In the ever-evolving landscape of cybersecurity, a thought-provoking perspective emerges from ITR Technology's recent insights. The company, a prominent IT services provider, challenges the conventional wisdom that visibility is the primary gap in security measures. Instead, they argue, it's the execution that matters most.
The Execution Gap: A Critical Blind Spot
ITR Technology's Alan de Waal-Smit, Head of Sales, highlights a fascinating paradox: despite unprecedented investment in security, organizations remain vulnerable. The issue, he suggests, lies not in the tools but in the execution.
This perspective is particularly intriguing when considering the IBM Cost of Data Breach Report 2025, which reveals a significant year-on-year decrease in the average breach cost in South Africa. One might assume that this decrease is a result of improved security measures, but de Waal-Smit argues otherwise.
The Human Factor and Siloed Systems
De Waal-Smit identifies a critical tension between IT operations and security teams, a "silo problem" where two teams with conflicting priorities operate within the same environment. IT operations prioritize uptime and stability, often resisting changes that could impact the production environment, while security operations push for rapid patching and containment to minimize exposure.
This conflict is exacerbated by the human element. As de Waal-Smit notes, "The attacker doesn't care whose KPI gets bruised." This highlights the need for a more holistic approach, one that aligns the priorities of both teams and recognizes the human risk factor.
The Solution: Integration and Alignment
ITR Technology proposes a shift from two systems of record to one system of action. This integrated approach would unify technology, people, and processes, ensuring that detection and response are not siloed within different tools, teams, or workflows.
By treating IT service management as the security control plane rather than a mere help desk, organizations can achieve faster response times, reduce noise, and prioritize risks based on business context.
A Call for Alignment, Not Just Tools
In my opinion, de Waal-Smit's insights are a much-needed wake-up call for the cybersecurity industry. While advanced tools and technologies are essential, they are only as effective as the execution that follows.
The real challenge lies in fostering alignment between IT and security teams, ensuring that their priorities are harmonized, and recognizing that the human element is as crucial as the technological one.
As we navigate an increasingly complex threat landscape, it's clear that the key to resilience lies not just in visibility, but in the seamless execution of security measures.
This perspective challenges us to rethink our approach to cybersecurity, emphasizing the need for a more holistic, integrated strategy.