RSS Amplifier

Cyberse · Nov 8, 2025

Secure (with Context) #5 - Budgeting

0
Sign in to vote or save

Ken Yao · Cyberse

Ken here from Cyberse. Welcome to Secure (with Context), your no-BS guide to smarter security decisions.

Twice a month, we’ll:
✅ Cut through vendor hype
✅ Help you discover creators
✅ Provide free tools to help you buy and build with confidence

...with a touch of the jaded-dark-humor that you can only get from a fellow cybersecurity practitioner.

👋 Want to share this newsletter?

Budgeting for Cybersecurity in 2025? Here’s What’s Shaping the Conversation

As companies kick off 2025 planning, cybersecurity leaders are facing some tough questions:

👉 Which tools are actually worth keeping?

👉 Can we cut spend without increasing risk?

👉 Do we really need another platform... or another hire?

Here’s what we’re seeing across the market especially from the startup and lean-team side:

🔹 AI is everywhere. Nearly 70% of security teams now use some form of AI to triage alerts, automate patching, or boost coverage. It’s not hype anymore, it’s about getting more out of the team you already have. But buyers are asking tough questions: Where’s the ROI?

🔹 Tool consolidation is hot. Startups don’t have time (or budget) to manage 15 tools that don’t talk to each other. We’re seeing a shift toward fewer, smarter platforms that cover more ground. If a tool can’t prove it reduces workload or risk, it’s on the chopping block.

🔹 Budget is tight, but strategic. Most teams aren’t slashing security spend... they’re being smarter about it. Core functions like identity, endpoint, cloud, and monitoring are being protected. “Nice to have” is out. Demonstrated risk reduction is in.

🔹 Headcount? Careful calls. Rather than hiring aggressively, many teams are leaning on MSSPs, automation, or cross-training internal talent. The focus is on making the most of what you’ve got and using external help where it actually makes sense.

🔹 Everything must map to business value. Want budget approval in 2025? Make sure your plan clearly ties to risk reduction, faster response, or enabling the business. Every line item needs to earn its spot.

Bottom line: 2025 is not about doing less, it’s about doing what matters, smarter. The companies that win will have leaner stacks, sharper focus, and security programs built for outcomes, not overhead.

What are you seeing as you head into budgeting season?

☄️ Small businesses face record cyber risks in 2025, but protecting your company doesn’t have to be complicated or expensive.

Our newest guide, Cybersecurity Guide for Small Businesses in 2025, shares real-world tips to win contracts, keep clients’ trust, and avoid the costly consequences of an attack.

Dive into the guide and let us know what you think.

Source: Cybersecurity Guide for Small Businesses in 2025

🚀 Cyberse is officially launching in Singapore!

I can’t thank Felix Tang and Xander Khoo enough for their support through CyberSG TIG Collaboration Centre and Plug and Play APAC’s CyberBoost Accelerator and learning how to navigate the Southeast Asia startup ecosystem.

Singapore is currently ranked 6th in the global cybersecurity ecosystem.

3 reasons it’s rising:

1️⃣ Alignment. Top down from government to industry partners

2️⃣ Talent. Digital economy building on the latest tech

3️⃣ Location. SG is the leading hub across Southeast Asia

I’m currently in Singapore and Plug and Play APAC Summit was intense! Really cool to see startups and delegations from all over the world including Singapore, Japan, Korea, Cambodia, and Italy showcasing their companies and learning about the different challenges that everyone is solving.

P.S. I wasn’t informed, but apparently Cyberse is a smart city startup now 🤣

🔦 Advisor Spotlight: Shareth Ben

Shareth Ben is a seasoned cybersecurity and GRC leader with more than 17 years of experience helping enterprise and mid-market businesses manage risk and stay compliant. As Chief Customer Officer at Apptega, he works with companies to simplify complex frameworks like NIST, ISO 27001, and CIS Controls, turning compliance into a growth enabler rather than a burden. He shares practical insights on how security leaders can strengthen governance, prove compliance, improve security and align risk programs with real business outcomes.

We’re proud to have Shareth as part of Cyberse in an Advisory Member role, where his experience and guidance help us advance how cybersecurity and compliance decisions are made across the mid-market.

The more we talk with teams around the world, the clearer it gets: cybersecurity in 2025 is about focus, trust, and teamwork.

Budgets may be tighter, but collaboration has never been stronger.

Let’s keep sharing what works, learning from each other, and building security programs that really make a difference.

👋 Got thoughts? Hit reply. I read every message.

Ken Yao

No posts

Read the original on cyberse.substack.com

Comments

Nothing yet. Say the first thing.

    Sign in to join the conversation.