2024網(wǎng)絡(luò)安全領(lǐng)域AI狀況調(diào)研報告:基于對1000多名網(wǎng)絡(luò)安全專業(yè)人士的調(diào)研(英文)_第1頁
2024網(wǎng)絡(luò)安全領(lǐng)域AI狀況調(diào)研報告:基于對1000多名網(wǎng)絡(luò)安全專業(yè)人士的調(diào)研(英文)_第2頁
2024網(wǎng)絡(luò)安全領(lǐng)域AI狀況調(diào)研報告:基于對1000多名網(wǎng)絡(luò)安全專業(yè)人士的調(diào)研(英文)_第3頁
2024網(wǎng)絡(luò)安全領(lǐng)域AI狀況調(diào)研報告:基于對1000多名網(wǎng)絡(luò)安全專業(yè)人士的調(diào)研(英文)_第4頁
2024網(wǎng)絡(luò)安全領(lǐng)域AI狀況調(diào)研報告:基于對1000多名網(wǎng)絡(luò)安全專業(yè)人士的調(diào)研(英文)_第5頁
已閱讀5頁,還剩12頁未讀, 繼續(xù)免費閱讀

下載本文檔

版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請進行舉報或認領(lǐng)

文檔簡介

STATE

OF

AIIN

CYBER

SECURITYSURVEYCrowdStrikecommissionedasurveyofover1,000cybersecurityprofessionalstolearntheirthoughtsonGenAICROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

2Table

ofContentsHow

Your

Peers

Are

Thinking

about

GenAI

3Top5Takeaways

4SurveyMethodology

5KEY

FINDING1:

A

Platform-Based

Approach

Is

Preferred

6KEYFINDING2:SecurityTeamsWantGenAIBuiltbyCybersecurityExperts8KEY

FINDING3:The

Robots

Will

Augment

Us,Not

Replace

Us

9KEY

FINDING4:Measurable

ROI

Is

More

Important

than

Cost

10KEY

FINDING5:Guardrails

Are

Required

for

Safe

and

Responsible

Adoption

11In

Summary12CrowdStrike’sApproachtoGenerativeAI

13AboutCrowdStrike

14How

YourPeers

AreThinking

aboutGenAIThepressureismountingforsecurityteams.As

adversaries

becomefaster

and

stealthier,

securityteamsmustadaptto

stay

ahead.TheemergenceofgenerativeAI

(GenAI)hasthepotential

to

help

them

dojustthat.With

itsuniquecapabilitiesfornaturallanguageprocessingand

synthesizing

large

amounts

of

data,GenAIcanhelpsecurityteamsimprovedata

awareness

across

silos

and

operatetheir

security

toolswithgreaterproficiency.Manysecurityleaders

recognize

its

potential,

with

some

going

sofarastomandateAIadoption

acrosstheir

operations.Atthesametime,thehypehas

reachedafever

pitch.

The

avalanche

of

conversation

andcontentaboutGenAIhasmadeit

hardfor

securityteams

to

understand

what’s

possible

and

what’snot.Misconceptions

abound.Tohelporganizationsnavigatethisuncertainty,CrowdStrike

surveyed

over

1,000

global

cybersecurityleadersandpractitionersontheirkey

criteria

shaping

GenAI

adoption,perceptionsofcurrentGenAIofferingsandoverall

sentiment

on

GenAI.Withspeculationswirlinginthemarket,thissurvey

reveals

how

securityteams

areactually

thinkingaboutGenAI—andtheresults

might

surprise

you.CROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

3Securityteamswantaplatform-basedapproach80%ofrespondentspreferGenAIdeliveredthroughacybersecurityplatform(versus

a

point

solution).GenAImustbepurpose-builtforcybersecurity76%of

respondents

prefer

GenAI

tools

purpose-built

for

cybersecurity,

asopposedtodomain-agnostictools.It’saboutaugmentation,notreplacementRespondentsoverwhelminglybelieveGenAIwillultimatelyoptimize

theanalystexperience,notreplacehumanlabor.Measurable

ROI

is

a

top

priorityThe

top

economic

concern

about

GenAI

isn’t

about

cost—it’s

aboutproviding

a

measurable

ROI.SafetyandprivacyremaintopconcernsWaryofGenAIrisks,usersrankedsafetyandprivacyguardrailsamong

thetopfeaturestheywant

to

seein

GenAI

tools.Top

5TakeawaysCROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

412345ManufacturingBusinessServicesHealthcareTelecommunicationsCollegesandUniversitiesInsuranceMediaandInternetRetailGovernment(StateandLocal)TransportationSurveyMethodologyCrowdStrikeworkedwithresearchfirmViBtosurvey1,022globalcybersecurityand

ITprofessionalsinJune

and

July

2024.

