The ITSPmagazine Podcast

The ESET PROTECT Launch Brings 24/7 Monitoring, AI Security, and a Cyber Warranty to Small and Midsize Businesses | A Brand Story Conversation with Ryan Grant, Country Manager & GM, North America at ESET | Hosted by Sean Martin

Episode Summary

ESET PROTECT combines AI security, 24/7 monitoring, and a cyber warranty in three packages, and Ryan Grant says ESET took it down to 10 seats. Ryan Grant also covers treating an AI tool like an employee, the GuardBreaker decoy prompt, and the free AI Skills Checker.

Episode Notes

Ryan Grant, Country Manager & GM, North America at ESET, joins Sean Martin to discuss the launch of ESET PROTECT, announced September 30, 2026. The platform brings 24/7 monitoring, AI security, and a cyber warranty to small and midsize businesses. Ryan Grant says the design came from feedback from ESET clients and partners, along with a survey of 2,000 SMB customers earlier this year. About 70% of those customers had some sort of antivirus tool, and less than half had tools such as multi-factor authentication, EDR, monitoring, or email security.

What does ESET PROTECT include? Ryan Grant describes an out-of-the-box cybersecurity-as-a-service offering built natively into one platform, where those pieces are typically stitched together with different consoles. It combines AI-led security, advanced endpoint protection, EDR, 24/7 AI monitoring with human oversight, Microsoft and Google environment coverage, premium support, and a cyber warranty. It comes in three packages: Core, Premium, and Ultimate.

Core includes the latest security protocols with AI, endpoint, server, and mobile protection, and management of Google and Microsoft environments. Ryan Grant describes it as just short of an EDR because it leaves out 24/7 monitoring. Premium adds EDR, 24/7 monitoring from the ESET SOC, the cyber warranty, and premium support. Ultimate adds a dedicated SOC analyst for the business, a human with eyes on glass 24/7 working with an additional team behind the scenes.

How does ESET PROTECT reach organizations with 10 seats? Sean Martin raises the divide between the haves and the have-nots, and asks whether a 15-person or 20-person shop can get the same level of protection. Ryan Grant says platforms with this security and services typically serve 500 or 600 seats in most cases, or 250 and above, and ESET took this one down to 10 seats. His reasoning is that SMBs were the biggest vulnerability point because they lack the budgets and the staff.

Many organizations cannot find security talent and many cannot afford it, Ryan Grant says, which is why he calls 24/7 monitoring the most critical piece. Partners told him last week that they consistently see breaches in the middle of the night and wake up to notifications about an incident ESET saw, how it was contained, and recommendations for what comes next. Ryan Grant says there is no silver bullet, and ESET aims to right size what each organization needs.

Where is the platform running? Ryan Grant says ESET sees it in legal offices, dental offices, regional retailers with offices behind several shops, education, and municipalities. Sean Martin adds that regulation brings overhead that makes it hard to achieve what the regulation is trying to accomplish, and puts it to Ryan Grant that ESET makes meeting the requirement feasible in a fiscally sound way.

How does the cyber warranty fit with cyber insurance? Ryan Grant says the warranty wraps around the ESET offering, and ESET's partnership with Cysurance is part of the launch. Sean Martin puts it that the controls he describes bring confidence and proof to the insurers, and Ryan Grant agrees. Cyber insurance takes a significant set of basics, including multi-factor authentication, a remediation plan, training, and EDR, and customers who meet the requirements can also go get a policy.

How should organizations approach AI tools and agents? Sean Martin points back to polymorphic viruses a decade or two ago, says he does not believe AI is so novel that organizations do not know what to do, and Ryan Grant agrees. Ryan Grant says to extend the existing cyber practice into AI tools, with governance, access control, a repository of approved tools, and attention to where data sits. He treats an AI tool like another employee with access to the infrastructure, and Sean Martin adds that employees plus things acting like employees add a wild card.

Ryan Grant sees the gap in baseline policy for what is allowed, governance of applications and data, and access controls, with shadow AI appearing when employees download the tools they need. He points to the ESET Research GuardBreaker article, where a malicious file carried a nuclear weapon prompt as a decoy for the AI. His response is multilayer defense, 24/7 monitoring, and human oversight.

For agents, ESET offers a free AI Skills Checker that sandboxes an agent and watches its behavior. Ryan Grant says about 900,000 scans over roughly two months turned up 25,000 suspicious scans and about 3,000 malicious files. People can call ESET, visit its website, or go through one of more than 2,000 partners across the US and Canada. ESET is making the portfolio available first in the United States, Italy, and Slovakia, with other markets following in a phased rollout.

