Mark Lambourne, Technical Director, ITB

Emerging vendor tips: Rapid7 and Picus Security
We cannot fully predict what 2025 will hold for the world of cybersecurity. However, for the UK market, we anticipate more stringent security budgets and potential staffing freezes or cuts, directly competing with increased regulatory pressures and security risks. This is why we believe it is more important than ever for organisations to validate their cyber resilience efforts and optimise existing security tooling to maximise ROI.
While we position our business as somewhat agnostic, we naturally do have strategic vendors and two that we are predicting big things for are Rapid7 and Picus Security. Both will serve as key enablers to Gartner’s Continuous Threat Exposure Management (CTEM) methodology, which is crucial to improving security outcomes.
Rapid7 is gearing up to make waves in 2025, with recent acquisitions in the attack surface and exposure management spaces bolstering its existing XDR/MDR and vulnerability management services. This will provide organisations with a mature end-to-end operational risk management platform with research-backed threat intel, expert detection and unlimited response capability.
Picus recently secured a $45m investment to accelerate the growth of its platform, which sits at the heart of our security control validation service. The true value of this lies in optimisation – identifying visibility gaps and providing alert configuration guidance for tools such as Microsoft Sentinel, Rapid7, and Splunk; additionally provide A/B testing for configurations and security solutions so that security leaders can make informed outcome-based decisions.
Article continues on following page…