Questionscenteredonperceptions,attitudesand

concernstowardGenAIcybersecurityofferings.Respondentswere

alsoaskedabouttheirpurchasedrivers,decisioncriteria

and

current

buyingjourneysforGenAI.

Intotal,31questionswere

asked.CrowdStrikeanalyzedtheresponsestoprovidethisdocument

highlightingtrendsandkeyfindings. What

is

GenAI?

Generativeartificialintelligence(GenAI)incybersecurityreferstoAIsystemsthatcancreatenewcontent

—suchasthreatdetectionpatterns,automatedincidentresponseplaybooksandphishing

emailsimulations

—bylearningfromvastdatasets.Thetechnologycanbedeliveredthroughembedded

productfeaturesorconversationalinterfacessuch

asassistantsorchatbots.OrganizationLevelGeography77%NorthAmericaPrimary

IndustryAudience

StatisticsCROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY61%Managersand

Practitioners11%C-Suiteand

VP28%Directors11%APAC9%EMEA3%Other5A

Platform-BasedApproach

Is

Preferred7/1063%64%80%#1preferredfeature:GenAItoolintegrationCROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

6ofrespondents

areresearchingGenAItoolsor

havealreadypurchasedonewouldchangesecurityvendorstouse

the

GenAIofanothervendorpreferGenAI

deliveredthrougha

platform(versuspoint

solutions)intendtomakea

purchase

inthenext12

monthsKEY

FINDING

1EarlystagesofadoptionRespondentsacknowledgethatGenAIremainsinits

infancy,

butfeel

confident

enoughtoinitiatethebuyingjourney.Almosttwo-thirds(64%)areresearching

GenAItoolsorhavealreadypurchasedone.Ofthose

who

have

started

theirGenAI

buying

journeys,nearly

7in10(69%)intend

to

make

a

purchase

in

thenext12months.IntegrationisthetoppriorityWhenconsideringaGenAIpurchase,thetop-rankedcapabilityand

leadingoperationalconcernfororganizationsishowGenAIintegrateswithexistingsecuritytools.TheseresultsshowhowGenAI’svalue

is

linkedto

how

well

it

works

withinthebroadertechnologyecosystem.GenAIdrivesplatformpreferenceNearlytwo-thirds(63%)ofrespondentssaidtheirorganizationwouldconsideroverhaulingtheirsecuritytoolstousetheGenAItoolsofanothervendor.

GenAIisseenasnotonlyan

accessible

interface

to

security

tools

but

a

capabilitythatcanhelpteamsextractdeeperinsightsand

more

value

across

tools—

making

it

adecisivefactorwhenchoosingsecurityplatforms.廠

Whyplatformmatters

Aplatform-basedapproachtocybersecurityintegratesmultipletools,dataandprocessesintoaunifiedsystem.

Whendeliveredasanintegratedcomponentofaplatform,GenAIcanaccelerateandaugmentthebenefitsofaplatformapproach.Itcanstreamlineonboarding,enablinganalyststogetuptospeedfasterandinteractwiththeirtoolsinamoreintuitiveway(suchasbyusingnaturallanguage).

DeliveringGenAIthroughaplatformcanalsosimplifyprocurementanddeployment

complexities,

facilitatingmoreseamlessadoption.32%29%18%11%6%5%Learningabout

GenAI

toolsActively

researching

toolsTestingand

evaluating

toolsDecidedonapurchaseandareinprocurementHavepurchasedand/or

deployedaGenAI

toolN/AHow

far

along

arecybersecurity

professionalsin

their

GenAI

buying

journeys?CROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

7SecurityTeamsWantGenAIBuiltbyCybersecurityExpertsBreachpreventionremainsatoppriority74%of

respondents

have

either

been

breached

in

the

previous12-18months

or

are

worried

theymaybevulnerabletoabreach.

Perhapsnotsurprisingly,themajorityofrespondentscited

theirprimarymotivationforconsideringGenAItoolsisto

better

detect

and

respondto

attacks.ThismotivationoutrankedwidelyspeculateddriversforAIadoption,including

skills

shortages

(12%)and

leadership

mandates

(10%).CybersecurityexpertisebeatsgeneralAIleadershipWhenselectingaGenAItool,respondentsprioritizevendorswithdeepcybersecurityexpertise,

strongincidentresponsecapabilitiesandleadershipin

threat

intelligence.

