Skip to content
MarketScale
‹ Back to IndustriesArchitecture & Design

Tech Convergence is Minimizing IT Security Risk By Creating More Synergies Within Companies

Unified security architectures are proving essential as organizations face threats spanning both digital and physical infrastructure

This story was produced through MarketScale. See how Architecture & Design teams put it to work with Executive Thought Leadership.

By Carlos Rivera · Carlos RiveraCybersecurityInfo-tech Research GroupIt Security
Share

Key takeaways

01

Unified security architectures are proving essential as organizations face threats spanning both digital and physical infrastructure

Get featured

Want MarketScale to feature Architecture & Design?

Book a 15-minute demo and we'll map your Architecture & Design expertise to the content buyers are searching for.

Book a demo

Can a proper convergence strategy mitigate IT security risk? It is something all business stakeholders need to consider.

In today's world, where a single security breach could spell catastrophe, how prepared are organizations to combat the intertwined threats looming over their digital and physical landscapes?

As technological advancements evolve, the spectrum of security threats extends beyond the digital sphere, encroaching on physical infrastructures and core organizational operations. Info-Tech Research Group emphasizes the necessity of a unified security architecture, merging physical security, cybersecurity, and other administrative realms like HR, legal, and compliance. Its most recent research and analysis, its "Integrate Physical Security and Information Security" blueprint, offers a structured three-phase approach to reduce IT security risk: Plan, Enhance, Monitor, and optimize to navigate this convergence. Though intricate due to proprietary and diverse technological landscapes, this integration heralds a robust defense against modern threats, embodying a modular, incremental, and repeatable process.

What initial steps should firms undertake to ensure a seamless transition towards this integrated security model? The path towards converging these diverse security networks presents challenges; how should firms adeptly navigate these to bolster their security posture?

Carlos Rivera, a Principal Research Advisor of Security and Privacy Practice at Info-Tech Research Group, provides insights into Info-Tech's published research, expanding on the nuances of harmonizing digital and physical security infrastructures for an enhanced organizational defense mechanism.

Carlos' Thoughts

"Our methodology basically goes into three primary steps, and it's, you know, basically you plan, you make an assessment based on the output. You know, you should focus really on the outcomes more than a lot of people that focus on capabilities, but outcomes really are what you want to focus on. But after you plan and you do the assessment, it's enhancing what you currently have, right? So, that is a kind of standard methodology. I know this sounds kind of boilerplate, but really, it's taking a good look at what you have based on, you know, our methodology or a good control set, right? Using different models like Purdue, et cetera, to really gauge where you're at and where you want to be at the end of the journey, right? So, you know, security is a never-ending journey, but this is a really good way to make an assessment and figure out what areas to focus on."

Security is a never-ending journey, but this is a really good way to make an assessment and figure out what areas to focus on.
— Carlos Rivera, Principal Research Advisor of Security and Privacy Practice at Info-Tech Research Group

How can firms ensure the highest levels of success and safety while converging their technology platforms?

"It's all driven by risk, right? And definitely, in OT settings, you know, one variable that most organizations don't have to worry about is safety, safety concerns. Another risk that I would say is with OT or IoT, as it were, things that could, you know, impact somebody's life. They can have like medical devices, et cetera. This is really the value of the convergence, right? If you have a mindset of, I'm going to publish policies; I have a governance framework for my organization that really is extended to your OT infrastructure, right? And you're holistically looking at a program from an organizational top-down perspective.

That's really the value of convergence. It's not really flattening, as some would think, the infrastructure and creating risk. It's minimizing risk by building on the synergies that you probably already envision with your IT security program."

It's minimizing risk by building on the synergies that you probably already envision with your IT security program.
— Carlos Rivera, Principal Research Advisor of Security and Privacy Practice at Info-Tech Research Group

What key challenges do you see from firms trying to do this, and how can they navigate them?

"One of the most common ones, to be honest with you, it's probably a no-brainer, but it's really just bringing all the key stakeholders to the table to have a conversation, right, about what the objectives are. That's before you do any kind of technical evaluation. Come up with a charter about what the convergence is about. We have pretty good documentation methodology on getting you started and having the right conversation. We also have a list of stakeholders that we recommend having as part of that conversation, but then have a methodical phased approach on what you feel are the biggest risks and how you feel like you're going to solve those risks.

Our methodology encourages you to use business language. That's the best way to talk to stakeholders. You're not going to drive this change from the bottom up. You're going to drive it from the top down. And we recommend using something like COBIT and align your strategic goals for that convergence with business language like COBIT to make it really easy to understand what your mission is."

Your experts belong here

Every story in MarketScale Architecture & Design starts with a company putting its architects, designers, and spec writers on the record. Buyers are already reading this topic. The only question is whose experts they find.

Specifiers choose partners whose work they have already seen explained, and your designers can be that explanation.

