Chapter 8. Looking Ahead: AI, ML, and Managed Security Service Providers

Chapter 5 discussed how AI and ML are improving bot detection, whereas Chapter 6 discussed other areas in security for which the introduction of AI and ML has had a real impact. This chapter examines how managed security service providers (MSSPs) are incorporating these technologies, developing AI and ML techniques of their own and how that can benefit your organization. Your organization might not be ready to adopt AI and ML solutions in-house—given the many challenges associated with AI and ML and the fact that most security teams are already overworked, the idea of adding new capability seems daunting. However, by using an MSSP, your organization can potentially reap the benefits of the investment that the MSSP has made in AI and ML technologies. Just as with anything else in security, a successful partnership with an MSSP does require work on your end, but it can help improve your organization’s security posture.

The MSSP as an AI and ML Source

MSSPs have always had an inherent advantage when it comes to security: rather than protecting a single organization from attacks, the MSSP is protecting hundreds or thousands of clients from all types of attacks. The security operations center (SOC) analysts who work for MSSPs are presented with thousands of different attacks at any time, and they work with organizations ranging from sprawling government agencies to small businesses. This means that the SOC analysts ...

Get Security with AI and Machine Learning now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.