The questions I’m hearing from security leaders across APAC

Image of Roger Loh

Global, Aug 28, 2026

Author: Roger Loh, Head of Solutions Digital Transformation, Logicalis APAC
 

The conversations I'm having with CISOs and security leaders across APAC have changed dramatically over the past year.

Not long ago, organisations were primarily focused on visibility. They wanted to know whether their environments were being monitored, whether threats could be detected, and whether they had the right controls in place.

Today, the questions are different.

Customers are asking:

  • How are you using AI in your Security Operations Centre?
  • Can your SOC respond at the same speed attackers are now operating?
  • How do we secure our business in a world where AI can identify and exploit vulnerabilities in minutes?
  • How do we distinguish between thousands of vulnerabilities and the handful that actually put our business at risk?
  • What does cyber resilience look like in a post-Mythos world?
  • Can AI help us compensate for the ongoing shortage of cybersecurity skills?
  • How do we move from detection to action?

These questions are not theoretical. They reflect a fundamental shift in the threat landscape.

Welcome to the post-Mythos era

One theme I believe every security leader should be preparing for is what I call the post-Mythos era.

Regardless of whether the next major AI model is called Mythos or something else entirely, the reality is clear: frontier AI models are changing the economics of cybercrime. They are reducing the cost of attack, increasing the speed of reconnaissance and making it easier for threat actors to identify weaknesses across complex environments.

As a result, enterprise scrutiny around resilience, assurance and cyber readiness is increasing significantly. We are already seeing this drive stronger demand for managed security services across Asia.  

The uncomfortable truth is that many organisations are still operating with cybersecurity processes designed for a slower world.

Attackers are accelerating.

Defenders must accelerate as well.

Why the future SOC must be AI-powered

One concern consistently raised by customers is whether traditional SOC models can keep pace with modern threats.

The answer is increasingly no.

Alert volumes continue to rise. Attack surfaces continue to expand. Cyber skills remain scarce and expensive. Yet boards expect stronger security outcomes than ever before.

This is why I believe the future SOC will combine human expertise with AI-driven operations.

At Logicalis, we are building what we call an AI SOC Copilot, an agentic AI layer that works alongside security analysts throughout the detection and response lifecycle. Its objective is simple: detect faster, investigate faster and respond faster.  

This approach is built around several AI-powered functions:

  • Triage Agents that automatically prioritise alerts and reduce noise.
  • Insight Agents that correlate telemetry into actionable intelligence.
  • Harmony Agents that orchestrate coordinated response actions.
  • Vital Agents that continuously monitor critical assets and signal health.
  • AI-assisted Threat Hunting capabilities that proactively identify risks that traditional rules may miss.

The goal is not to replace analysts.

The goal is to augment them.

From vulnerability management to exposure management

Another challenge customers frequently discuss is vulnerability overload.

Every organisation can generate thousands of vulnerability findings. The real challenge is knowing which ones matter.

Security leaders increasingly want answers to tougher questions:

  • Which vulnerabilities are actually exploitable?
  • Which attack paths lead to critical business assets?
  • What should we remediate first?
  • How quickly can we act before an attacker does?

This is why the conversation is shifting from vulnerability management to exposure management.

What matters is not the number of vulnerabilities discovered. What matters is understanding risk in context and prioritising actions that reduce the greatest business exposure.

The real differentiator: response

Perhaps the biggest change in customer expectations is around response.

Customers are no longer impressed by detection alone.

Increasingly, they are asking:

"Once you've detected something, what happens next?"

They want providers who can investigate, classify and take action rapidly. They want meaningful outcomes, not notifications.

This is where AI becomes transformative.

AI can help security operations move at machine speed, enabling faster triage, investigation and orchestration while keeping humans in control of governance and decision-making.

The organisations that thrive in the coming years will not necessarily be those with the largest security teams.

They will be the organisations that successfully combine human expertise, strong cyber hygiene and AI-powered operations to make better security decisions, faster.

Because in a post-Mythos world, speed, resilience and response will matter more than ever.

You might like to read

Topic

Related Insights