UPDATED 14:45 EDT / SEPTEMBER 23 2025

David Black, chief information security officer, SiteOne Landscape Supply Inc., talks with theCUBE about cybersecurity resilience during Fal.Con 2025. SECURITY

From outage to overhaul, ransomware drives cybersecurity resilience

Cybersecurity resilience is often what decides which enterprises bend and which break. Breaches can surface in the still hours before dawn, when systems falter and choices narrow.

Cyber threats are evolving faster than defenses, with attackers now able to spread across networks in under an hour — and in extreme cases, within a minute. When critical breaches slip past prevention, recovery speed becomes the defining measure of resilience.

This new emphasis on cybersecurity resilience is evident in how enterprises weigh the cost of controls against the risk of disruption. And the consequences of underestimating that balance can be severe, according to David Black (pictured), chief information security officer of SiteOne Landscape Supply Inc.

“In 2020, we were hit by a ransomware attack,” he said. “I recall because I just moved into a new house. For the first three months, I never left the basement because [I had to work on] the incident. And if no one’s ever gone through that, I pray they don’t have to.”

Black spoke with theCUBE’s Dave Vellante and Rebecca Knight at Fal.Con, during an exclusive broadcast on theCUBE, SiliconANGLE Media’s livestreaming studio. They discussed why, when ransomware strikes, cybersecurity resilience must be the first line of defense. (* Disclosure below.)

Cybersecurity resilience and the tough lessons of ransomware

When SiteOne split from Deere and Company, it had to construct its own security framework from scratch. Compliance and operational demands often forced small teams to accept calculated exposure, which later became evident during the 2020 ransomware incident, according to Black.

“Our monitoring had gone off at 2:30 in the morning that some servers tied to our point-of-sale system had gone offline,” he said. “As we started looking at it, we realized this is not a normal outage; this is ransomware.”

The aftermath reshaped SiteOne’s security culture, sharpening employee awareness and discipline. Training and real-world lessons cut failure rates in phishing tests to single digits, according to Black.

“When we first started, we had a 30% failure rate, but after that breach, it was down to below 5% and it stayed there,” he said. “People started to understand how significant this could be.”

Beyond culture, the company restructured defenses with greater emphasis on outside expertise and proactive tabletop exercises. That commitment to resilience now extends to adopting AI-driven defenses, as many enterprises are integrating, while ensuring that threat intelligence informs hiring, training and enterprise-wide security practices, according to Black.

“What I’ve been amazed with is despite the growth and the expansion in products and the acquisitions,” he said. “Everything that they’re doing is just as good as the first thing they did, and that’s not common.”

Here’s the complete video interview, part of SiliconANGLE’s and theCUBE’s coverage of Fal.Con:

(* Disclosure: TheCUBE is a paid media partner for Fal.Con. Neither CrowdStrike Holdings Inc., the sponsor of theCUBE’s event coverage, nor other sponsors have editorial control over content on theCUBE or SiliconANGLE.)

Photo: SiliconANGLE

A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.
About SiliconANGLE Media
SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.