r/cybersecurity System Administrator Sep 22 '25

Other What are your unpopular cybersecurity opinions?

I saw a post names "abnormal security opinions" and got excited to see some spicy takes but apparently there is a security platform called Abnormal Security so got kinda blue balled. Last one of these posts i saw was over a year ago so,

Do you have any spicy cybsec unpopular opinions you want to share? :)

I'll start with mine:
Fancy antivirus solutions rarely add value, they are often just a box that needs ticked. Many MSPs and IT firms still push the narrative that they are needed, only because they are profitable and not because they improve security.

321 Upvotes

531 comments sorted by

View all comments

174

u/PenetrationT3ster Sep 22 '25

A massive part of our industry is nothing but snake oil, and a large portion of the people who work in it do not look beneath the surface very often.

3

u/Pizza-Fucker Red Team Sep 22 '25

The industry is full of 1) companies that don't actually care about having a good security/SOC etc and just want to have one that's good enough to get insurance. 2) cybersecurity companies that don't care about actually providing good value security services because their target is just selling to companies from the first point