الرئيس التنفيذي
أشرف الحادي

رئيس التحرير
فاطمة مهران

Cybersecurity at scale: Kaspersky’s insights on resource allocation from small to enterprise-level companies

Kaspersky’s latest IT Security Economics Report 2024 reveals intriguing disparities in IT security staffing and products deployment across organizations of varying sizes. As anticipated larger enterprises have more IT and IT security staff, as well as a greater number of solutions under management. However, they benefit from significant economies of scale, resulting in a lower ratio of IT security specialists. Small and medium-sized businesses (SMBs), meanwhile, face disproportionately higher costs in their fight against cybercrime.

Company size Total IT staff IT security specialists Average number of solutions Ratio of IT sec staff to overall IT staff
Large enterprises 105 23 15 22%
SMBs 12 4 9 33%

Large enterprises face increasing complexity

The data reveals that enterprises manage (on average) 15 complex and often costly security solutions with 23 IT security specialists. These specialists, though qualified, frequently perform manual tasks and face with numerous routine processes.

Organizations experience several pressing cybersecurity challenges. Qualified specialists are in short supply, which on its own is a challenge, but it also results in higher wage demands. While data duplication across systems further complicates security operations and siloed telemetry prevents the seamless correlation of critical security data, leaving gaps in threat detection. Cybersecurity teams can become overwhelmed by a constant flood of alerts and false positives, making it harder to identify genuine threats.

Compounding these issues, security professionals often lack the time to conduct in-depth investigations, as their efforts are consumed by managing multiple, disparate security solutions. As a result, large enterprises become increasingly vulnerable to sophisticated Advanced Persistent Threats (APTs) and complex, human-driven cyberattacks.

To overcome these challenges Kaspersky recommends organizations consolidate their disparate cybersecurity solutions or implement advanced, all-encompassing products that can correlate telemetry from different sources. This is achievable with Extended Detection and Response (XDR) solutions, for instance.

SMBs face unique challenges
With an average of nine security solutions that often provide only basic functionality and just four specialists managing standard processes and well-known threats, SMBs face unique cybersecurity challenges.
A major issue is the need for more qualified information security professionals. Additionally, limited time and resources mean that continuous security awareness training and staff education can be neglected, increasing the risk of data leaks caused by employees who may unknowingly aid cyber adversaries. The development and enforcement of security policies also suffer due to resource constraints, while financial limitations prevent SMBs from investing in more advanced security solutions and the skilled personnel required to manage them.
To address these challenges, SMBs can benefit from outsourcing complex security tasks to experienced teams, such as Managed Service Providers (MSPs) or Managed Security Service Providers (MSSPs). This approach is typically more cost-effective than maintaining a dedicated in-house security team. Additionally, organizations should prioritize ongoing cybersecurity training for all employees, not just IT and security personnel but also general staff, to foster a culture of security awareness and reduce human-related vulnerabilities. Adopting a managed security service like Kaspersky Managed Detection and Response can provide advanced automated security services and real-time analysis of corporate data, 24/7, helping protect against sophisticated cyberattacks, even in the absence of dedicated security personnel.
Additionally, transforming your workforce into an extra layer of protection against human-related cyberattacks is crucial. Solutions that aim at raising security awareness instill safe internet behavior among employees, including simulated phishing attack exercises to teach staff how to recognize phishing emails and other socially engineered lures.

While larger enterprises benefit from economies of scale, the proportional investment in IT security is higher in smaller organizations. This underscores the need for tailored security strategies that address the unique challenges faced by businesses of all sizes.

Related Posts

AD Ports Group and Egypt’s Suez Canal Economic Zone Sign Agreement to Develop KEZAD East Port Said Zone

Fawry Joins Forces with Microsoft to Drive Digital Transformation for Egyptian SMEs Through Fawry Business

Al-Borouj Misr unveils EGP 60bn investment plan for 2025 with 4 major projects during an exceptional celebration

The Iconic Al Habtoor Polo Resort Once Again Hosts the Esteemed International Taste Institute’s Elite Sensory Evaluation

“OneFit Dubai”Launches Dedicated 3-Month HYROX Training Program Ahead of Abu Dhabi Race

KIPCO focuses on growth across companies and wealth creation for shareholders

DSV COMPLETES THE ACQUISITION OF SCHENKER

Betterhomes and DHB Holding announce exclusive partnership in Yas Bay

آخر الأخبار
وزير السياحة يلتقي سكرتير عام منظمة الدول الثماني النامية للتعاون الاقتصادي D8 مصر تدين استهداف البنى الأساسية والمرافق الحيوية في مدينتى بورسودان وكسلا رسميًا .. بايرن ميونخ يتوج بلقب الدورى الألمانى للمرة 34 فى تاريخه وزير الإسكان: مشروع قانون الإيجار القديم لا يستهدف الإخلاء أو الإقصاء القبض على مسئولين لتورطهم في استغلال سلطاتهم الوظيفية لتسهيل ارتكاب مخالفات البناء AD Ports Group and Egypt’s Suez Canal Economic Zone Sign Agreement to Develop KEZAD East Port Said Z... انطلاق تصوير الجزء الثاني من فيلم السلم والثعبان "أحمد وملك" مجموعة موانئ أبوظبي والمنطقة الاقتصادية لقناة السويس توقعان اتفاقية لتطوير منطقة "كيزاد شرق بورسعيد" فاركو يضرب بيراميدز بثلاثية ويشعل صراع المنافسة على لقب الدوري الصحة تغلق عدد من المستشفيات الخاصة في الأقصر وأسوان بنك التعمير والإسكان يشارك في رعاية الملتقى التوظيفي للجامعة الألمانية- بالقاهرة تحالف بين PLUG التابعة للسويدي إليكتريك ومجموعة المرشدي لتعزيز البنية التحتية لشحن السيارات الكهربائ... ««الملاذ الآمن»: أسعار الفضة تتراجع بقيمة جنيه خلال أسبوع شركة «ND الدربالي» تطلق علامتها التجارية الجديدة لتناسب خطتها التوسعية خارج مصر رجل الأعمال منصور البربري: رسوم ترامب تمثل فرصة ذهبية أمام مصر لجذب كبري الشركات الصناعية قطاع الأغذية والمشروبات يتطلع لفعالية مشوقة في معرض سعودي فود شو2025 بالرياض "كيوليس ام اتش اي" تحفز العمل الجماعي خلال أسبوعها السنوي للاستدامة 2025 "الإمارات للدواء" تُعزز الشراكات الاستراتيجية مع المصانع الدوائية الوطنية لتحقيق الأمن الدوائي المست... تقرير: 60% من الشركات في الإمارات متخوّفة من وصول وكلاء الذكاء الاصطناعي إلى البيانات الحساسة جامعة النيل تفتح أبوابها لاستقبال طلاب المدارس الثانوية و الشهادات المعادلة وأولياء أمورهم في يومها ...