Sunday, 14 December 2025
25.2 C
Singapore
25.3 C
Thailand
20.3 C
Indonesia
26.6 C
Philippines

Splunk report finds AI adoption rising, but trust and tool inefficiencies hinder security teams

Splunk’s 2025 report finds most security teams struggle with tool inefficiencies and stress, while AI adoption grows but trust remains limited.

A new global report by Splunk has revealed that most Security Operations Centres (SOCs) are still bogged down by tool maintenance and operational inefficiencies, with only a small proportion fully trusting AI for critical cybersecurity tasks. The “State of Security 2025” report highlights key challenges facing security teams, including understaffing, alert fatigue and disconnected systems, which leave organisations exposed to increasingly complex threats.

Security tools hinder more than they help

According to the report, 46% of respondents said they spend more time maintaining tools than defending their organisation. Meanwhile, 78% noted that their security tools are disconnected or spread across systems, and 69% said this fragmentation creates moderate to significant challenges in their daily workflows.

These inefficiencies directly impact the performance of security teams. Over half of respondents said they spend too much time managing false positives and are overwhelmed by the sheer volume of alerts. Gaps in data management also result in wasted investigation time, with 57% reporting delays due to fragmented or missing data.

The report also found that SOC teams are increasingly struggling with burnout and resource constraints. Half of those surveyed said they were overworked, and an equal proportion admitted they had considered leaving cybersecurity due to job-related stress. In addition, 43% cited unrealistic expectations from leadership as a key pressure point.

AI adoption grows, but trust remains low

While organisations continue to explore AI’s potential, only 11% fully trust AI to manage mission-critical cybersecurity tasks. Despite this caution, AI usage is on the rise, with 59% of respondents saying it has moderately or significantly improved efficiency, and 56% prioritising AI integration into security workflows this year.

Michael Fanning, Chief Information Security Officer at Splunk, emphasised the need for human oversight. “Organisations are increasingly leaning on AI for threat hunting and detection, and other mission-critical tasks, but we don’t see AI taking complete oversight of the SOC – for good reason,” he said. “Human oversight remains central to effective cybersecurity, and AI is used to enhance human capabilities to help where it truly matters: defending the organisation.”

Nate Lesser, CISO at Children’s National Hospital, echoed this view. “According to Splunk’s State of Security report, the industry is struggling with escalating workloads, alert fatigue, and a shortage of skilled talent,” he said. “Integrating AI and automation helps us address these risks and empowers our teams with smarter tools to ensure our organisation remains resilient.”

The top areas where generative AI is being used include threat intelligence analysis (33%), querying security data (31%), and writing or editing security policies (29%). Notably, 63% of respondents said that domain-specific AI tools perform better than general AI tools in security operations.

Unified platforms improve response times

The report points to a growing need for unified SOC platforms that combine human expertise with AI capabilities. By reducing tool sprawl and enabling better collaboration, a unified platform improves detection speed and response times.

Of the respondents who had integrated security and observability teams, 78% reported faster incident detection and 66% saw quicker remediation. Despite these gains, the majority of organisations have yet to adopt a fully unified approach.

The findings suggest that while AI and automation offer clear benefits, long-term resilience in cybersecurity will depend on streamlining technology and improving team collaboration — not just replacing staff with tools.

Hot this week

Coursera reveals 2025 learner trends as Singapore strengthens multi-domain skills

Coursera’s 2025 report shows rising demand for AI, cybersecurity and cross-domain skills as Singapore strengthens its global talent position.

2026 Predictions Part 1: The five forces reshaping Asia’s digital economy

Five forces are redefining Asia’s digital economy in 2026, from AI adoption and data sovereignty to new security and workforce demands.

PGL brings Counter-Strike 2 Major to Singapore in November 2026

PGL confirms the Counter-Strike 2 Major is coming to Singapore in November 2026, marking the first CS2 Major in Southeast Asia.

New research finds growing public demand for modern emergency call systems in Australia and New Zealand

New study shows strong public support for modern, data-driven and AI-enabled emergency call systems in Australia and New Zealand.

Veeam completes acquisition of Securiti AI to build unified trusted data platform

Veeam completes its US$1.725 billion acquisition of Securiti AI to form a unified trusted data platform for secure and scalable AI adoption.

Tiiny AI unveils pocket-sized AI supercomputer verified by Guinness World Records

Tiiny AI reveals a Guinness-verified pocket-sized AI supercomputer designed to run massive models locally without relying on the cloud.

Samsung Galaxy Z TriFold sells out first batch, second waitlist opens in Singapore

Samsung’s Galaxy Z TriFold sells out its first batch in Singapore, with a second waitlist now open for the premium tri-fold phone.

PlayStation introduces limited edition Genshin Impact DualSense controller

PlayStation announces a limited edition Genshin Impact DualSense controller for PS5, launching in Singapore on 21 January 2026.

PGL brings Counter-Strike 2 Major to Singapore in November 2026

PGL confirms the Counter-Strike 2 Major is coming to Singapore in November 2026, marking the first CS2 Major in Southeast Asia.

Related Articles

Popular Categories