Skip to content
Digital Technology Skills

Digital Technology Skills

Your expert partners in the delivery of skills-based projects

  • Home
  • European Projects
  • Irish Projects
  • News
  • About
  • Contact
  • Home
  • News
  • From Compliance to Resilience: Lessons from Cyber Expo Ireland 2025
Cyber Expo Ireland image

From Compliance to Resilience: Lessons from Cyber Expo Ireland 2025

May 27, 2025

Above image: Pictured during the panel discussion at the Cyber Expo Ireland, from left to right are Paul Hearns (Panel MC), Mike Kehoe (IBM), Carmel Somers (Digital Technology Skills), Tony Davitt (Cisco) and Jacqueline Kehoe (Cyber Skills)

Author: Carmel Somers, Digital Technology Skills

Cyber Expo Ireland 2025, held in Dublin, Ireland on May 22nd, brought together thought leaders, practitioners, and educators to explore the future of cybersecurity across sectors. A standout session on cyber resilience moderated by Paul Hearns featured two panellists from the Digital4Security (D4S) consortium – Jacqueline Kehoe from Cyber Skills and Carmel Somers from Digital Technology Skills – together with Tony Davitt from Cisco and Mike Kehoe from IBM. Their message was clear: if you’re still thinking about cybersecurity as a compliance checkbox, you’re already behind.

Moving Beyond Compliance to Real Resilience

A core theme from the panel session was a strategic shift in focus: from a traditional “protection and compliance” approach to one centred on resilience. This pivot acknowledges that, despite best efforts, cyber incidents will occur. What differentiates resilient organisations is their capacity to recover rapidly and effectively – something that requires whole-of-organisation awareness and participation, not just technical readiness.

The panellists highlighted the cultural foundations of cyber resilience. Open, psychologically safe environments – where employees feel confident to report threats, incidents or suspicious activity – are essential. This aligns closely with the D4S vision of embedding security competencies and values across functions and levels.

The Fatal Flaw in Traditional Cybersecurity

Here’s the uncomfortable truth that most organisations refuse to face: you will be breached. It’s not a matter of if, but when. Yet, most cybersecurity strategies are built on the fantasy that perfect protection is possible.

The experts at the Cyber Expo Ireland conference put it bluntly – organisations need to stop playing defence and start building for the inevitable. The companies that survive and thrive aren’t necessarily the ones that never get hit; they’re the ones that bounce back faster and stronger.

The Cultural Revolution Your Organisation Needs

Want to know what separates resilient organisations from sitting ducks? It’s not the latest AI-powered threat detection system (though that helps). It’s culture.

Think about it: when was the last time an employee in your organisation voluntarily reported something suspicious? If your answer is “I’m not sure” or “never,” you have a culture problem, not a technology problem.

Stop Treating Everyone Like IT Specialists

Here’s where most cybersecurity training goes wrong: it treats the CFO the same as the help desk technician.

Your board members don’t need to understand the technical details of SQL injection attacks. But they absolutely need to grasp why cybersecurity budget decisions can make or break the company’s future. Your front-line employees don’t need to become security analysts, but they need to understand why their role matters in the bigger picture.

The message is the same – “cybersecurity is everyone’s responsibility” – but the delivery must be different to resonate with different cohorts.

From Compliance to Resilience Lessons from Cyber Expo Ireland 2025
Pictured at the Cyber Expo Ireland, from left to right: Gillian O’Grady (Digital Technology Skills), Carmel Somers (Digital Technology Skills) and Jacqueline Kehoe (Cyber Skills).

The Sectors Living on Borrowed Time

If you work in higher education or healthcare, the Dublin experts had particularly sobering news: you’re in the crosshairs. These sectors face a perfect storm of vulnerability – open systems by design, critical services that can’t afford downtime, and often limited cybersecurity resources.

But before financial sector leaders breathe a sigh of relief, remember: being “more mature” doesn’t mean being immune. Criminals don’t discriminate, and yesterday’s advantages can become tomorrow’s blind spots.

Rethinking ROI: Cybersecurity as Digital Insurance

When budget discussions arise, executives inevitably ask: “What’s the ROI on cybersecurity?” It’s the wrong question.

Instead, ask: “What’s the ROI on your building’s fire insurance?” You don’t buy fire insurance expecting to profit from it; you buy it because the alternative is potentially catastrophic.

