{"id":73358,"date":"2026-03-04T08:11:10","date_gmt":"2026-03-04T00:11:10","guid":{"rendered":"http:\/\/www.upgrademag.com\/web\/?p=73358"},"modified":"2026-03-04T08:11:10","modified_gmt":"2026-03-04T00:11:10","slug":"ai-first-businesses-are-paying-an-ai-speed-tax-when-recovering-from-cybersecurity-incidents-claims-fastlys-global-security-research-report","status":"publish","type":"post","link":"http:\/\/www.upgrademag.com\/web\/2026\/03\/04\/ai-first-businesses-are-paying-an-ai-speed-tax-when-recovering-from-cybersecurity-incidents-claims-fastlys-global-security-research-report\/","title":{"rendered":"AI-first businesses are paying an &#8216;AI Speed Tax&#8217; when recovering from cybersecurity incidents, claims Fastly\u2019s global security research report"},"content":{"rendered":"<div><strong><u><a id=\"yiv9516203821m_-1125304045593989381OWAb4612810-91ad-e7a4-1d83-d7491714f70f\" title=\"https:\/\/www.fastly.com\/\" href=\"https:\/\/www.fastly.com\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Fastly, Inc.<\/a><\/u>\u00a0published the findings from its fourth annual Global Security Research Report. It reveals that AI-first businesses \u2013 those integrating AI into key processes and offerings from the outset rather than as a secondary enhancement \u2013 are hurtling towards a cybersecurity crisis by failing to modernise security in step with AI\u2019s rapid expansion across IT infrastructure. These businesses report taking nearly seven months on average to fully recover from cybersecurity incidents, 80 days longer than businesses that do not identify as AI-first.\u00a0<\/strong><\/div>\n<div><\/div>\n<div>The implications of this nearly three-month delay are significant in today\u2019s real-time economy. The financial toll of a cybersecurity incident for AI-first businesses exceeds that of non-AI-first businesses by more than 135%. This increased financial impact reflects both the longer recovery timelines and a higher rate of AI-specific compromise. In fact, roughly half (44%) of AI-first organisations claim that AI was directly exploited in their most recent security incident, compared to just 6% for non AI-first organisations. For Southeast Asian organisations, it was found that 69% of the respondents reflected that AI (or the use of AI tools or models) was a contributing factor for the most recent cybersecurity incidents. These findings highlight how AI-native systems expand the potential attack surface, introducing new layers like agentic workflows, and decentralised data flows, all of which complicate defence.<\/div>\n<div><\/div>\n<div>\u201cThe speed of AI adoption is reshaping security infrastructure almost overnight. For AI-first businesses, the priority isn\u2019t to slow down innovation, it\u2019s to modernise security at the same rate,\u201d said Marshall Erwin, CISO at Fastly. \u201cThat means securing AI and inference infrastructure, monitoring and throttling unwanted AI crawler activity, anticipating the rise of shadow AI and shoring up your outer perimeter.\u201d<\/div>\n<div><\/div>\n<div>\u201cAI is no longer a single tool \u2013 it\u2019s becoming an integral part of business operations. This creates new challenges for security teams, from tracking its deployment to understanding its impact during incident recovery,\u201d said Rachel Ler, AVP of Asia at Fastly. \u201cCompanies that establish clear AI governance today will gain a decisive advantage tomorrow.\u201d At the same time, practices such as AI scraping are adding cost and complexity to already stretched infrastructure, driving operational disruption and pushing spend into six-figure territory.<\/div>\n<div><\/div>\n<div>\u201cThere is a major shift happening in terms of what organisations are responsible for defending,\u201d continued Erwin. \u201cThe challenge is no longer confined to malicious actors and isolated security incidents. Instead, it&#8217;s about managing an infrastructure footprint that is growing rapidly and, often, invisibly.\u201d<\/div>\n<div><\/div>\n<div>For many businesses, these risks are no longer theoretical; they\u2019ve become a reality. AI scraping alone has become a material cost centre for nearly seven in 10 (67%) Southeast Asian organisations, with average annual infrastructure impacts exceeding USD372,330.<\/div>\n<div><\/div>\n<div>These costs are just the beginning. The top four negative impacts as a direct result of AI activity for Southeast Asian organisations are operational disruption (53%), increased infrastructure expenses (51%), security incidents or data leakage (50%), and reported issues impacting online visitors \u2013 from sluggish load times to broken functionality (35%). For many, the reality is creeping costs and architectural complexity.<\/div>\n<div><\/div>\n<div>To respond, organisations are investing heavily in security tools built for this new era. Web application firewalls (72%), API discoverability &amp; security solutions (66%), and agentic discoverability (64%) have emerged as the leading areas of investment. However, the response is far from complete. Four in five (83%) respondents from Southeast Asian organisations are concerned about DDoS attacks targeting AI agents. More than half (61%) say they need additional AI-specific security expertise to effectively defend their systems, while 59% report increased pressure on existing teams to manage AI risks. \u201cFrom unmonitored agentic activity to escalating scraping costs, the risks are real, operationally and commercially. As a result, Web Application and API Protection (WAAP) tools are becoming business-critical solutions because they provide essential visibility and control organisations need to secure innovation at the edge,\u201d noted Erwin.<\/div>\n<div><\/div>\n<div>To find out how to modernise your organisation\u2019s security infrastructure and implement steps to recover more quickly from cybersecurity incidents, download the\u00a0<u><a id=\"yiv9516203821m_-1125304045593989381OWA1e57c193-9c56-ff24-e667-1bf9050b096e\" title=\"https:\/\/learn.fastly.com\/the-ai-speed-tax.html\" href=\"https:\/\/learn.fastly.com\/the-ai-speed-tax.html\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">report<\/a><\/u>\u00a0today.<\/div>\n","protected":false},"excerpt":{"rendered":"<p>AI-first businesses \u2013 those integrating AI into key processes and offerings from the outset rather than as a secondary enhancement \u2013 are hurtling towards a cybersecurity crisis by failing to modernise security in step with AI\u2019s rapid expansion across IT infrastructure. These businesses report taking nearly seven months on average to fully recover from cybersecurity incidents, 80 days longer than businesses that do not identify as AI-first.\u00a0<\/p>\n","protected":false},"author":6,"featured_media":61826,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[19,18],"tags":[853,8001,54],"class_list":["post-73358","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-headlines","category-white-papers","tag-artificial-intelligence","tag-fastly-inc","tag-security"],"_links":{"self":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/73358","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/comments?post=73358"}],"version-history":[{"count":1,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/73358\/revisions"}],"predecessor-version":[{"id":73359,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/posts\/73358\/revisions\/73359"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media\/61826"}],"wp:attachment":[{"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/media?parent=73358"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/categories?post=73358"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.upgrademag.com\/web\/wp-json\/wp\/v2\/tags?post=73358"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}