Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
ColumnsCybersecuritySecurity Talk Column

Security Talk

What Security Leaders Could Expect in 2026

Experts share their thoughts on trends, technologies and leadership qualities shaping the future of security.

By Rachelle Blair-Frasier, Editor in Chief
2026
ThomasVogel / iStock / Getty Images Plus via Getty Images
January 22, 2026

As one year comes to a close and another begins, security leaders naturally take stock of what has changed — and what lies ahead. For a better understanding of the challenges and opportunities shaping the year to come, I asked a group of security executives and practitioners for their perspectives on the trends, risks, and priorities that could define security in 2026.

What Are The Biggest Security Challenges That Organizations Will Face in The Coming Year?

Colin Daugherty, Program Manager at Convergint: Biggest challenges will be the evolving depth and range of the already complicated poly-risk and poly-threat environments and landscapes. Cyber, Privacy, Travel, Physical, Executive Protection, Drone, Supply Chain, Business Continuity... there is so much to keep up with from local to global!

Kristen Devitt, Director of Campus Safety at Oak Park River Forest High School: Cybersecurity in schools, we’ve been so focused on active assailants that we have failed to properly address other types of threats.

Rosario Mastrogiacomo, CSO at SPHERE: As we head into the new year, security leaders are staring down a fundamental shift: AI is no longer a feature — it’s an actor. Organizations are now operating alongside autonomous systems that make decisions, take action, and in some cases delegate work to other agents. That’s the biggest change to identity security in more than two decades, and it’s reshaping how CISOs think about risk.

The challenges in 2026 won’t be about the volume of threats — we’ve lived with that for years. The challenge will be accountability in environments where not every decision was made by a human. The rise of AI identities means we’ll see more invisible privilege escalation, ownerless automation, and cascading effects when AI systems drift from expected behavior. Most enterprises already struggle with basic identity hygiene; layering autonomy on top of that is a force multiplier for risk.

Frédéric Rivain, CTO at Dashline: The traditional network perimeter will continue its collapse in 2026, replaced by browser-based security controls as the primary enforcement point. Organizations are realizing that protecting credentials at the browser level is more effective than trying to secure every endpoint or network. Browser extensions and browser-native security capabilities offer real-time protection against phishing, credential theft, and unauthorized access, precisely where attacks happen.

What Emerging Trends or Technologies Do You Believe Will be Transformative?

Colin Daugherty: Emerging technologies are endless right now, no shortage of shiny and fancy stuff... the real questions and issues are what actual value and benefit are they bringing and at what costs.

Rosario Mastrogiacomo: The most transformative trend isn’t a single technology — it’s the convergence of AI agents with identity governance. The organizations that succeed will treat AI agents as first-class identities with owners, access boundaries, decision transparency, and lifecycle controls. Frameworks like RAISE — Reveal, Assign, Interpret, Secure, Evaluate — are emerging because traditional IAM and PAM tools were never designed for actors that learn and adapt.

What Skills, Strategies, or Mindsets Will Security Teams Need Most in 2026?

Colin Daugherty: Skills, Strategies, and Mindsets... we need good people, better people, people who will show up day in and day out, people with grit and resilience, people who act and lead with curiosity, creativity, and courage, people who build trust and confidence and lead the industry forward.

Rosario Mastrogiacomo: Security teams will need two mindsets in 2026: Architectural discipline — least privilege, continuous discovery, containment boundaries, and explainability will define mature programs. Operational humility — we’re governing systems that don’t behave like code. They behave like coworkers. That requires new skills in oversight, telemetry, and interpretation.

Frédéric Rivain: AI agents will be prime targets for cyberattacks. They have broad access to data, can make decisions without human oversight, and operate across multiple systems simultaneously, making them both valuable but vulnerable. It’s up to security teams to address critical gaps including zero-trust architectures extended to non-human identities and credential management for AI agents interacting with internal systems.

What Gives You Optimism for the Future of Security?

