Cegeka Careers Language Why Cegeka Back
Trinity of Innovation

5G, Artificial Intelligence and hybrid cloud: all breakthrough technologies in and by themselves. But their real potential?

Discover the future with us
Icons_Navigation_Cegeka&Society

Cegeka & Society

We develop innovative solutions with a positive impact on the environment, people, and society.

Icons_Navigation_Why Cegeka

Why Cegeka

As a family-owned IT solutions provider, we work In close cooperation with our customers.

Icons_Navigation_Our Story

About Us

Our strong values form the cornerstone of our identity and are at the baseline of our success.

Icons_Navigation_Annual Report

Annual Report

Dive into the details of our growth. Read the full report and learn more about our continued success.

More Cegeka

Our Management

Corporate News

Contact & Locations

Solutions Back
Solutions
Hybrid Cloud

Hybrid Cloud

Explore the added value of cloud adoption for your business

Data solution

Data & AI

Discover our different data solutions to help you become a data-driven company.

RegulatoryCompliance_Visuals_Navigation (1)

Regulatory Compliance

Ensure GDPR & GxP compliance with our comprehensive solutions.

Cyber Security & Networking Solution

Cyber Security & Networking

With cyber resilience, your organisation becomes a bit more secure with each day.

Digital Workplace Solution

Digital Workplace

Hybrid workplaces that increases productivity and reduces costs.

Testing_Visuals_IconNavigation (1)

Quality Engineering

Ensuring seamless software, one Test at a time.

Applications Solution

Applications

Building the applications to embed growth, innovation and agility

Business Solutions

Business Solutions

Transform your business with Microsoft Dynamics ERP and CRM, integrated with Microsoft’s Power Platform.

5G_Citymesh

5G & Mobile Private Networks

Expertise and development experience to bring all the advantages of 5G.

Products and platform solutions

Products & Platforms

Software solutions that optimize business processes and drive success.

Services Back
Services
Website_Navigation_IT_Team_Extension_3

IT Team Extension

The best IT professionals to support your projects

Outsourcing Services

Outsourcing & Managed Services

Outsourcing your IT helps you to focus on your strategy.

Website_Navigation_Consultancy

Consultancy

The right skills and attitude to support the IT projects at your office

Website_Navigation_Projects

Projects

Integrating the right digital solutions for your IT project

Industries Back
Industries

Our industry-tailored services are designed to address specific challenges and opportunities across different industries

All industries
Website_Navigation_Agri_and_Food

Agri & Food

Cegeka has a deep understanding of the agri and food ecosystem and the opportunities it creates.

Website_Navigation_Healthcare

Healthcare

By creating leading digital solutions and connecting individuals, processes and systems.​

Energy & Utilities

Energy & Utilities

The arrival of smart electricity grids will allow companies to take care of their own energy management

Finance & Insurance

Finance & Insurance

Take major steps towards cloud computing to increase effectiveness through the use of AI and big data.

Manufacturing

Manufacturing

Production chains are becoming intelligent networks with real-time track-and-trace systems.

Website_Navigation_Mobility

Mobility

Offer citizens, businesses and visitors a better experience by integrating the best digital solutions for mobility.

Insights Back
Knowledge is our backbone

We believe in sharing our insights and expertise with you. Explore our resources and learn more about our products, services and industry trends.

Icons_Navigation_Case Studies

Case Studies

Step into the world of our delighted customers and see how we helped them achieve their goals.

Icons_Navigation_News Items

Corporate News

Stay in the loop with our company news, announcements, awards and events.

Icons_Navigation_Blogs

Blogs

Read our latest articles on topics ranging from technology, innovation, business and beyond.

Icons_Navigation_Webinars

Webinars

Be part of the action with our live or on-demand webinars, where our experts share invaluable knowledge.

Icons_Navigation_Ebooks

E-books & Whitepapers

Download our guides and reports on various aspects of technology and business.

