Securing the internal environment from breaches is becoming increasingly complex for organizations. We keep buying security tools, deploying valuable human resource, and spending more time in fighting fires. But still, the number of breaches keep rising. Cynet, a security solutions provider, claims that its autonomous solution can fully replace multi-security-product stack, that organizations use currently to protect their internal environments and deliver a significantly higher ROI. Let’s find out if Cynet truly has a secret recipe for eliminating silos, human intervention, and technology integration needs while providing full visibility that prevents organizations today from protecting their internal environments.
Contributor
Transcript
Sanjog Aul [00:00:00]:
Welcome listeners. This is Sanjog Aul your host and the topic for conversation is Can Cynet Bring Simplicity Back Into Security? Organizations are facing a lot of breaches and they’re finding it very difficult and complex to keep the internal environment secure. They are spending a lot of money buying multiple security tools and their key people are spending time endlessly in firefighting. These organizations are spending a lot of money, time and energy, but still the number of breaches keep rising. Cynet, a security solutions provider claims that its autonomous solution can fully replace the multiple security products stack that organizations are using currently do a much better job to protect their internal environments and save a lot of time and money in the process. So what’s the basis behind Cynet’s claim? Does Cynet truly have a secret recipe for removing silos, human involvement and technology integration while providing a full visibility into the internal environments? We have invited Netanel Amar, the Chief Operating Officer at Cynet to learn how is Cynet different from the other competing solution providers and to dig a little deeper to determine if Cynet can truly bring simplicity back into security. Hello Netanel, thank you for joining us. How are you?
Netanel Amar [00:01:25]:
I’m great, thank you for having me.
Sanjog Aul [00:01:28]:
So Netanel, just to set the stage, how about sharing your views about the current state of enterprise security, the problems enterprises are facing and where does Cynet fit in as a solution?
Netanel Amar [00:01:43]:
So basically what we are seeing is that we got into a diminishing return point for investment in cybersecurity. Meaning that organization are buying more and more security technologies, but they’re also trying to hire more people that are not really in there. They are trying to integrate more and more product in the same place, but that doesn’t translate into better or efficient security posture. At the same times we have seen that the number of attack increasing, the number of breaches increasing year over year. Now most of all, organization, I will say definitely the small to mid size enterprises doesn’t have the expertise or the limitless budget of the Fortune 100 or a very big enterprise has. Now they are focusing on integration and we are seeing that the problem is not technology. We are seeing that there is a very good amount of technologies out there, but they cannot provide the value customer need because those different technologies can stick one with the other. This is basically the biggest challenge we are seeing which got us into the diminishing return point.
Netanel Amar [00:02:54]:
Now what Cynet is doing different is that we are powered by our unique sensor fusion technology, meaning that we are creating very good visibility, can create very good context and using that sensor fusion capability, we can actually provide and enable an autonomous solution meaning that we can go from A to B fully automated process which can solve the problem most of the things and the challenges inside the enterprise.
Sanjog Aul [00:03:26]:
So are there specific organization types that may find Cynet security management solution most useful and are there other who may not benefit as much?
Netanel Amar [00:03:39]:
So definitely that’s actually a very good question. Initially when we founded the company we mostly pursued the largest enterprises and today we have a very fair amount of global 2000 size customers across all main verticals and geolocation but what we are seeing more and more is that the biggest demand for our solution is from mid sized enterprise. I would say from several hundred to tens of thousands of employees will be more accurate. It’s not so much about the size in employee numbers but later in the organization cyber security maturity. For fortune 1000 companies, for example is a code name. They have almost a limited security literacy, they have enough security experts, they have very budget, et cetera and they have a lot of time and it’s not the case for the midsize enterprise. For them to have a very dedicated qualified security team and the ability to integrate between different point solutions, they find it very challenging.
Netanel Amar [00:04:43]:
This is exactly where we came into play.
Sanjog Aul [00:04:47]:
There are many best of breed solutions Netanel, which are available for protecting the internal environments such as endpoint security, network security, user account security and siem. Why should anyone choose Cynet over the already available options? How is Cynet better?
Netanel Amar [00:05:08]:
So here’s it that, we approach the same problem from a different angle. I do believe that there are very good security technologies available today. We are seeing very good advance in this field. If you are seeing limited security getting better and better, use the behavioral security network, behavioral analytics, etc. The problem is that those technologies are siloed and because they are siloed, it’s very hard to make those different technologies work one with the other. So imagine that you try to integrate and you try to make different technologies speak one with the other. When they are not designed to do that, you find it very challenging.
Netanel Amar [00:05:46]:
What’s different in Cynet is that we are creating from, we built from the ground up a very good visibility engine, meaning that we can provide almost limitless visibility across any type of activity around the organization. Now on top of that we can create the context which is the most important thing. This is the sensor fusion. Sensor fusion allow us to really understand what each activity is doing and this is what makes Cynet different. This is the different approach or the different angle to the same problem because if you have the context you can have very good accuracy which can provide very good automation
Netanel Amar [00:06:27]:
and on top of that what we are doing is providing a 24 by 7 Cynet pin that can help the organization where they need human assistance. We’re talking about level of engineers, malware analysts essentials, top notch technical guy that can really help the organization with infinite response or with blockage for example. So the combination with the technology and the human expertise and the know how, I think that what makes Cynet different?
Sanjog Aul [00:06:56]:
So if a company deploys Cynet to secure its internal environment, are you suggesting that we wouldn’t need anything else to manage security and protect from breaches and if your answer is yes, with Cynet being a new entrant, isn’t that a tall claim and wouldn’t it sound like a big risk to putting all the eggs in one basket?
Netanel Amar [00:07:19]:
So that’s a fair question. I think I have a good answer for it. So first, yes, absolutely, most of the organization will still need more security solution in order to protect the organization. Let’s start with perimeter security. You will still need to have a firewall, dimming relay, anti spam, et cetera . All the traditional or type of security. Cynet is not a silver bullet for all the problems in effective security industry
Netanel Amar [00:07:45]:
but we are trying to solve basically the biggest headache within the security which is lack of visibility and there is also lack of security experts. There are currently less more than 3 million security experts required. Cannot be higher than the moment. This is going to get worse. Now what we are doing is to focus into our internal environment but the internal environment is not necessarily only the regular across the organization. It can be only your cloud asset, your users account, et cetera, your network traffic, everything around that.
Netanel Amar [00:08:21]:
So if we’ll have the visibility around that you can see definitely some customers that are saying this is exactly what I expected, different point solution to do and I can rip and replace them but some other more mature level type of organization would like to keep some mixture between finite and other type of product into the same place. I would say it must be value oriented, meaning that the customer need to choose what provides the highest value for them and once they are there they can choose which product to keep and which product to get rid of.
Sanjog Aul [00:08:57]:
Let’s take a quick break listeners, we’ll be right back and let’s talk about the managed security solution providers who not only offer support using humans but also bring the tools. So what would Cynet’s rational be for suggesting that their solution is a better alternative to going with MSSPs. Please stay tuned listeners. We’ll be right back after these messages.
Sanjog Aul [00:10:27]:
Welcome back. So the question here for you Netanel, is about managed security solution providers who not only offer support using humans but also bring the tools. So what’s your rationale for suggesting Cynet Solution as a better alternative to going with MSSPs?
Netanel Amar [00:10:46]:
So I don’t think that better alternative is the correct term here. I would say like organizations that have the capacity to manage their security in house can do so with finite better and more efficiently than with any other combination of point solution. However, there is a vast number of organization that number is rapidly increasing that choose outsource either parts or their security operation. There are various flavors here from their monitoring, end to end deployment, ongoing management, also infinite response. For this type of organization, it’s not question of is to engage in MSSP, but more of who and how. It brings us to the added value of MSSP’s insight. As I told you earlier in the conversation, the technology is not necessarily the biggest challenge organizations are facing. It’s the lack of skills of human resources, it’s the lack of the ability to hire the right security expert and the problem with integrating different products so recruiting and retaining a top quality security team can be easily flagged as an organization’s most burning security.
Netanel Amar [00:12:00]:
Now MSSP actually must solve most of these problems for their customers. However from their point of view the same challenge for operating this security stack, it’s what’s helping them to choose Cynet. So from personal point of view we have very good success with MSSPs worldwide and we are seeing that once they’re using Cynet they can deliver better service to their customers. They can compete better as well and they are optimized, we can accelerate their business, we can provide higher value to their customers and I would say that customers shouldn’t mistake the MSSP to be a silver bullet. It’s very important when you are choosing technologies versus MSSPs or the combination of both to make sure that the right technologies are renewed in order to get the highest security return to your management. So if you’re considering going with MSSP, please make sure they’re using signage type of solution in order to have the highest value out of this engagement. You will have the human expert who will have the technology and will also have the human expert 24/7 which is the silo service from the MSSP.
Sanjog Aul [00:13:09]:
I’m sure companies who have already bought security solutions would like to preserve their investments. So does the Cynet solution require rip and replace or does it play well with the other already deployed security solutions?
