When Cyber Resilience Lags IT Exploits, Automation is the Answer

Modern networks consist of corporate, industrial, on-prem, and cloud networks. The move to digital transformation and remote work has added exponential complexity. We’re continuing to evolve and scale our networks, making them even more complex as we introduce AI. More than half of CEOs say they already use generative AI to increase efficiency.

As our networks move at light speed into the future, so do our security challenges. For example, threat actors exploit vulnerabilities faster than ever because they are using AI to help discover the latest exploits. In 2023, the average time to exploit vulnerabilities was 44 days, but in 25% of cases, exploits were available on the same day, and 75% were exploited within 19 days.

In

25%

of cases

exploits were available
on the same day

And

75%

of these cases

were exploited within
19 days

Meanwhile, how we maintain, remediate, and secure our networks has not kept up with today’s reality.

Network engineers are already overworked trying to evolve networks to support new IT initiatives, so they are forced to manually tackle tasks that build cyber resilience during nights and weekends. They are making configuration changes and updates one device at a time, with no reliable and efficient way to figure out what vulnerabilities really matter to the organization and therefore need to be addressed immediately. When an attack happens, they cross their fingers and hope the backup will restore to a known and trusted state.

As IT leaders, we are leaning in to growing our infrastructure to support the needs of the business, while our approach to building cyber resilience—managing security and compliance policies to mitigate risk—is completely out of sync.

Time for automation

Why are teams working so hard, yet cyber resilience remains a struggle? Because we aren’t leveraging automation.

According to new research from EMA, only 18% of network automation initiatives are a complete success. There are many reasons for this, but ultimately, it comes down to trust. We are using automation to help with monitoring and alerting, particularly during off hours, which is foundational to cyber resilience. But the actual work of maintaining devices and remediating is where there’s a reluctance to automate.

Only

18%
of network automation initiatives are a complete success.

Tackling the trust issue

Despite our best efforts, we can do better to mitigate risk from today’s cybersecurity attacks. Let’s overcome the trust issue with a strategy that includes enterprise-grade automation that supports the following best practices for cyber resilience:

Backup and restore

An automation solution should provide backup and recovery beyond simple backup and maintaining the previous version if there’s a glitch. You also need backup validation, notifications of any failed backups so they can be run again, and a central repository with complete version history and everything else required so you can restore to a trusted state quickly.

28%
of organizations had issues related to network segmentation or improperly configured firewalls.

Configuration checks

Research on over 900 ransomware incidents from 2023 indicated that 28% of organizations had issues related to network segmentation or improperly configured firewalls. Leveraging automation, you should be able to audit configurations of all your devices, find out what changed, and reconfigure devices so they are groomed back into compliance with your organization’s standards or industry best practices.

Vulnerability management

There’s a mountain of work involved in correlating CVEs to the device manufacturer, the device type, the device version, and the firmware version. And then you still don’t have the context to understand if the CVE is being actively exploited and if it is a high priority for you. What’s more, CVEs are just one source of vulnerabilities. You must also track information from your device vendors, websites, and other sources. All of that can be automated so you can track more than CVEs, score vulnerabilities with context to help prioritize remediation, and then automate remediation.

OS updates

The update process should include automated pre- and post-checks, so you have visibility into what needs to be updated, confirmation that the update was applied and validated, and notifications of any failures that need to be addressed. Automated backups should bookend the update process for added peace of mind.

Multi-vendor support

Most network environments are comprised of devices from multiple vendors—different firewalls, switches, routers, and more. It’s hard to find enough people with the advanced skill set to manage this complexity manually. It’s important to be able to automate all the above functions for different device types from different manufacturers at the same time.

It’s time we started trusting automation in a space that’s the last bastion for manual work so that cyber resilience is in sync with the evolution of our networks.

Rekha Shenoy

The good thing about embracing automation is that there’s no need to hire more people or wait for new emerging technology to be developed. Automation has evolved over the last decade to a point where we can have complete visibility and confidence in the work being done so we don’t have to do it manually.

It’s time we started trusting automation in a space that’s the last bastion for manual work so that cyber resilience is in sync with the evolution of our networks. And in the process, our network engineers will have more time to spend on value-added activities, like the additional network complexity coming our way.

Related content

Technology Partner

Palo Alto Networks

Palo Alto Networks is a global leader in cybersecurity, providing advanced solutions to protect organizations against evolving threats. Their cutting-edge technologies, including next-generation firewalls, endpoint protection, and cloud security platforms, empower businesses to safeguard their operations and data with confidence.