Icons_Navigation_Events

Events

Find out where we are going to be next, and register for our upcoming events.

CTG Academy

Academy

Enhance your skills with our expert-led training courses, tutorials, and certifications at our Academy.

Join our Academy
Back
Select language

English

Corporate (English)

Austria (German)

Belgium (Dutch)

Belgium (French)

Denmark (English)

Germany (German)

Greece (Greek)

Italy (Italian)

Romania (English)

Sweden (English)

The Netherlands (Dutch)

United Kingdom (English)

Let’s get in touch
Cegeka Why Cegeka
Trinity of Innovation

5G, Artificial Intelligence and hybrid cloud: all breakthrough technologies in and by themselves. But their real potential?

Discover the future with us
Icons_Navigation_Cegeka&Society

Cegeka & Society

We develop innovative solutions with a positive impact on the environment, people, and society.

Icons_Navigation_Why Cegeka

Why Cegeka

As a family-owned IT solutions provider, we work In close cooperation with our customers.

Icons_Navigation_Our Story

About Us

Our strong values form the cornerstone of our identity and are at the baseline of our success.

Icons_Navigation_Annual Report

Annual Report

Dive into the details of our growth. Read the full report and learn more about our continued success.

More Cegeka

Our Management

Corporate News

Contact & Locations

Solutions
Solutions
Hybrid Cloud

Hybrid Cloud

Explore the added value of cloud adoption for your business

Data solution

Data & AI

Discover our different data solutions to help you become a data-driven company.

RegulatoryCompliance_Visuals_Navigation (1)

Regulatory Compliance

Ensure GDPR & GxP compliance with our comprehensive solutions.

Cyber Security & Networking Solution

Cyber Security & Networking

With cyber resilience, your organisation becomes a bit more secure with each day.

Digital Workplace Solution

Digital Workplace

Hybrid workplaces that increases productivity and reduces costs.

Testing_Visuals_IconNavigation (1)

Quality Engineering

Ensuring seamless software, one Test at a time.

Applications Solution

Applications

Building the applications to embed growth, innovation and agility

Business Solutions

Business Solutions

Transform your business with Microsoft Dynamics ERP and CRM, integrated with Microsoft’s Power Platform.

5G_Citymesh

5G & Mobile Private Networks

Expertise and development experience to bring all the advantages of 5G.

Products and platform solutions

Products & Platforms

Software solutions that optimize business processes and drive success.

Services
Services
Website_Navigation_IT_Team_Extension_3

IT Team Extension

The best IT professionals to support your projects

Outsourcing Services

Outsourcing & Managed Services

Outsourcing your IT helps you to focus on your strategy.

Website_Navigation_Consultancy

Consultancy

The right skills and attitude to support the IT projects at your office

Website_Navigation_Projects

Projects

Integrating the right digital solutions for your IT project

Industries
Industries

Our industry-tailored services are designed to address specific challenges and opportunities across different industries

All industries
Website_Navigation_Agri_and_Food

Agri & Food

Cegeka has a deep understanding of the agri and food ecosystem and the opportunities it creates.

Website_Navigation_Healthcare

Healthcare

By creating leading digital solutions and connecting individuals, processes and systems.​

Energy & Utilities

Energy & Utilities

The arrival of smart electricity grids will allow companies to take care of their own energy management

Finance & Insurance

Finance & Insurance

Take major steps towards cloud computing to increase effectiveness through the use of AI and big data.

Manufacturing

Manufacturing

Production chains are becoming intelligent networks with real-time track-and-trace systems.

Website_Navigation_Mobility

Mobility

Offer citizens, businesses and visitors a better experience by integrating the best digital solutions for mobility.

Insights
Knowledge is our backbone

We believe in sharing our insights and expertise with you. Explore our resources and learn more about our products, services and industry trends.

Icons_Navigation_Case Studies

Case Studies

Step into the world of our delighted customers and see how we helped them achieve their goals.

