AI and the Autonomous SOC - Separating Hype from Reality - Justin Beals, Itai Tevet - ESW #384

Security Weekly Podcast Network (Audio)

There have been a lot of bold claims about how generative AI and machine learning will transform the SOC. Ironically, the SOC was (arguably) invented only because security products failed to make good on bold claims. The cybersecurity market is full of products that exist only to solve the problems created by other security products (Security Analytics, SOC Automation, Risk-Based Vulnerability Management).

Other products are natural evolutions and pick up where others leave off. In this interview, we'll explore what AI can and can't do, particularly when it comes to alert triage and other common SOC tasks.

Segment Resources:

  • From Forrester: Generative AI Will Not Fulfill Your Autonomous SOC Hopes (Or Even Your Demo Dreams)
  • From Intezer: Mastering SOC Automation in 2024: Tips, Trends and Tools
  • The Future of SOC Automation Platforms
  • SentinelOne wants to make the autonomous SOC a reality

Naturally, the next approach to try is a federated one. How do we break down cybersecurity into more bite-sized components? How do we alleviate all this CISO stress we've heard about, and make their job seem less impossible than it does today?

This will be a more standards and GRC focused discussion, covering:

  1. the reasons why cross-walking doesn't work
  2. the reasons why traditional TPRM approaches (e.g. questionnaires) don't work
  3. opportunities for AI to help
  4. risk management or sales support?

This week in the enterprise security news,

  1. Upwind Security gets a massive $100M Series B
  2. Trustwave and Cybereason merge
  3. NVIDIA wants to force SOC analyst millennials to socialize with AI agents
  4. Has the cybersecurity workforce peaked?
  5. Why incident response is essential for resilience
  6. an example of good product marketing
  7. who is Salvatore Verini, Jr. and why does he have all my data?

All that and more, on this episode of Enterprise Security Weekly.

Visit https://www.securityweekly.com/esw for all the latest episodes!

Show Notes: https://securityweekly.com/esw-384

무삭제판 에피소드를 청취하려면 로그인하십시오.

이 프로그램의 최신 정보 받기

프로그램을 팔로우하고, 에피소드를 저장하고, 최신 소식을 받아보려면 로그인하거나 가입하십시오.

국가 또는 지역 선택

아프리카, 중동 및 인도

아시아 태평양

유럽

라틴 아메리카 및 카리브해

미국 및 캐나다