Close Menu
TechCentralTechCentral

    Subscribe to the newsletter

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    Facebook X (Twitter) YouTube LinkedIn
    WhatsApp Facebook X (Twitter) LinkedIn YouTube
    TechCentralTechCentral
    • News

      South Africa begins complex job of overhauling media laws

      13 July 2025

      Nvidia CEO to hold high-stakes media briefing in Beijing

      13 July 2025

      Blue Label Telecoms to change its name as restructuring gathers pace

      11 July 2025

      Get your ID delivered like pizza – home affairs’ latest digital shake-up

      11 July 2025

      EFF vows to stop Starlink from launching in South Africa

      11 July 2025
    • World

      Grok 4 arrives with bold claims and fresh controversy

      10 July 2025

      Bitcoin pushes higher into record territory

      10 July 2025

      Cupertino vs Brussels: Apple challenges Big Tech crackdown

      7 July 2025

      Grammarly acquires e-mail start-up Superhuman

      1 July 2025

      Apple considers ditching its own AI in Siri overhaul

      1 July 2025
    • In-depth

      Siemens is battling Big Tech for AI supremacy in factories

      24 June 2025

      The algorithm will sing now: why musicians should be worried about AI

      20 June 2025

      Meta bets $72-billion on AI – and investors love it

      17 June 2025

      MultiChoice may unbundle SuperSport from DStv

      12 June 2025

      Grok promised bias-free chat. Then came the edits

      2 June 2025
    • TCS

      TCS+ | MVNX on the opportunities in South Africa’s booming MVNO market

      11 July 2025

      TCS | Connecting Saffas – Renier Lombard on The Lekker Network

      7 July 2025

      TechCentral Nexus S0E4: Takealot’s big Post Office jobs plan

      4 July 2025

      TCS | Tech, townships and tenacity: Spar’s plan to win with Spar2U

      3 July 2025

      TCS+ | First Distribution on the latest and greatest cloud technologies

      27 June 2025
    • Opinion

      In defence of equity alternatives for BEE

      30 June 2025

      E-commerce in ICT distribution: enabler or disruptor?

      30 June 2025

      South Africa pioneered drone laws a decade ago – now it must catch up

      17 June 2025

      AI and the future of ICT distribution

      16 June 2025

      Singapore soared – why can’t we? Lessons South Africa refuses to learn

      13 June 2025
    • Company Hubs
      • Africa Data Centres
      • AfriGIS
      • Altron Digital Business
      • Altron Document Solutions
      • Altron Group
      • Arctic Wolf
      • AvertITD
      • Braintree
      • CallMiner
      • CambriLearn
      • CYBER1 Solutions
      • Digicloud Africa
      • Digimune
      • Domains.co.za
      • ESET
      • Euphoria Telecom
      • Incredible Business
      • iONLINE
      • Iris Network Systems
      • LSD Open
      • NEC XON
      • Network Platforms
      • Next DLP
      • Ovations
      • Paracon
      • Paratus
      • Q-KON
      • SevenC
      • SkyWire
      • Solid8 Technologies
      • Telit Cinterion
      • Tenable
      • Vertiv
      • Videri Digital
      • Wipro
      • Workday
    • Sections
      • AI and machine learning
      • Banking
      • Broadcasting and Media
      • Cloud services
      • Contact centres and CX
      • Cryptocurrencies
      • Education and skills
      • Electronics and hardware
      • Energy and sustainability
      • Enterprise software
      • Fintech
      • Information security
      • Internet and connectivity
      • Internet of Things
      • Investment
      • IT services
      • Lifestyle
      • Motoring
      • Public sector
      • Retail and e-commerce
      • Science
      • SMEs and start-ups
      • Social media
      • Talent and leadership
      • Telecoms
    • Events
    • Advertise
    TechCentralTechCentral
    Home » Information security » Why enterprises are still falling short on cybersecurity

    Why enterprises are still falling short on cybersecurity

    Promoted | The modern cybersecurity battleground is delivering a new level of challenges for commercial enterprises and government institutions.
    By Solid8 Technologies23 February 2023
    Twitter LinkedIn Facebook WhatsApp Email Telegram Copy Link
    News Alerts
    WhatsApp

    The modern cybersecurity battleground is delivering a new level of challenges for commercial enterprises and government institutions.

    They are discovering the process of protecting and securing their most critical assets has become more difficult and complex.

    This translates to higher financial costs, greater risk from national security threats and even the spectre of devastating damage done to critical national infrastructure and/or human lives.

    Cybercriminal groups and nation-state actors have a variety of advanced tools, techniques and procedures at their disposal to launch and execute effective attacks on potential targets. Most organisations are falling short in terms of preventing or blocking such attacks (the recent Garmin cyberattack offers one such example).

    Why? Because they lack critically important visibility of their attack surface and thus fail to understand how attackers are exploiting existing weaknesses to get inside the network and take down the most critical assets.

    Asymmetrical battle

    Cybersecurity is an asymmetrical battle. Attackers have all the advantages and pre-conditions for success. They can pick the right timing, the right target, the type of attack and, most importantly, they can keep it anonymised with deniability capability – something that is critical for nation-state actors.

    Conversely, defenders are saddled with all the disadvantages. They must operate around the clock and satisfy the needs of the business; they must ensure there are no weaknesses and exposures that will allow attackers to break in; they need to monitor for anomalies and suspicious events 24/7, and be ready to respond to any attempt promptly.

