Connect with us

Technology

CISOs Risk MDR Buyer’s Remorse Without Clear Procurement Requirements, Says Info-Tech Research Group

Published

on

Growing threat volume, expanding attack surfaces, and limited security operations capacity are pushing more organizations toward managed detection and response (MDR) services. However, inconsistent terminology and vendor branding can make provider evaluation difficult, increasing the risk of service misalignment and buyer’s remorse. Info-Tech Research Group’s Streamline Security Detection & Response Outsourcing blueprint provides a four-phase approach to help security leaders define requirements, evaluate providers, and establish measurable outcomes before entering an MDR agreement.

ARLINGTON, Va., Aug. 27, 2026 /PRNewswire/ — Security operations teams are under increasing pressure to keep pace with the volume and velocity of modern threats across growing attack surfaces. Continuous detection and response has become critical, yet many organizations lack the talent, operational maturity, or capacity required to provide effective coverage around the clock. New insights from Info-Tech Research Group indicate that outsourcing detection and response is therefore a sensible default for many organizations, but selecting the right provider introduces challenges of its own.

To help security leaders navigate the increasingly crowded market, the global research and advisory firm has published its Streamline Security Detection & Response Outsourcing blueprint. The resource provides a structured methodology to help organizations clarify service scope, establish measurable outcomes, define fit-for-purpose requirements, evaluate providers, and govern the relationship after implementation.

Info-Tech’s blueprint explains that providers often use different terminology for similar capabilities or package common services under branded offerings, making it difficult for security teams to determine which differences actually matter. The firm advises leaders to focus less on acronyms and marketing terminology and more on specific capabilities, organizational requirements, and the outcomes providers are expected to deliver.

“Don’t get lost in the noise and rush into a contract you’ll regret,” says
Seva Ioussoufovitch, senior research analyst at Info-Tech Research Group. “Take time to clarify the key outcomes and metrics you care about, inventory the capabilities you need, and craft fit-for-purpose requirements that will actually help you make an informed decision. Investing in disciplined procurement upfront will help avoid months of frustration down the road.”

Key Challenges Security Leaders Face When Procuring MDR Services
Despite the growing role of outsourced detection and response, the firm’s blueprint identifies several obstacles that can make provider selection unnecessarily difficult and increase the likelihood of poor service alignment:

Inconsistent terminology and service definitions: Different providers use overlapping terms, acronyms, and branded descriptions for similar detection and response capabilities, complicating market research and comparison.Limited security team bandwidth: Security leaders and their teams often have little time available for detailed requirements gathering, market research, and thorough vendor evaluation.Growing vendor portfolios: Organizations already managing large numbers of technology and security providers may be reluctant to add another vendor, increasing the importance of evaluating opportunities for consolidation.Rushed procurement decisions: Insufficient requirements and evaluation can lead to service misalignment, operational gaps, and buyer’s remorse after an agreement has been signed.

Info-Tech’s Four-Phase Framework for Streamlining Security Detection & Response Outsourcing
To help security leaders move from market research through ongoing provider management, the Streamline Security Detection & Response Outsourcing blueprint outlines a four-phase methodology:

Phase 1: Prepare
Security leaders define the desired scope of the MDR engagement, document their internal environment, determine how detection and response responsibilities should be divided between the organization and provider, and identify the capabilities and provider characteristics required. Organizations can then use these inputs to begin developing an aligned vendor longlist.

Phase 2: Set Outcomes
Organizations identify their highest-priority engagement goals and select metrics that can be used to evaluate progress. Leaders then establish measurable KPIs and service level requirements (SLRs) that support provider evaluation, contracting, and ongoing accountability.

Phase 3: Procure
Security and procurement teams translate their priorities into detailed service requirements that allow vendors to be evaluated against consistent criteria. Organizations can then compare provider responses, conduct deeper discussions with shortlisted vendors, and maintain competitive leverage through the negotiation process.

Phase 4: Implement & Govern
Following vendor selection, organizations establish implementation plans, validate coverage and integrations, clarify roles and escalation procedures, and prepare internal teams to work effectively with the provider. Info-Tech also advises leaders to actively govern provider performance against agreed outcomes rather than treating recurring service reviews as passive status updates.

