OpenText Survey Shows AI is Driving MSP Growth but a Skill Deficit Remains an Issue

Amy Larsen DeCarlo – Principal Analyst, Security and Data Center Services

Summary Bullets:

• In its annual Global Managed Security survey of 1,019 managed services providers (MSPs) in the US, Canada, and the UK, security vendor OpenText uncovered a big delta between the desire to exploit SMB demand for AI-driven solutions and the capability of these providers to deliver the essential support.

• Approximately 92% said they are seeing growth driven by client interest in AI but only half have the adequate resources and expertise to help clients deploy these solutions.

Organizations of all sizes are boarding the AI bandwagon. For smaller businesses lacking internal AI expertise, adoption often requires the support of an external provider. Unfortunately, that same resource limitation also plagues many of the MSPs SMBs seek out for AI support. In a recent OpenText survey of 1,019 security practitioners, IT managers, and customer relationship managers, in the coming year 96% expect to see growth in demand driven by interest in AI. However, half said a combination of factors leaves them under-prepared to support SMB AI needs, including a lack of internal expertise, too many disparate tools to manage, and the lack of standardization across different client environments.

Continue reading “OpenText Survey Shows AI is Driving MSP Growth but a Skill Deficit Remains an Issue”

Ransomware Spikes as Threat Actors Leverage AI to Launch Campaigns

Amy Larsen DeCarlo – Principal Analyst, Security and Data Center Services

Summary Bullets:

• Fueled both by its lucrative results and AI-driven toolkits that lower the barrier of entry for enterprising yet inexperienced bad actors, ransomware incidents are soaring.

• In 2024, ransomware drove 44% of data breaches around the world and accounted for 54% of those in APAC, according to the 2025 Verizon Data Breach Investigations Report (DBIR).

As is the case with any IT security breach, it is no longer a question of if but when an enterprise might be hit with ransomware. Motivated in large part by profit potential, cybercriminals are drawn to ransomware as a mechanism to extort money. As a result, ransomware incidents are on the rise with the 2025 Verizon DBIR finding the number has increased 37% in 2024 versus the prior year.

Continue reading “Ransomware Spikes as Threat Actors Leverage AI to Launch Campaigns”

Reality Check: Accenture Research Shows Enterprises Face a Security Deficit in the AI Era

Amy Larsen DeCarlo – Principal Analyst, Security and Data Center Services

Summary Bullets:

  • In a survey of 2,286 technology and security-focused executives, Accenture reports that only 34% have a mature cybersecurity strategy.
  • Just 20% say they are confident in their ability to protect their generative AI (GenAI) models from a breach.

Artificial intelligence (AI) presents as a double-edged sword for many enterprises. The technology has the potential to revolutionize business processes and drive further innovation but is protecting the model from advancing threats that could compromise the integrity of data output. This is a daunting challenge that few organizations have a handle on today. Add threat actors harnessing AI for their own nefarious purposes to the mix, and the situation becomes much more daunting for the enterprise.

Continue reading “Reality Check: Accenture Research Shows Enterprises Face a Security Deficit in the AI Era”

We Are Becoming Numb to Cybersecurity Breaches

S. Schuchart

Summary Bullets:

• Password managers do tend to make logging in easier – but it’s a change that people must get used to…

• To really embrace cybersecurity, there needs to be a reckoning to correct old thinking and ideas.

Sixteen (16) billion. That’s a number that isn’t comprehendible. It’s a number you hear on the news, usually in a science segment or in a finance segment talking about the ultra-wealthy. But this time, 16 billion is the number of exposed login credentials researchers from Cybernews found in an exposed dataset. This dataset contains stolen login credentials, mostly gained via malware. The credentials come from everywhere – from websites around the world, including popular websites and cloud services.

Continue reading “We Are Becoming Numb to Cybersecurity Breaches”

Enterprises Take Up Arms Against Perilous Threats but Still Struggle with Unwieldy Security Tools

Amy Larsen DeCarlo – Principal Analyst, Security and Data Center Services

Summary Bullets:

  • Enterprises are under constant threat with no signs of abatement. The Verizon 2025 Data Breach Investigations Report (DBIR) notes a 37% rise in ransomware versus 2024.
  • Cisco’s May 2025 State of Security Report found that 59% of the 2,058 security professionals surveyed spend excessive resources maintaining tools and affiliated workflows.

The nature of cybersecurity is dynamic, as the threat landscape is in constant flux, making the discipline a daunting exercise environment for security practitioners. Even well-resourced organizations struggle to manage risk effectively as bad actors apply a combination of advanced technology and sophisticated techniques to exploit enterprise vulnerabilities. Verizon’s 2025 Database Investigations Report (DBIR), an examination of 22,052 security incidents, 12,195 of which were verified to be data breaches, found that in 20% of all breaches, vulnerabilities were the entryway for a breach. This makes it the second most common initial avenue for a breach, just behind credential abuse.

Continue reading “Enterprises Take Up Arms Against Perilous Threats but Still Struggle with Unwieldy Security Tools”

Near Miss – Funding is Not the Only Threat to the CVE Program

S. Schuchart

Summary Bullets:

• The foundations of the cybersecurity industry shook as the CVE program is nearly ended over short-sighted budget considerations.

• It is hard to convey how crucial the CVE system is worldwide.

This news was kept in the dark. If it would not have been for a leak of an internal memo to social media, it would have hit the cybersecurity landscape like a musket ball to the forehead. The Common Vulnerabilities and Exposures (CVE) system is a load-bearing piece of the world’s cybersecurity infrastructure, and it was still perilously close to being suspended. The current US administration’s FIRE – READY – AIM approach to cost cutting was to blame for what could have been a catastrophic loss.

Continue reading “Near Miss – Funding is Not the Only Threat to the CVE Program”

Post-Quantum Cryptography – The Tempest Begins

S. Schuchart

Summary Bullets:

  • Governments have issued advisories as to when and how enterprises, institutions, and government agencies should begin their journey to PQC.
  • While there is much speculation as to when quantum computing will advance to become a threat, the time to act is NOW.

While the AI trend has made a lot of noise dominating headlines, the world of quantum computing has been moving forward much more quietly. More qubits, new error correction, and in general just more improvements in the field as fundamental research continues to point the way. Quantum computing will provide the means to crack some of the hardest problems in the world and will lead to advances in healthcare, chemistry, materials science, and so much more.

Continue reading “Post-Quantum Cryptography – The Tempest Begins”

New IBM Research Puts a Fine Point on How Complexity Impedes Effective Cybersecurity

Amy Larsen DeCarlo – Principal Analyst, Security and Data Center Services

Summary Bullets:

• IT security teams contend with managing dozens of individual security solutions, often with less than stellar results.

• In a recent study conducted by IBM and Palo Alto Networks, 52% of the surveyed executives call out complexity as being the biggest obstacle to effective security.

Cybersecurity has never been a simple exercise. As enterprises have evolved to become distributed and virtual, the perimeter has faded, and IT has had to find new ways to protect enterprise assets. The move to hybrid and remote operations in recent years has only complicated this further. Add budget pressure and limited internal security expertise, and the pressure becomes that much more intense.

Continue reading “New IBM Research Puts a Fine Point on How Complexity Impedes Effective Cybersecurity”

The World Economic Forum Releases its 2025 Cybersecurity Outlook, and the New Year Looks Complicated

Amy Larsen DeCarlo – Principal Analyst, Security and Data Center Services

Summary Bullets:

• In its report on the outlook for cybersecurity in 2025, the World Economic Forum observed enterprises are contending with a daunting threat environment while simultaneously trying to cover gaps in their internal security skill sets.

• Based on a survey of 321 security professionals and more in-depth interviews with 43 CISOs, the research highlighted discrepancies in the level of confidence in their cyber resilience by organizational size.

Findings from the World Economic Forum (WEF)’s Global Security Outlook Report 2025, conducted in partnership with Accenture, underscores the challenges enterprises and smaller organizations are facing amid global turmoil, relentless threat actors, and fast-evolving technology innovation. The results of the WEF survey of security professionals in 57 countries also show major differences in organizations based on size. Thirty-five percent (35%) of small organizations are concerned that their cyber resilience is lacking, seven times more than in 2022. Large enterprises report the opposite, with half as many saying their cyber resilience was unsatisfactory.

Continue reading “The World Economic Forum Releases its 2025 Cybersecurity Outlook, and the New Year Looks Complicated”

Small Business Saturday – An Opportunity for UK Telcos

R. Pritchard

Summary Bullets:

  • Held on the first Saturday in December, ‘Small Business Saturday’ in the UK encourages small businesses to promote themselves and attract customer attention.
  • Following Black Friday offers, UK telcos should use this event to target SMBs and SOHOs – acquiring customers is more profitable than slashing margins.

Having started in the US in 2010, ‘Small Business Saturday’ has found its way to the UK and celebrated its 12th anniversary this side of the Atlantic on December 7, 2024 – an estimated GBP669 million was spent on Small Business Saturday in the UK in 2023.

Continue reading “Small Business Saturday – An Opportunity for UK Telcos”