But here’s the crucial difference: insurance pays out after disaster strikes. Cybersecurity resilience prevents the disaster from becoming catastrophic in the first place. That’s not just ROI – that’s survival.

The Manufacturing Lesson That Changed Everything

The most powerful insight from the Cyber Expo Ireland conference came from an unexpected source: manufacturing quality control.

Decades ago, manufacturers realised that inspecting products at the end of the assembly line wasn’t enough. They had to build quality into every step of the process. The same revolution needs to happen in cybersecurity.

We need to stop thinking about cybersecurity as a perimeter wall and start thinking about it as DNA – something that’s embedded in every cell of the organisation.

The Leadership Challenge

Here’s the bottom line that every executive needs to internalise: cyber resilience isn’t a technology problem – it’s a leadership problem.

Leaders need to stop thinking about cybersecurity as a perimeter wall and start thinking about it as DNA – something that’s embedded in every cell of the organisation.

Remember, technology will always be part of the solution, but it’s never the whole solution. The organisations that will thrive in our increasingly connected world are those where leaders:

  • Embrace vulnerability instead of denying it
  • Invest in people as much as they invest in tools
  • Build resilience into their organisational DNA
  • Create cultures where security is everyone’s shared value

What Happens Next?

The cybersecurity landscape isn’t getting easier. Threats are evolving faster than our defences, and the cost of failure keeps rising. But there’s hope in the Dublin conference’s central message: resilience isn’t just about surviving the storm – it’s about becoming stronger because of it.

The question isn’t whether your organisation will face a cyber crisis. The question is whether you’ll be ready to bounce back when it happens.

The time to build that resilience is now. Because when the breach happens – and it will – it’ll be too late to wish you’d started sooner.

Want to transform your organisation’s approach to cybersecurity resilience? The experts from Dublin’s Cyber Expo emphasised that this isn’t a journey you have to take alone. Projects like Digital4Security (D4S) are working across Europe to equip leaders with the frameworks, skills, and the mindset needed to build truly resilient organisations.

Learn more about Digital4Security

Recommended articles

Carmel Somers at Blockchain Ireland Summit panel

Web3 – Hype, Hope and What Happens Next: Lessons from Blockchain Ireland Summit 2025

May 28, 2025

Above image: Pictured during the panel discussion at the Blockchain Ireland Summit 2025, from left to right: Carmel…

Read More
web3-report-industry-insights-visual-768x402

Ireland Positioned to Lead Global Web3 Movement, Industry Report Finds

May 27, 2025

Report outlines Ireland’s significant potential to become a global hub for Web3 development

Read More
Join the Digital4Business Virtual Open Day

Explore Europe’s newest digital Master’s driving digital transformation – Open Day 26 May

May 23, 2025

Join the event and get a first-hand look at one of Europe’s most exciting new master’s programmes in…

Read More
Digital4Sustainability Strategy

Digital4Sustainability: New Strategy to empower Europe with digital sustainability skills

May 7, 2025

This forward-looking strategy, from the Digital4Sustainability project, sets out a clear roadmap to close the digital sustainability skills…

Read More
Digital4Business - Apply Now

Joint Professional Master’s Degree in Advanced Digital Technologies (Digital4Business) Launches to Address Critical Skills Gap

May 7, 2025

The Digital4Business Professional Master’s programme offers an extensive range of cutting-edge modules designed to develop expertise in today’s…

Read More
arisa academy launch image

ARISA Academy: Master the basics of AI and shape the future of your career

May 6, 2025

As part of its mission to strengthen AI skills across Europe, the EU-funded ARISA project has launched the…

Read More

Digital Technology Skills logo white

Your expert partner for skills-based projects. Through our extensive innovation network, we engage with all industry sectors, to identify their needs, and support in the delivery of skills services and solutions.

Digital Technology Skills LinkedIn X link       Digital Technology Skills twitter X link

Quick Links

  • Home
  • European Projects
  • Irish Projects
  • News
  • About
  • Contact
  • Cookie Policy
  • Privacy Policy

Contact Us

info@digitaltechnologyskills.ie

+353 (01) 4693754

40 Mespil Road,
Dublin, Ireland
D04 C2N4

Copyright © Digital Technology Skills Limited 2025
Manage Cookie Consent
We use cookies to optimize our website and our service.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}