Questions Answered in this Conversation

This is a Brand Story. A Brand Story is a ~35-40 minute in-depth conversation designed to tell the complete story of the guest, their company, and their vision. Learn more: https://www.studioc60.com/creation#full

GUEST
Ryan Grant, Country Manager & GM, North America at ESET
LinkedIn: https://www.linkedin.com/in/ryangrant/

RESOURCES
ESET: https://www.eset.com/us/
ESET PROTECT launch announcement: https://www.eset.com/us/about/newsroom/products/eset-protect-ai-native-cybersecurity-as-a-service/
ESET and Cysurance cyber warranty and insurance program: https://www.eset.com/us/about/newsroom/company/eset-preferred-mdr-vendor-cysurance-cyber-warranty-insurance-program/
ESET secure AI era page: https://www.eset.com/us/business/secure-ai-era/
ESET AI Skills Checker: https://www.eset.com/us/home/ai-skills-checker/
ESET Research on GuardBreaker: https://www.welivesecurity.com/en/business-security/guardbreaker-derailing-ai-assisted-malware-analysis-code-comment/
The AI Readiness Gap report: https://web-assets.eset.com/fileadmin/ESET/US/B2B_Resource_centre/whitepapers/Global_AI_ESET_SMB_Cyber_Readiness_Index_2026.pdf
ESET PROTECT launch video: https://youtu.be/0aPI7PkPTsw

Are you interested in telling your story?
▶︎ Full Length Brand Story: https://www.studioc60.com/content-creation#full
▶︎ Brand Spotlight Story: https://www.studioc60.com/content-creation#spotlight
▶︎ Brand Highlight Story: https://www.studioc60.com/content-creation#highlight
▶︎ Want your brand on ITSPmagazine? Explore all of the options here: https://www.itspmagazine.com/advertise

KEYWORDS
Ryan Grant, ESET, Sean Martin, brand story, brand marketing, marketing podcast, ESET PROTECT, managed detection and response, MDR, EDR, cyber warranty, Cysurance, cyber insurance, AI security, shadow AI, AI agents, AI Skills Checker, GuardBreaker, SMB cybersecurity, small business cybersecurity, 24/7 monitoring, cybersecurity as a service, MSP, channel partners

Episode Transcription

The ESET PROTECT Launch Brings 24/7 Monitoring, AI Security, and a Cyber Warranty to Small and Midsize Businesses | A Brand Story Conversation with Ryan Grant, Country Manager & GM, North America at ESET | Hosted by Sean Martin

 

[00:00:18] Sean Martin: And hello everybody, you're very welcome to a new brand feature here on ITSPmagazine, I'm thrilled to have Ryan Grant on from ESET. He is the country manager and general manager for North America ESET. ESET North America, I should say. Welcome, Ryan

 

[00:00:36] Ryan Grant: John, good to see you. Thanks for taking the time

 

[00:00:39] Sean Martin: Good to, good to see you and, and, uh, thrilled to have you on. We're gonna talk about all kinds of good stuff related to, uh, cybersecurity and, protecting businesses of all sizes, primarily those that, uh, often don't have the resources

 

[00:00:55] Ryan Grant: Definitely

 

[00:00:56] Sean Martin: to deploy and, and manage solutions on their own, and, uh, but also want to take advantage of technologies like, I don't know, AI perhaps. And, and, uh, yeah, so we... I know you... The, the organization just launched a new, uh, PROTECT platform, and a bunch of cool stuff in there, and we're gonna get into all of what that is and, uh, relate that back to the business so organizations can take, take action with AI with, with confidence and, uh, manage the risk.

So maybe a few words, Ryan, about your role and, uh, what you're up to at ESET, and then we'll get into the, the launch.

 

[00:01:34] Ryan Grant: Yeah, definitely. Um, so yeah, so you know, ESET's been around for almost 40 years, been around for quite some time in the cybersecurity space, and, you know, we're, we're a platform company and a services company that's been basically protecting digital assets for quite some time. Um, we got a big operation here in North America, and I head up all of North America for US and Canada.

And, uh, yeah, you mentioned at the top here, like AI is, seems to be the big topic, and it's keeping us busy here at, uh, ESET and, uh, a lot of our channel partners, as well as our end customers, and, uh, there's a lot happening there. But, uh, yeah, we've got some great things going on and, um, you know, really the, the principles of the company is really just...

You know, it's really preventing breaches is the, the number one goal. And, you know, if you look at ESET too, we're backed by, uh, our research, so we've got 13 research centers across the globe that's basically looking at all the, all the telemetry that's coming in off the billion-plus sensors we have. And we're doing a lot of correlation on that data, making sure those feeds are, you know, uh, built into the product and people have the latest protection out there as well.

So a lot of good stuff, but definitely, uh, a lot of noise out there as well in the market.

 

[00:02:41] Sean Martin: Yeah, a lot, a lot of noise on all fronts. And, uh, I will say I've, I've been in this space for, for quite a while, and, uh, ESET has been the, uh, a key name in the research and, uh, identifying new threats and new methods and new techniques and, and doing that responsibly and sharing it with, uh, the community.

