Malaysia's approach to cybersecurity has undergone a profound transformation since the nation established MyCERT in 1997, with the acceleration of artificial intelligence fundamentally reshaping the nature and velocity of digital threats. What once were isolated attacks on specific systems have evolved into sophisticated assaults targeting interconnected infrastructure spanning banking, government, commerce and critical national services. The intervening decades have witnessed not merely a multiplication of threats, but a qualitative shift in how attacks are conceived, executed and scaled—a shift now turbocharged by AI capabilities that compress decision-making and response cycles from days to minutes.

Raja Azrina Raja Othman, a co-founder of MyCERT who now serves as Chief Information Security Officer at Telekom Malaysia, argues that the fundamental challenge facing Malaysian organisations has shifted from containment to adaptation. In the early years of cybersecurity, threats remained largely compartmentalized within specific networks or systems, allowing defensive responses to operate within predictable parameters. Today's environment presents a starkly different reality, where the digitalization of virtually all economic and governmental functions creates cascading vulnerabilities across interconnected systems. When a breach occurs in this landscape, the ripple effects extend far beyond technical system failures; they threaten operational continuity, financial stability, customer trust and the reputation that organisations depend upon for survival.

The integration of artificial intelligence into cyber-attack methodologies has fundamentally altered the threat calculus. Attackers leveraging AI can now rapidly identify system vulnerabilities, generate highly convincing phishing campaigns that exploit human psychology, and launch coordinated attacks at scales and speeds that overwhelm traditional manual defence operations. This acceleration demands a corresponding evolution in defensive strategy—yet many Malaysian organisations remain trapped in outdated security paradigms that rely heavily on reactive, labour-intensive monitoring rather than intelligent, automated threat detection and response systems.

Raja Azrina identifies a critical vulnerability in how many Malaysian organisations approach information security: a persistent misalignment between information technology planning and cybersecurity implementation. This disconnect occurs because many organisations still regard cybersecurity as an overhead cost or compliance checkbox rather than an essential business function. This perception fundamentally misconstrues the nature of modern cyber risk, which is inseparable from operational continuity and customer confidence. When core systems are compromised, organisations face not merely technical problems but existential business challenges—the inability to deliver services, fulfil customer expectations and maintain the institutional trust upon which commerce depends.

A crucial insight emerging from TM's experience protecting Malaysia's digital infrastructure is that cybersecurity cannot be effectively addressed as a technical problem alone; it must be embedded within organisational governance and leadership accountability. This represents a significant departure from traditional approaches that treated security as the responsibility of technology teams operating in isolation from strategic business decision-making. Instead, security governance must permeate the entire organisation, with senior leadership understanding the risk implications of technical decisions and allocating resources accordingly based on systematic risk assessment rather than ad-hoc crisis response.

The practical implementation of this strategic approach requires organisations to adopt risk-based prioritisation frameworks. Rather than attempting to defend against every conceivable threat—an impossible task—Malaysian organisations should systematically identify the threats most likely to disrupt critical business operations, then allocate defensive resources proportionally. This methodology forces difficult choices about resource allocation but ensures that investments generate maximum protective value. It also acknowledges an uncomfortable reality that sophisticated cyber defenders understand clearly: no defensive strategy can entirely prevent successful attacks. The distinction between organisations that emerge from security incidents relatively unscathed and those that suffer catastrophic damage lies primarily in their capacity to detect threats rapidly, respond decisively and remediate damage before operations suffer extended disruption.

Telekom Malaysia's development of the TM Cyber Defence Centre represents an institutional response to these evolving requirements. The facility employs a comprehensive "Cyber Fusion" approach that integrates monitoring across network infrastructure, system-level controls and application-level security protocols. This layered architecture recognises that attacks exploit vulnerabilities at multiple levels simultaneously; effective defence therefore requires equally comprehensive monitoring capabilities. By combining human expertise with automated threat detection systems, the centre can maintain continuous vigilance across TM's vast and intricate digital environment while simultaneously supporting government and enterprise clients navigating their own cyber challenges.

The scale of digital infrastructure that TM must protect underscores why Malaysian organisations increasingly view cybersecurity as integral to national competitiveness and resilience. TM manages critical networks serving millions of customers, operates data centres hosting sensitive governmental and commercial information, and provides cloud services essential to digital transformation initiatives across both public and private sectors. The cybersecurity expertise developed through protecting these assets has evolved into specialised capabilities spanning threat detection, incident response and digital forensics. This accumulated knowledge base provides TM with insights into emerging threat patterns and effective defensive techniques that extend beyond TM's own operations to benefit the broader Malaysian digital ecosystem.

Artificial intelligence introduces additional complexity into this security landscape. Rather than viewing AI as merely a tool for attackers, forward-thinking organisations like TM are developing AI security frameworks that employ machine learning and automation to enhance defensive capabilities. The competition between offensive AI-powered attacks and defensive AI-enhanced response systems has become central to cybersecurity strategy. Organisations adopting secure AI implementation practices can leverage artificial intelligence's analytical power and processing speed while maintaining appropriate controls and safeguards. This requires embedding security considerations into AI system design and deployment rather than treating security as a post-implementation consideration.

For Malaysian policymakers and business leaders, these evolving realities demand recognition that cybersecurity has transcended technical specialisation to become a fundamental strategic concern alongside traditional business priorities. The question no longer centres on whether organisations will adopt transformative technologies like artificial intelligence, but rather whether they can do so in ways that maintain security and customer trust. This transformation implies significant resource implications—not merely in funding security infrastructure and personnel, but in reorganising how organisations approach governance, risk management and strategic planning.

The experience of MyCERT's three-decade evolution provides Malaysia with established institutional expertise upon which to build enhanced national cybersecurity resilience. However, this foundation must be continuously adapted to address emerging threats and exploit emerging defensive technologies. Organisations that view cybersecurity as a reactive burden rather than a competitive necessity will find themselves increasingly vulnerable to sophisticated attacks that threaten their viability. Conversely, those that embed security into strategic planning and allocate resources proportionally to genuine risk exposure position themselves to navigate an increasingly hostile digital environment while maintaining the operational continuity and customer confidence essential to sustainable success.