Meta has appointed a new Chief Information Security Officer (CISO), reinforcing the company’s continued investment in cybersecurity as it expands its artificial intelligence, cloud infrastructure, and global digital platforms. Leadership changes at this level often signal strategic priorities, particularly for organizations that operate services used by billions of people and manage vast amounts of personal data.
Assaf Keren has been named Meta’s new CISO, bringing extensive experience in cybersecurity leadership and large-scale security operations. In his new role, he will oversee the company’s information security strategy, helping protect Meta’s infrastructure, products, employees, and users against an increasingly sophisticated threat landscape.
The appointment comes at a time when major technology companies face growing pressure to strengthen their cyber defenses. Organizations operating global platforms must contend with a wide range of risks, including nation-state espionage, ransomware, insider threats, supply chain attacks, credential theft, account hijacking, and increasingly sophisticated AI-assisted cyberattacks. Security leaders are expected not only to defend against these threats but also to ensure that security is integrated into every stage of product development and infrastructure management.
As CISO, Keren will likely be responsible for guiding Meta’s enterprise security program across multiple domains, including identity and access management, cloud security, application security, incident response, threat intelligence, vulnerability management, security engineering, and regulatory compliance. The role also involves balancing strong security controls with the speed and innovation required by one of the world’s largest technology companies.
Modern CISOs have responsibilities that extend far beyond technical security. They work closely with executive leadership, engineering teams, legal departments, privacy specialists, and regulators to manage organizational risk while supporting business objectives. At companies the size of Meta, security leadership also includes preparing for large-scale incidents, coordinating global response efforts, and ensuring resilience across highly distributed infrastructure.
The appointment also reflects the evolving role of cybersecurity within technology companies. Security is no longer viewed solely as a defensive function but as a strategic capability that enables product development, customer trust, and regulatory compliance. As Meta continues investing heavily in artificial intelligence, virtual reality, messaging platforms, and large-scale cloud infrastructure, robust security governance becomes increasingly important.
Artificial intelligence introduces additional responsibilities for security teams. Beyond protecting AI infrastructure itself, organizations must defend against prompt injection attacks, model abuse, data poisoning, unauthorized access to AI systems, and emerging threats targeting autonomous agents. Security leaders are increasingly expected to develop governance frameworks that address these new risks while enabling responsible AI adoption.
Leadership transitions also provide an opportunity to refine long-term security strategy. New executives often evaluate existing security programs, prioritize investments, strengthen incident response capabilities, expand automation, and improve collaboration between engineering and security teams. These efforts help organizations adapt to evolving threats while maintaining resilience in complex digital environments.
Meta’s appointment of Assaf Keren underscores the growing importance of experienced cybersecurity leadership in an era where digital platforms face continuous attacks from both criminal organizations and nation-state actors. As cyber threats become more advanced and AI reshapes both offensive and defensive security capabilities, strong executive leadership will remain a critical component of protecting global technology ecosystems.