And, uh, so it's great to see that you're, you're still, uh, still doing that work and, and, uh, utilizing it yourself, obviously, to, to protect your organ- uh, your own customers. let's start with what you're seeing with respect to what organizations are trying to do with AI, and perhaps maybe where they're, they're pausing a moment, uh, or maybe where they haven't paused and, and, and are coming across some challenges.

 

[00:03:31] Ryan Grant: Yeah, I think it's interesting. I think the, um, the AI is moving pretty quickly, and I, you know, th- there's, there's organizations that have a cyber practice, and there's probably some organizations that probably have a minimal cyber practice of, of some sort in terms of what their posture is. I think the, the organizations that actually have a pretty good cyber foundation that's there today, um, you know, what we're seeing from them is they're really kind of extending that same practice around governance, access control, um, you know, cyber protection into the AI tools that their companies are adopting.

Um, and they're doing some really interesting things where they are, uh, basically have like a repository of AI tools that are approved. You know, they're very much closely looking at, like, where is the data actually sitting when it's going into these AI tools, and they're almost treating, you know, some of the AI tools that they're using within their businesses as like another employee, and I think that's the best way to actually approach it.

It's like another employee that's got access to the infrastructure, and how are you kinda managing that? Um, and then you've got the companies that maybe don't have a very solid foundation, uh, from just a basic cyber pers- perspective, even without AI, and, um, the fear is growing. Obviously, it's becoming more and more concerning.

They don't know how to manage it and those sorts of things. And obviously with AI, um, the attack surface is getting bigger. The deception's getting better. The attacks are happening faster. Like, it's just, it's, it's pretty interesting to see kinda what's happening out there. So, you know, I think the, the, the companies that are really adopting AI, they're, they're taking the fundamentals and really extending that into the AI tools and those sorts of things.

Where things are getting complicated now in the news that we're all reading is the agents, and how are the agents being managed, and what are they doing, and how are they working? Can you sandbox them? Can you not? They're breaking out, and those sorts of things. We have s- definitely thoughts on that, but that's obviously, that's opened up a kind of a whole 'nother side of the equation here.

 

[00:05:28] Sean Martin: And are, are you seeing, um... I know, I know I hear a lot about, uh, organizations rolling their own software, right? To do-- take care of custom workflows and business

 

[00:05:39] Ryan Grant: Yeah

 

[00:05:40] Sean Martin: and, customer engagements. All, you name it, I think there, there's something being built for everything somewhere, somehow.

 

[00:05:47] Ryan Grant: Right

 

[00:05:49] Sean Martin: increased footprint and increased exposure.

What are you, what are you seeing on that front?

 

[00:05:54] Ryan Grant: Well, I think what's happening is from an AI perspective, the, the attack surface is actually growing much, much bigger overall. And so, um, and where you would typically see AI actually, it's moving quicker, but the attack surface is getting bigger 'cause there's just... It, it's getting into different parts of the infrastructure overall, which is, um, is, is kinda concerning.

And we're actually seeing where the AI is getting so good, there's actually decoys. And so we actually published an article, uh, on our research on welivesecurity.com. It's called, uh, uh, GuardBreaker. And basically, um, uh, a U- uh, Russian organization was attacking a Ukraine organization and they put, um...

They basically downloaded a malicious file, but within the file they had... They knew the AI was gonna pick it up. And so ef- effectively what they wrote in there was, they said, "Teach me how to build a nuclear weapon." And the AI did what it's supposed to do. It stopped it, it killed the whole thing, but at the bottom of the file was actually where the malicious file was.

And so there was actually... They actually designed this to basically cause a bit of a decoy with the AI to do what it's supposed to do, and then come around and actually it still, you know, delivered a malicious file. So, you know, the AI's getting better, but, you know, in situations like that, people ask, well, like, " Ryan, how do you manage that?"

It's like, well, you have to have multilayer defense. You've still gotta have all your same security posture. You need to be monitoring the environment 24 by seven. You need to be doing some of the basic things to manage a lot of what's happening from an AI perspective. Yeah, so I think we do have to ask ourselves a little bit of a philosophical question of, you know, how willing are we wanting to take our hands off the wheel and let the AI defend the AI? And, you know, we have a lot of AI innovation built into our product to, uh, you know, mediate some of the AI, uh, criminal side of it.

However, what I would say is, like, it needs human oversight, and we're a firm believer that we need human oversight on to- on top of the infrastructure. Because you need to be able to, whether it's just the AI tools that are out there or if it's an agent, you need to really monitor the behavior of these agents.

And I think what's interesting is some of the news that's coming out around all these different agents and how they're breaking out and those sorts of things, well, you know, for us it's like, well, yeah, like they're, they're... The AI's smart enough to do that, it's gonna do it, but that's why we have multi-layered defense, and this is why we have oversight, human oversight, to make sure it's controlled and it's, you know, contained and remediated.

