Business Is Starting To Believe That AI Is The Best Defence

Businesses are increasing the pace of investment in AI systems to defend against the next generation of cyber-attacks, a study from the Capgemini Research Institute has found. 
 
Two thirds (69%) of organisations acknowledge that they will not be able to respond to critical threats without AI. With the number of end-user devices, networks, and user interfaces growing as a result of advances in the cloud, IoT, 5G and conversational interface technologies, organisations face an urgent need to continually ramp up and improve their cyber-security.
 
The “Reinventing Cybersecurity with Artificial Intelligence: the new frontier in digital security” study surveyed 850 senior IT executives from IT information security, cyber-security and IT operations across 10 countries and seven business sectors, and conducted in-depth interviews with industry experts, cyber-security startups and academics.
AI-enabled Cyber-Security is now an Imperative
 
Over half (56%) of executives say their cyber-security analysts are over-whelmed by the vast array of data points they need to monitor to detect and prevent intrusion.  
 
In addition, the type of cyber-attacks that require immediate intervention, or that cannot be remediated quickly enough by cyber analysts, have notably increased, including:  
 
• Cyberattacks affecting time-sensitive applications (42% saying they had gone up, by an average of 16%).
• Automated, machine-speed attacks that mutate at a pace that cannot be neutralised through traditional response systems (43% reported an increase, by an average of 15%).
 
Facing these new threats, a clear majority of companies (69%) believe they will not be able to respond to cyber-attacks without the use of AI, while 61% say they need AI to identify critical threats. One in five executives experienced a cyber-security breach in 2018, 20% of which cost their organisation over $50m.
 
Executives are accelerating AI investment in Cyber-Security and a clear majority of executives accept that AI is fundamental to the future of cyber-security:
 
• 64% said it lowers the cost of detecting breaches and responding to them – by an average of 12%.
• 74% said it enables a faster response time: reducing time taken to detect threats, remedy breaches and implement patches by 12%.
• 69% also said AI improves the accuracy of detecting breaches, and 60% said it increases the efficiency of cyber-security analysts, reducing the time they spend analysing false positives and improving productivity.
 
Accordingly, almost half (48%) said that budgets for AI in cyber-security will increase in FY2020 by nearly a third (29%). In terms of deployment, 73% are testing use cases for AI in cybersecurity. Only one in five organisations used AI pre-2019 but adoption is poised to skyrocket: almost two out of three (63%) organisations plan to deploy AI by 2020 to bolster their defenses.
 
“AI offers huge opportunities for cyber-security,” said Oliver Scherer, CISO of Europe’s leading consumer electronics retailer, MediaMarktSaturn Retail Group. “This is because you move from detection, manual reaction and remediation towards an automated remediation, which organisations would like to achieve in the next three or five years.”
 
There are Significant Barriers to Implementing AI 
The number-one challenge for implementing AI for cybersecurity is a lack of understanding of how to scale use cases from proof of concept to full-scale deployment. 69% of those surveyed admitted that they struggled in this area.
Additionally, half of surveyed organisations cited integration challenges with their current infrastructure, data systems, and application landscapes. 
 
Although the majority of executives say they know what they want to achieve from AI in cyber-security, only half (54%) have identified the data sets required to operationalise AI algorithms.
 
Geert van der Linden, Cybersecurity Business Lead at Capgemini Group told HelpNetSecurity “Organisations are facing an unparalleled volume and complexity of cyber threats and have woken up to the importance of AI as the first line of defense. 
 
“As cybersecurity analysts are over-whelmed, close to a quarter of them declaring they are not able to successfully investigate all identified incidents, it is critical for organisations to increase investment and focus on the business benefits that AI can bring in terms of bolstering their cybersecurity.” 
 
He adds, “Organisations must first look to address the underlying implementation challenges that are preventing AI from reaching its full potential for cyber-security. This means creating a roadmap to address key barriers and focusing on use cases that can be scaled most easily and deliver the best return. 
 
“Only by taking these steps can organisations equip themselves for the rapidly evolving threat of cyber-attacks. By doing so, they will save themselves money, and reduce the likelihood of a devastating data breach.”
 
Help Net Security
 
You Might Also Read:
 
AI Makes Cyber Attacks More Destructive:
 
AI: Is Your Business Ready?:
 
« Cannabis Buyers Are Uniquely Vulnerable To Cyber Attacks
Cyberwar: Covert Cyber Attack Campaign Is Underway »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

ManageEngine

ManageEngine

As the IT management division of Zoho Corporation, ManageEngine prioritizes flexible solutions that work for all businesses, regardless of size or budget.

IT Governance

IT Governance

IT Governance is a leading global provider of information security solutions. Download our free guide and find out how ISO 27001 can help protect your organisation's information.

Cyber Security Supplier Directory

Cyber Security Supplier Directory

Our Supplier Directory lists 6,000+ specialist cyber security service providers in 128 countries worldwide. IS YOUR ORGANISATION LISTED?

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

ExaGrid Systems

ExaGrid Systems

ExaGrid provides Tiered Backup Storage with a unique disk-cache Landing Zone, long-term retention repository, and scale-out architecture.

iLand

iLand

iland is a global cloud service provider of secure and compliant hosting for infrastructure (IaaS), disaster recovery (DRaaS), and backup as a service (BaaS).

BeOne Development

BeOne Development

BeOne Development provide innovative training and learning solutions for information security and compliance.

The Data Privacy Group

The Data Privacy Group

The Data Privacy Group provide expert professional services underpinned by world leading automation tools and a consulting team specialized in privacy and data protection.

GreyCampus

GreyCampus

GreyCampus is a leading provider of training for working professionals in the areas of Project Management, Big Data, Data Science, Service Management, Quality Management and Information Security.

Meiya Pico Information Co

Meiya Pico Information Co

Meiya Pico is the leading digital forensics and information security products and service provider in China.

Data Destruction London

Data Destruction London

Data Destruction London offers fast, confidential and compliant expert data destruction services to businesses and organisations in London.

Parameter Security

Parameter Security

Parameter Security is a provider of ethical hacking and information security services.

IT Band Systems

IT Band Systems

IT Band Systems is an international provider of IT products and services including web server monitoring and web security consulting.

Antares NetlogiX

Antares NetlogiX

Antares Netlogix are a leading Austrian service provider for IT security, critical infrastructures and managed security services.

Punk Security

Punk Security

Punk Security are specialists in integrating security into DevOps pipelines, enabling rapid and secure development.

Snare

Snare

Snare is a comprehensive set of event monitoring and analysis tools designed to address critical auditing and security requirements.

Flare Systems

Flare Systems

Flare proactively detects and remediates exposure across the clear & dark web, providing organizations with the equivalent of an automated cyber reconnaissance team.

Lineaje

Lineaje

Lineaje solves critical Software Supply Chain security problems faced by every organization that builds, uses or sells software.

SureCloud Cyber Services

SureCloud Cyber Services

Our Cyber Testing capability has been honed since we were founded in 2006 as a disrupter in the penetration testing market.

CyberGrape

CyberGrape

CyberGrape is a client centric managed services company, providing enterprise leading security solutions and helping companies through their IT risk and security challenges.