Shortages of skilled talent and rising cyberattacks are pushing Swiss enterprises towards external security services as IT defences become central to business resilience, ISG Provider Lens report finds.
Enterprises in Switzerland, under pressure to strengthen cybersecurity, are turning to external services for resources and strategies, according to a new research report published by Information Services Group (ISG).
The report says shortages of skilled talent and rising cyberattacks are increasing demand in Switzerland for external services as companies grow more dependent on IT system defences. Cybersecurity has become a core element of business resilience.
The 2025 ISG Provider Lens Cybersecurity – Services and Solutions report for Switzerland finds that Swiss companies are facing a surge of sophisticated cyberattacks that often outpace traditional defences. Though not always publicised, ransomware attacks are also rising, creating additional challenges for organisations already struggling with a shortage of cybersecurity specialists. Enterprises are engaging external providers, particularly security operations centres, and adopting AI-driven security measures to address these risks.
“With the increasing need to protect essential systems in Swiss enterprises, IT security has evolved into corporate security,” said Uwe Ladwig, Managing Director, ISG. “Remote work, including the widespread use of home offices, makes organisations more vulnerable to attacks.”
From digitalisation to Digital Transformation
Digital Transformation has made Swiss organisations more dependent on IT infrastructure and cybersecurity is now a board-level priority. The move to cloud-based operations and hybrid work has driven adoption of zero trust models, continuous network monitoring and mutual authentication.
Globally, the perception of cybersecurity has shifted from IT cost centre to a pillar of business continuity, customer trust and regulatory compliance.
Regulatory pressure mounts
Legal and regulatory pressures, particularly in banking and financial services, are shaping enterprise priorities. The Federal Act on Data Protection (nFADP), in force since 2023, heightened compliance with stricter transparency and breach notification requirements.
Switzerland’s financial sector, vital to GDP, faces both domestic rules and international expectations. Many enterprises are seeking providers that emphasise “Swissness” — solutions developed and delivered within Switzerland — to ensure compliance and cultural alignment.
SMEs: the weakest link
Small and midsize enterprises (SMEs) often have less mature defences than large firms. This makes them attractive “entry points” for attackers into bigger supply chains.
SMEs rely heavily on managed service providers (MSPs) for protection but many still underestimate risks. Analysts warn that outdated systems, lack of 24/7 monitoring and limited ransomware recovery capacity leave SMEs highly exposed.
The AI and quantum frontier
“Both large and midsize clients increasingly seek managed providers that use AI and automation, alongside human expertise, to address evolving threats,” said Frank Heuer, Principal Analyst and Lead Cybersecurity Analyst DACH, ISG Provider Lens Research. “They also seek advisory support, especially for AI and quantum-based risks.”
AI is widely used in threat detection and automated response but is also weaponised by cybercriminals to craft phishing campaigns. Quantum computing, while still emerging, poses a longer-term risk as it could break today’s encryption standards, driving early moves toward post-quantum cryptography.
Provider landscape
The ISG Provider Lens report evaluates 97 providers across eight quadrants. IBM is named a Leader in six. InfoGuard and Swisscom lead in five each, while Accenture, Atos, Deutsche Telekom and HCLTech lead in four. Capgemini, iSPIN, UMB and Wipro are Leaders in three. Aveniq, Broadcom, Fortinet, Microsoft, Orange Cyberdefense, Palo Alto Networks, TCS and United Security Providers are Leaders in two.
Others including Axians, Cisco, CrowdStrike, Deloitte, EY, KPMG, Netskope, Okta, SentinelOne, Trend Micro and Zscaler lead in one quadrant each. UMB is also highlighted as a Rising Star in two quadrants, with BeyondTrust, HPE (Aruba), Open Systems, Orange Cyberdefense and Sophos named Rising Stars in one each.
Customer experience matters
PwC is named the global ISG CX Star Performer for 2025, earning the highest satisfaction scores in ISG’s Voice of the Customer survey. This highlights the importance of not only technology but also trust and partnership in security engagements.
Outlook: a changing threat landscape
With its global financial role and tradition of data privacy, Switzerland remains a prime target for sophisticated cybercriminals. From SMEs to banking giants, organisations must rethink security from the ground up.
The ISG report suggests demand for managed services, AI-driven detection and quantum-ready strategies will only grow. Firms that embed cybersecurity into Digital Transformation and partner with trusted providers will be best positioned to withstand future challenges.

