How Rubrik is Rewriting the Rules of Cyber Resilience
How Rubrik Is Rewriting The Rules Of Cyber Resilience
As AI adoption and multi-cloud environments expand, enterprise cybersecurity is shifting from attack prevention to rapid business recovery.
In an interview with Inc42, Rubrik's Ananth Nag explains why cyber resilience is no longer just an IT function but a critical boardroom conversation centred on business continuity.
To support this shift, identity resilience, data visibility, and governance are emerging as the ultimate operational priorities for an AI-driven threat landscape.
Added to Saved Stories in Login VIEW SAVED STORIES .inc42-toggle-item-popup { display: none; position: relative; } .toggle-item-close { text-align: end; padding: 8px 12px 0px 10px; position: absolute; right: 0; cursor: pointer; } .toggle-items-content-main { display: block; position: relative; top: 27px; left: -204px; border-radius: 12px; background: #FFF; box-shadow: 0px 4px 24px 0px rgba(100, 100, 100, 0.25); width: 435px; height: 115px; } .toggle-items-content { display: flex; align-items: baseline; justify-content: center; padding-top: 22px; } .toggle-items-content .items-content-text .h4-saved-story{ color: #000; font-size: 20px; font-style: normal; font-weight: 700; line-height: normal; text-transform: capitalize; margin: 2px 0 10px 6px; } .toggle-items-content .items-content-text .myInc42-plus-dark { width: 100px !important; } .toggle-items-content .items-content-text .myInc42-light { width: 80px !important; } .toggle-items-content .items-content-text img{ height: 22px; } .view-my-feed-btn { width: 100%; text-align: center; display: flex; justify-content: center; } .view-my-feed-btn a { width: auto !important; } .view-my-feed-btn button { border-radius: 4px; background: linear-gradient(180deg, #DA1B4D 0%, #E23026 100%); color: #fff; font-size: 12px; display: inline-block !important; min-width: 162px; width: 162px !important; height: 34px !important; font-style: normal; font-weight: 700; line-height: normal; padding: 10px; cursor: pointer; } .CustomIconStyled { position: absolute; right: 180px; top: -80px; } .SubDropdownModelShare .sub-arrow-icon { width: 76px; height: 80px; position: relative; overflow: hidden; box-shadow: none; } @media (max-width:767px) { .toggle-items-content .items-content-text .h4-saved-story{ margin: 4px 0 10px 6px; font-size: 18px; } .toggle-items-content { align-items: center; } }
Opening a banking app, ordering food, or buying a pair of shoes online may not feel remarkable anymore, but what’s undeniably remarkable is the robust cloud infrastructure that is powering these everyday actions.
It is this dexterity that also makes it vulnerable to cyberattacks. Over the years, while security protocols have evolved, so has the sophistication of cyberattacks. Once dominated by ransomware attacks, the threat has now become something even more damaging.
Attackers have started targeting identity systems — the credentials and access controls that give administrators the keys to their infrastructure. Some attackers go even further and hit the backups too. So, when a disaster actually strikes, there’s nothing left to fall back on. Most companies only realise this after the attack.
As the concerns get real, boardrooms across industries are realising the gravity of a weak cybersecurity wall. And with laws like India’s DPDP Act now raising the stakes for how organisations collect, store and protect data, security is increasingly becoming a business continuity issue rather than just a compliance requirement.
To understand how enterprises can navigate high-stakes situations like this, Inc42 spoke with Ananth Nag, vice president (APAC) at Rubrik, who broke down the transition to an ‘assume-breach’ architecture, the risks of unchecked data sprawl, and why recovery speed is the ultimate metric for modern business continuity.
Here are the edited excerpts…
Inc42: What is the fundamental difference between standard data backup and true ‘cyber resilience’ that many business leaders do not realise?
Ananth Nag: Many organisations continue to view backup as the ultimate safety net, assuming that if something goes wrong, they can simply restore their data and resume operations.
However, that mindset no longer reflects the realities of today’s threat landscape. There is a significant difference between having a backup and having a recovery strategy that remains effective during a cyberattack.
Targeting of backup environments is on the rise. Rather than focusing solely on production systems, attackers now attempt to compromise backup infrastructure first, knowing that it represents the organisation’s last line of defence. Backups can be altered or deleted during an attack. Their existence alone does not guarantee recoverability if they have already been compromised.
Cyber resilience is now critical.
Effective resilience is not simply about creating copies of data; it is about being able to identify a clean, trusted recovery point and restore operations quickly, even while an attack is still unfolding
The focus today needs to move beyond backup as a storage exercise and towards ensuring that recovery capabilities are resilient, tested and capable of supporting the business when it matters most.
Inc42: As someone managing diverse markets, what macro risks do you see when organisations pull unmapped, highly sensitive data into live AI pipelines without established real-time data-intelligence guardrails?
Ananth Nag: The biggest risk occurs when organisations try to secure something they can’t see. Research from Rubrik Zero Labs found that 70% of APAC respondents lack full oversight of their AI agents, and 81% believe AI agents will outpace their existing security guardrails within 12 months. Eighty-one per cent is a genuinely uncomfortable statistic for a region that’s moving as fast on AI adoption as APAC is.
The macro pattern is straightforward: teams get excited about a Gen AI or agentic use case, connect it to whatever data store........