As a trusted partner, we work with Palo Alto Networks to deliver robust cybersecurity solutions tailored to our clients’ needs, ensuring secure, reliable, and scalable protection for businesses across various industries.

Technology Partner

ONE80 GRC

ONE80 GRC offers Governance, Risk, and Compliance (GRC) software to help organizations streamline and manage their security, risk, and compliance processes. Their platform assists with risk assessments, policy management, audit management, and incident response, helping organizations ensure they adhere to industry regulations and internal security policies while mitigating risk.

Technology Partner

Cisco

Cisco is a global leader in networking, collaboration, and security solutions, empowering businesses to connect, communicate, and thrive in a digital-first world. Their cutting-edge technologies, including enterprise networking, cloud security, and collaboration tools, enable seamless operations and drive innovation.

As a trusted partner, we work with Cisco to deliver tailored solutions that enhance connectivity, optimize business performance, and ensure secure, scalable infrastructure for organizations of all sizes.

Technology Partner

Fortinet

Fortinet is a global leader in broad, integrated, and automated cybersecurity solutions. Their advanced technologies, including firewalls, endpoint security, and secure networking, are designed to protect organizations against evolving threats while enabling seamless connectivity and business growth.

As a trusted partner, we collaborate with Fortinet to provide tailored, end-to-end security solutions that safeguard businesses of all sizes, ensuring robust protection, improved performance, and peace of mind in an ever-changing digital landscape.

Technology Partner

Logitech

Logitech is a global leader in designing innovative hardware products that enhance productivity and collaboration. Known for their high-quality peripherals, including keyboards, webcams, and conference room solutions, Logitech helps businesses and individuals create efficient, comfortable, and connected workspaces.

Partnering with Logitech, we provide clients with cutting-edge devices and tools that improve communication, collaboration, and productivity in the workplace, ensuring seamless digital experiences whether in the office or remotely.

Technology Partner

Switch Telecoms

Switch Telecoms is a dynamic telecommunications provider offering flexible, scalable, and cost-effective communication solutions for businesses. From VoIP services to mobile data and voice offerings, Switch Telecoms empowers organizations to streamline communication and stay connected with employees and customers, all while reducing costs. As a key partner, we work with Switch Telecoms to offer our clients seamless and reliable communication solutions that enhance productivity, improve collaboration, and reduce operational costs.

Technology Partner

Xpedite Technologies

Xpedite Technologies is a forward-thinking IT solutions provider, specializing in managed services, cloud solutions, and IT infrastructure. They offer customized solutions designed to meet the unique needs of businesses, helping them optimize operations and drive digital transformation through innovative technology and expert support.

Through our collaboration with Xpedite Technologies, we deliver efficient, scalable, and secure IT solutions to our clients, helping businesses improve performance, reduce downtime, and stay ahead in an ever-changing digital world.

Technology Partner

MetroFibre

MetroFibre is a leading provider of high-speed fibre-optic broadband solutions, delivering reliable, fast, and secure internet connectivity for homes and businesses across South Africa. Their advanced infrastructure enables seamless and scalable internet access, supporting a wide range of services from basic connectivity to high-performance solutions for enterprises.

As a trusted partner, we work with MetroFibre to bring reliable and high-speed internet services to our clients, ensuring fast, secure, and uninterrupted connectivity that supports both personal and business needs.

Technology Partner

Netgear

Netgear is a leading provider of networking solutions, offering innovative and reliable products designed for homes, businesses, and service providers. From high-performance Wi-Fi systems to advanced switches and security solutions, Netgear empowers seamless connectivity and productivity.

As a trusted partner, we collaborate with Netgear to deliver tailored networking solutions that meet the evolving needs of businesses, ensuring robust connectivity, scalability, and reliable performance across various environments.

Technology Partner

OutThink

OutThink is a revolutionary Software as a Service (SaaS) Human Risk Management Platform that targets the source of 90% of data breaches: human behaviour. Combining human intelligence and data from existing security systems, it empowers Chief Information Security Officers (CISOs) by revealing unique patterns of risk across their organisations.

Technology Partner

Heliocor

Heliocor is an award-winning regulatory technology (RegTech) company delivering compliance solutions to the financial services industry and beyond. The company helps clients meet evolving regulatory demands with a Know Your Customer (KYC), onboarding, and Customer Lifecycle Management (CLM) platform that securely enables document sharing in compliance with General Data Protection Regulation (GDPR), Anti-Money Laundering (AML) and Counter-Terrorist Financing (CFT) regulations.

