Usage of artificial intelligence in cyber security
Artificial intelligence (AI) is currently one of the most hyped topics, and this is also the case in cyber security. There are a series of use cases were AI can be used to reduce manual work by humans and increase the level of security due to the ability to monitor 100% of traffic or 100% of actions taken by users – a task that human cyber security analysts could not do due to the prohibitive associated costs.
The most interesting use cases for AI in cyber security are:
- Behavior analysis
- Scoring risks in networks
- Data protection and compliance
- Malware detection
- Intrusion detection
- Endpoint protection
- Security orchestration, automation and response
- Security operations centers with AI
- Email monitoring with AI
The main advantages of AI-driven cyber security is the ability to monitor 100% of all user traffic and actions and, to a certain extent, the possible automatization of complex responses. The current main challenges are the still-emerging technology and risks associated with the black-box machine learning approach and the possible subtle attack by poisoning the well, i.e. manipulating the training set of data.
To read the entire SITSI® InBrief Analysis, please click here.