Return to New York on June 5th to work with executives to explore comprehensive ways to audit AI models for bias, performance, and ethical compliance across diverse organizations. Click here to learn how to participate.
Rapidly progressing from first-generation chatbots to an integral part of the high-octane fuel that powers hyperscalers and cybersecurity platforms, AI's dominance at RASC 2024 is due to the fact that AI is in the DNA of cybersecurity. It proves that there is.
RSAC's “Art of the Possible” theme encapsulates how cybersecurity vendors seek to leverage technology's inherent strengths. All vendors are focused on providing platform-level AI support for everything from automating security operations center (SOC) workflows to predicting threats and decoding data to find insider threats.
RSAC 2024 is the F1 race for cybersecurity
This year's RSAC 2024 was like a Formula 1 race, with more than 40,000 fans in attendance and new technology aimed at greater acuity, precision, speed and visibility. Vendors are turning to AI, visibility (ideally down to the kernel level), and hardware acceleration enabled by incremental improvements in graphics processing units (GPUs) and data processing units (DPUs) .
Nvidia's momentum in hardware acceleration is fueled by a racing strategy chosen by everyone from hyperscalers, platform providers, best-of-breed apps, and startups. GPUs and DPUs provide high-octane fuel for new generative AI platforms, large-scale language models (LLMs), apps, and tools that move beyond limited generation AI chatbot use cases to infrastructure-level challenges allows you to Companies such as Cisco, CrowdStrike, Commvault, Microsoft, Palo Alto Networks, SentinelOne, Splunk and many others say hardware acceleration will have a major impact on the future of cybersecurity.
VB event
AI Impact Tour: AI Audit
request an invitation
Improving the accuracy, velocity, and visibility of threat data was a central message at RSAC 2024. Among the many keynotes addressing his application of genAI to the challenges of automating SOC reporting and streamlining workflows, George Kurtz, President, CEO, and Co-Founder of CrowdStrike, delivered the following keynotes: Ta. Gen SIEM: Converging Data, Security, IT, Workflow Automation & AI sums it up nicely. “Data ingestion can take several days, and queries can take several days to actually process. So if you want to find and investigate alerts, especially if you're trying to triage an incident, what you need to do is You can't wait for days. It all comes back to the concept of how you bend time and how you actually act faster than your enemy,” Kurtz said in his keynote.
The goal is to enable a more adaptable and secure data center infrastructure
The combination of AI, visibility, and hardware acceleration opens up opportunities for vendors to tackle much bigger challenges. At the top of the list are the projects that many he CISOs and CIOs consider to be the scariest and most risky projects from a career standpoint. It's about modernizing traditional data center infrastructure to make it more efficient and secure.
“But the reality is, when you look at the changes in applications and infrastructure, there are still some things that are very difficult. It's very difficult to protect these applications, but it's even more difficult to protect the infrastructure.” Jeetu Patel, Cisco's executive vice president and general manager of security and collaboration, told the audience in a keynote he co-presented with senior vice president Tom Gillis. Cisco General Manager of Security, “The Time is Now: Redefining Security in the Age of AI.” Mr. Patel and Mr. Gillis' keynote will provide the clearest story offered at RSAC 2024 about how the industry is combining his AI, visibility, and hardware acceleration.
What CISOs talked about at RSAC 2024
VentureBeat briefings and discussions with CISOs and CIOs cover cloud security, cloud native application protection platform (CNAPP), container security, endpoint security, IAM (identity access management), risk management, SASE (secure access service edge), There was strong interest in expansion areas. Detection and response (XDR) and zero trust.
VentureBeat spoke with several CISOs who attended RSAC 2024 to learn the latest on SASE and meet with vendors' senior management teams. They all want to know what's going to happen with the SASE roadmap.