The Streamline Security Detection & Response Outsourcing blueprint emphasizes that MDR procurement can also provide an opportunity to rationalize existing security investments. Because modern providers may offer capabilities that overlap with tools and services already in an organization’s environment, security leaders can use the procurement process to identify unnecessary duplication and determine where vendor consolidation may improve both operational clarity and value.

By focusing procurement on standardized capabilities, clearly defined requirements, and measurable outcomes, Info-Tech’s approach helps security leaders move beyond vendor branding and evaluate providers based on their ability to meet organizational needs and remain accountable throughout the engagement.

For exclusive and timely commentary from Info-Tech’s experts, including Seva Ioussoufovitch, and access to the complete Streamline Security Detection & Response Outsourcing blueprint, please contact pr@infotech.com.

About Info-Tech Research Group
Info-Tech Research Group is the “get things done” partner for over 30,000 IT, HR, and marketing leaders worldwide. The fastest growing research and advisory firm, Info-Tech enables leaders to make well-informed decisions and transform their organizations through AI, strategic foresight, step-by-step methodologies, practical tools, industry-leading advisory, and training programs. For nearly 30 years, tens of thousands of private and public organizations have trusted Info-Tech to lead their most important initiatives through periods of change and deliver outcomes that truly matter. 

To learn more about Info-Tech’s HR research and advisory services, visit McLean & Company, and for data-driven software buying insights and vendor evaluations, visit the firm’s SoftwareReviews platform. 

Media professionals can register for unrestricted access to research across IT, HR, and software, and hundreds of industry analysts through the firm’s Media Insiders program. To gain access, contact pr@infotech.com.

For information about Info-Tech Research Group or to access the latest research, visit infotech.com and connect via LinkedIn and X. 

View original content to download multimedia:https://www.prnewswire.com/news-releases/cisos-risk-mdr-buyers-remorse-without-clear-procurement-requirements-says-info-tech-research-group-302862324.html

SOURCE Info-Tech Research Group

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Technology

Notice of Data Privacy Incident

Published

on

By

Psychiatry of Texas PLLC

HOUSTON, Aug. 27, 2026 /PRNewswire/ — Psychiatry of Texas PLLC writes to notify you of a data privacy event that involved protected health information (PHI).

What Happened? On March 31, 2026, we learned of an anomaly on our network and launched an immediate investigation. We engaged cybersecurity specialists to assist us in our investigation. Ultimately, we determined that our company experienced a data privacy event involving unauthorized access to our systems on March 31, 2026. On that date, we believe PHI belonging to certain of our patients, as well as patients of healthcare providers we support, was acquired.

What Information Was Involved? The information involved varied by individual but may have included first and last name along with a Social Security number, date of birth, medical diagnosis or treatment information, health insurance information, and electronic identification or account number, username, email address, a parent’s premarital surname, or password.

Individuals whose information was involved and for whom we had address information were provided written notice on August 27, 2026.

What We Are Doing. We investigated this matter to determine whether any PHI was involved and, if so, to whom it related. As an added precaution, we are offering complimentary credit monitoring and identity protection services, free of charge, to individuals whose Social Security numbers were involved through HaystackID.

What Involved Individuals Can Do. Generally, it is best practice to remain vigilant for incidents of identity theft and fraud, from any source, by reviewing and monitoring your account statements and credit reports for suspicious activity and errors. If you discover any suspicious or unusual activity on your accounts, promptly contact your financial institution or service provider.

Individuals can further educate themselves regarding identity theft, fraud alerts, credit freezes, and the steps to take to protect personal information by contacting the credit reporting bureaus, the Federal Trade Commission (FTC), or state Attorneys General. The FTC also encourages those who discover that their information has been misused to file a complaint with them. The FTC may be reached at 600 Pennsylvania Ave. NW, Washington, D.C. 20580; www.identitytheft.gov; 1-877-ID-THEFT (1-877-438-4338); and TTY: 1-866-653-4261.

For More Information. If you would like to learn whether your protected health information may be included in the event, please contact our dedicated assistance line at 855-205-9558 (toll free) Monday through Friday, 9:00 a.m. – 9:00 p.m. Eastern Standard Time, excluding major U.S. holidays.

Contact: Matthew Smith, matthew.smith@kennedyslaw.com 

View original content:https://www.prnewswire.com/news-releases/notice-of-data-privacy-incident-302862348.html

SOURCE Kennedys CMK LLP

Continue Reading

Technology

INVESTOR ALERT: Pomerantz Law Firm Investigates Claims On Behalf of Investors of Alphabet Inc. – GOOG

Published

on

By

NEW YORK, Aug. 27, 2026 /PRNewswire/ — Pomerantz LLP is investigating claims on behalf of investors of Alphabet Inc. (“Alphabet” or the “Company”) (NASDAQ: GOOG). Such investors are advised to contact Danielle Peyton at newaction@pomlaw.com or 646-581-9980, ext. 7980.

The investigation concerns whether Alphabet and certain of its officers and/or directors have engaged in securities fraud or other unlawful business practices. 

[Click here for information about joining the class action]

On July 16, 2026, Bloomberg reported that Alphabet’s Google is “months behind schedule on delivering Gemini 3.5 Pro, its most powerful flagship AI model” due to the Company’s ongoing coding efforts. Specifically, “[l]ate last month, Google updated the data being used to train Gemini in an attempt to improve [its] skills, but the results were disappointing.” 

On this news, Alphabet’s stock price fell $16.40 per share, or 4.4%, to close at $353.81 per share on July 16, 2026. 

Then, on July 22, 2026, Alphabet released its second quarter 2026 financial results, announcing, among other things, a significant expansion of expected full year 2026 capital expenditures to $195 billion to $205 billion. The Company also disclosed that, for the quarter, it had a negative free cash flow of $5.9 billion. Alphabet further disclosed that “given the supply constrained environment, we plan to expand the use of third-party capacity in Q3 as a bridging strategy,” which “will create modest margin pressure in the near term.” 

On this news, Alphabet’s stock price fell $23.57 per share, or 6.89%, to close at $318.34 per share on July 23, 2026.

Pomerantz LLP, with offices in New York, Chicago, Los Angeles, London, Paris, and Tel Aviv, is acknowledged as one of the premier firms in the areas of corporate, securities, and antitrust class litigation. Founded by the late Abraham L. Pomerantz, known as the dean of the class action bar, Pomerantz pioneered the field of securities class actions. Today, more than 85 years later, Pomerantz continues in the tradition he established, fighting for the rights of the victims of securities fraud, breaches of fiduciary duty, and corporate misconduct. The Firm has recovered numerous multimillion-dollar damages awards on behalf of class members. See www.pomlaw.com.

Attorney advertising. Prior results do not guarantee similar outcomes. 

CONTACT:
Danielle Peyton
Pomerantz LLP
dpeyton@pomlaw.com
646-581-9980 ext. 7980

View original content to download multimedia:https://www.prnewswire.com/news-releases/investor-alert-pomerantz-law-firm-investigates-claims-on-behalf-of-investors-of-alphabet-inc—goog-302862343.html

SOURCE Pomerantz LLP

Continue Reading

Technology

Media advisory – Parliamentary Secretaries Bardeesy and Chi to highlight major investments to attract top researchers to Canada

Published

on

By

TORONTO, Aug. 27, 2026 /CNW/ — Karim Bardeesy, Parliamentary Secretary to the Minister of Industry, and Maggie Chi, Parliamentary Secretary to the Minister of Health, will highlight federal investments to attract top researchers from around the world through the Eddie Goldenberg Research Chairs of Canada and Canada Impact+ Emerging Leaders programs.

The announcement will be followed by a media availability.

Date: Friday, August 28, 2026

Time: 1:00 pm (ET)

Location: Toronto, Ontario

Members of the media are asked to contact ISED Media Relations at media@ised-isde.gc.ca to receive event location details and confirm their attendance.

Stay connected

Find more services and information on the Innovation, Science and Economic Development Canada website.

Follow Innovation, Science and Economic Development Canada on social media:
X (Twitter): @ISED_CA | Facebook: Canadian Innovation | Instagram: @cdninnovation | LinkedIn: Innovation, Science and Economic Development Canada

Follow Canadian Science on social media.
X (Twitter): @CDNScienceFacebook: Canadian Science

Follow the Tri-agency Institutional Programs Secretariat on social media.
X (Twitter): @TIPS_SPIIE@LinkedIn: Tri-agency Institutional Programs Secretariat (TIPS)

SOURCE Innovation, Science and Economic Development Canada

Continue Reading

Trending