Why your security team feels stuck

Source: Help Net Security

Author: Mirko Zorz

URL: https://www.helpnetsecurity.com/2025/07/09/why-cybersecurity-friction/

ONE SENTENCE SUMMARY:

Internal cybersecurity friction, driven by complex tools, unclear processes, and cautious culture, hinders security teams more than external threats.

MAIN POINTS:

  1. Security teams face internal friction due to tool sprawl, unclear ownership, and rigid processes.
  2. Disconnected tools require analysts to switch dashboards, slowing response and increasing alert fatigue.
  3. Approval-heavy workflows delay incident response, risking critical containment windows.
  4. Lack of context in access requests leads to repeated clarification cycles, wasting time.
  5. Ambiguities in responsibilities cause delays and confusion during handoffs between teams.
  6. Caution culture discourages initiative, pushing decisions upward and reducing overall team agility.
  7. Burnout and normalized inefficiencies lower morale and inhibit improvement efforts.
  8. Evolving security roles now require balancing protection with enabling business growth.
  9. Integration and shared data visibility can reduce both friction and risk.
  10. Clear thresholds and role clarity empower faster, accountable responses without sacrificing security.

TAKEAWAYS:

  1. Streamlining tools and processes can significantly improve security team efficiency and morale.
  2. Trust frameworks and role clarity reduce the need for excessive approvals.
  3. Culture change must promote speed and responsibility, not just caution.
  4. Shared visibility and system-level enforcement reduce manual friction.
  5. Internal delays are a silent threat that can undermine security more than external attacks.