Netanel Amar [00:13:26]:
So there are two flavors here. If you are a mature organization with an existing security investment in various products and a facility team that efficiently operates them, you probably don’t trip and everything and replace Cynet instead. What you would do, and that’s a pattern we see among our large enterprises, is to gradually test signed capabilities against the one overlapping point solution you have in place. If it’s a network traffic analysis, user behavioral analysis, deception, endpoint, security, et cetera, then you can see the actual value in production environment and make an informed decision when the other products renewal arise. In many cases Cynet capabilities along the benefits of one technologies, one platform and one consolidated console win. Now the other option is that your security posture is not that mature beyond the patient. Now in that case you don’t have much to risk anyway. Maybe accept your AI agent or your vulnerability management solutions, et cetera
Netanel Amar [00:14:35]:
and then you can definitely use Cynet as one platform that can definitely provide the highest value in the shortest amount of time.
Sanjog Aul [00:14:44]:
What are the newer type of threats do you see emerging and how is Cynet evolving its solution to stay ahead?
Netanel Amar [00:14:53]:
So I must admit that’s one of the most fascinating things to seeing the continuous evolution of attacks overkill, introducing new capabilities, evading and bypassing security controls. Now we’ve made very good progress over the last 10 years with the level of security control that cage and by we not just Cynet of course by the entire industry, but what we are seeing is that the attackers are actually using the exact same problem of the organization in order to orchestrate their attacks to be successful. I can also give you some example from those days with the Corona impact worldwide, but I will give you a few. We are seeing more and more attacks that are navigating between the blind spots of different technologies. For example we saw attacker using YouTube, CNN.com and other type of very safe and legit type of website as the command and control centers. They are doing that in order to bypass network behavioral analytics type of controls because it’s supposed to be safe website but at the same time you’re seeing more and more silos type of threat memory injections and other type of advanced type of threats that are designed to bypass endpoint type of security controls. You are seeing other type of malicious activities such credential test or remote login credential with threat actors
Netanel Amar [00:16:16]:
and this is how you have a complete type of attack orchestrated, bypass those different security controls once they are one solution. Now with our sensor fusion and both me and my Co-Founder have a background with Oceanfix security, ethically, iphone hacking, etc. We saw that this type of orchestrated attack are evolving every ill. The attacker always have a few steps and we are behind. Now you should take in mind that however rapid attack evolution is, it’s still evolution that is not unforglip. Meaning that new malware for example exploit or fileless attack feature are introduced in device, gadget one step at a time and we are seeing that basically the biggest problem today is that it’s very hard to understand if you don’t have this type of context what’s the difference between an attack and a noise within your organization. So we are seeing more and more false positive, more and more, let’s say false alarm that creates more and more manual activity
Netanel Amar [00:17:28]:
and I think that the accuracy here is the most important thing. So having the ability to have very good visibility and the understanding will allow us to put a very good automation in place and once we have that, we can definitely see more successful type of blocking those evolving threats than we used to in the past.
Sanjog Aul [00:17:51]:
So besides contractual guarantees for service quality and business continuity, what are Cynet’s company values and leadership capability that the enterprise leaders can rely on if they choose Cynet for protecting their internal environments.
Netanel Amar [00:18:11]:
So we strive to be 100% customer centric and we indeed have a very good relationship with our customers. From our perspective it’s more of a partnership than a supplier/consumer relationship. Now we do our best to be our customer trusted security partners and advisors and as we said before, we learn and improve our product based on text in their production environment. So it really has symbiosis type of relationship. We’ll give them a protection, they will give us feedback back and we can together improve and we’ll be better and better each and every day, that goes by. Now we designed the technology from the ground up. We are seeing the warning sign.
Netanel Amar [00:18:54]:
We are seeing that most of the attack and the blind spot in the organization side from the other angle is something that correlates and we are trying to solve that. Now most of the organization have the ability to work very closely with us but obviously some of the organization doesn’t have a very let’s say qualified team et cetera. So we are working very well with the partners, the MSSPs, et cetera in order to achieve that. Furthermore, I would say that mostly even from top to bottom, even Eyaal, my Co-Founder and partner and company CEO, we are in daily engagement with most of our customers in order to learn from them and also to support them within difficult times.
Sanjog Aul [00:19:41]:
Once again thank you Netanel for sharing your thoughts and insights on our Solution Spotlight segment.
Netanel Amar [00:19:49]:
Thank you very much.
Sanjog Aul [00:19:51]:
And listeners, I invite you to find related conversations on our website at ciotalknetwork.com.
Download Podcast
Apple Podcast, Google Podcast, Spotify, Pandora, iHeartRadio, SoundCloud, TuneIn, and Stitcher. Find other syndication channels here or search CIO Talk Network podcast on any other app.
Explore More


