Cyber Security: Why Execution Trumps Visibility | Expert Insights from ITR Technology (2026)

The cybersecurity landscape is a complex and ever-evolving arena, and it's no secret that organizations are facing increasing challenges in protecting their assets. While many focus on the latest tools and technologies, ITR Technology's Alan de Waal-Smit argues that the real gap lies not in visibility but in execution. In a recent interview, de Waal-Smit highlighted the interconnected pressures that CISOs face, including evolving threats, human risk, hybrid complexity, compliance, and skills shortages. He emphasizes that despite rising security budgets, organizations remain vulnerable, and the issue isn't the tools themselves but how they are implemented and executed.

One of the key challenges, according to de Waal-Smit, is the tension between IT operations and security teams. This 'silo problem' creates a disconnect where IT operations prioritize uptime and stability, while security operations focus on speed and patching. As a result, the attacker's advantage is often exploited, as they don't care whose KPIs are affected. The IBM Cost of Data Breach Report 2025 underscores this reality, revealing that the average breach cost in South Africa was R44.1 million, a 17% decrease from the previous year.

De Waal-Smit also draws attention to the Verizon Data Breach Investigations Report, which sheds light on the prevalence of credential abuse as the top initial access vector. The report reveals that stolen or abused credentials were involved in 22% of all breaches and that third-party involvement has increased to 30%, with 88% of basic web-application attacks exploiting stolen credentials. This highlights the importance of understanding and addressing vulnerabilities, as well as the need for a unified approach to cybersecurity.

The solution, de Waal-Smit proposes, is a shift from two systems of record to one system of action. This involves integrating technology, people, and processes to create a cohesive and responsive cybersecurity framework. He emphasizes that detection and response should not be siloed but should be integrated into a unified workflow. By treating IT service management as the security control plane, organizations can achieve faster response times, reduce noise, and prioritize risks based on their business context.

In my opinion, de Waal-Smit's insights are a wake-up call for organizations to reevaluate their cybersecurity strategies. The focus should be on breaking down silos and aligning IT and security operations. By doing so, organizations can enhance their cyber resilience, reduce the impact of breaches, and ultimately safeguard their assets more effectively. The key takeaway is that execution, not visibility, is the critical factor in determining an organization's cybersecurity posture.

Cyber Security: Why Execution Trumps Visibility | Expert Insights from ITR Technology (2026)
Top Articles
Latest Posts
Recommended Articles
Article information

Author: Jerrold Considine

Last Updated:

Views: 6065

Rating: 4.8 / 5 (78 voted)

Reviews: 93% of readers found this page helpful

Author information

Name: Jerrold Considine

Birthday: 1993-11-03

Address: Suite 447 3463 Marybelle Circles, New Marlin, AL 20765

Phone: +5816749283868

Job: Sales Executive

Hobby: Air sports, Sand art, Electronics, LARPing, Baseball, Book restoration, Puzzles

Introduction: My name is Jerrold Considine, I am a combative, cheerful, encouraging, happy, enthusiastic, funny, kind person who loves writing and wants to share my knowledge and understanding with you.