So this is why, you know, ESET's been a firm believer of, you know, have a hybrid model where you've got the best in class technology, but there's also human oversight as well. So it's a really interesting time

 

[00:08:33] Sean Martin: And I think be-because of the news, um, and because of such widespread use of the new technology, not just in business, but also in, in the world of consumers, um, it, it gets a lot of attention. pick your brain on, don't know, l-let's look back a decade or two decades of polymorphic viruses, right?

Those were novel.

 

[00:08:59] Ryan Grant: Right

 

[00:09:01] Sean Martin: and found ways to morph into different things that broke through or e-escaped, uh, being detected by standard rule sets, right? Um, dealt with that,

 

[00:09:13] Ryan Grant: Right

 

[00:09:14] Sean Martin: we, we've learned from that. So how... I, I think we, we hold a lot of this is so novel, we don't, we don't know what to do.

But I don't really believe that it's so novel we don't know what to do because we have experience in similar cases. What are your thoughts on that?

 

[00:09:27] Ryan Grant: Yeah, I agree. I mean, I, I, I'm, I would say we're the same posture. We're constantly learning. I mean, we're actually seeing... When we're seeing threats come in off of telemetry, like I mentioned before, we have all this research coming in, we're learning it's exactly what's happening and how the, the, the attacks are actually coming in, and we're updating systems real time and actually managing through that.

And then if we see any trends with that, we're, we're changing, we're changing on the daily in terms of what our protection posture is. So, you know, I think that, you know, for me, it's one of those things like, you know, cybersecurity isn't an IT function. It should be a business function, you know, and people need to be taking it as a business function and really manage it as such.

And I think that, you know, w- this is not one of those situations where it's all of a sudden it's like, uh, "Well, what's gonna happen here? We don't know." Like, we have the right foundation in place. Like, if you look at NIST or you look at CIS and you look at some of the foundational things that they have there, you know, you take that posture with AI tools and the same thing and extend that to the AI tools, I, you know, you're gonna, you're gonna be in a really good spot.

And we see it time and time again. We see a lot of customers that are like, "Look, I got a go- I got EDR, I've got 24/7 MDR, I've got multi-factor authentication. I'm actually training my employees, you know, three to four times a year on cyber," and they're really extending that same practice to the AI side of it with approved tools, non-approved tools, blocking AI sites, and those sorts of things.

We see time and time again, they're in a much, much better posture from a breach than somebody that's not doing that. And that's why I say it's better to take that business approach versus just trying to check an IT box.

 

[00:11:10] Sean Martin: And, um, I- I'm looking at the site where we, you list a bunch of resources. Uh, you talk about your strategy for AI, but there's, uh, a report on AI readiness and, and some of the gaps that you, you've uncovered there. So, uh, where do you see organizations kinda grasping what's really going on, and where are the holes that maybe it's a lack of understanding, maybe it's, uh, just it's so new to them that they're, they're trying things and, and not really understanding or having the language to put the right protections in place?

So what are the... What's the gap, I guess, basically?

 

[00:11:48] Ryan Grant: I, I, I don't think the gap is the tools. I think the gap is more of, of establishing a baseline, a policy of, of what is allowed and what's kinda not allowed, right? And we see, and I'm sure you've heard this a lot, this shadow AI happening, where a lot of businesses or whatnot, or employees are actually just using different tools.

They're able to download what they need to download to be able to u- use, um, different features from an AI standpoint, and there's so many companies out there that now have the tools. Um, so for me, it's more really around governance of the applications that are being used, and it's the data and what data is allowed to be used within those tools.

And then the access controls is the, is kinda the third thing. So for me, it's really around that. 'Cause the tools are gonna be out there. People are gonna see them. They're gonna have access to them. They're gonna potentially be able to download them if you don't have any protocols or any kinda security kind of built around that.

And that's why, again, it's like, I know this is kind of a funny analogy, but if you treat it like an employee and you onboard them, it's like, okay, this is what this person's allowed to have access to. This is what this person can control, and those sorts of things, and really take, take it from that standpoint.

You know, things get, uh, much more manageable, if that makes sense.

 

[00:12:59] Sean Martin: And what, what do... So I know, yeah, ESET helps their customer, helps your customers through, through partners. Um, uh, so I'm wondering how, how you and your partners actually have the conversation with the end customer. what do those conversations sound like? Uh, is it primarily IT needing support with the risk and governance and then the security of it, or do they have some of that in place?

K- kind of paint that picture for me.

 

[00:13:37] Ryan Grant: A lot of questions that we're asking them. So like a lot of times we work with our partners, and a lot of partners want us to go in and, and, um, co-sell or work with them or bring our engineering teams into the end customer environments. And a lot of times it's us going in and just doing a health assessment and then asking them a lot of questions in terms of like, you know, do they have a framework?

What are they doing for multi-factor authentication? Do they have workloads in the cloud, whether it's Microsoft or Google? Um, the big one that comes up quite a bit too is vulnerability and patch management. You know, I think the two biggest errors we see with cybersecurity is, is one system, rogue system came online, they didn't have it patched or updated, and that's usually was a problem, or it's a human error.

