Local administrations are facing major operational and organizational challenges related to security, driven by both available funding and regulatory obligations
Outdated infrastructure
Many legacy systems and software are not replaced or updated in a timely manner. Unaddressed vulnerabilities, delayed patches, and misconfigurations make these systems easy targets for attacks.
Insufficient IT management
There is a lack of consistency in policies and standards across government agencies. This leads to reused passwords, poorly exposed online devices, and insufficient endpoint defenses, especially with the growing number of IoT devices.
Digital transformation
Governing more efficiently and improving the citizen experience is a key objective. However, cloud adoption, mobility, BYOD, and new applications introduce significant vulnerabilities and increase the risk of cyberattacks, including those from state-sponsored actors.
Data privacy and compliance
The massive collection of citizen data requires clear policies on management and storage. Regulations such as GDPR and CUI demand high security standards, but available resources and expertise are often limited.
Shortage of qualified personnel
Security is too complex for many agencies. Governments struggle to hire and retain qualified talent due to competition from the private sector, unionized workforces, and mass retirements.
Access to cyber security funding
Despite the availability of substantial national and international funding for cyber security, many local administrations fail to leverage it effectively, remaining vulnerable to attacks.