---
title: It’s 2019 and Most CISOs at Financial Institutions Demand Bigger Cybersecurity Budgets
description: 73% of CISOs in the finance sector have drawn up plans to compel their CFO to spend extra dollars on their organization’s cybersecurity posture
image: https://businessinsights.bitdefender.com/hubfs/decisions.jpg
---

[![](https://businessinsights.bitdefender.com/hubfs/2021/09/logo-white.svg)](https://businessinsights.bitdefender.com/?hsLang=en-us)

[![CONTACT AN EXPERT](https://hubspot-no-cache-eu1-prod.s3.amazonaws.com/cta/default/341979/1d8885e9-1179-49b1-a5ec-9c75f5f670dd.png)](https://hubspot-cta-redirect-eu1-prod.s3.amazonaws.com/cta/redirect/341979/1d8885e9-1179-49b1-a5ec-9c75f5f670dd)

- [For Home](https://www.bitdefender.com/solutions/)
- [For Business](https://www.bitdefender.com/business/)
- [Resources](https://www.bitdefender.com/business/resource-library.html)
- [Webinars](https://www.bitdefender.com/business/webinars.html)

# [BUSINESS INSIGHTS](https://businessinsights.bitdefender.com/?hsLang=en-us)

 By [**Filip Truta**](https://businessinsights.bitdefender.com/author/filip-truta) / May 30, 2019

# It’s 2019 and Most CISOs at Financial Institutions Demand Bigger Cybersecurity Budgets

Share this [![Share on email](https://businessinsights.bitdefender.com/hubfs/2021/07/blog/email-color.png)](mailto:?subject=Check%20out%20https://businessinsights.bitdefender.com/its-2019-and-most-cisos-at-financial-institutions-demand-bigger-cybersecurity-budgets&utm_medium=social&utm_source=email%20&body=Check%20out%20https://businessinsights.bitdefender.com/its-2019-and-most-cisos-at-financial-institutions-demand-bigger-cybersecurity-budgets&utm_medium=social&utm_source=email) [![Share on twitter](https://businessinsights.bitdefender.com/hubfs/2021/07/blog/twitter-color.png)](https://twitter.com/intent/tweet?original_referer=https://businessinsights.bitdefender.com/its-2019-and-most-cisos-at-financial-institutions-demand-bigger-cybersecurity-budgets&utm_medium=social&utm_source=twitter&url=https://businessinsights.bitdefender.com/its-2019-and-most-cisos-at-financial-institutions-demand-bigger-cybersecurity-budgets&utm_medium=social&utm_source=twitter&source=tweetbutton&text=) [![Share on linkedin](https://businessinsights.bitdefender.com/hubfs/2021/07/blog/linkedin-color.png)](http://www.linkedin.com/shareArticle?mini=true&url=https://businessinsights.bitdefender.com/its-2019-and-most-cisos-at-financial-institutions-demand-bigger-cybersecurity-budgets&utm_medium=social&utm_source=linkedin) [![Share on facebook](https://businessinsights.bitdefender.com/hubfs/2021/07/blog/facebook-color.png)](http://www.facebook.com/share.php?u=https://businessinsights.bitdefender.com/its-2019-and-most-cisos-at-financial-institutions-demand-bigger-cybersecurity-budgets&utm_medium=social&utm_source=facebook)

Almost a quarter of Chief Information Security Officers (CISOs) in the finance sector have drawn up plans to compel their Chief Financial Officer (CFO) to spend extra dollars on their organization’s cybersecurity posture, according to a new study.

APT-style campaigns like the Carbanak operation have increased in scope and number in recent years, scoring major hits against financial institutions. The group behind Carbanak alone is said to have stolen upwards of 1 billion dollars.

CISOs at financial institutions are thus feeling increased pressure to protect their organizations from bad actors. However, according to a recent survey, they lack the resources they need to live up to that challenge.

Of 301 CISOs surveyed by the Financial Services Information Sharing and Analysis Center ([FS-ISAC](https://www.fsisac.com/)), 73% plan to ask their CFO to bump up cybersecurity spending. According to those surveyed, a mere 10% of their organizations’ overall budget actually goes into cyber defenses. And only half of that meager expenditure goes to infrastructure and asset management.

“The advancement and adoption of new technologies coupled with increased geopolitical tension has fueled a rapidly evolving cyber threat landscape,” said Steve Silberstein, CEO of FS-ISAC. “An effective cybersecurity program needs to adapt to this environment and funding must be deemed as a cross-functional investment.”

“Institutions are now finding vulnerabilities across other functions of the business with employees and third-party vendors becoming areas of increasing concern. A holistic approach to cyber is critical to mitigate current and long-term risks,” Silberstein added.

If other studies are any indication, one of the biggest shortages is the cybersecurity skill gap. The third annual global study of cybersecurity professionals by the Information Systems Security Association (ISSA) has [found](https://www.globenewswire.com/news-release/2019/05/09/1821287/0/en/Cybersecurity-Skills-Shortage-Worsening-for-Third-Year-In-A-Row-Sounding-the-Alarm-for-Business-Leaders.html) this issue impacts 74% of global organizations. The cybersecurity skills shortage is also considered the root cause of an increase in security incidents, as organizations are lagging in cybersecurity awareness and can’t keep up with the growing cybersecurity workload.

