
AI impact on APAC cybersecurity teams divides leaders & analysts
Research by Exabeam has highlighted a significant disconnect between the perceived and actual impact of artificial intelligence (AI) on cybersecurity operations among executives and front-line analysts in the Asia Pacific and Japan (APJ) region.
The Exabeam report, "From Hype to Help: How AI Is (Really) Transforming Cybersecurity in 2025," found that while there is broad adoption of AI tools, perceptions of their value in improving productivity differ sharply between security team leadership and security analysts charged with daily tool operation.
Data from the survey reveals that 71% of executives in APJ believe AI has brought about substantial productivity gains for their security teams. In contrast, only 5% of security analysts—those directly operating AI technology—shared that view. This marked divergence is more than a simple difference of opinion and points to deeper issues with operational effectiveness and trust in AI-driven processes.
Executives tend to cite AI's capacity to lower costs, streamline workflows, and strengthen strategic capability. However, front-line analysts report an alternative experience shaped by issues such as an ongoing stream of false positives, heightened alert fatigue, and an enduring need for human oversight, which challenge the effectiveness of AI tools in day-to-day security operations.
The research suggests that for many organisations, the introduction of AI has not removed the burden of manual work for analysts, but has instead altered its nature or shifted it elsewhere within team processes. This dynamic may indicate that organisational leadership has overestimated both the maturity and reliability of current AI tools, while potentially underestimating the complexity involved in practical implementation across diverse security environments.
"There's no shortage of AI hype in cybersecurity — but ask the people actually using the tools, and the story falls apart," said Steve Wilson, Chief AI and Product Officer at Exabeam. "Analysts are stuck managing tools that promise autonomy but constantly need tuning and supervision. Agentic AI flips that script — it doesn't wait for instructions, it takes action, cuts through the noise, and moves investigations forward without dragging teams down."
The report does find consistent acknowledgement of AI delivering the most tangible impact in specific cybersecurity processes, particularly in threat detection, investigation, and response (TDIR). Within APJ, 46% of participating security teams stated AI has led to productivity improvements in these areas by automating repetitive analytical tasks, reducing the volume of alerts analysts need to review, and shortening the time required to gain meaningful insights from system data.
AI-driven solutions were observed to have improved anomaly detection, provided faster mean time to detect (MTTD), and enabled more effective use of user behaviour analytics to identify potential threats.
Despite these positive indicators, trust in the autonomy of AI remains limited. Only 23% of APJ security teams reported being confident in allowing AI to take action without human intervention. Many in the industry believe that successful performance must come before trust, with organisations not looking to fully delegate responsibility but hoping that AI can scale beyond the current limits of human analysis by consistently delivering accurate results and automating labour-intensive workflows.
AI adoption is also leading to structural changes in the composition of security teams across the region. More than half the APJ organisations surveyed said they had restructured their teams in response to the introduction of AI solutions. Within this group, 31% have reduced their workforce due to automation, while 23% are hiring in specialised areas such as AI governance, automation oversight, and data protection.
These structural adjustments reflect the emergence of a new operational model for security operations centres (SOCs), where the aim is for so-called agentic AI to support swifter decision-making, enhance the depth of investigative work, and allow human personnel to focus on higher-value tasks.
The Exabeam report also highlights marked regional differences in both AI adoption and its perceived impact on productivity. Across the surveyed regions, organisations in India, the Middle East, Turkey, and Africa (IMETA) reported the most significant productivity gains linked to AI (81%), followed by those in the United Kingdom, Ireland, and Europe (UKIE) at 60%. APJ organisations reported an AI-driven productivity boost of 46%, which is slightly higher than the 44% reported by North American organisations.
Findings from the research underline the need for closer alignment between leadership aspirations and operational execution as AI becomes further embedded in cybersecurity practices. Exabeam notes that organisations seeking to narrow the gap between strategic intent and practical outcomes should consider deploying agentic AI for its more proactive capabilities. Organisations are encouraged to involve security analysts in technology deployment decisions and focus on measurable outcomes over promotional claims.
The research was conducted by Sapio Research for Exabeam during February and March 2025 through a global survey of 1,000 cybersecurity professionals from 17 countries, including participants from a range of sectors such as finance, manufacturing, healthcare, and government. The definition of AI within the survey was deliberately broad to encompass a range of tools including machine learning, generative AI, and agentic systems.

