There is a SaaS for everything, but at what cost, especially to SMEs?

August 2024 Editor's Choice, Information Security, Security Services & Risk Management

SaaS platforms are convenient and easy to access without installation hassles. With a stable internet connection and a monthly fee, you can eliminate the complexity of managing multiple software and hardware systems, but at what cost, especially in the SME environment where everything fails when trust is damaged in the marketplace?


Ethan Searle.

“This can be catastrophic to SME business owners’ plans to sell their thriving concern and with it secure their pension,” says Ethan Searle, Business Development Director, LanDynamix.

Forbes reports that every year, businesses rely more on software-as-a-service platforms for different tasks—from website analytics to accounting, payroll to email automation and more. Statista reveals Salesforce's annual revenue alone reached US$34 billion in its 2024 fiscal year - a record high. Subscription and support were reported as the business segments that contributed the most to the company’s continued sales boom. The SaaS market is thriving, to put it mildly.

“There’s a reason for this trend. SaaS services allow companies to focus on growing their core business offerings by using this software model to digitise and automate business processes. This, in turn, helps employees to execute their job responsibilities correctly and reliably, delivering a differentiated and consistent customer experience.”

Third-party SaaS poses substantial security risks

“Really, in today’s fast-paced and immensely competitive environment, reliance on SaaS is inevitable, but as with anything, there is a price to be paid, which may be too high for SMEs – in a country where 80% of all start-ups fail. SaaS services are closely integrated into a company’s existing technology – the more SaaS providers in your landscape, the bigger your attack surface. You must ask yourself how strong, or weak, are the SaaS providers in your chain,” says Searle.

Searle cites the CDK attack – a software provider used by thousands of car dealerships - as an example of the risks posed by SaaS-based systems. CDK was forced to shut down most of its systems after ransomware hit it. “CDK is an example of why contingency planning is crucial. The attack left 15 000 automotive dealers in operational limbo as the provider worked to restore its dealer management system.”

Searle says if, as an SME, you think that cyber criminals will not hack your business – it is too small – they will go for the big fish – you are wrong. “Cyber criminals regard SMEs as a prime soft target, knowing many in the sector fail to invest in adequate protection or simply lack resources. Taking an ostrich approach by sticking your head in the sand and hoping the danger will pass will not cut it. If you drop the trust ball with your customers, it is very difficult to get it back.”

Without access to the same skills and technologies as larger enterprises, SMEs remain vulnerable to attack and often lack the appropriate response and resilience capabilities to restore normal operations after a successful hack that has brought business operations to a standstill. These attacks aim to access your network and render your services inaccessible to customers.

These attacks often target SMEs because hackers know operating time is money to these businesses. Smaller organisations do not have the luxury of being too big to fail. Response time to such attacks and the ability to quickly get operations up and running can mean the difference between an SME's capacity to service its customers or close its doors.

The required expertise on hand

Searle highlights how a managed service from a highly skilled managed services provider (MSP) can deliver the highest protection against today’s sophisticated threats to even the smallest firms. “SMEs can look to the in-house expertise and support of an MSP. It is a route to peace of mind in the knowledge that the business you have worked to build over decades is secure in the hands of cyber technology experts who will enable you to get on with the job of running your company. Services from a top MSP routinely include managed security, backup and disaster recovery.”

“With IT operations securely managed and positioned for growth, you can take your business to the next level regardless of its current size or what industry you are operating in,” concludes Searle.

For more information, contact LanDynamix, 0861 225 553, info@landynamix.co.za, www.landynamix.co.za




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

What is your ‘real’ security posture?
BlueVision Editor's Choice Information Security Infrastructure AI & Data Analytics
Many businesses operate under the illusion that their security controls, policies, and incident response plans will hold firm when tested by cybercriminals, but does this mean you are really safe?

Read more...
What is your ‘real’ security posture? (Part 2)
BlueVision Editor's Choice Information Security Infrastructure
In the second part of this series of articles from BlueVision, we explore the human element: social engineering and insider threats and how red teaming can expose and remedy them.

Read more...
IQ and AI
Leaderware Editor's Choice Surveillance AI & Data Analytics
Following his presentation at the Estate Security Conference in October, Craig Donald delves into the challenge of balancing human operator ‘IQ’ and AI system detection within CCTV control rooms.

Read more...
Onsite AI avoids cloud challenges
SMART Security Solutions Technews Publishing Editor's Choice Infrastructure AI & Data Analytics
Most AI programs today depend on constant cloud connections, which can be a liability for companies operating in secure or high-risk environments. That reliance exposes sensitive data to external networks, but also creates a single point of failure if connectivity drops.

Read more...
Toxic combinations
Editor's Choice
According to Panaseer’s latest research, 70% of major breaches are caused by toxic combinations: overlapping risks that compound and amplify each other, forming a critical vulnerability to be exploited.

Read more...
Kaspersky finds security flaws that threaten vehicle safety.
News & Events Information Security Transport (Industry)
At its Security Analyst Summit 2025, Kaspersky presented the results of a security audit that exposed a significant security flaw enabling unauthorised access to all connected vehicles of one automotive manufacturer.

Read more...
Syndicates exploit insider vulnerabilities in SA
Information Security Security Services & Risk Management
Today’s cyber criminals do not just exploit vulnerabilities in your systems; they exploit your people, turning trusted team members into unwitting accomplices or deliberate collaborators in their schemes.

Read more...
GenAI fraud forcing banks to shift from identity to intent
AI & Data Analytics Information Security Financial (Industry)
The complexity and velocity of modern fraud schemes, from deepfakes to fraud and scams involving social engineering, demand more than just investment in new tools; they need adaptability and expanding the security net.

Read more...
Cyber attack surface expanding
Asset Management Information Security Logistics (Industry)
Despite the increasing number of attacks, analysis of Allianz Commercial cyber claims shows that severity is down by 50% and large-claim frequency by 30% in H1 2025, driven by larger companies’ enhanced detection and response capabilities.

Read more...
Continuum launches centralised access and identity management
Editor's Choice Access Control & Identity Management Integrated Solutions Facilities & Building Management
Continuum Identity is a newly launched company in the identity management and access control sector, targeting the complexity of managing various Access and Identity Management (AIM) systems.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.