We use cookies on this website.

By clicking "Accept," you agree to the storage of cookies on your device to improve your browsing experience, analyze site usage, and contribute to our marketing efforts. See our privacy policy for more information.

MSP & Managed IT Services: Proactive IT Management for Small and Medium-Sized Businesses
Cybersecurity

Smart IT Outsourcing: Toward a Hybrid Human-AI Model

IT outsourcing is evolving toward a hybrid human-AI model. AI processes the volume of data in real time, while humans retain control over analysis and decision-making. And since NIS2, managed security has officially become part of the package.

Smart IT Outsourcing: Toward a Hybrid Human-AI Model

From ticket handling to incident prediction

For years, IT outsourcing has been measured by a single metric: how quickly tickets are resolved. This model is reaching its limits. Information systems have become more complex, and the number of areas requiring attention has multiplied—the cloud, workstations, business applications, security—and reactive support can no longer keep up.

AI continuously monitors, detects weak signals, and sets priorities. Technical teams, meanwhile, focus on analysis and decision-making. This is the logic behind our approach to AIOps consulting and observability: data is used to take action, not just to document an incident after it has already occurred.

Helpy: AI for IT Systems Managed Services

At IT Systèmes, the AI agent Helpy handles some of the Level 1 support requests. Not all of them—and that’s by design: the goal isn’t to automate for the sake of automation, but to free up time to focus on complex cases and provide strategic support to clients.

The automated resolution rate observed among customers ranges from 40% to 60%. This variation can be attributed to the nature of the infrastructure and the level of process standardization on the customer side; no two environments are ever exactly alike.

Managed security falls within the scope of IT outsourcing

IT outsourcing is no longer limited to system availability. Managed SOC, identity and access management, and advanced threat detection: these components, which were long sold separately, are now directly integrated into the offering.

There are two reasons for this. First, cyber threats are increasingly targeting small and medium-sized businesses and mid-sized companies, which had long been spared because attackers had no interest in them. Second, the NIS2 Directive expands the number of organizations subject to enhanced cybersecurity requirements—companies that, until recently, were not affected.

IT Systèmes supports its clients in achieving compliance through its dedicated NIS2 offering and is continuing its own ISO 27001 certification process, which is currently underway and is scheduled to be completed by the end of August 2026.

What This Means for Small and Medium-Sized Businesses and Mid-Sized Companies

Issues are detected earlier, before they affect production. Common incidents are resolved more quickly, thanks to automation at the first levels. And security expertise—previously reserved for large corporations with their own in-house SOCs—is now accessible.

Conclusion

Managed services are evolving into a blend of automation and human expertise, where each does what it does best: AI handles the volume, and humans make the final decisions. At IT Systèmes, this translates into two specific initiatives: Helpy for the intelligent automation of operations, and the integration of managed security into the IT outsourcing scope, in direct response to NIS2 requirements.

Frequently asked questions

What is smart IT outsourcing?

A model in which artificial intelligence processes large volumes of data in real time—handling monitoring, detection, and initial resolution—while human expertise focuses on analysis and decision-making. It is gradually replacing the traditional model centered on reactive ticket handling.

How is AI integrated into managed IT services at IT Systèmes?

Through Helpy, an AI agent that handles a portion of Level 1 requests. The automated resolution rate observed among customers ranges from 40% to 60%.

Why is managed security now part of IT outsourcing?

The NIS2 Directive extends cybersecurity obligations to a wider range of organizations, including small and medium-sized enterprises (SMEs) and mid-market companies. In response to the rise in cyber threats, managed IT services now include offerings that were previously sold separately: managed SOC, identity management, and advanced detection.

Is the human-AI hybrid model replacing technical teams?

No. The AI handles volume and real-time detection. Root cause analysis, strategic decisions, and customer relations remain the responsibility of the teams.

Our latest articles

See more
Helpy Barometer: Resolution rate for Level 1 tickets measured on the IT Systèmes internal help desk

Helpy 2026 Barometer: 44% of Level 1 tickets resolved without human intervention

44% of Level 1 tickets resolved without human intervention, 3-minute average resolution time, €0.26 per ticket. Eleven months of data collected from our own help desk, including methodology and limitations.
August 27, 2026
IT Security Governance and Steering Meeting in an Open-Plan Office
Cybersecurity

Cybersecurity GRC: Governance, Risk, and Compliance—A Guide for Small and Medium-Sized Businesses

GRC (Governance, Risk, and Compliance) provides a framework for managing IT security. Definition, clarification of differences from CRM, pillars, relationship with NIS2, and implementation for small and medium-sized businesses and mid-sized companies.
August 27, 2026
Cybersecurity

Metabase Vulnerability (CVE-2026-72898): Should SMEs Apply the Patch Immediately?

On August 24, 2026, CERT-FR issued an advisory regarding several vulnerabilities in Metabase, a widely used dashboard tool among small and medium-sized businesses. A few days earlier, the French service provider TeleCoop confirmed that its own instance had been compromised. How to decide whether your company should apply the patch today or next week.
August 27, 2026
Abstract illustration of a data flow related to an artificial intelligence platform
Cybersecurity

Claimed Data Breach at Klark.ai: The Real Risk for Small and Medium-Sized Businesses Using AI Tools

A hacker has claimed responsibility for stealing more than 140 GB of data from Klark.ai, a French AI platform dedicated to customer service. Approximately 500,000 people are reportedly affected, with support conversations, API keys, and a few IBANs among the stolen data. Here’s how to tell if your small business is indirectly at risk—and the three checks you should perform this week.
August 27, 2026

Confidential Computing in 2026: Protecting Your Data Even in Memory, on a Third-Party Cloud

‍Confidential computing encrypts data while it is being processed in memory, not just at rest or in transit. This guide explains what the technology actually protects, what it does not protect according to ANSSI, and how a CIO at an SME or mid-sized company should take this into account when making cloud decisions.
August 26, 2026
Cybersecurity

Tax Agency Hack: What Leaked From the Corporate Side, and the 3 Checks to Perform This Week

The DGFiP has confirmed the theft of data belonging to 678,000 users—both individuals and businesses—following a breach of its information system in late June. For businesses, the scope of the data breach is limited (SIREN numbers, addresses), but this information is enough to make a phishing attempt or wire transfer fraud much more credible. Here’s what was actually leaked and the steps you should take this week.
August 17, 2026