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles


Techday NZ
an hour ago
- Techday NZ
Agentic accounting the next frontier for CFOs
Australian CFOs and their teams are now caught in a perfect storm as they navigate global and local economic uncertainties, mounting pressure to adopt AI-driven solutions across the enterprise, ESG compliance and finance reforms. These challenges highlight the urgent need for sustained business efficiencies throughout organisations by ensuring streamlined finance and accounting processes from procurement, invoicing and expense management through to tax compliance and financial reporting. Ironically, even though AI is a challenge for Australian CFOs as illustrated in a recent ADAPT survey, fast tracking its adoption is likely to be the silver bullet to resolving many of the issues that finance teams are facing, with the next generation of agentic automation technology providing a new frontier for finance operations. What is agentic automation? Agentic automation brings together proven robotic process automation, AI models and human expertise into cohesive workflows where people, robots and AI agents work synergistically to optimise processes and drive enterprise efficiency. These agentic workflows are intelligent, adaptive and governed — enabling automation that is not only powerful but trusted. More simply, AI agents think with human-like reasoning and learning, the robots conduct tasks with precision and tireless consistency, and people provide the strategic direction, creativity and human judgement that machines can't match. For finance teams, an agentic automation platform creates reliable workflows whereby AI agents operate within clearly defined guardrails to ensure security, predictability, and performance. The platform should deliver robust governance, real-time vulnerability assessments, and stringent data access controls to protect enterprise environments, while at the same time enhancing efficiencies and streamlining operations on a cycle of continuous sustained improvement. This provides significant benefits for day-to-day finance processes, while also helping to ensure compliance is maintained even in a dynamic regulatory environment. The shift to agentic automation in finance processes Mirvac is among many Australian enterprises that are already reaping the benefits of agentic automation across core finance and operations processes, from procurement to employee support. Currently, Mirvac is using agentic automation to route invoices for complex and changing utilities needs, which are beyond the capabilities of robotic processes that require a strict script of instructions. Instead, agentic automation directs utilities invoices to the right Mirvac development or construction site with high accuracy. Mirvac's procurement teams have also realised significant advantages in the company's request for proposal process, which involves stripping out data and conducting side-by-side comparisons of responses from vendors. To address a time-consuming manual process, Mirvac has been using agentic automaton to read a Request for Proposal response, extract key data, and pre-populate evaluation sheets so that employees spend less time copying and pasting and more time on decision-making. Fiserv is another early adopter and is already achieving 98 percent end-to-end process automation for its merchant category codes process through agentic automation. The future of the finance team in an AI world While most financial processes can now be done by agentic automation, it still requires human intelligence and oversight to ensure the data fed into the AI model is clean and fit for purpose, and the results are analysed in a way that drives a sustained positive return on investment for businesses. One significant benefit that comes from agentic automation is the ability to quickly upskill and reskill finance teams in the use of AI tools to drive faster decision making, compliant and accurate reporting, and a much stronger focus on strategic planning that truly shifts the needle for an organisation. In these turbulent times, it is clear that finance teams take the brunt of the impact when it comes to financial and regulatory changes. While it can be tricky to continually anticipate market shifts and their business impact, agentic automation enables finance teams to get ahead of the game by alleviating them from the burden of processes to focus more on corporate strategy. Even a small step toward agentic automation is likely to deliver big gains for CFOs and their teams. UiPath is hosting Agentic Automation Summit events in Melbourne, Sydney and Auckland this month. To register visit: agentic-automation-summit- roadshow


Techday NZ
2 hours ago
- Techday NZ
Cybercriminals harness AI to boost phishing & malware attacks
New research has brought to light the growing use of artificial intelligence tools by cybercriminals behind lesser-known ransomware and malware attacks, highlighting a swiftly evolving threat landscape. The investigations indicate that small cybercriminal groups, including CyberLock, Lucky_Gh0$t, and Numero, have harnessed AI capabilities both to develop more persistent malware and to trick users into downloading malicious payloads. The study outlines how these criminal organisations are adopting AI-driven lures to infect unsuspecting victims, departing from traditional manual techniques in favour of automated, highly convincing fraud. The proliferation of new, seemingly innovative AI services has created opportunities for attackers to blend fraudulent tools with legitimate ones, making it more difficult for individuals and organisations to distinguish between benign and malicious actors online. Steve Wilson, Chief AI and Product Officer at Exabeam, explained the nuances of these new threats. "While AI delivers massive benefits to security teams, we must stay open-eyed about the risks in today's rapidly evolving threat landscape. The recent wave of cybercriminals exploiting AI hype underscores the importance of vigilance," Wilson said. He added, "In some ways, these incidents are classic phishing scams repackaged, but AI puts a concerning new spin on them." Wilson points to two significant risk factors. "First, the sheer excitement and constant emergence of new AI tools mean users are increasingly comfortable trying services from unknown vendors, blurring the lines between legitimate new solutions and malicious impostors. Second, AI technology itself makes it alarmingly easy to craft high-quality counterfeit websites and sophisticated phishing campaigns. Attackers can now mimic authentic brands with unprecedented realism, greatly increasing their chances of success." For users, this evolving threat means that caution is more critical than ever. Wilson cautioned: "Both individuals and organizations must ramp up their vigilance. Users should approach new AI services with scepticism and heightened awareness, carefully verifying legitimacy before engaging. Meanwhile, corporate defenders need to proactively adopt advanced detection tools and modern techniques tailored to counter these AI-enhanced threats. Staying ahead demands constant vigilance and aggressive adaptation." Mike Mitchell, National Cyber Security Consultant at AltTab, echoed these concerns while highlighting the double-edged sword AI presents for the sector. "AI is transforming the world of cyber security, acting as both an ally and a rising threat. On defence teams, AI helps detect and respond to attacks faster by automating tasks like threat hunting, alert triage, and incident response. But attackers are also using AI to launch smarter sophisticated phishing campaigns, automating attacks, and bypassing traditional defences," he said. "This has created a constant race between offensive and defensive innovation." Mitchell emphasised the importance of responsible use and adaption. "As AI agents become more advanced, the focus must shift to ethical use, responsible adoption and strengthening human-AI collaboration. One thing is certain; the future of cyber security is intrinsically linked with the evolution of AI and staying ahead means we must continue to adapt quickly." The findings reflect broader concerns within the cybersecurity community regarding the unpredictable consequences of fast-moving innovation in AI. As both attackers and defenders race to leverage the latest tools, organisations of every size are being urged to educate their users, refine their detection and response protocols, and remain vigilant when navigating the crowded field of AI-enabled products and services. Industry leaders recommend a cautious, informed approach to all new digital tools, particularly those involving AI. By staying alert to the latest tactics employed by cybercriminals, and investing in advanced defence strategies, businesses and individuals can help to reduce their exposure to the next wave of AI-powered threats.


