Here’s a fun exercise. Ask ten MSPs what “cybersecurity” means to their business, and you’ll get ten different answers: a firewall, a compliance checkbox, a line item clients grumble about, or a genuine margin-rich service line. Probably all of the above, in a different order depending on the time of day.
That confusion is the real threat. Not the ransomware gang or the deepfake voicemail, but the fact that too many MSPs still treat cybersecurity as one single thing, when it’s a moving and morphing target made of people, platforms, and geopolitics colliding at once.
So here’s the challenge: how should you protect against cyber threats in 2026? No single tool, vendor, or training video will get you there, but a few sharp minds are converging on some answers, and many of them will be onstage at MSP GLOBAL 2026 this October in Spain.
The wall doesn’t work anymore
For years, cybersecurity got sold as a perimeter: a strong wall, locked gates, bad actors kept outside. Nice image. Unfortunately, modern IT spent the last decade drilling holes into that wall. Staff work from anywhere, contractors come and go, SaaS tools multiply, and AI agents now carry real privileges of their own.
That’s why identity has quietly become the actual control surface of security, a theme MSP GLOBAL explored in its look at the top identity and access management platforms shaping MSP security. Names like Microsoft Entra ID, Okta Workforce Identity, CyberArk, and SailPoint each attack a different piece of the puzzle: proximity to Microsoft stacks, unified SaaS access, privileged access for humans and machines alike, or governance that determines who can touch what. The point isn’t picking the biggest logo; it’s finding which identity problem keeps your client up at night. The puzzle keeps growing, too: TechCrunch recently reported on fresh funding chasing the challenge of giving AI agents their own verifiable identities, on the theory that decades-old IAM platforms weren’t built for a workforce that includes software. (Of course, we’re seeing that AI agents are perfectly happy to make up identities all their own.)
Test it before someone else does
Vendors only get you so far; at some point, someone has to actually try to break in. This is the argument ethical hacker Ralph Echemendia made during a candid conversation at CloudFest. His point is that MSPs aren’t really protecting data, they’re protecting other people’s livelihoods like a payroll file, a case history, or someone’s life’s work; which makes penetration testing non-negotiable, not optional. A related MSP GLOBAL interview on the attacker’s view of pen testing, RMM exposure, and social engineering makes the same point from the other side of the keyboard: attackers don’t care whether they exploit a script, a credential, or a trusting employee, only that it works. Forbes has described the 2026 threat landscape in similar terms, ransomware crews now run like businesses, complete with affiliate programs, which makes testing your own defenses a survival habit, not a checkbox.
The weakest link isn’t who you think
Even the best identity stack won’t save you if the person holding the keys gets talked out of using them correctly. That’s the territory Dr. Mary Aiken, Chair of Cyberpsychology at Capitol Technology University, digs into in her interview with MSP GLOBAL. She argues that calling users “the weakest link” is lazy framing. People aren’t failing at security; they’re placed in situations engineered to make the unsafe choice feel urgent and familiar. Attackers crack the mental shortcuts people rely on under pressure, not the systems themselves.
Aiken calls the fix the Trust Paradox: trust matters, but you verify anyway. It reframes training entirely: less “don’t click suspicious links,” more building a culture where pausing to check is normal and expected. She’ll go into greater detail with her MSP GLOBAL 2026 keynote, Humans in Your Ecosystem: The Cyberpsychology of the Future MSP.
The threats are bigger than your ticket queue
Zoom out further and the picture gets geopolitical. Brigadier General Salvatore Russo of the Italian Economic and Financial Police brings that lens to the Cybersecurity track with his session, Geo-strategic Threat Landscape and Global Perpetrator Groups: How Does it Influence MSPs. His work connects organized crime and state-linked actors to the risk sitting inside a routine MSP ticket queue. Realizing a ransomware note might trace to a transnational network, not a bored teenager, changes how you triage, communicate with clients, and get boards to listen.
Come get your answers
None of this fits into one vendor pitch or one training slide, and that’s the point. Being “security-first” now means knowing the identity landscape, the human psychology, and the geopolitical backdrop all at once, then turning that into services clients will pay for.
If you’re tired of piecing this together from blog posts and vendor decks (fair, we just gave you several), the faster route is showing up in person. Browse the full agenda, catch these sessions alongside dozens more across six ROI-focused tracks, and leave with an actual plan instead of another open browser tab.
MSP GLOBAL runs October 21–22, 2026, at PortAventura near Barcelona, Spain. Registration is free for MSPs, MSSPs, resellers, systems integrators, and enterprise IT managers while passes last, so register now and come get protected, properly.



