Cybersecurity operations done right

Issue 6 2025 Information Security

Cybersecurity operations handle the daily tasks and activities related to cybersecurity. However, for smaller companies, the costs associated with acquiring the necessary skills and tools can be very high. So, how can these organisations establish and maintain their security profile amid constant attacks and evolving technology?

One answer is a managed security service provider (MSSP), a third-party organisation that delivers outsourced monitoring, management, and response to cybersecurity threats. MSSPs rely on cloud-based services to monitor and manage customers’ infrastructure, typically with onsite assistance available when issues arise. In larger businesses, the MSSP may even have staff permanently based at the customer’s location to keep the cyber wheels tuned.

In our last issue of the year, SMART Security Solutions asked Ethan Searle, director of business development at LanDynamix, for some insights into the cybersecurity tools and services available to businesses, both small and large.

SMART Security: What can managed security services offer companies on limited budgets?


Ethan Searle.

Searle: In the absence of in-house security personnel and comprehensive, multi-layered security solutions, managed security services offer a viable solution. Organisations, of all sizes, must ensure they have access to the full spectrum of security solutions and services that are crucial to their operations if they are to stay ahead of the attacker’s next move, before it happens.

Automation and AI are not only aiding the bad guys in gaining access to your network and systems, but they are also a powerful enabler of MSPs, who can now offer more efficient solutions at a lower price. Economies of scale have reduced the pricing of these solutions, so businesses with limited budgets must investigate them before making a decision based on conjecture rather than facts. For example, the price tag of a fully-fledged security operations centre piece of software has dropped by 50% over the past three years alone. This puts resilience within reach of more businesses at a time when they need it most.

A managed service offering with a highly skilled MSSP can provide the highest level of protection against today’s sophisticated threats to even the smallest firms. MSSPs offer SMEs the prospect of a good night’s sleep, knowing their business is secure and in the hands of experts, allowing them to focus on running their company. SMEs can rely on the in-house expertise and support of an MSP, because, let us face it, the success of the service provider’s business is totally interwoven with that of their customer.

SMART Security: Are cybersecurity security operations centres (SOCs) best run onsite or in the cloud (or both)?

Searle: SOCs are unquestionably best run in the cloud; it is the best option for various reasons. Around 70% of all breaches can be detected by AI, while the remaining 30% require analyst intervention. From a cost perspective, it does not make sense to have an analyst on site all the time.

AI reduces response time and analyst workload. For example, our approach is to help customers stay ahead of evolving cybercrime and increasingly sophisticated, tech-savvy cybercriminals. We achieve this by leveraging adaptive AI from an industry-leading extended detection & response (XDR) platform, combined with expert-led managed detection & response (MDR) services. Anomalies trigger SOAR workflows that detect, contain, and neutralise threats – while continuously improving your security posture.

SMART Security: Are cloud-based cybersecurity services really fully integrated into each client’s operations, and can they respond quickly enough? (And how?)

Searle: Yes, cloud-based cybersecurity services are truly fully integrated in client operations. This is achieved through API integration and the forwarding of system logs, which deploy an endpoint agent that pulls the data into the system. Behavioural anomalies can be detected immediately, and the affected endpoint can be isolated and then disabled.

SMART Security: How can security information and event management (SIEM) tools assist?

Searle: LanDynamix uses an industry-leading SIEM platform, combined with security orchestration, automation, and remediation (SOAR), to address cybersecurity challenges. We use wide-ranging telemetry data, which is ingested into the SIEM, enriched with human-led threat hunting and AI-powered anomaly detection. Anomalies in network and user behaviour trigger AI-powered, expert-led SOAR workflows that hunt, detect, and neutralise attacks, while continuously strengthening the client’s security posture.

SMART Security: How does a company select a reliable managed security services provider (MSSP) and not a fly-by-night?

Searle: What businesses of all sizes must look for in an MSSP is one with a business approach to their organisation that can deliver the level of support required. Characteristically, this is an MSSP who takes the time to understand your business, the challenges in your sector and sets out to solve the business problem. What you do not need is an MSSP trying to convince you to buy a pink plug to stick into a blue socket. Cybersecurity is a business issue, not a technical one. Yes, technology is an enabler, but only insofar as the right technology, deployed appropriately and managed with skill, addresses the business problems. Cybercrime is constantly evolving; hence, cybersecurity measures must be reviewed constantly if you are to remain one step ahead of the bad guys. Do SME business owners have time to do that? I doubt it – the right MSSP will ensure your business is protected, and even in the event of an attack, that operations are back up and running in real time, without loss of data.

