Cybersecurity considerations 2025: Financial services sector
CISOs are turning to advanced technologies such as AI to combat soaring cybersecurity threats. But technology alone is not enough.

Stay ahead of cyber threats in financial services
Download the reportAs financial services organizations accelerate digital transformation and cloud adoption, CISOs are under increasing pressure to secure critical assets, manage a growing attack surface, and navigate a rapidly evolving regulatory landscape. The stakes are high.
74% of financial services organizations now involve cybersecurity from the earliest stages of technology planning—proving that CISOs are no longer just defenders, but strategic enablers of innovation.1
Flat budgets and rising expectations are forcing CISOs to make tough choices: invest in AI and automation to modernize security operations, or prioritize compliance with a surge of new global regulations like the EU’s Digital Operational Resilience Act (DORA) and intensified oversight from U.S. regulators. Meanwhile, data complexity and operational noise continue to challenge even the most mature security programs.
Our report delivers actionable insights for financial services CISOs seeking to lead with confidence. From aligning cybersecurity with business goals to optimizing second-line collaboration and leveraging KPIs as proxies for digital health, we explore strategies to help you build resilience, reduce risk, and drive value in a high-stakes environment.
1KPMG, Global Technology Report, 2024.
Key cybersecurity considerations for financial services firms in 2025
1
The ever-evolving role of the CISO
What CISOs and their teams focus on, and how they interact with the rest of the organization is fluid, as the cybersecurity function becomes more broadly embedded within and better understood across the organization.
2
Embedding trust as AI proliferates
Financial institutions should navigate privacy and security concerns while ensuring data quality and bias are managed to maintain trust in AI systems.
3
Resilience by design: Cybersecurity for business and society
A proactive and resilient cybersecurity approach is essential to protect against the expanded attack surface in the digital age.
Dive into our thinking:
Stay ahead of cyber threats in financial services
Download the PDFSubscribe to Risk and Cyber Insights
The latest news and updates on how organizations can manage risk in today's environment.
Explore more

FS Fast 5: Cyber Considerations
Key insights to move your cybersecurity agenda forward in financial services

Cybersecurity considerations 2025
In an AI-dominated business environment, the foundational principles of cybersecurity are even more critical

Unraveling five essential cybersecurity priorities for banks
Cyber threats are a persistent top risk in banking. CISOs can be more effective at addressing them.
Meet our team
