Today the odds remain stacked against cybersecurity professionals. Too often, they fight an asymmetric battle against prolific, relentless and sophisticated attackers. To protect their organizations, defenders must respond to threats that are often hidden among noise. Compounding this challenge is a global shortage of skilled security professionals, leading to an estimated 3.4 million openings in the field.
To overcome these challenges, new technologies must be continually developed to tip the scales in favor of defenders. With the rapid advancements in AI, organizations are applying the technology to various use cases, empowering security professionals to drive innovation and disrupt attackers’ traditional advantages.
As the world welcomes a new era of security, Microsoft is taking a significant step forward by combining its leading security technologies with the latest advancements in AI. At the inaugural Microsoft Secure event, Microsoft introduced the Microsoft Security Copilot – shaped by the power of OpenAI’s GPT-4 generative AI to revolutionize the field of cybersecurity.
Microsoft Security Copilot is the first security product to enable defenders to move at the speed and scale of AI. Security Copilot combines this advanced large language model (LLM) with a security-specific model from Microsoft.
Dennis Chung, Chief Technology Officer, Microsoft Singapore, shared, “The rapidly evolving cybersecurity landscape demands that organizations continuously strengthen and maintain their security measures to effectively combat increasingly sophisticated threats and ensure the safety of their people and business. Our Microsoft Security Copilot brings the power of AI to individuals to drive innovation and scale at pace, as they create a secure digital environment for all. ”
This security-specific model in turn incorporates a growing set of security-specific skills and is informed by Microsoft’s unique global threat intelligence and more than 65 trillion daily signals. Security Copilot also delivers an enterprise-grade security and privacy-compliant experience as it runs on Azure’s hyperscale infrastructure.
When Security Copilot receives a prompt from a security professional, it uses the full power of the security-specific model to deploy skills and queries that maximize the value of the latest large language model capabilities. And this is unique to a security use-case. Microsoft’s cyber-trained model adds a learning system to create and tune new skills. Security Copilot then can help catch what other approaches might miss and augment an analyst’s work. In a typical incident, this boost translates into gains in the quality of detection, speed of response and ability to strengthen security posture.
Security Copilot doesn’t always get everything right. AI-generated content can contain mistakes. But Security Copilot is a closed-loop learning system, which means it’s continually learning from users and giving them the opportunity to give explicit feedback with the feedback feature that is built directly into the tool. As we continue to learn from these interactions, we are adjusting its responses to create more coherent, relevant and useful answers.
Security Copilot also integrates with the end-to-end Microsoft Security products, and over time it will expand to a growing ecosystem of third-party products. So, in short, Security Copilot is not only a large language model, but rather a system that learns, to enable organizations to truly defend at machine speed.
We absolutely believe that security is a team sport, and security should be built with privacy at the core. We’ve built Security Copilot with security teams in mind— your data is always your data and stays within your control. It is not used to train the foundation AI models, and in fact, it is protected by the most comprehensive enterprise compliance and security controls. While remaining private, each user interaction can be easily shared with other team members to accelerate incident response, collaborate more effectively on complex problems and develop collective skills.
Human creativity and knowledge will always be imperative for defense. Security Copilot can augment security professionals with machine speed and scale, so human ingenuity is deployed where it matters most. In delivering this experience, we are guided by three principles:
With Security Copilot, we are taking the agility advantage back to defenders by combining Microsoft leading security technologies with the latest advancements in AI. By working with Security Copilot, organizations get access to an unrivaled depth and breadth of security AI capabilities, including:
Without a doubt, AI will transform how organizations around the world interact with security technologies. To achieve their highest potential, security AI solutions must be delivered in a safe, secure and responsible way. With Security Copilot, we reinforce our commitment to impactful and responsible AI practices by innovating responsibly, empowering others, and fostering positive impact.
The cornerstone of this work is our commitment to how Security Copilot handles your data:
At Microsoft, we believe that security is ultimately about people. With Security Copilot, we are building a future where every defender is empowered with the technologies and expertise that enable them to reach their full potential. Technology will play an essential role on this journey, but successful security is, and will continue to be, a human endeavor.
We’re excited to be on this journey with you and we look forward to sharing more soon. Welcome to the new era of security.
Find out more here: https://news.microsoft.com/ai-security-2023/