Um, so typically some of the questions we're asking is about how are they patching and, and, um, doing vulnerability patching. And then the other part of it too is like what are they doing for education and training? And, and then, you know, and then there's the basics which are like, look, if you're gonna get breached, do you have a EDR in place so you can have traceability?

Do you have actually... who's monitoring that environment? Do you have somebody, a staff that's doing that or are you offloading that? Um, and then, you know, what kind of support mechanisms do they have if they are breached and how are they gonna manage through those? So in some cases too, we're finding that these conversations where end customers are looking for insurance.

And if you look at how to get an insurance plan these days from a cyber perspective, there's a significant amount of, um, basic standards you have to have in place to be able to, uh, get the policy. And it's everything from multi-factor authentication. You need a remediation plan. You have to have training.

You have to have EDR in place. All these sorts of things that they're gonna check through before they even come close to writing you a policy. And so typically that lands back at a NIST or a CIS type framework. And so we're usually going into those conversations having a discovery meeting just around what is their actual protocol and what do they actually have in place and where there could be some, uh, vulnerabilities.

And then we typically give, give them a health score. This is where we think your, your risk potential is, and here's some things that we would recommend that you would actually put in place to be able to, um, you know, give yourself a better shot

 

[00:15:48] Sean Martin: And let's, uh, I, I wanted to touch on the, the cyber insurance piece 'cause I know

 

[00:15:52] Ryan Grant: Yeah.

 

[00:15:53] Sean Martin: of the, the launch of, of, uh, ESET PROTECT, you have a partnership with Cysurance.

 

[00:15:59] Ryan Grant: Correct. Yeah

 

[00:16:00] Sean Martin: so describe what that looks like 'cause I, I think a lot of what you just talked about helps bring confidence and proof to, yeah, the insurers, right?

 

[00:16:11] Ryan Grant: Yeah, definitely. And I think

 

[00:16:12] Sean Martin: you,

 

[00:16:13] Ryan Grant: you-

 

[00:16:13] Sean Martin: a good, a good, uh, a

 

[00:16:15] Ryan Grant: Good candidate.

 

[00:16:16] Sean Martin: others anyway.

 

[00:16:17] Ryan Grant: Yeah, and that was the, that was a bit of the philosophy, Sean, behind the design of the portfolios. The feedback came from our clients, and the feedback came from our partners. And so to give context on the insurance side, you know, the way the new offering really works, it takes all of our latest, um, AI-led innovations within our entire platform and includes Advanced Endpoint, includes EDR, includes, um, our 24/7 AI monitoring with human oversight, includes our vulnerability and patch management offering that we've got built into the system as well, and then takes, uh, your Microsoft environment, your Google environment, um, and then we wrap it with premium support from ESET, but w- to your point, we wrap it with a cyber warranty.

And so the cyber warranty is completely wrapped around it, and the idea here is just, like, look, we recognize that this is getting very overwhelming. And so our whole plan was just put this all into one simple offering, all the things you would need to hit the requirements on the insurance side, and it's an, it's basically an out-of-the-box, uh, cybersecurity-as-a-service offering for the customer and for the partner, and it's all there.

They can get a warrant, they can get a, they get a warranty with it, but they can also go get a policy if they need to 'cause they meet the requirements. And it's very simply, it's, it's simply all just, uh, natively built in. And I think that's the other part, too, is, like, all those different things I rattled off, typically those are stitched together with different consoles and those sorts of things.

This is all natively built in. It's one platform. It's all there. Um, we don't have a situation where, like with our AI, we don't have tokenization going on, where it's like you have to prompt the AI to get... And then you start blowing out budgets because you have tokenization. It's just like, no, we're gonna include the features.

It's all included in there. Just make it very simple for the clients to use. And so if they want to go get a warranty, if they, if they show the new ESET PROTECT platform, the PROTECT platform, it's gonna be much, much easier for them to get the insurance and the, obviously, they get the warranty with us.

 

[00:18:16] Sean Martin: Ah, so cool.

 

[00:18:17] Ryan Grant: Yeah.

 

[00:18:18] Sean Martin: needed in this space for decades

 

[00:18:21] Ryan Grant: Yeah

 

[00:18:21] Sean Martin: flying without that level of, uh, protection. It's not,

 

[00:18:25] Ryan Grant: Well, it, it, it's interesting. I don't know. We did a cyber su- uh, or we did a SMB survey earlier this year with 2,000 SMB customers, and we asked them some basic questions about their cyber posture, what are they concerned about, and those sorts of things. And, uh, it was really interesting to see because one of the questions we asked was, "What current tools do you have deployed today?"

And about 70% of them had, uh, some sort of AV tool, and then, uh, and then everything like below 50% of the audience had anything like multi-factor authentication, EDR, monitoring, how are you protecting your email security, and those sorts of things. So when I saw the data come back, I'm like, "Oh, this is a bit scary," but it also validated the fact that we need a channel organization.