Heliocor also offers an ultra-fast analytics engine that detects fraudulent behaviour across asset classes including Foreign Exchange (FX), commodities, equities, structured products and cryptocurrencies—acting as a unique multi-regulation solution.

Technology Partner

SecurityBridge

SecurityBridge is a leading SAP-native cybersecurity platform provider. This comprehensive solution integrates real-time threat monitoring, vulnerability management and compliance capabilities seamlessly into SAP environments; empowering organisations with actionable insights to reduce the risk of data breaches and compliance violations.

Technology Partner

Nonius Hospitality Technology

Nonius is a leading provider of innovative technology solutions for the hospitality industry. Specializing in high-quality guest engagement and connectivity solutions, Nonius offers a range of services including Wi-Fi management, in-room entertainment, and mobile apps that improve the guest experience. Their advanced platforms help hotels deliver seamless and personalized services, while also optimizing operational efficiency.

As a valued partner, we collaborate with Nonius to bring cutting-edge technology to the hospitality sector, enhancing both the guest experience and the operational capabilities of hotels. Together, we provide reliable, high-performance solutions that meet the evolving needs of the modern hospitality industry.

Technology Partner

Microsoft

Microsoft is a global leader in technology, offering a wide range of products and services designed to drive innovation and empower organizations. From cloud computing with Azure to productivity tools like Microsoft 365, their solutions enhance collaboration, streamline processes, and accelerate digital transformation. Microsoft’s secure and scalable technologies help businesses unlock their full potential while navigating today’s rapidly evolving digital landscape.

As a trusted partner, we leverage Microsoft’s cutting-edge solutions to help our clients enhance productivity, improve security, and drive efficiency across their operations. Together, we empower organizations to innovate, collaborate, and succeed in a digital-first world.

Technology Partner

HPE Aruba

HPE Aruba, a leader in networking solutions, is dedicated to helping organizations build secure, scalable, and intelligent networks. Their innovative technologies provide seamless connectivity, advanced security, and data-driven insights to optimize business operations. With a focus on next-gen Wi-Fi, edge computing, and cloud-managed networking, Aruba enables businesses to stay ahead in an increasingly digital world.

As a trusted partner, we have collaborated closely with HPE Aruba to deliver exceptional network solutions to our clients. Together, we provide the reliability, agility, and security that organizations need to thrive in today’s fast-paced, digital landscape.

Technology Partner

Vertiv

Vertiv is a global leader in designing and providing critical infrastructure solutions that ensure the continuous operation of technology systems. Specializing in power, thermal, and IT management systems, Vertiv supports data centers, communication networks, and industrial applications. Their products, including uninterruptible power supplies (UPS), cooling systems, and rack solutions, are designed to protect and optimize essential operations for businesses worldwide.

As a valued partner, we work alongside Vertiv to deliver reliable, high-performance infrastructure solutions that guarantee uptime and efficiency for our clients, helping them stay ahead in an increasingly interconnected world. Together, we ensure that your mission-critical operations run smoothly, securely, and without interruption.

Protect your digital assets and ensure operational resilience.

Manage risk and meet legal and regulatory compliance obligations.

Secure your organisation while improving efficiency and revenue.

Build a sustainable and socially responsible data-driven business.

Design, integrate and deploy network solutions.

Effectively manage digital identities and access management.

Cyber security expertise delivered as a service.

Design, build and manage secure cloud and data solutions.

Proactive threat hunting and cyber breach response.

Prepare, respond and recover from cyber incidents.

Unparalleled visibility into the cyber threat landscape.

Organisation-wide education and training, tailored to your needs.

Expert analysis, industry insights and latest news from our leading cyber security experts.

Safeguard your company's critical assets with our comprehensive cyber security resource centre.

Insights and expert analysis from the ONE80 Intelligence desk.

Webinars from our leading cyber security experts and trusted partners.

Sector-specific reports that assess current and emerging areas of cyber risk for organisations.

The latest news, announcements and press coverage from ONE80.

Learn about ONE80's commitment to securing our communities, our values and leadership team.

See how ONE80 has helped organisations to manage risk, build resilience and grow with confidence.

Join South Africa’s greatest force of cyber security professionals.

Training the next generation of cyber security experts.

Senior Governance, Risk, Compliance and Privacy Specialist

Michelle Barnett

With over 25 years of experience in IT, Michelle is a seasoned information security professional with a strong technical background. She holds a B.Com Hons (IS) Cum Laude from UCT, is a One Identity Technical Specialist, and has numerous other technical certifications including MCSE and MCNE.

