Collective Cyber Defence: Building Resilience in the Borderless Workplace
August 28, 2026, Cyber
Australia’s rapid adoption of digital technologies has transformed the way organisations operate. Cloud services, remote work, artificial intelligence and digital collaboration tools have enabled unprecedented productivity and innovation. However, these same advances have also expanded the attack surface available to cybercriminals and state-sponsored threat actors. As attacks increase in speed, scale and sophistication, organisations can no longer rely solely on traditional perimeter-based security models. Cyber resilience is rapidly becoming a shared responsibility that requires collective intelligence, collaboration and a proactive security strategy.
The Australian Signals Directorate for FY2024-25, received 42,500 calls to the Australian Cyber Security Hotline, an increase of 16% from previous years responding to over 1200 more cyber incidents from past years. These numbers clearly tell us a risk that businesses are exposed to which make them vulnerable to malicious cyber actors.
Gaps in the technology stack and lack of visibility which is now accelerated by the use of AI and shadow agents across organisations have exposed everyone to high levels of risks. Earlier during the year, Five Eyes (Australia, United States, New Zealand, Canada, United Kingdom) issued an AI Security Action for all organisations to treat cyber risk as a core business risk rather than just a pure technical issue. This was a clear signal for businesses and especially to small and medium enterprises to prioritse foundational cyber security practice and controls since the most upcoming and advanced attacks in the future will be accelerated in speed, scale and sophistication. Hence the need to work together rather than in silos remains the top priority for all organisations, whether private or public.
Aiden Whiteman
The New Hybrid Workplace
In a world where employees can work from anywhere and access applications hosted across multiple clouds; the traditional network perimeter has effectively disappeared. If attackers compromise a user account or endpoint, they can attempt lateral movement across systems, applications and data stores. This increased attack surface requires organisations to focus on containing threats quickly and limiting their ability to spread throughout the environment.
The zero-trust approach secures identity and content and enables minimum access to only necessary apps and resources. This also exposes the blind spots in an organisation’s structure and increases visibility across all apps and users. This means stronger security, high-performance access to any applications, from any device with least-privilege access and addressing legacy systems can become strategic liabilities in the future. But how does an organisation protect itself from the speed of AI driven cyber-attacks?
The Power of Shared Cyber Intelligence
One of the most effective capabilities emerging from modern cloud-delivered security platforms is shared threat intelligence. Unlike traditional security tools that rely solely on local observations, cloud security services can identify emerging threats across a broad customer ecosystem. This collective visibility enables providers to detect malicious domains, phishing campaigns, malware infrastructure and compromised cloud services more rapidly than would be possible in a single environment.
Benefit: Customers gain protection from threats they have never encountered before, often before an attack reaches their environment.
Global Visibility Creates Better Security
Cloud Security service providers processes billions of cloud, web, and SaaS transactions across their global customer bases. This provides a broad view of:
- Emerging phishing campaigns
- Malware distribution sites
- Malicious cloud applications
- Compromised user accounts
- Suspicious user behaviours
Shared intelligence continuously enriches Cloud Service providers security engines, including, Secure Web Gateway (SWG), Cloud Access Security Broker (CASB), Zero Trust Network Access (ZTNA), Data Loss Prevention (DLP) and Advanced Threat Protection
Benefit: Individual customers benefit from intelligence gathered across industries, geographies, and attack vectors that would be impossible to observe alone.
Real-Time Risk Scoring
Cloud Security Service providers use shared telemetry to continuously evaluate:
- Domains
- URLs
- IP addresses
- SaaS applications
- Cloud instances
For example, if a cloud storage instance begins hosting malware and is detected elsewhere, its risk score can increase immediately.
Benefit: Customers can automatically block or restrict access before users interact with malicious content.
Better Protection Against Zero-Day and Unknown Threats
Traditional signature-based security relies on known threats. Shared threat intelligence combines:
- Machine learning
- Behavioural analytics
- Global telemetry
- Threat research
Benefit: Customers gain increased protection against previously unseen attacks and sophisticated threats that evade traditional controls.
Enhanced Incident Response
When security teams investigate an alert, Cloud Security Service providers can provide context from their intelligence networks, such as:
- Threat reputation
- Related indicators of compromise (IOCs)
- Known attack campaigns
- Malware classifications
Benefit: Faster triage, reduced Mean Time to Detect (MTTD), and reduced Mean Time to Respond (MTTR).
Collaboration Between Government and Industry
Effective cyber resilience requires more than technology alone. Information sharing between government agencies, private enterprises and industry partners has become a critical component of defending against sophisticated adversaries. Threat actors operate globally and collaborate extensively; defenders must adopt the same mindset. Initiatives led by organisations such as the Australian Signals Directorate and the Five Eyes partnership which highlight the value of coordinated responses to emerging threats.
Artificial intelligence is increasingly being used by both defenders and attackers. While organisations leverage AI to improve productivity, threat actors are using it to automate reconnaissance, generate convincing phishing campaigns and accelerate malware development. The result is an evolving threat landscape where attacks can be launched at greater scale and speed than ever before. This reinforces the need for shared intelligence and automated security controls capable of responding in near real time.
As organisations continue their digital transformation journeys, cyber resilience can no longer be built in isolation. The borderless workplace demands a collaborative defence model where shared intelligence, Zero Trust principles and cloud-delivered security work together to reduce risk. Just as attackers learn from one another and operate as global networks, defenders must harness collective knowledge and visibility to stay ahead. In an era of AI-driven threats, the organisations best positioned for success will be those that recognise that cybersecurity is no longer an individual effort, but a shared mission.