Get your team featuredSee how it works15 minutes, straight to a calendar.

About the author

Carlos Rivera
Carlos RiveraPrincipal Research Advisor, Security & Privacy

Carlos Rivera is a Principal Research Advisor in the Security & Privacy practice. Carlos has 25 years of experience in IT and cybersecurity, primarily within the fintech industry. Prior to joining Info-Tech Research Group, Carlos spent 21 years as an information security officer for multi-billion-dollar business units dedicated to money movement in the P2P, B2C, and B2B space. Most recently, throughout his 21-year career with this Fortune 500 fintech, Carlos led global teams of security and network engineers, enterprise architects, risk managers and analysts that provided cybersecurity services to many global financial industry clients, and was responsible for information security governance, cyber risk management, vulnerability management, application security methodology and adoption focusing on shift-left fundamentals such as Static Analysis Security Testing (SAST), Dynamic Analysis Security Testing (DAST), Open Source Security Testing (OSST), and Manual Application Security Testing (MAST).

Follow Architecture & Design Insights

Get new expert content in your inbox.

Architecture & Design: are you visible to AI?

Before they reach out, Architecture & Design buyers ask AI engines which vendors to trust. See how AI describes your company today, and where competitors show up instead.

Free workspace

You just read one Architecture & Design expert. Your company is full of them.

This article was produced through MarketScale. The same platform turns your architects, designers, and spec writers into the articles, video, and social content Architecture & Design buyers are searching for. Create a free workspace and see it with your own people. No credit card, no demo required.

NPS +73 · 1,000+ creators · 38+ countries

What you get, free

Your own MarketScale Studio workspace
One video edit a month, on us
AI writing, editing, and publishing tools
In-platform coaching to learn the system

More Architecture & Design Insights

44% of real estate agents now report a balanced market, ending years of seller dominance

44% of real estate agents now report a balanced market, ending years of seller dominance

CNBC's Q2 2026 Housing Market Survey reveals that 44% of real estate agents now report a balanced market, marking an end to years of seller dominance. The survey also highlights that asking prices have experienced their steepest annual drop on record.

  • 0144% of real estate agents now report a balanced market.
  • 02Asking prices have seen their steepest annual drop on record.
  • 03The shift indicates an end to years of seller dominance in the housing market.

Aug 18, 2026

AI is resetting the baseline for commercial real estate operators, and the laggards are already behind

AI is resetting the baseline for commercial real estate operators, and the laggards are already behind

Artificial intelligence is becoming an essential part of commercial real estate operations, impacting everything from deal underwriting to asset management. Companies that fail to adopt AI technologies risk falling behind in the competitive market. AI is setting new standards for efficiency and effectiveness in the industry.

  • 01AI is a crucial component in commercial real estate operations.
  • 02Failure to adopt AI can cause companies to lag behind competitively.
  • 03AI technologies enhance efficiency and effectiveness in real estate management.

Aug 17, 2026

AI is becoming the operational baseline for commercial real estate teams in 2026

AI is becoming the operational baseline for commercial real estate teams in 2026

AI integration is becoming crucial for commercial real estate (CRE) firms to stay competitive, as they increasingly embed AI into daily operations from underwriting to reporting. The divide between companies adopting AI and those lagging behind is expanding, affecting efficiency and effectiveness.

  • 01AI is being used in deal underwriting and investor reporting within CRE firms.
  • 02The gap between early AI adopters in commercial real estate and those falling behind is expanding.

Aug 15, 2026

Explore More Architecture & Design Insights

Read more expert perspectives from across Architecture & Design.

Browse Architecture & Design Hub

About the Expert

Carlos Rivera
Carlos Rivera

Principal Research Advisor, Security & Privacy

Carlos Rivera is a Principal Research Advisor in the Security & Privacy practice. Carlos has 25 years of experience in IT and cybersecurity, primarily within the fintech industry. Prior to joining Info-Tech Research Group, Carlos spent 21 years as an information security officer for multi-billion-dollar business units dedicated to money movement in the P2P, B2C, and B2B space. Most recently, throughout his 21-year career with this Fortune 500 fintech, Carlos led global teams of security and network engineers, enterprise architects, risk managers and analysts that provided cybersecurity services to many global financial industry clients, and was responsible for information security governance, cyber risk management, vulnerability management, application security methodology and adoption focusing on shift-left fundamentals such as Static Analysis Security Testing (SAST), Dynamic Analysis Security Testing (DAST), Open Source Security Testing (OSST), and Manual Application Security Testing (MAST).

For B2B teams

Your experts could be publishing here

Stories like this one run on content MarketScale captures from real practitioners. See how your team's expertise becomes coverage in Architecture & Design and beyond.

Book a 15-minute demo

Or call us. No forms required. We pick up. 214-945-2512