We need MSPs out there and partners to be able to help solve these problems for these SMB customers 'cause they just, you know, they're trying to run their business. They're not, they're not really thinking about the cyber side of this as well. So that data really is what led us to design the product the way we've designed the product.

It's like, look, we've got to simplify this. You know, you don't need an enterprise-grade level budget to be able to have a very good security posture. And so our point is like, let's just simplify this. Let's include all the technology. Let's get a warranty on there. Let's give them the support they need, and let, let's try to simplify this for, for the, for the, um, the clients.

 

[00:19:46] Sean Martin: And I'm gonna come back to that divide 'cause I think there's the haves and the haves nots, and I'm, I'm gonna come back to that. But I wanna touch on something first where you mentioned consider the AI or the agent as an employee But we still do have employees, thankfully.

 

[00:20:03] Ryan Grant: Yes.

 

[00:20:04] Sean Martin: And so there, there are two parts there where you said you offer cybersecurity awareness training, and you also have an AI skills assessment.

And in,

 

[00:20:16] Ryan Grant: Yeah.

 

[00:20:16] Sean Martin: opinion, those are kind of one and the same, but maybe describe both of those because I think we can rely on tech to a certain level, and then we have the employees, and we have things acting like employees

 

[00:20:27] Ryan Grant: Right.

 

[00:20:28] Sean Martin: uh, add this wild card into the mix, right?

 

[00:20:30] Ryan Grant: Yeah. Yeah, I think, uh, it's a, it's a great question. So, um, probably the best way to start on this, the way we, we kind of view it is that I think a lot of people are starting to use OpenCall and some of these other features to be able to download some of the, the AI f- uh, features that they may need for different things.

And so what's happening is that, um, not everybody is aware of what the agent is supposed to be actually doing, right? So what we've done is we actually offered a free tool, it's called a AI Skills Checker, which is basically just looking at the AI agent and looking at what it's designed to do. So we put it through a multi-layered kind of, uh, security motion.

We sandbox it, and then we just let it go, and we watch what it's doing behaviorally, and you can just see how it's operating, if it's staying within the guardrails. In like a two-month period of time, Sean, we had like 900,000 scans that we just had done very briefly. We saw 25,000 that were suspicious and about 3,000 were actually malicious files that were part of those, those agents that were, that were scanned.

So within our AI tools that we've got, there's really kinda three key pillars, um, that we've announced. One is the browser side of it, which is anything on the browser side that people are accessing AI tools online and, you know, what are they, what are they prompting it? What are they uploading? What kind of data are they accessing?

And those sorts of things. But then the interesting side is on the agent side. We're actually looking at the skills that the agent is running, um, and that's one thing. And you can see if there's malicious scripts and those sorts of things built into there. But then the other part of it where I think it's, it's elementary going back to the fundamental question of, um, do you take your hands off the wheel, is actually monitoring the behavior of the agent.

'Cause you can see they're, um, they're iterative. They start... They learn on the fly, and if they start deviating from, you know, what the original skill was and they start kinda going rogue, then at that point you need to be monitoring that behavior like anybody else from an employee standpoint. So it's really interesting to see.

I think that's what we encourage people is to go, if you're gonna go start using agents, go, go unpack the agent to make sure it's clean before you go put it in production. Go look at what it's doing, and you can actually go on our site and, and check it for free. If you just put in, uh, ESET AI Skills Checker, you can go actually test it and see what, see what's happening there before you actually go deploy it

 

[00:22:53] Sean Martin: And, uh, all that is possible because, I mean, AI has been a topic for the last couple years, um, in the media, but been in, in doing machine learning and, and AI technologies for 20-plus years. So you have a long history of, of working with these technologies and watching the progress and seeing things come to fruition.

 

[00:23:19] Ryan Grant: Yep

 

[00:23:20] Sean Martin: so that all culminates in the, PROTECT platform

 

[00:23:25] Ryan Grant: Right

 

[00:23:27] Sean Martin: can, can, uh, acquire and use and, and you have the MDR, uh, with your partners on top of that, so they can help... get help managing and, and running it. describe the platform and some of the, the new things that are, that are there that SMBs should pay attention to.

I know there is three levels of, of, uh, PROTECT as well, so maybe you can kinda, kinda paint a picture of the platform and its features and, and the three levels for folks.

 

[00:23:55] Ryan Grant: Yeah. And thank you. Yeah, and on, on the platform side of things, um, you know, it's one single pane of glass. Um, you've got pretty much visibility into all the different elements of your, of your, uh, plat- of your environment that you're protecting. Um, to your point, we offer, um, uh, basically three different packages.