Thesefactors

outweigh

moregeneralAIleadership,suchasavendor's

investment

inAI

research

or

partnerships

with

large

languagemodel

providers.Purpose-builtGenAIforcybersecurityTheemphasisonbreachpreventionandvendor

expertise

suggests

securityteams

would

avoiddomain-agnosticGenAItools,whichmaylackthespecialized

context

requiredto

provide

actionable

assistanceinalignmentwithsecuritybestpractices.

83%ofrespondentssaidtheywouldnottrust

toolsthatprovideunsuitableorill-advisedsecurityguidance.Top3purchase

drivers

forGenAIsecurity#1Toimprovemyorganization’sability

to

detectandrespond

to

attacks#2

Toimprovemyorganization’s

operationalefficiency#3

Tomitigate

theimpactofskills

shortages

Top

3vendorselectioncriteria#1Validatedleadershipincybersecurity#2

Expertiseinincidentresponse#3

Vendor-led

threatintelligenceresearch

Top

3targetsecurityoutcomes#1Fastermean

time

torespond#2

Improveddetection

fidelity#3

ReducedriskexposureCROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

8KEY

FINDING

2JobdisplacementisalowconcernDespitepopularmisconceptions,concernsabout

jobdisplacement

in

favor

of

an“autonomous

SOC”are

minimal.Infact,thisconcernrankedlowestamong

operational

concerns

withGenAI,evenamongpractitioners.While

GenAI

can

helpaddressskillsshortages,respondentsbelieve

itwon't

be

doing

this

byautomatingaway

human

labor.ImprovingtheanalystexperienceRespondentsseeGenAIasa

means

of

improvingthe

analystexperience,asreflectedinthetop-rankedoperationaloutcomes

theyexpecttorealize,including

enhancingproductivity,reducingburnoutandacceleratingonboarding.Thisreveals

anunderstandingthatGenAIcan

beaforce

multiplier

and

ataskaccelerator.Acceleratingdata-drivendecision-makingThemostrequestedworkflowsforapplyingGenAI

revolve

around

boostinganalystproductivityandstreamliningdataanalysistoinformdecision-making.Thisincludesworkflowautomationandminimizingtedious,time-consumingtasks,suchassummarizing

threatintelligence,writingscriptsandcompilingcross-domaindataforinvestigations.TheRobotsWill

AugmentUs,

NotReplaceUsTop

Security

Workflows

forGenAI

ToolsCROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

9KEY

FINDING3EnablingSelf-ServiceAnswers

toQuestionsbyNon-SecurityTeams(IT,Engineering,

etc.)</>AnalystOnboardingandAnsweringProduct

FunctionalityQuestionsAutomatedResponseand/orWorkflowImplementationThreatIntelligenceAnalysisandSummarizationAssistedDetectionInvestigationandAnalysisAssisted

VulnerabilityManagementandPatchingWritingandEditing

QueriesorScriptsMeasurableROIIs

More

Importantthan

CostTop-rankedeconomicconcernsaroundGenAIadoption#1

Quantifyingthe

ROIofGenAI

spend#2

Costsoflicensing

GenAItools#3

Unpredictableorconfusingpricing

models

ROIasthetopeconomic

concernReturnoninvestment(ROI)remainsthetopeconomicconcernrelated

toGenAI,outrankingconcernsaroundthecoststo

license

GenAItools.FasterreturnsonAIspendwithaplatformapproachResponsessuggestthatorganizationsbelieveplatform-deliveredGenAIcanExpectedROIfromGenAIAdoptionhelpteamsrealize

fastereconomicreturnsfromAIinvestments.Respondentsexpect

torealizeincrementalsavingsassociatedwithbroader

platform

consolidation

efforts,

includingprocurementefficiencies,

reducedsecurityincidents,

fewer

trainingcyclesandreducedmaintenancecosts.CROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

10Costoptimization

fromplatformconsolidationand

moreefficientsecurity

tooluseKEY

FINDING

426%Less

timespent

managingsecurity

tools30%Reducedsecurity

incidents13%Shorter

training

cycles

and本報告來源于三個皮匠報告站(),由用戶Id:349461下載,文檔Id:890764,下載日期:2025-09-05associatedcosts31%Guardrails

AreRequired

for

Safe

andResponsible

AdoptionGenAIsafetyandprivacycontrolsRespondentsaretornonwhethertherewardsof

GenAIoutweigh

its

risks.

