The nature of cyber threats facing Malaysia has fundamentally transformed in the three decades since the nation established its emergency response capabilities through MyCERT in 1997. While the volume of attacks has undoubtedly multiplied, the truly disruptive shift has been the velocity at which adversaries can now strike—a problem dramatically compounded by the rise of artificial intelligence. According to Raja Azrina Raja Othman, Chief Information Security Officer at Telekom Malaysia and a co-founder of MyCERT, this acceleration represents perhaps the single most consequential change in the cybersecurity landscape.

In the early days of MyCERT's establishment, cyberattacks were relatively contained affairs, typically targeting specific systems or discrete networks with limited collateral impact. The digital ecosystem was far less interconnected, and many critical functions still operated through parallel analogue and digital channels. Today's reality presents an entirely different operating environment. Banking systems, government services, corporate infrastructure and the nation's critical utilities have converged into an integrated digital ecosystem where everything connects to everything else. This interconnectedness, while delivering enormous efficiency gains and enabling advanced services, has created a vast attack surface that malicious actors can exploit.

When a successful cyberattack penetrates this integrated environment, the consequences cascade far beyond simple system downtime. Compromised infrastructure threatens operational continuity, destabilises financial systems, exposes customer data to theft, damages organisational reputation and disrupts essential services upon which millions of Malaysians depend daily. The 2021 attack on Malaysia's Health Ministry systems, which forced the cancellation of Covid-19 vaccination appointments nationwide, exemplified how a single breach could ripple through public services. Today's attackers understand these systemic vulnerabilities intimately and target them deliberately.

Artificial intelligence has become the force multiplier that transforms individual cyber attacks into coordinated, rapid-fire campaigns. Traditional cybersecurity defences built on manual monitoring and human-driven threat detection operate at speeds incompatible with AI-accelerated attacks. Modern threat actors leverage machine learning algorithms to identify system vulnerabilities at machine speed, generate hundreds of convincing phishing variations tailored to specific organisational contexts, and launch simultaneous multi-vector assaults across multiple entry points. The human analyst reviewing security logs simply cannot keep pace. This fundamental speed mismatch means organisations relying on legacy defence strategies are essentially operating with yesterday's toolkit against tomorrow's threats.

Raja Azrina emphasises that the architectural complexity of modern information systems compounds these challenges significantly. Contemporary organisations integrate dozens of specialised applications, cloud services, legacy systems and third-party platforms into sprawling technology ecosystems. When IT planning and information security governance operate in silos rather than in coordinated alignment, this complexity creates blind spots and unguarded interfaces. An organisation might invest substantially in network security while leaving application-level vulnerabilities unaddressed, or secure its internal infrastructure while outsourcing cloud services to providers with weaker security standards. These misalignments create precisely the gaps sophisticated attackers actively seek.

Yet many Malaysian organisations still treat cybersecurity as an optional feature rather than essential infrastructure. This misconception reflects a fundamental misunderstanding of cybersecurity's true strategic role. Security is not about perfect defence—a realistic impossibility in adversarial environments where attackers need find only one vulnerability while defenders must protect against all known attack vectors. Instead, cybersecurity fundamentally concerns risk management and business continuity. The relevant questions organisations must confront are concrete: if our critical systems are compromised, can we continue serving customers? Can we maintain operations long enough to recover? Will clients retain confidence in our ability to protect their data and interests? These existential questions should occupy boardroom discussions, not remain relegated to technical departments.

Responsibility for cybersecurity must therefore originate at the board and executive level, becoming embedded within organisational governance structures rather than siloed within IT departments. Cybersecurity investments should follow a risk-based framework where organisations first identify their highest-value assets and most catastrophic failure scenarios, then allocate security resources proportionally to potential impact. This approach differs markedly from checkbox compliance mentality, where organisations meet regulatory minimums without addressing genuine exposure.

Raja Azrina stresses a critical distinction: even well-resourced cybersecurity programmes cannot eliminate attack risk entirely. Determined adversaries with sufficient resources can eventually penetrate defended systems through persistence, social engineering or zero-day vulnerabilities unknown to defenders. The realistic goal therefore becomes not prevention of all incidents but rather early detection, rapid response and swift remediation that minimises operational disruption. Truly mature organisations distinguish themselves through capability in these areas rather than false confidence in impregnable defences. They establish incident response playbooks before crises strike, identify key decision-makers and escalation pathways in advance, and practice response scenarios regularly. The organisation that discovers who should be making critical decisions when a major breach occurs is already dangerously behind.

Telekom Malaysia, as the nation's primary telecommunications infrastructure operator, bears particular responsibility for maintaining cybersecurity across networks serving the entire country. The company's experience protecting vast, complex digital environments spanning networks, cloud services, data centres and applications provides unique insights into defending interconnected critical infrastructure. TM's teams continuously monitor security threats across these domains, drawing on operational expertise accumulated through decades of protecting Malaysia's digital backbone. The company has also cultivated specialised internal expertise in threat detection, incident response and digital forensics—capabilities essential for defending sophisticated infrastructure.

Effective cybersecurity defence requires layered protection across network, infrastructure and application levels. A vulnerability at any single layer can compromise the entire system, so comprehensive monitoring and control mechanisms at each layer strengthen overall resilience. This principle has guided TM's security architecture as the company expanded its offerings and customer base. The company's establishment of the TM Cyber Defence Centre (TM CYDEC) represents an institutional commitment to this comprehensive approach, deploying what TM terms a "Cyber Fusion" methodology that integrates security monitoring across all layers for both government and enterprise customers.

As artificial intelligence becomes ubiquitous across commercial and governmental operations, the critical question shifts from whether organisations will adopt AI to whether they can deploy it securely while maintaining customer and public trust. Security measures must evolve in lockstep with technological change; yesterday's robust defences become today's liabilities when coupled with new capabilities. TM has developed an AI security framework specifically designed to govern AI system security, recognising that AI applications introduce novel vulnerabilities alongside their benefits. For Malaysia to maintain digital security as it deepens its technological sophistication and AI adoption accelerates, leadership must embed cybersecurity thinking throughout organisational hierarchy and ensure security measures evolve as dynamically as the threats they confront.