The cybersecurity landscape is a complex and ever-evolving arena, and it's high time we shift our focus from visibility to execution, according to industry experts. Alan de Waal-Smit, head of sales at ITR Technology, recently made a compelling case at the ITWeb CISO Retreat, emphasizing the criticality of addressing the execution gap in cybersecurity strategies.
The Execution Gap: A Hidden Vulnerability
De Waal-Smit argues that while visibility is important, it is the execution of security measures that often falls short. In his view, the biggest cybersecurity challenge lies in the effective implementation of plans to prioritize risks, prepare for breaches, and ensure swift recovery. This is a stark contrast to the common belief that the primary issue is the lack of visibility into potential threats.
The tension between IT operations and security teams is a significant contributor to this execution gap. IT operations, focused on uptime and stability, often resists changes that could impact production environments. On the other hand, security operations prioritize speed and patching to minimize exposure windows. De Waal-Smit describes this as a 'silo problem,' where conflicting priorities create a barrier to effective collaboration.
The Human Element and Credential Abuse
De Waal-Smit highlights the human element as a critical factor in cybersecurity. The IBM Cost of Data Breach Report 2025 reveals a concerning trend: credential abuse is the leading initial access vector for data breaches in South Africa. This means that stolen or abused credentials are the primary means by which attackers gain entry. Moreover, the Verizon Data Breach Investigations Report underscores the role of third-party involvement, with 30% of breaches involving external entities, and a staggering 88% of web-application attacks exploiting stolen credentials.
Integrating Technology, People, and Processes
To address the execution gap, de Waal-Smit advocates for a unified approach that integrates technology, people, and processes. He emphasizes the importance of treating IT service management as the security control plane, rather than a mere help desk. By aligning IT and security workflows, organizations can achieve faster response times, reduce noise, and prioritize risks based on their business context.
In conclusion, de Waal-Smit's insights shed light on the critical need to bridge the execution gap in cybersecurity. By focusing on alignment and integration, organizations can fortify their defenses against evolving threats and minimize the impact of data breaches. It's time to shift our mindset and prioritize execution to stay one step ahead in the ongoing battle against cyber threats.