As a professional member of ISACA, Michelle confidently leads governance, compliance, risk and architecture projects with a deep understanding of their technical foundations. She has successfully delivered governance and compliance initiatives—including POPIA, PCI DSS, security controls and audit assurance—for large multinational organisations.

Michelle has also played a pivotal role in implementing IT governance programmes and enhancing the security posture of organisations, as well as completing complex technical projects such as CISCO VOIP and service centre implementations.

Senior Business Consultant

Aurélie Mariette

Aurélie is a highly experienced strategic advisory consultant with over 10 years of specialising in retail banking, digitalisation strategies and risk management. She holds a Master’s degree in Financial Economics and a Bachelor’s degree in Business Economics, focusing on information systems.

With her expertise spanning several African countries—such as Mauritius, the Democratic Republic of Congo, Malawi, Uganda, Ghana and Ivory Coast—Aurélie has successfully led multiple projects across a range of industries.

Managing Director | Mauritius

Philippe Mourand

Philippe graduated with an engineering degree from École Centrale de Marseille (France) in 1989 and became a Microsoft Certified Systems Engineer (MCSE) in 2002. With over 20 years of experience in the ICT sector, he began his career as an engineer at Harel Mallac, where he worked for 11 years before establishing his own company.

His main areas of expertise include networking, Microsoft and Cisco technologies, antivirus and backup solutions, as well as website design and e-commerce.

Senior Project Manager

Edward Atherton

With over 20 years of broad IT industry experience, Eddie has practised project management since 2002 and holds a PRINCE2 certification.

As a Project Manager, he combines a technical background with management and business expertise. His project management skills encompass technical products, systems implementations and enterprise projects primarily in the information and communication technology sectors. For approximately seven years, he managed all national ICT projects.

Throughout his career, Eddie has worked extensively across industries including telecommunications, internet service providers, government, technology services, banking, finance, and oil and gas.

Chief Technology Officer and Head of Technical Services

Grant Donald

With 25 years of experience in the IT industry, including 23 years in Information Security Management and Computer Forensics, Grant is a certified security professional and an experienced team leader.

As a University of Stellenbosch Alumni, he holds multiple certifications (ITIL, CISSP, MDP, and Microsoft 365 Cloud Security) and is a member of several professional organisations including ISC2.

Over the past 16 years, Grant has been responsible for growing and managing specialised security teams. He has worked extensively in the oil and gas, financial services and information technology service sectors; successfully leading initiatives ranging from payment card industry compliance programmes to managed service integrations and the design and delivery of IT security roadmaps.

Co-Founder and Commercial Director

Mike Webster

With over 25 years of business experience, Mike spent 19 years as a managing partner at a London law firm, advising businesses across various sectors including IT, manufacturing, professional services, retail, food, advertising, education and health.

His commercial expertise and leadership have enabled him to guide companies on growth and acquisition strategies, change management, business restructures, succession planning, management buy-outs and business sales.

Mike holds an LLB (Hons) and in 2009 became a freeman of the City of London.

Head of Business Development

William Despard

William has over 30 years of IT industry experience, with 18 years focused on Information Security. He brings senior-level expertise and relationships to Risk Advisory, Security Consulting, Data Governance and Managed Services fields, and has also cultivated strong partnerships within the software and IT channel partner space.

 

His leadership has driven significant revenue growth by developing and managing sales teams, alongside recruiting and training specialist technical and commercial staff.

 

In addition to designing and implementing core service delivery methodologies, William has developed data governance assessments and remediation roadmaps. He has also architected tailored remediation strategies for key sectors facing complex risk challenges in information security and data governance, successfully managing diverse delivery resources across multiple projects and clients.

ONE80 | Founder, Managing Director and Head of Services

Sanjay Charavanapavan 

Sanjay has over 23 years of IT and cybersecurity experience and is recognised as a leading regional authority. With a strong background in information security and enterprise architecture, he has worked with major financial institutions and global IT service providers on projects worldwide.

His expertise spans enterprise systems management, business applications (core banking, policy administration, CRM) and infrastructure systems. He combines deep technical knowledge with governance, risk and security management experience.

Sanjay’s extensive corporate experience includes leadership roles in financial services both in South Africa and globally. Throughout his career, he has held enterprise architecture roles, notably at Old Mutual Africa, where he oversaw core banking and policy administration system selection, as well as large-scale infrastructure and security projects.

A member of professional bodies such as ISC, ISACA, FIRM, and OCEG; Sanjay served on ISACA South Africa’s board from 2007 to 2020 and is a Gartner Associate.