    In addition to these inherent disadvantages, security and IT teams are typically understaffed and often lack key skills and talent in the cybersecurity domain. Given this, poor results are not surprising.

    Hackers under the spotlight

    To effectively protect themselves, organisations must level the playing field by adopting the attackers’ perspective and gaining visibility into the techniques they will likely use to breach the network.

    Imagine a chess game where you already know your opponent’s next move, allowing you to protect your king by anticipating and blocking attack strategies with ease. That’s exactly what the XM Cyber platform offers – a sophisticated tool that allows them to go on offence by playing defence, seizing the initiative and levelling the playing field.

    Predictive analytics – the next generation of cybersecurity defence

    The XM Cyber platform uses advanced predictive analytical algorithms to predict how an attacker will breach the network, identifying the multi-step attack vector towards organisational critical assets/crown jewels. The platform automatically detects risky user activity, IT misconfigurations, exploitable vulnerabilities and over-permissive privileges. Adversaries may exploit such issues by launching and attack and moving laterally, leveraging and exploiting all existing weaknesses to eventually take down the critical asset.

    Visualise your modern attack surface

    The modern attack surface is expanding, and now includes remote users and workers, third-party connections, cloud instances, serverless computing and much more. Today, more than ever, the modern attack surface is highly sensitive to human errors and misconfigurations, which allows attackers to conduct successful breaches with ease (as in the case of the 2019 CapitalOne data breach, which was tied to a simple misconfiguration).

    The XM Cyber platform offers an unprecedented visibility of the attack surface and all the attack vectors any attacker can facilitate and execute. It does this by using a unique offensive intelligence and deep understanding of the attack surface weaknesses that can be exploited.

    Once the XM Cyber platform is deployed and the critical assets have been defined, the platform will continuously calculate all of the possible movements that attackers can do in the network, based on the contextual state of the network segmentation, IT hygiene level, user activity and existing vulnerabilities. This means that defenders, for the first time, have predictable visibility into how attackers can breach their networks.

    Remove the risk, effortlessly

    Some people might claim that if you can patch all your vulnerabilities, harden all your systems and monitor any activity, you will be safe and protected. The truth is that this is an impossible scenario for any organisation. There are constant flows of changes, misconfigurations, and narrow maintenance and change management windows. This means that security and IT teams typically can only patch and harden about 5% of what they actually need to do. So how do you pick and choose the right 5% of fixes that will remove 95% of the risk?

    The XM Cyber platform advises you on the remediations and mitigations you need to take and how these actions will reduce your overall risk. Moreover, by fixing specific points that attackers must navigate (called chokepoints or critical sections) you can eliminate the overall threat of the attack vector, dramatically reducing the effort required of IT teams to eliminate a very elevated risk.

    Let executives understand their true level of business risk

    For the first time, the XM platform makes it possible for organisations to visualise their cybersecurity risk level, showing risk over time and mitigation trends, and allowing the board of directors to understand the link between a security investment, actions and the risk level they are assuming. It also serves as a decision support system for multiple functions and teams in the organisation – offering guidance on how to prioritise remediation activities, showing the relative importance of each step, and illustrating how attackers could exploit changes in the network while detailing the possible risk impact.

    There is no parallel technology that can bring such a unique understanding of how attackers will exploit your network, while also demonstrating the remediations you need to take in order to remove the risk completely.

    About XM Cyber
    XM Cyber is a leading hybrid cloud security company that’s changing the way organisations approach cyber risk. XM Cyber transforms exposure management by demonstrating how attackers leverage and combine misconfigurations, vulnerabilities, identity exposures, and more, across AWS, Azure, GCP and on-premises environments to compromise critical assets. With XM Cyber, you can see all the ways attackers might go, and all the best ways to stop them, pinpointing where to remediate exposures with a fraction of the effort. Founded by top executives from the Israeli cyber intelligence community, XM Cyber has offices in North America, Europe and Israel.

    If you would like to book a demo, contact Patrick Devine at [email protected].

    • The author, Uri Levy, is senior vice president of strategy and business development at XM Cyber
    • Read more articles from Solid8 Technologies on TechCentral
    • This promoted content was paid for by the party concerned


    Solid8 Solid8 Technologies XM Cyber
    Subscribe to TechCentral Subscribe to TechCentral
    Share. Facebook Twitter LinkedIn WhatsApp Telegram Email Copy Link
    Previous Article‘TechFin’ in Africa gets a boost: introducing Omnea and Tegra
    Next Article The silicon giant cashing in on the AI boom

    Related Posts

    A CISO’s guide to modern security observability

    20 May 2025

    Seraphic secures $29m to strengthen browser security for businesses

    27 February 2025

    Anjuna Northstar: first-of-its-kind AI data fusion clean room, now available to all

    12 December 2024
    Add A Comment

    Comments are closed.

    Company News

    $125-trillion traded: Binance redefines global finance in just eight years

    11 July 2025

    NEC XON welcomes HPE acquisition of Juniper Networks

    11 July 2025

    LTE Cat 1 vs Cat 1 bis – what’s the difference?

    11 July 2025
    Opinion

    In defence of equity alternatives for BEE

    30 June 2025

    E-commerce in ICT distribution: enabler or disruptor?

    30 June 2025

    South Africa pioneered drone laws a decade ago – now it must catch up

    17 June 2025

    Subscribe to Updates

    Get the best South African technology news and analysis delivered to your e-mail inbox every morning.

    © 2009 - 2025 NewsCentral Media

    Type above and press Enter to search. Press Esc to cancel.