Big changes are coming to how organizations address managed security challenges, according to new research from LogicHub, a provider of security automation platforms and services.The study, Achieving Promise of the Elevated Security Posture: The Rush to MDR Services, conducted by Osterman Research, found that U.S. organizations struggle with too many alerts, too few security analysts and increasingly complex security stacks. In response, many organizations are rapidly shifting from traditional MSSPs and legacy security tools, such as Security Information and Event Management (SIEMs) that aggregate alerts, to action-oriented MDR services.The study polled organizations that outsource cybersecurity to MSSP and MDR providers, rather than MSSPs and MDR providers themselves. The research revealed that 69% of respondents currently use one or more MSSPs or MDR providers. But those organizations not using MSSP or MDR providers are planning to do so in the next 12 months (25%).
Key Findings: Understanding the Rapid Shift to MDR Security Services
- Almost 60% of respondents experience false positive rates higher than 25%, wasting enormous amounts of analyst time. Only 14% report their false positives rates at below 10%.
- Driven by the increased use of different cloud applications, the number of security tools expected to be deployed in the next 12 months will grow by more than 80%.
- Almost 60% say it is not easy to recruit or retain security staff with the right skills.
- 79% of legacy MSSP users plan to upgrade to MDR services; 12% have already done so.
- 30% of respondents already use MDR services. Another 42% plan to move to MDR in the next 12 months — an increase of 140%.
- Key reasons cited for adopting MDR include strengthening existing security teams, automating response capabilities, improved threat detections, support for cloud services, and the need for 24/7 security operations.




