Saving MSPs’ time and money

SMART Cybersecurity Handbook 2022 Information Security

Acronis has released research conducted by VansonBourne showing that consolidating and integrating cybersecurity, backup and disaster recovery (DR) services produces US$ 229 159 in savings on average and reduces the time required to recover from a breach or data loss incident by an average of five hours.

In conjunction with ChannelPro Network, the survey of 400 managed service providers across the globe, titled MSPs Speak: Cybersecurity and the future role of the MSP, dives deep into the biggest challenges and opportunities that MSPs (managed service providers) currently face when providing cybersecurity, backup and disaster recovery services. Available as a free download (use the short link www.securitysa.com/*acronis1), the report focuses on critical issues like cybersecurity attacks, ‘vendor sprawl’, remote work environments and the use of SaaS tools by clients.

MSPs feel vulnerable and a lack of trust abounds

Data from the study underscores why MSPs urgently need the efficiency gains vendor consolidation makes possible, beginning with today’s dangerous threat landscape. Given the recent flurry of supply-chain attacks seen in the MSP industry, it is not that surprising to learn 96% of MSPs are concerned about suffering a cybersecurity breach in the next 12 months.

This sense of vulnerability is amplified by a lack of trust in two directions: 49% of MSPs responded that their clients do not completely trust the security of the services their organisation provides, while 53% of MSPs do not completely trust the vendors they use to provide cybersecurity services.

To combat this sense of vulnerability, many MSPs have added additional tools to their technology stack. MSPs use an average number of four vendors to provide cybersecurity, backup and/or DR services, with 30% report using more than five vendors.

The role of SaaS management

MSPs report that their clients use an average of 14 SaaS tools, a finding very consistent with recent Acronis end-user research (short link: www.securitysa.com/*acronis2). However, MSPs also report only managing an average of 58% of their clients’ SaaS tools, with only 3% indicating they manage 100%. This discrepancy results in greater vulnerabilities for clients, because SaaS data is not being properly protected and the MSPs have limited visibility into these environments. However, there is a huge potential for growth for service providers if they are able to prove to their clients that there are benefits to them managing the licences, on-boarding, security and performance of these SaaS applications.

MSPs report that the biggest obstacles to managing more of their clients’ SaaS tools are not having the right relationships with line of business decision makers (44%), not having the right tools (41%) and a lack of trust (39%).

More tools, more problems

Unfortunately, deploying technology tools against a problem does not make it go away. In fact, the resulting ‘tool sprawl’ can and does create a new set of problems. According to the results, the two most commonly faced challenges are the integration of security offerings with existing business and IT systems (40%) and security workflow and process creation and updates (37%).

In addition to integration, training, documentation and workflow challenges created by more tools, there is a glaring cost concern. Over the past two years, the average cost of providing cybersecurity, backup and/or DR services has increased by 19%. However, 71% of MSPs report struggling to demonstrate the value of these cost increases to their clients, which creates a serious dilemma and pressure on profit margins.

Benefits of consolidation and integration

Given the reported tool sprawl among MSPs and corresponding integration, workflow and cost issues, it is not surprising that 92% of MSPs report having consolidated vendors and 70% plan to consolidate further due to the substantial savings they’ve realised from lower licencing costs, training costs and employee documentation costs and the hours of time they save when recovering from incidents.

Further time and money savings can surely be realised, as 41% of MSPs indicate they want to see the automation of backup and recovery tasks more tightly integrated into their cybersecurity services to address the ongoing and pervasive threat of ransomware more adequately.

The results from this research are clear – MSPs are facing numerous challenges in providing cybersecurity services and simply throwing more tools at the problem is making matters worse, not better. As such, there is a trend towards consolidating vendors, as well as more tightly integrating existing vendors with workflows and those MSPs which are successful in these efforts will have a material advantage over their competition.




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

95% do not have full trust in cybersecurity vendors
Information Security Security Services & Risk Management
Trust in cybersecurity vendors is fragile, difficult to measure, and increasingly shaping risk posture at both operational and board levels. Lack of verifiable transparency undermines cybersecurity decision-making, according to Sophos-backed research.

Read more...
Africa’s largest Zero Trust platform
NEC XON Information Security Commercial (Industry)
Africa has reached a significant cybersecurity milestone with the successful deployment of the continent’s largest Palo Alto Networks Prisma Access and Prisma Access Browser Zero Trust environment, supporting secure remote access for more than 40 000 users for a large enterprise in Africa.

Read more...
Supply chain attacks top threat over 12 months
Information Security
Supply chain attacks have become the most prevalent cyberthreat confronting businesses over the past year, according to a new Kaspersky global study, with nearly one-third of companies worldwide experiencing a supply chain threat in the past year.

Read more...
From vibe hacking to flat-pack malware
Information Security AI & Data Analytics
HP issued its latest Threat Insights Report, with strong indications that attackers are using AI to scale and accelerate campaigns, and that many are prioritising cost, effort, and efficiency over quality.

Read more...
NEC XON secures mobile provider’s hybrid identities
NEC XON Access Control & Identity Management Information Security Commercial (Industry)
For a leading South African telecommunications operator, identity protection has become a strategic priority as identity-centric attacks proliferate across the industry. The company faced mounting pressure to secure both human and non-human identities across complex hybrid environments.

Read more...
Microsoft 365 security is a ticking time bomb
Information Security
Across boardrooms and IT departments, a dangerous assumption persists that because data is stored in Microsoft 365 and Azure, it is automatically secure. This belief is fundamentally flawed and fosters a false sense of protection.

Read more...
Rise in malicious insider threat reports
News & Events Information Security
Mimecast Study finds 46% of SA organisations report a rise in malicious insider threat reports over the past year: reveals disconnect between security awareness and technical controls as AI-powered attacks accelerate.

Read more...
New campaign exploiting Google Tasks notifications
News & Events Information Security
New phishing scheme abuses legitimate Google Tasks notifications to trick corporate users into revealing corporate login credentials, which can then be used to gain unauthorised access to company systems, steal data, or launch further attacks.

Read more...
Making a mesh for security
Information Security Security Services & Risk Management
Credential-based attacks have reached epidemic levels. For African CISOs in particular, the message is clear: identity is now the perimeter, and defences must reflect that reality with coherence and context.

Read more...
What’s in store for PAM and IAM?
Access Control & Identity Management Information Security
Leostream predicts changes in Identity and Access Management (IAM) and Privileged Access Management (PAM) in the coming year, driven by evolving cybersecurity realities, hybridisation, AI, and more.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.