Icons_Navigation_News Items

Corporate News

Stay in the loop with our company news, announcements, awards and events.

Icons_Navigation_Blogs

Blogs

Read our latest articles on topics ranging from technology, innovation, business and beyond.

Icons_Navigation_Webinars

Webinars

Be part of the action with our live or on-demand webinars, where our experts share invaluable knowledge.

Icons_Navigation_Ebooks

E-books & Whitepapers

Download our guides and reports on various aspects of technology and business.

Icons_Navigation_Events

Events

Find out where we are going to be next, and register for our upcoming events.

CTG Academy

Academy

Enhance your skills with our expert-led training courses, tutorials, and certifications at our Academy.

Join our Academy
Corporate (English) Austria (German) Belgium (Dutch) Belgium (French) Denmark (English) Germany (German) Greece (Greek) Italy (Italian) Romania (English) Sweden (English) The Netherlands (Dutch) United Kingdom (English) Careers Let’s get in touch
Home Discover our latest blogs Discover our latest blogs Strategic Cybersecurity Investments: Prioritizing Essentials
Cyber security & Networking
5 minutes reading

Strategic Cybersecurity Investments: Prioritizing Essentials

A few times a year I meet with the topical experts at Cegeka. Today I am joined once again by Fabrice Wynants, Global Director of Cybersecurity.

Muriel Reyserhove

Muriel Reyserhove

August 18, 2022

We’re talking about: 

  • what (too) many companies are still not doing to protect themselves from cybercrime
  • what exactly C-SOR2C stands for;
  • the question that most CEOs ask when it comes to cybercrime;
  • what CISOs can do to get their budgets approved;
  • the most remarkable trend of the past year;
  • where that army of unused security specialists may be!

Let’s roll!

Fabrice, the number of cybercrime incidents has increased sharply recently. What has caused this?

Fabrice Wynants: “There are several reasons for this. In many companies, basic cyber-hygiene is still not in order. This is nothing new: the last time we spoke, I said exactly the same thing (laughs). People are still buying based on gut instinct. They invest in fancy point solutions that only address one aspect of their cybersecurity. But if they havent got the foundation right yet, this is not a good strategy. It is better to spread your security budget as widely as possible rather than buying one state-of-the-art point solution.

"People are still buying based on gut instinct. They invest in fancy point solutions that only address one aspect of their cybersecurity."

 

Fabrice Wynants, Global Director of Cybersecurity

In addition, we are seeing that many organisations still lack a clear understanding of precisely what the weak points in their business are: what you might call their crown jewels, assets that need to be protected at all costs. These are the things that could cause a company to go down and suffer major financial, operational or reputational damage, but what exactly are they? Administration? Supply chain? Stock management? After you have properly set up the basics, you should focus on establishing that. Thats point two.

And three: we see that a lot is spent on prevention and detection – I would even say too much – but far less is spent on response and recovery. The analogy is, why invest in an expensive fire alarm system if you dont link it to the fire brigade? The few seconds that you might gain with that finely tuned, expensive system are lost in minutes because the fire brigade have not been alerted automatically. Its overkill and a waste of money.

20210310_fabrice_wynants-web-1

Is this why Cegeka launched C-SOR2C this year?  

Fabrice Wynants: “Thats right. The name C-SOR2C stands for how we at Cegeka look at modern cybersecurity operations: with a lot of emphasis on the 2 Rs response and recovery. Today, detection can be automated to a large extent, including with using machine learning, which is what a traditional SOC does. For response and recovery, you need experts. But a SOC that can quickly detect a problem only to throw it over the fence – catch and dispatch – is of no use whatsoever to the customer. 

"A SOC that can quickly detect a problem only to throw it over the fence is of no use whatsoever to the customer."