### Explore More Topics

- [Enterprise Security (743)](https://businessinsights.bitdefender.com/topic/enterprise-security)
- [Threat Research (201)](https://businessinsights.bitdefender.com/topic/threat-research)
- [Cloud Security (174)](https://businessinsights.bitdefender.com/topic/cloud-security)
- [SMB Security (170)](https://businessinsights.bitdefender.com/topic/smb-security)
- [Ransomware (166)](https://businessinsights.bitdefender.com/topic/ransomware)
- [Privacy and Data Protection (137)](https://businessinsights.bitdefender.com/topic/privacy-and-data-protection)
- [Cybersecurity Awareness (134)](https://businessinsights.bitdefender.com/topic/cybersecurity-awareness)
- [Endpoint Protection & Management (126)](https://businessinsights.bitdefender.com/topic/endpoint-protection-management)
- [Endpoint Detection and Response (124)](https://businessinsights.bitdefender.com/topic/endpoint-detection-and-response)
- [Managed Detection and Response (119)](https://businessinsights.bitdefender.com/topic/managed-detection-and-response)
- [Virtualization & Data Center Security (82)](https://businessinsights.bitdefender.com/topic/virtualization-data-center-security)
- [Threat Intelligence (76)](https://businessinsights.bitdefender.com/topic/threat-intelligence)
- [IT Compliance & Regulations (71)](https://businessinsights.bitdefender.com/topic/it-compliance-regulations)
- [Bitdefender Threat Debrief (55)](https://businessinsights.bitdefender.com/topic/bitdefender-threat-debrief)
- [Managed Service Providers (53)](https://businessinsights.bitdefender.com/topic/managed-service-providers)
- [#Featured (52)](https://businessinsights.bitdefender.com/topic/featured)
- [Advanced Persistent Threats (46)](https://businessinsights.bitdefender.com/topic/advanced-persistent-threats)
- [Events (38)](https://businessinsights.bitdefender.com/topic/events)
- [Independent Testing (18)](https://businessinsights.bitdefender.com/topic/independent-testing)
- [Cybersecurity Advisory Services (9)](https://businessinsights.bitdefender.com/topic/cybersecurity-advisory-services)
- [Podcast (3)](https://businessinsights.bitdefender.com/topic/podcast)
- [top (2)](https://businessinsights.bitdefender.com/topic/top)

See all topics

### Subscribe to Blog Updates

## Read more about this topic

<https://businessinsights.bitdefender.com/incident-response-is-the-weakest-link-in-the-threat-handling-chain-study-shows?hsLang=en-us>

### [Incident Response Is the Weakest Link in the Threat-Handling Chain, Study Shows](https://businessinsights.bitdefender.com/incident-response-is-the-weakest-link-in-the-threat-handling-chain-study-shows?hsLang=en-us)

<https://businessinsights.bitdefender.com/untrained-and-malicious-users-lead-concerns-among-it-professionals-in-the-uk?hsLang=en-us>

### [Untrained and Malicious Users Lead Concerns among IT Professionals in the UK](https://businessinsights.bitdefender.com/untrained-and-malicious-users-lead-concerns-among-it-professionals-in-the-uk?hsLang=en-us)

<https://businessinsights.bitdefender.com/healthcare-cybersecurity-threats-ripple-effects?hsLang=en-us>

### [Healthcare Cybersecurity (Part II) - Pernicious Threats and Their Ripple Effects](https://businessinsights.bitdefender.com/healthcare-cybersecurity-threats-ripple-effects?hsLang=en-us)

![bitdefender](https://businessinsights.bitdefender.com/hs-fs/file-2685110570-png/Bitdefender-Mar2015-Theme/Images/avatar_img_footer.png)

![bitdefender](https://businessinsights.bitdefender.com/hs-fs/file-2676149282-png/Bitdefender-Mar2015-Theme/Images/logo_white_footer.png)

- [![https://twitter.com/Bitdefender_Ent](https://businessinsights.bitdefender.com/hs-fs/file-2658233851-png/Bitdefender-Mar2015-Theme/Images/ft_soc_tw.png?width=33&name=ft_soc_tw.png)](https://twitter.com/Bitdefender_Ent)
- [![Linkedin-icon-300x300](https://businessinsights.bitdefender.com/hs-fs/hubfs/Bitdefender-Mar2015-Theme/Images/Linkedin-icon-300x300.png?width=33&name=Linkedin-icon-300x300.png)](https://www.linkedin.com/company/bitdefender-gravityzone-enterprise-security)
- [![](https://businessinsights.bitdefender.com/hs-fs/file-2676149307-png/Bitdefender-Mar2015-Theme/Images/ft_soc_yt.png)](https://www.youtube.com/user/BitdefenderSecurity)

- [Legal Terms](https://www.bitdefender.com/legal/)
- [Privacy Policy](https://www.bitdefender.com/site/view/legal-privacy-policy-for-bitdefender-websites.html)
- [EULA](https://www.bitdefender.com/site/view/legal-eula.html)
- [Contact Us](https://www.bitdefender.com/business/contact.html)

Copyright © 1997-2023 Bitdefender All rights reserved.

![](https://px.spiceworks.com/px/5rec)

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Filip Truta",
    "url" : "https://businessinsights.bitdefender.com/author/filip-truta"
  },
  "dateModified" : "2019-05-30T14:02:36.107Z",
  "datePublished" : "2019-05-30T14:02:36.000Z",
  "headline" : "It’s 2019 and Most CISOs at Financial Institutions Demand Bigger Cybersecurity Budgets",
  "image" : [ "https://businessinsights.bitdefender.com/hubfs/decisions.jpg" ],
  "mainEntityOfPage" : {
    "@id" : "https://businessinsights.bitdefender.com/its-2019-and-most-cisos-at-financial-institutions-demand-bigger-cybersecurity-budgets",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://businessinsights.bitdefender.com/hubfs/Bitdefender_Logo_Transparent-2.png"
    },
    "name" : "Bitdefender"
  }
}
```