Intelligent Defense: How Netenrich Adaptive MDR™ Overcomes the Limitations of Traditional SIEMs
Traditional SIEMs just aren’t cutting it anymore. They rely on outdated, reactive measures that lead to inefficiencies, false positives, and missed...
2 min read
Praveen Hebbagodi : Mon, Mar 27, 2023 @ 10:00 AM
Ignore the hype: Artificial intelligence (AI) can improve your security posture now. We’ve been waiting for AI to deliver benefits to cybersecurity for a long time.
ChatGPT aside, AI has been a hot-and-cold topic for decades, with periods of overhyped promises interspersed with periods of cynical rejection after failure to deliver on all of those promises.
No wonder plenty of security leaders are wary. Yet, despite the wariness, AI is helping to improve cybersecurity today and will increasingly provide substantial security benefits -- and challenges.
Creating a strong security posture involves three key elements:
To achieve these, collecting all relevant data and leveraging big data technology to manage, orchestrate, and make sense of it is important.
Nowadays, to effectively analyze and apply data, we need both human and machine-generated intelligence. As defined in Wikipedia, intelligence is "the ability to perceive or infer information, and to retain it as knowledge to be applied towards adaptive behaviors within an environment or context."
Human intelligence is challenging for security analysts to scale. Plus, with the increasing complexity of data, analysts require advanced skills and expertise that take years to develop -- and it’s a talent pool that’s in short supply.
Consequently, AI is a practical solution for scaling cybersecurity. With reliable AI systems, companies can reduce dependence on experts in both data and security fields.
Four ways to improve enterprise security using AI include:
The quality of AI algorithms depends on the training data. How do you ensure that the AI model lives up to expectations and does not add to alert fatigue by generating more false positives?
Over the years, AI systems have undergone significant advancements, and not all systems necessarily require supervised learning techniques. Unsupervised systems, such as anomaly detection, are commonly used and highly sought after in security applications. Anomaly detection, for instance, can significantly reduce false positive rates.
Furthermore, with the support of standard bodies, such as MITRE, who maintain an ontology of the continually evolving threat landscape, it is feasible to develop highly sophisticated AI systems without "training data."
AI solutions for cybersecurity are working today, for example in Resolution Intelligence Cloud from Netenrich. These solutions continue to improve, independently of hype, and should be part of any cybersecurity team’s arsenal.
Originally published at betanews.
The best source of information for Security, Networks, Cloud, and ITOps best practices. Join us.
Traditional SIEMs just aren’t cutting it anymore. They rely on outdated, reactive measures that lead to inefficiencies, false positives, and missed...
Staying informed about emerging technologies is essential in cybersecurity. The Gartner® Hype Cycle™ for Security Operations 2024 report highlights...
Are you ready to take your NFL game day to the next level? Netenrich and Google are teaming up to offer an exclusive opportunity that combines the...