SMART Security: What about the dreaded Human Factor?

Searle: The human factor in cybersecurity refers to individuals’ actions, behaviours, and vulnerabilities that create security risks, making them a major threat in breaches, often via social engineering tactics like phishing. Mitigating this requires a multi-faceted approach, including continuous user training, fostering an open security culture, improving user-friendly system design, and implementing clear policies to build resilience and reduce human-derived risk.

LanDynamix protects identities with machine learning that builds user behavioural baselines. This means that any deviation from the behavioural patterns generally displayed by users on the network automatically triggers alerts. This results in real-time threat responses, ensuring our customers’ environments are secure and operational.


Credit(s)






Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Compressing cyberattack timelines and targeting ungoverned AI identities
Information Security News & Events
Sophos AI Security 2026 report finds attackers are moving beyond experimentation and operationalising AI for attacks using identity as the primary initial access vector, rather than inventing new attack types.

Read more...
Zero-touch automation certificate life cycle management loop
Products & Solutions Information Security Security Services & Risk Management
ManageEngine completes the certificate life cycle management loop with CA-agnostic, zero-touch automation. New post-deployment automation in Key Manager Plus removes the last manual step in certificate renewal as lifespans gradually shrink to 47 days

Read more...
Fire safety in South Africa
Technoswitch Fire Detection & Suppression Technews Publishing SMART Security Solutions Fire & Safety Security Services & Risk Management Editor's Choice
Fire safety is sometimes ignored, sometimes relegated to whatever is cheapest, and sometimes treated with the seriousness it deserves, given that it focuses on protecting life and assets. SMART Security Solutions asked Brett Birch, MD of Technoswitch, for some insights into the realities of fire safety in South Africa.

Read more...
Sophos launches AI-native cybersecurity defence system
News & Events Information Security Security Services & Risk Management
Built for a threat landscape reshaped by AI, Sophos Fusion unites security operations, endpoint, network security, identity, email, and cloud into one defence system that prevents, detects, investigates, and responds at AI speed.

Read more...
Alarms are smarter than ever
Spectrum Security Products Technews Publishing SMART Security Solutions Arxtech Perimeter Security, Alarms & Intruder Detection
Modern smart alarms are evolving beyond simple sirens and basic alerts. They now include features such as system health checks, remote management, real-time notifications, mobile apps, and multiple communication options.

Read more...
Ungoverned AI agents and deepfakes pose critical threats
Information Security Security Services & Risk Management
Global study reveals 64% of South African organisations already deploy autonomous AI agents with little to no governance, while 63% of employees admit they are unlikely to be able to spot attacks such as deepfakes

Read more...
From the editor's desk: The high price of cheap
Technews Publishing News & Events
Bringing fire and safety, along with intrusion and perimeter protection, into the same publication is an interesting exercise. At their core, all these systems exist for one reason: to warn people ...

Read more...
Preventing and suppressing lithium fires
SMART Security Solutions Technews Publishing Editor's Choice Fire & Safety Security Services & Risk Management Smart Home Automation
SMART Security Solutions asked Clyde Becker, director of Pyro Brand, for some insight into the mechanics of lithium-ion battery fire risks, especially thermal runaway, and to define a comprehensive, layered approach to fire detection and suppression.

Read more...
Integrated layers offer dependable security
OPTEX SMART Security Solutions Technews Publishing Perimeter Security, Alarms & Intruder Detection Integrated Solutions
A layered approach to security tightens protection and minimises downtime and operational risk. Moreover, integrating all the parts of a solution and proving they can do the job before spending money are critical.

Read more...
How ‘TikTok Brain’ is breaking legacy security training
Training & Education Information Security
Between doomscrolling, rapid-fire Slack notifications, and algorithmic video feeds, the average employee is trapped in an aggressive, highly engineered dopamine loop that automatically shuts down in traditional training situations.

Read more...










While every effort has been made to ensure the accuracy of the information contained herein, the publisher and its agents cannot be held responsible for any errors contained, or any loss incurred as a result. Articles published do not necessarily reflect the views of the publishers. The editor reserves the right to alter or cut copy. Articles submitted are deemed to have been cleared for publication. Advertisements and company contact details are published as provided by the advertiser. Technews Publishing (Pty) Ltd cannot be held responsible for the accuracy or veracity of supplied material.




© Technews Publishing (Pty) Ltd. | All Rights Reserved.