“As we think about the future of SASE, we believe it can address the biggest threats in cybersecurity. It's about bringing network and security together on one platform with one console, rather than a specific threat group or hacking tool. The complexity of the security stack through integration,” Etay Maor, chief security strategist at Cato Networks, told VentureBeat. “The SASE platform enables any organization to achieve an optimal security posture, regardless of changing business needs or evolving threat landscapes, without relying on large-scale tedious tasks or major resource investments. It will be.”
Of note among the many SASE solutions at RSAC 2024 was Cradlepoint's NetCloud SASE. A single-platform secure access service edge (SASE) solution optimized for 5G and wireless WAN, NetCloud SASE includes Zero Trust security and SD-WAN. Cradlepoint focuses on how cellular optimization and intelligent bonding improve performance and minimize the attack surface of managed and unmanaged devices with advanced isolation technology to reduce cyber threats. We have shown you how to protect from. The company's AI-based NetCloud Assistant (“ANA”) uses natural language processing to assist NetCloud users with routine questions about network operations and provides tailored support for specific use cases to troubleshoot network performance. Provides recommendations for cellular endpoints.
Other notable announcements at RSAC 2024 include:
Google launches threat intelligence that combines Mandiant's front-line security expertise with VirusTotal's data analysis that shows indicators of compromise from user networks and devices and emails. Building on its core strength of bringing competitive offerings to the cybersecurity market, Google unveiled its threat intelligence solutions at RSAC 2024 last week. Gemini 1.5 Pro is integrated with Google Threat Intelligence, enabling conversational search across threat data repositories. By monitoring global threats through crowd-sourced and human-curated intelligence, Google promises advanced malware analysis and automated data enrichment for organizations.
Palo Alto Networks has launched a series of services. Precision AI initiative including CoPilot for Strata, Prisma, and Cortex platforms, Cortex XSIAM enhancements, and new security bundles. Copilot on Strata, Prisma, and Cortex platforms was introduced to help SOC analysts and teams improve productivity and outcomes through natural language processing queries. Prisma Cloud AI-SPM was also introduced to provide capabilities to reduce risk in AI environments, with a focus on model risk and data exposure. Cortex XSIAM enhancements include an integrated AI-driven security operations platform, improved cloud detection threat analytics, and a BYOML framework for creating custom ML models. Precision AI Security Bundle uses machine learning, deep learning, and generative AI to combat advanced threats such as web-based and zero-day attacks, DNS hijacking, and more. AI Access Security provides robust controls and proactive threat protection. AI Security Posture Management (AI-SPM) improves the security of AI ecosystems by identifying vulnerabilities and misconfigurations. AI runtime security protects AI-powered applications from threats such as prompt injection and model DoS.
SentinelOne introduces Singularity Cloud Native Security CNAPP and new features within its Singularity platform. As a result of SentinelOne's recent acquisition of PingSafe, Singularity Cloud Native Security CNAPP is designed to emulate attack strategies and provide security teams with a prioritized, evidence-based list of potential exploit vectors. Masu. The goal is to give security teams the flexibility to take proactive security measures against critical vulnerabilities. The platform's offensive security engine minimizes false positives and increases the relevance of alerts, setting it apart from competitors on the market. Purple AI, SentinelOne's AI platform. Added AI-powered anomaly detection, automated alert triage, AI-powered response recommendations, hyper-automation rules, and 24/7 automated investigations. The company also added integration to Mandiant Threat Intelligence. All current and future Purple AI capabilities are integrated across the Singularity platform and can be accessed using the company's new Singularity Operations Center.
SEC compliance and CISO responsibilities dominated the discussionOne CISO, who spoke on condition of anonymity, told VentureBeat that he has two big goals this year: securing his company to drive further growth and staying out of jail. CISOs are concerned about compliance and staying within SEC guidelines when reporting significant events. CISO responsibilities, guidance on how to stay compliant with the U.S. Securities and Exchange Commission (SEC), secure by design, and software supply chain security dominated discussions with CISOs and CIOs.
CISOs welcomed the Cybersecurity and Infrastructure Security Agency's (CISA) Secure by Design initiative, which requires vendors to protect customer data and identities as a core business requirement.