Female aerospace engineering checking aircraft engine

What A&D companies can do to protect against evolving cyber threats

In this episode of the EY Business Minute podcast, Mike Cadenazzi is joined by Rishi Pande to discuss the ways cybersecurity is evolving across the aerospace and defense (A&D) sector.

In this episode of the EY Business Minute podcast, Mike Cadenazzi is joined by Rishi Pande to discuss the ways cybersecurity is evolving across the aerospace and defense (A&D) sector.

Cybersecurity has become a focal point for A&D companies due to the significant real-world implications for national safety and security. The introduction of the Cybersecurity Maturity Model Certification (CMMC) is a pivotal development, mandating a phased rollout of a three-tiered model to maintain compliance across the defense industrial base by 2028.

One of the key components to any cybersecurity strategy is data protection. This market reality is underscored by the International Traffic in Arms Regulations (ITAR) violations, where inadequate cyber controls have led to unauthorized access and significant fines. Implementing zero-trust principles is essential to creating an environment in which only the right individuals have access to sensitive data at the right time and location.

And of course there is artificial intelligence (AI), which enhances cybersecurity by automating operations and improving efficiency, but it also poses challenges as attackers use it for sophisticated social engineering. A&D companies need strategies and tools to innovate and strengthen measures that help them both stay ahead of threats and protect critical assets.

The podcast includes perspective from Ernst & Young LLP A&D Managing Director Mike Cadenazzi and Rishe Pande, EY Americas Cybersecurity Leader for the A&D and Mobility sectors.

Key takeaways:

  • Government agencies, including the SEC and FAA, are increasingly involved in cybersecurity regulations for aerospace and defense.
  • Talent shortages in cybersecurity can be mitigated by leveraging global capability centers and nontraditional talent pools.
  • Integration of cybersecurity into product development and supply chain decisions is crucial for comprehensive protection.

22

Jan 2025

Podcast

Episode 36

Duration

21m 9s

You are visiting EY us (en)
us en