Techday NZ
4 hours ago
- Techday NZ
The Evolution Platform: Empowering businesses to thrive in a dynamic digital world
In today's fast-paced digital world, agility is paramount. But many businesses struggle to keep up, facing challenges in rapidly deploying new services, scaling resources efficiently, and securing their networks. Understanding these pressures, Orange Business developed our NaaS-based Evolution Platform, a pivotal advancement that offers a more flexible and efficient approach to consuming network and security services. It's a strategic shift, empowering clients to achieve their business objectives in a market that demands constant adaptation. According to Omdia, there is a projected 66% annual increase in AI-related network traffic by 2030, with 75% of organisations accelerating transformation plans. This has been identified as a leading concern amongst technology executives worldwide, with 69% concerned about the growing amount of technology investment needed to remain competitive. The Evolution Platform is designed to directly address these concerns, providing a cost-effective path to digital transformation, helping customers achieve their transformation goals while reducing overall network investment by up to 60%. Designed to address key market concerns The Evolution Platform is proving invaluable to large enterprises, representing 80% of the platform's user base. Within this segment, financial services benefit from its compliance features and secure data handling, crucial for navigating stringent regulations. Mining and resources leverage its robust connectivity to maintain operational efficiency in remote locations and navigate a complex mergers and acquisitions (M&A) environment. For businesses expanding globally, the Evolution Platform ensures consistent performance and reliable connectivity, regardless of location. In reimagining the customer experience, the platform transforms how customers access critical services, providing a unified experience that streamlines operations. It delivers both commercial flexibility and operational efficiency through a comprehensive suite of services, including sophisticated SD-WAN, robust SASE offerings, Cloud Connectivity, Cloud Networking, and VNFaaS (Virtual Network Function as a Service). Already, hundreds of customers globally are leveraging its power to simplify network management and accelerate digital transformation. At Orange Business, we understand that integrating new platforms can be complex and time consuming, particularly during M&A. By leveraging native integration with our network partners and offering customisable services deployed on-demand via the platform interface or APIs, the platform streamlines technology integration, enabling organisations to rapidly onboard acquired networks and enforce consistent security policies. This accelerates the consolidation process and minimises disruption to business operations, proven in industries like mining where integration time during M&A is reduced from a typical 6-12 months to just weeks. Building a scalable and secure foundation for growth A scalable, responsive, and secure digital infrastructure is now within reach with the Evolution Platform. It empowers work from any location with optimal performance, supporting growth and security needs, whether a business is just beginning its digital transformation or adapting to new challenges. Its blueprint approach allows for rapid replication across multiple locations without significant investment, a key benefit during acquisitions where consistency and speed are critical. The platform's virtualised nature eliminates the need for costly physical assets, allowing organisations to avoid the challenges of recovering the full Total Cost of Ownership (TCO) on acquired hardware. Further, the platform provides a robust and secure connectivity platform for digital workspaces and cloud-based applications, supporting a global workforce. It maximises uptime and resilience, contributing to operational excellence, and offers multi-cloud visibility via Infrastructure-as-Code (IaC) automation, amplifying the quality of the user experience. As indicated by the name, the Evolution Platform is designed to continuously evolve. We are committed to adding new capabilities and expanding our reach, ensuring it remains a valuable asset for businesses seeking to streamline operations, guarantee performance, and shape the future of their networks. As Gartner has recognised, positioning Orange Business at the highest level of the "Ability to Execute" axis of their Magic Quadrant for Global WAN Services for the 23rd consecutive year, we are committed to delivering on this promise. The Evolution Platform is a strategic enabler, empowering businesses to thrive in a dynamic digital world, innovate with confidence, and achieve their full potential. To learn more, visit Evolution Platform Catalog | Orange Business