It's Core, Premium and Ultimate. And, um, Core basically is all the latest, uh, uh, security protocols with AI, but it doesn't really, doesn't include the, uh, the 24 by seven monitoring and the EDR portion of it, right? So it's really think of it as like just short of an EDR. It's just, it's basically managing all your, can manage all your, um, Google environment, your Microsoft environment, and you can actually have next gen endpoint protection, server protection, mobile protection, those sorts of things.

You can have all that within Core. Um, when you go up to Premium and you go up to Ultimate, the, the difference in, in there is from a Premium standpoint, you actually get the EDR, you actually get 24 by seven monitoring from our team from a SOC perspective. Um, and you also get the cyber warranty, and you also get the premium support.

And then Ultimate is basically that plus you're getting, basically get a dedicated SOC analyst to your business. So think of it as like a dedicated human that's sitting on the other side, that's literally eyes on glass 24 by seven on top of, with a additional team on the backside. Um, so a lot of people can't find this talent, a lot of people can't afford the talent.

Um, and so we, we want to basically for, you know, any kind of our... A lot of our enterprise customers and our mid-market customers use the Ultimate package because they like to augment it with a dedicated team. From an SMB standpoint, it gets a little bit more budget challenging, so we, that's why we have the Premium side and Ultimate, it can be feasible there as well.

Um, but the, the key there is to actually have somebody looking at it 24 by seven. And I think kind of goes to the question at the top of the call, which was, you know, how, how do people kind of manage all this, uh, all these threats coming in from an AI standpoint? You gotta have 25, 24 by seven monitoring.

You just do. So whether that's the company can do it or you look at ESET for us to be able to do that, that's I think the, the most critical thing.

 

[00:26:10] Sean Martin: And what, what really strikes me, um, I'm looking at the descriptions of, uh, offerings, the different levels, and it's 10 seats or more. A lot of people listening to this might think, "I'm only a 15-person shop, 20-person shop. I really... Why, why sh-

 

[00:26:28] Ryan Grant: Yeah.

 

[00:26:28] Sean Martin: Can I get that same level of protection if I only have 10 seats?"

The answer is yes, right?

 

[00:26:35] Ryan Grant: Yeah, it's a great point and I appreciate you bringing that up. It's like when we designed the product, the, one of the things was SMB was obviously the biggest vulnerability point, 'cause they don't have the budgets, they don't have the staff and those sorts of things. So I'm like, we gotta take this thing downstream.

We gotta get it down to 10 seats. We gotta get people to have a simple solution to use, and that's exactly why we did it. I mean, typically you would see this as, you know, an enterprise level grade security platform and services offering that, you know, typically would be a 500 or 600 seats in most cases, or 250 and above.

But yeah, we took it down to its most simplest level and just said, "Look, we need to make sure we offer this to everybody." And that's where, to be honest, like Sean, that's where we see in our data most of the breaches are happening. The SMB is probably the most vulnerable out there, um, and that was critical for us to be able to have that offering for them as well

 

[00:27:26] Sean Martin: So describe some of the environments. I'm picturing doctor's offices, uh, regional banks. Clearly those are, are regulated industries with a lot of sensitive information, but other types of environments are you seeing, uh, PROTECT running in?

 

[00:27:45] Ryan Grant: Yeah, we see, uh, we see quite a bit, uh, pretty much any vertical you can imagine. We see legal offices, dental offices. Um, they are regulated there, but you'd be surprised on some of the, the a- areas that are probably missing within their cyber posture. Um, you know, and we also, we also see, um, retailers with extended offices on the back end that have, um...

So, like a regional retailer, it's got four, five, eight different shops, and then they've got offices, uh, office to support that. We see a lot of that environment on the SMB side, more on the S side. Um, and then we see quite a bit, like a lot of our clients are in education. We do a lot of work for muni- municipalities.

Um, so it's, it literally is, uh, I would say vertical agnostic for sure. Um, but like you said, there's some of these markets, they have some regulation behind it, but they're still trying to keep up as well in terms of what they should be offering. So there's, it's very a- agnostic from that standpoint

 

[00:28:44] Sean Martin: One of the problem, or I, I view it as a problem with regulation, is it adds a lot of overhead and makes it hard to

 

[00:28:51] Ryan Grant: Yeah

 

[00:28:52] Sean Martin: achieve what the regulation's trying to accomplish. And, and it's folks like you and, and the rest of the ESET team that make, make it feasible, make it possible to actually meet, meet the requirement in a, in a fiscally sound and, and, uh, meaningful way. Um, are there any, any outcomes you can share? Any case studies or use cases? I mean, 'cause nature, um, no news is good news, right? On

 

[00:29:19] Ryan Grant: Yeah.

 

[00:29:19] Sean Martin: stuff,

 

[00:29:20] Ryan Grant: Yeah

 

[00:29:21] Sean Martin: know that you're protected. It's when things go wrong that you, that you find out something's wrong. Um, probably see a lot of, a lot of activity, a

 

[00:29:30] Ryan Grant: Yeah

 

[00:29:31] Sean Martin: that you're providing, how does that translate to your customers?