Fabrice Wynants, Global Director of Cybersecurity

With our C-SOR2C, every threat detected is followed by a fast and appropriate response, and if necessary, recovery activities. We dont just call our customers to tell them that we have identified a problem; we call to tell them that we have identified a problem, that we have contained it, whatever it may be, and we then advise them on the preventative steps that they may need to take themselves, including what other suppliers within their ecosystem may still need to do or be able to do. Our strength is that we can link a broad set of IT expertise to security operations. 

What question are you most often asked by non-technical C-level executives? 

Fabrice Wynants: “There is still a lot of reasoning based on the famous FUD: fear, uncertainty and doubt. People allow themselves to be frightened. I am often asked by CEOs what they should do to protect themselves against nation-state cybercrime… cyber activity sponsored by a state to cause political instability, for example. My answer to that is that there is not much you can do about it. It is an unequal battle and there is no point in letting yourself be led by it.

"CEOs often ask me what they should do to protect themselves against nation-state cybercrime."

Fabrice Wynants, Global Director of Cybersecurity

It is far better to invest defensively as a company: have your basic cyber-hygiene in order, gain insight into critical processes and your “crown jewels” and make sure that you protect them properly, work on awareness among all employees, gain a high-level understanding of how an attack pattern works, and so on. The chance of something going wrong because one of these factors has not been attended to is much greater than the chance of being hacked by a random rogue nation.

20210310_fabrice_wynants-web-21

More and more budget is being allocated to cybersecurity. Have you noticed this? 

Fabrice Wynants: “Yes, but as I mentioned earlier, it is not always used in the most sensible way. Plus, I often meet CISOs who are still having a hard time getting those budgets approved by the management board. What do we get in return? seems to be the most common question they get asked by the board. Security is still often seen as a kind of insurance, while in actuality it is an investment. We often talk about ROSI, Return on Security Investment. Thats why we are in the process of creating a work package for all CISOs that will make it easier for them to convince their boards to make the right decisions when it comes to cybersecurity and resilience. 

What is the most important development that you see happening now? 

Fabrice Wynants: “The convergence of IT and security operations. The two have lived side by side for a long time: infrastructure was set up, applications were developed, and on top of that came a layer of security as a kind of add-on. Nowadays, we are seeing more and more that security is integral – everything is secure by design, or at least 70% of it is. Security is becoming more and more implicit and invisible, which is exactly how it should be.

"Security is becoming more and more implicit and invisible, which is how it should be."

Fabrice Wynants, Global Director of Cybersecurity 

This convergence is taking place partly due to the impetus from legislation. I like to make a comparison with cars: not so long ago, cars had no seatbelts, and when seatbelts were fitted as standard, it was by no means compulsory to wear them. That was until legislation got involved. Its the same with security: its the law that requires that certain critical IT services must be secure by design. If that is not the case, you as a company will most likely not purchase those services. Just like you wouldnt get into a car if you saw that it didnt have seatbelts.

What is the biggest challenge in your field? 

Fabrice Wynants: “People. As I said, you can automate some security services very well and very cost-effectively with, amongst other tools, machine learning and workflow automation. But you still need good people. You can recruit them – if you can find them – or you can choose to work with an external SOC. At Cegeka, we provide the whole package, both the tools and the people, with our modern C-SOR2C.

By the way, one of my personal hobbyhorses is that security is looked from far too much of an academic and intellectual point of view. Most cybersecurity people have a masters degree, me included (laughs), yet my experience tells me that there are many people who have had a technical secondary education who have got everything it takes to be great, driven IT and security engineers. We are underusing an army of potential security specialists! If we want to win the War for Talent, we will have to take a broader view of the pool of creativity.”

Muriel Reyserhove

Muriel Reyserhove

More of Muriel Reyserhove articles

From cyber security to cyber resilience

Benefits of a Modern SOC

In an increasingly connected world, cyber threats are on the rise. Organizations must evolve their cyber security strategies to become more resilient against attacks. One of the key determinants of a successful defense against cyber attacks is the Security Operations Center (SOC).
Download e-book

Get in touch