one-time passwords via SMS or email during online transactions, we often overlook verifying if it corresponds to the intended transaction.

“Technology can only do so much to mitigate the impact of human mistakes.”

The number of CISOs attributing the root cause of cyber incidents to a lack of detection has risen over time, the report showed. 

Three years ago technology failing to detect an attack formed the root cause for only 9 percent of incidents. In the past year it has grown to 22 percent.

“A fragmented security infrastructure can result in blind spots, where certain types of threats go undetected due to the lack of coordination between different security tools,” Kausar Nur Mukeri, vice president of information security at private school provider Gems Education, said.

CISOs also felt that people, processes and technology needed an overhaul in the IT departments after a breach has occurred.

Almost all respondents to the Trellix survey agreed that some improvements were needed in their processes. All said their organisation had to make some improvements in terms of people and technology.

“Organisations should adopt a holistic and proactive approach to cybersecurity,” Mukeri said.

“This involves a combination of advanced technologies, end-to-end visibility, integration of all security technologies, regular security assessments, employee awareness and a robust incident response plan.”

Latest articles

PIF's Starbucks shareholdings were cut almost by half from 6.3 million shares to 3.8 million

PIF slashes Starbucks stake as it cuts US stocks by $15bn

Saudi Arabia’s Public Investment Fund (PIF) has slashed its US equity holdings by 42 percent to $20.6 billion, including its stake in Starbucks, the global coffee chain that has suffered calls for a boycott as a result of the Gaza conflict. The latest US government data highlights funding challenges facing the Saudi giga-projects.  The filing […]

Tunisia olives

Soaring olive oil exports help Tunisia balance books

Tunisia’s soaring olive oil exports have almost doubled to close to $1 billion in just five months, helping it claw back its current account deficit.   However the increased revenues merely “paint over the cracks” and the country is still probably heading towards a sovereign default, according to an economic expert. Tunisia’s current account deficit narrowed […]

Iraqi prime minister Mohammed Shia Al-Sudani attends licensing rounds for 29 oil and gas exploration blocks at the oil ministry's headquarters in Baghdad

Falling oil prices deepen Iraq’s fiscal imbalances, says IMF

Iraq’s fiscal imbalances have worsened due to significant fiscal expansion and lower oil prices, according to the International Monetary Fund (IMF). “The ongoing fiscal expansion is expected to boost growth in 2024 at the expense of a further deterioration of fiscal and external accounts and Iraq’s vulnerability to oil price fluctuations,” the Washington-based fund said in […]

Saudi aluminium producer Talco is offering 12 million shares

Aluminium producer Talco announces Saudi IPO

Aluminium producer Al Taiseer Group Talco Industrial Company (Talco) is the latest entity to reveal initial public offering (IPO) plans in Saudi Arabia. The Riyadh-based company, which was set up in 2009, is offering 12 million shares, a 30 percent stake, on the Saudi Exchange (Tadawul) at a nominal value of SAR10 ($2.67) per share. […]