 

[00:29:36] Ryan Grant: Yeah, we see, I won't name names, but we do s- we do, uh... I'm on the phone quite a bit with partners and customers on different things, and on the, on our premium package where we've got the MDR kind of built in, um, you know, I actually had a conversation with a couple partners last week. I was in Orlando for an event, and they were talking about, um, they consistently are seeing breaches in the middle of the night when they're asleep.

And, uh, they are waking up to notifications from us in terms of them, us actually seeing an incident, potentially seeing it move laterally in their system, and how we've actually contained it, and we've also made recommendations of then how to move forward with it. And the, the fact... They came back basically saying, "I don't know that I would've had the staff to be able to do that."

Right? The, just to really understand that. And then part of what we, uh, didn't talk about that's in our system is we actually launched in 2003 an AI advisor. And so think of this as like you go in and you basically just ask the PROTECT platform, "What happened? Where is it? What, what's going on?" You can ask it the most, you know, like simplest questions, and it'll m- give you a very non-technical, simple, clear, comprehended answer that you can be like, "Okay, I know exactly what I need to actually do."

So we've have multiple cases of that where people have come back and said it, it, the protection layer is great and we can see what you guys are doing. But where they're actually seeing the value is actually when we give them indications of what happened, and then we're generating reporting to them of where the indi- the indications are and then what we've actually done.

And if in a partner case, they're taking that information to their clients. And then from a client perspective, obviously, you know, they're feeling a little bit better because they got eyes on glass and somebody looking at the systems when they don't actually have some of the folks there. So, um, so yeah, it's, it's, uh, they're very fulfilling conversations.

And the other times it's like, you know, people are asking us questions like, "Okay, well I actually don't have 24 by 7 monitoring, so what do I need to... Like, what should I be looking for and how do I kind of go about that?" So, um, I always tell people, "Look, there's no silver bullet." Every company's in a different position.

They all have a different security posture with different budgets, and I think for, for us it's really just to kind of right size what they need for their business and then making sure they're teed up with the right, the right platform.

 

[00:31:53] Sean Martin: So cool.

 

[00:31:55] Ryan Grant: Yeah.

 

[00:31:55] Sean Martin: every, every size is the right size. Every size is the right size.

 

[00:32:00] Ryan Grant: Yeah.

 

[00:32:00] Sean Martin: if, if organizations want to work with you directly, how can they find you? If they wanna go through a partner, how can they find a good partner? If they're a partner, and wanna work with ESET, how do they find you?

 

[00:32:14] Ryan Grant: Yeah, I think, uh, I'm an old-fashioned guy, Sean. I like a phone call. So feel free just to give us a call. You know, you can go to our website, you can see all the information there. But, you know, a lot of times people are coming in with more questions, and so we've got a team on our, on our website. We got a phone number, and our team picks up and really just kind of listens and understands what the pain point is, and then we start asking questions.

Like, if you wanna work with a partner, we've got, you know, over 2,000 partners across US and Canada that we work with that we could easily get them in touch with that are, um, that know the technology extremely well. So, but yeah, the f- the, I, I like the old school way, the phone numbers. Uh, you know, pick up a phone and talk to a human.

 

[00:32:54] Sean Martin: Well, it's, uh, I think it's super, super important, especially now, because you can do so much. And do you rely on AI to answer your questions, or do you have somebody who knows what's going on, specific to your environment, specific to the risks and the threats that, that you might be facing in your environment? Um-

 

[00:33:12] Ryan Grant: find, uh, I don't know if you find that, Sean, but more and more I'm actually calling phone numbers now I can tell I'm getting a AI, uh, prompted s- uh, response, and then I quickly hit zero to see if I can get to somebody. So yeah

 

[00:33:27] Sean Martin: There's plenty of that. Well, hopefully they g- get straight to zero with, with you and your

 

[00:33:32] Ryan Grant: Yeah.

 

[00:33:32] Sean Martin: And of course, LinkedIn, uh,

 

[00:33:34] Ryan Grant: course. Yeah

 

[00:33:35] Sean Martin: messaging. So we'll-- I'll include links to all that stuff in the, in the show notes, and connect with you and the rest of the team. uh, Ryan, congrats on, uh, a great launch, and, uh, look forward to more chats with you and the team about other things that, uh, are coming down the pike.

 

[00:33:52] Ryan Grant: Great. Thanks, Sean. Appreciate the time.

 

[00:33:54] Sean Martin: Thank you, and thanks everybody for listening. Stay tuned for more. We're gonna have more chats, uh, with the ESET team, and look in the show notes for, uh, links to all the stuff we talked about today. There's a whole page of, of resources. These, the skills assessment, uh, the AI readiness report. A bunch of stuff in there that, uh, think are worth, worth your while to take a look at, uh, before you pick up the phone and, and call, uh, call the folks at ESET and ask your questions. right. Thanks everybody.