Colin Daugherty: Optimism is tough in our industry; I see no shortage of "opportunities" for us to be put to the test and show up in meaningful and impactful ways. I see a growing landscape of opportunities for consulting and advisory services.

Rosario Mastrogiacomo: What gives me optimism? We’re finally seeing CISOs integrate identity, AI governance, and risk into a single strategic conversation. There is a growing recognition that autonomy doesn’t have to erode accountability — if we govern AI identities with the same rigor we apply to humans. When organizations build visibility, ownership, and behavioral review into AI systems from the start, they don’t slow innovation — they secure it. 2026 will be the year we stop asking whether we can trust AI systems and start proving why we should.

Frédéric Rivain: I am hopeful that next year, we’ll see the first Fortune 500 companies announce total password elimination initiatives. We’re already seeing major enterprise providers prioritize passkey workflows. And as phishing and credential-stuffing attacks continue to skyrocket, so will passkey usage in parallel.

KEYWORDS: CSO security leadership security thought leaders

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Rachelle blairfrasier headshot white

Rachelle Blair-Frasier is Security magazine’s Editor in Chief. Blair-Frasier handles eMagazine features, as well as writes and publishes online news and web exclusives on topics including physical security, risk management, cybersecurity and emerging industry trends. She helps coordinate multimedia content and manages Security magazine's social media presence, in addition to working with security leaders to publish industry insights. Blair-Frasier brings more than 15 years of journalism and B2B writing and editorial experience to the role.

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Cyber tech background

    Security’s Top Cybersecurity Leaders 2026

    Security magazine’s Top Cybersecurity Leaders 2026 award...
    Top Cybersecurity Leaders
  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Security Leadership and Management
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Popular Stories

Man on laptop

Healthcare Executives Face a New Era of Personal Risk

Police lights

Security Team Member Dies in Standoff with Dallas Police

Stadium

Physical Security in Global Arenas: How AI Improves Security at Scale

Four people in suits

Mexico Security Crisis: Never Waste a Crisis

Product Spotlight

ISC West 2026 Product Preview

SEC 2026 Benchmark Banner
SEC 2026 Benchmark Banner

Events

April 15, 2026

How AI is Closing the Decision Gap in Leading GSOCs

Learn how modern security teams are evolving from alert-driven workflows to outcome-driven operations and how AI is enabling faster, more confident decisions at every stage of the incident response lifecycle.

April 21, 2026

The Blind Spot in Enterprise Security: Managing Workforce Risk Post-Hire

Organizations continuously monitor their networks and systems for risk, yet the people with legitimate access are often the least monitored part of the model. Discover a Workforce Risk Intelligence Framework that adds a dedicated layer focused on workforce risk.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products
SEC 2026 Top Cybersecurity Leaders

Related Articles

  • Brian Harrell

    Brian Harrell — Top Cybersecurity Leaders 2026

    See More
  • Dr. Bryan Stoker

    Dr. Bryan Stoker — Top Cybersecurity Leaders 2026

    See More
  • casino room with machines

    MGM Resorts cyberattack cost could exceed $100M

    See More

Related Products

See More Products
  • Hospitality Security: Managing Security in Today's Hotel, Lodging, Entertainment, and Tourism Environment

  • security culture.webp

    Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

  • CASP.jpg.jpg

    CASP+ CompTIA Advanced Security Practitioner Certification All-In-One Exam Guide...

See More Products

Events

View AllSubmit An Event
  • October 8, 2025

    How to Support the Security Guard Force in Challenging Environments

    ON DEMAND: In this webinar, learn how organizations are fostering trust among their security guard force to improve security posture and the safety of sites, processes and the officers themselves.
  • April 21, 2026

    The Blind Spot in Enterprise Security: Managing Workforce Risk Post-Hire

    Organizations continuously monitor their networks and systems for risk, yet the people with legitimate access are often the least monitored part of the model. Discover a Workforce Risk Intelligence Framework that adds a dedicated layer focused on workforce risk.
View AllSubmit An Event
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing