Reading view

The risk awareness radar. A superpower every MSP needs to train

Most of the cyber incidents landing on our desks these days start with someone believing a lie. It’s not a brilliant piece of code that causes most breaches. A convincing email, a confident phone call, and a fake sense of urgency can make people hand over exactly what the attacker needs. Last week I talked […]

The post The risk awareness radar. A superpower every MSP needs to train appeared first on Heimdal Security Blog.

  •  

Tools Change. Teach People How to Keep Up

“Make everyone one percent better and it compounds across the team.” That’s the line Joe Head wrote about his own job and when I read it back to him, he didn’t hesitate. “That is 100% the objective,” he said. Joe runs AI adoption for an 80-person team as the only AI automation specialist in the […]

The post Tools Change. Teach People How to Keep Up appeared first on Heimdal Security Blog.

  •  

Cyber-Aware Customers Are Raising the Bar for MSPs and Other Vendors 

Your client is no longer just buying your security advice. They’re auditing whether you live by it.  That was a clear message from my exclusive interview with Heather MacDonald Alford, an MSP finance specialist and owner of Counting Creators.  Heather’s exactly the kind of customer MSPs should be paying attention to. She’s informed, commercially minded, and willing to challenge vendors to […]

The post Cyber-Aware Customers Are Raising the Bar for MSPs and Other Vendors  appeared first on Heimdal Security Blog.

  •  

Breaking the MSP Echo Chamber: The Power of Community

MSPs spend too much time talking to other MSPs and not enough time talking to the people they’re supposed to serve.  That’s Paul Croker’s view of some of the channel’s biggest growth problems.   While most industry events bring technology professionals together, they rarely put them in the same room as the business leaders making […]

The post Breaking the MSP Echo Chamber: The Power of Community appeared first on Heimdal Security Blog.

  •  

The OSI Model and Its Two Missing Layers

Cybersecurity failures now happen beyond the OSI stack. Faulty governance, the human factor, and AI tools create new attack surfaces. After seven years working across cybersecurity, cloud infrastructure, and Zero Trust architecture, Jayal Yadav explains how we got here and what organizations still get wrong. “The original seven layers of the OSI model still matter. […]

The post The OSI Model and Its Two Missing Layers appeared first on Heimdal Security Blog.

  •  

The State of AI Risk Management in 2026

Key findings US executives are more than four times as confident as their own practitioners that AI risk is under control, 29% to 7%. The UK gap runs the same direction, 18% to 11%. The board’s view and the team’s view aren’t the same view. ChatGPT sits in 7 in 10 IT estates and Microsoft […]

The post The State of AI Risk Management in 2026 appeared first on Heimdal Security Blog.

  •  

AI Will Absorb 99.98% of SOC Triage Within a Year, as 79% of IT teams brace for AI-driven workload shift

COPENHAGEN, DENMARK, 12 May 2026 — Heimdal’s managed SOC processes three million alerts a month. In the year ahead, fewer than 500 of those, less than 0.02%, are expected to need a human analyst. That’s the forecast from Heimdal founder Morten Kjaersgaard, based on the trajectory of AI Wingman SOC as it absorbs the bulk […]

The post AI Will Absorb 99.98% of SOC Triage Within a Year, as 79% of IT teams brace for AI-driven workload shift appeared first on Heimdal Security Blog.

  •  

You Only Know What You’ve Got When Its Gone

Although Cyber Security is often seen as technical and maybe even dull, it has many similarities to our day-to-day life. In this blog I call out one of the most important – You Only Know What You’ve Got When Its Gone. Let me start by putting this statement into context in the current chapter of […]

The post You Only Know What You’ve Got When Its Gone appeared first on Heimdal Security Blog.

  •  

OpenClaw Incidents Show Why AI Adoption Pressure Puts Companies at Risk

We’ve had four cases associated with OpenClaw in the last few weeks. This is what one MSP this told me. Not a researcher or a vendor trying to sell me a solution, but somebody that’s already dealing with the consequences, whilst most boards are still deciding whether to pay attention or not For those who […]

The post OpenClaw Incidents Show Why AI Adoption Pressure Puts Companies at Risk appeared first on Heimdal Security Blog.

  •  

Retail cybersecurity statistics for 2026

Cyber attacks on retail surged in 2025, with rising breach costs and increasingly sophisticated threats highlighting the sector’s growing exposure. Explore this 2025 retail cybersecurity statistics rundown to see how these trends are evolving—and how the insights can help strengthen your defenses in 2026. For cyber criminals, the retail sector makes for a very attractive […]

The post Retail cybersecurity statistics for 2026 appeared first on Heimdal Security Blog.

  •  

Cyber Insurance Statistics for 2026

Cyber insurance in 2025 showed slowing market growth, fewer overall claims, and rising attack severity—signaling a maturing but increasingly high-stakes landscape. As premiums climb again and ransomware continues to dominate losses in 2026, these trends will shape how businesses recalibrate their risk strategies and determine the true value of coverage in the year ahead. Investing […]

The post Cyber Insurance Statistics for 2026 appeared first on Heimdal Security Blog.

  •  

Agent Fatigue Is Real and Your Security Stack Is to Blame

Your senior analyst stares at alert number 47. It’s not even lunch. Another “suspicious login detected.” They switch to the third dashboard of the morning, cross-reference the user activity, and confirm what they already knew. Bob from accounting is working late again. Meanwhile, three dashboards over, actual lateral movement is happening on a client’s network. […]

The post Agent Fatigue Is Real and Your Security Stack Is to Blame appeared first on Heimdal Security Blog.

  •  

Bypassing Cylance: Part 5 – Looking Forward

John Strand// We just finished up a walk through of how we bypassed Cylance in a previous engagement. To conclude this exciting week, I want to share a few comments […]

The post Bypassing Cylance: Part 5 – Looking Forward appeared first on Black Hills Information Security, Inc..

  •  

Pink Teaming: The Dilution of Pentesting

John Strand // There have been a few conversations at conferences and meet-ups over the past year or so about the validity of penetration testing. There are many things on […]

The post Pink Teaming: The Dilution of Pentesting appeared first on Black Hills Information Security, Inc..

  •  
❌