Skip to main content

      As AI and technology adoption accelerates across enterprises, organizations are increasingly grappling with how to govern and secure emerging technologies, particularly with the rise of agentic AI and autonomous systems. In parallel, expanding digital ecosystems are increasing interconnectivity across systems and data flows, reshaping how enterprises operate. This is driving a rethink of digital transformation strategies, as cyber defense moves beyond perimeter protection towards more embedded, continuous resilience across the organization.

      In Malaysia, the cyber threat landscape in 2026 is becoming more complex, driven by increasingly sophisticated threat actors and rising cyber activity targeting both enterprises and critical infrastructure. Greater reliance on cloud services, data platforms, and third-party ecosystems is deepening systemic exposure across industries. At the same time, Malaysia’s ambition to become an AI-driven nation by 2030 is accelerating national focus on governance and risk oversight, supported by initiatives such as the MY-AI Standards platform and the updated National Cryptography Policy (NCP 2025), which strengthens digital sovereignty and protection of critical national infrastructure.

      The KPMG Cybersecurity Considerations 2026 highlights how organizations are navigating a rapidly evolving risk environment. It underscores eight key priorities around resilience building, cyber exposure management, and enabling secure AI adoption within enterprise environments. From a CISO perspective, cybersecurity now extends beyond traditional perimeter defense, with the role becoming increasingly front-line and decision-critical – focused on anticipating disruption, enabling faster response, and continuously adapting defense mechanisms in step with evolving digital and AI-driven risk. 

      Eight key cybersecurity considerations for 2026

      Autonomous security workforce

      AI agents are reshaping security operations center (SOC), risk, and compliance — enabling smarter, automated threat detection.

      Trusted IT/OT connectivity

      Hyperconnected systems demand clear ownership, real-time monitoring, and secure cyber-physical integration.

      Geopolitics and resilience

      Rising global threats demand stronger defenses, with AI and automation enhancing control and compliance.

      Post-quantum cryptography

      Quantum threats are rising — driving urgent shifts to next-generation encryption.

      Securing AI systems

      As AI scales, securing it is critical to trust, compliance, and operational resilience.

      Supply chain protection

      Expanding digital ecosystems require continuous monitoring and stronger third-party risk management.

      Non-human identity management

      Machine identities now outnumber humans — requiring stronger, AI-driven identity governance.

      Evolving role of the Chief Information Security Officer (CISO)

      CISOs are expanding beyond cyber — leading security across business, operations, and AI adoption.




      Cybersecurity considerations 2026

      Building trust and enabling innovation in a dynamic world


      Related content

      Cybersecurity should be about what you can do - not what you can't

      Building resilient digital ecosystems through the power of digital trust

      Connect with us

      Alvin Gan

      Partner – CTO, Head of Management Consulting, COO of Advisory

      KPMG in Malaysia

      Ubaid Mustafa Qadiri
      Ubaid Mustafa Qadiri

      Partner – Technology, Risk and Cyber Security Advisory

      KPMG in Malaysia

      Muhammad Dawud Wilmot

      Partner – Technology, Risk and Cyber Security Advisory

      KPMG in Malaysia

      Arivindran Saidoo

      Partner – Technology, Risk and Cyber Security Advisory

      KPMG in Malaysia