ToadoptGenAIwithpeaceof

mind,

respondentssaysafetyandprivacy

controlsareneededforGenAImaturity,

bothrankingamongthetopfeaturerequirementsforGenAItools.ConcernsaboutdataexposureandattacksThetopsecurityconcernsforGenAIaredataexposuretounderlyinglarge

languagemodels(LLMs)andattacksonGenAItools,validatingfrequently

citedrisks

around

GenAI

use.NewGenAIsecuritypoliciesAsGenAIadoptiongrows,organizationsincreasinglyrely

on

both

technology

andpolicyframeworkstoensureresponsibleuse.Almost9in10respondents

(87%)haveimplementednewsecuritypoliciesoraredevelopingpoliciesto

governGenAIadoptionwithinthe

nextyear.TopsecurityconcernsforGenAIadoption#1Sensitive

data

exposureto

underlying

LLMs#2

AdversarialattacksonGenAItools#3Lackofguardrailsorcontrols

in

GenAItools#4

AIhallucinations#5

Insufficientpublicpolicyregulationsfor

GenAI

useTopGenAI

featurerequirementsinvolvesafetyandprivacy

controlsRespondentshaveeitherimplementednew

securitypoliciesoraredevelopingpolicies

to

governGenAIadoption

within

thenext

yearDotherewardsoutweightherisks

of

GenAI?CROWDSTRIKESTATEOFAI

INCYBERSECURITYSURVEY

119

in

10KEY

FINDING

540%They'recomparable

of

the

339%Yes21%No2In

SummaryWe’reenteringtheeraofGenAIincybersecurity.

Recently

the

domain

of

early

adopters,

GenAIisnearingmainstreamadoptionas

security

teams

realize

its

many

benefits.Asadoptionaccelerates,onetruthisclear:Thevalue

of

GenAI

tools

lies

in

their

ability

tointegratewiththeplatformsandtoolsthatsecurityteamsalready

use.Securityteamswant

todeployGenAIaspartofa

platformto

get

morevaluefrom

existing

tools,

elevate

theanalystexperience,accelerateonboardingandeliminatethecomplexityof

integrating

new

pointsolutions.SecurityteamsalsowantGenAItoolsbuiltforcybersecurity

bycybersecurity

experts.OrganizationswillevaluatetheirGenAIinvestmentsbasedon

the

outcomes

that

mattermost:fasterresponsetimes,moreaccuratedecision-making

and

measurable

ROI

achieved

throughstreamlinedsecurityoperations.WhileGenAIisstillinits

infancy,

manywonder

aboutthe

long-term

adoption

of

GenAI

incybersecurity.Acrosstheindustry,thecostforvendorstodevelopthistechnology

(andfor

organizationstolicenseit)willdemandtangibleoutcomes.While

GenAI

is

not

a

silver

bullet,

thissurveyshowsthatorganizationsbelieveitcan

have

significant

benefits.ThefutureofGenAIincybersecuritywillbe

defined

bytoolsthat

not

only

advance

security

butalsoupholdthehigheststandards

of

safety

and

privacy.CROWDSTRIKESTATEOFAIINCYBERSECURITYSURVEY

12CrowdStrike’s

Approach

toGenerative

AICrowdStrikepioneeredtheuseofAIin

cybersecurity

in

2011

andwe’ve

been

innovating

ever

since.CrowdStrikefirstunveileditsGenAIassistant,CharlotteAI,in

2023.

Named

“BestAISecurityCo-Pilot”

bythe2024Cyber

DefenseGlobal

InfosecAwards,CharlotteAI

empowers

securityteams

to

useplain-languagequeriesandembeddedGenAIacrosstheirCrowdStrike

Falcon?

platform

modules

tosurfacecross-domaininsights,automatetime-intensiveworkflowsandmakefaster,

moreaccuratedecisions.Trainedonpetabytesofsecuritytelemetryand

insightsfrom

CrowdStrikethreat

researchers

andincidentresponseexperts,CharlotteAIis

purpose-builtto

assist

securityteams,

while

providingcriticalguardrailsfordatatransparency,dataprivacyand

role-basedaccess—

enabling

safe

and

responsibleGenAIadoption.AdditionalResources?

Readthe5questions

security

teams

must

ask

to

use

GenAI

responsibly.?

Learnhow

CharlotteAI’s

溫馨提示

  • 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請下載最新的WinRAR軟件解壓。
  • 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
  • 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
  • 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
  • 5. 人人文庫網(wǎng)僅提供信息存儲空間,僅對用戶上傳內(nèi)容的表現(xiàn)方式做保護處理,對用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對任何下載內(nèi)容負責。
  • 6. 下載文件中如有侵權(quán)或不適當內(nèi)容,請與我們聯(lián)系,我們立即糾正。
  • 7. 本站不保證下載資源的準確性、安全性和完整性, 同時也不承擔用戶因使用這些下載資源對自己和他人造成任何形式的傷害或損失。

最新文檔

評論

0/150

提交評論