Skip to content

AI Exacerbates Resource Inequality in Cybersecurity

The bottom line: AI significantly accelerates security work for large organizations but deepens the existing resource gap with smaller enterprises and agencies still overwhelmed by fundamental security tasks.

While large organizations like AWS dramatically accelerate their security operations through AI deployment, security experts warn of a widening divide between well-resourced and under-resourced companies. The White House has already initiated measures to make AI-powered security capabilities accessible to resource-constrained organizations.

At AWS, AI deployment drastically shortens security processes: while manual vulnerability detection through red teams and subsequent defense development previously took two to ten months, automated AI agents can now build detections for identified issues in 15 minutes to a maximum of four hours, according to Steve Schmidt, Chief Security Officer at AWS. Quality assurance by human security engineers follows.

However, this performance improvement comes with prerequisites: organizations need financial resources, technical personnel, and capacity to experiment with AI systems. Matt Warner, co-founder of Blumira, emphasizes that resource inequality in cybersecurity is not a new phenomenon—it has existed for 10 to 15 years. AI, however, makes this inequality more visible. Small municipal administrations and mid-market enterprises often remain overwhelmed by basic IT security tasks: Warner points to districts in Michigan with only two IT staff members for 2,000 employees who merely fight fires rather than learn.

Anton Chuvakin, Security Advisor in the Office of the CISO at Google Cloud, places the AI phenomenon in the longer-term context of “Security Poverty”—a concept formulated in 2011 by Wendy Nather for organizations lacking capital, expertise, capabilities, or political influence for effective security. The new AI layer tends to deepen rather than solve this historical problem.

The White House has recognized the need to expand AI access and instructed agencies to deliberately provide AI-powered security solutions to under-resourced organizations—rural hospitals, community banks, municipal utilities. However, security practitioners debate controversially whether AI will ultimately narrow or deepen this divide: while some rely on falling costs and stronger decentralization of models, others fear that adoption is only possible for those with sufficient organizational capacity.


Source: www.csoonline.com · Published 13 July 2026
Lumi AI News — AI-assisted curation pursuant to Art. 50 EU AI Act. Paraphrasing and classification through Lumi News Pipeline v1.7.3.

Share on: