Unfortunately, while many businesses embrace technology to advance some cybersecurity capabilities, they may also rely on aging and increasingly vulnerable legacy systems and a lack of modern skills – constraints that cannot be quickly or cost-effectively remediated.
Automating detection and response using today’s newest AI and hyperscaler capabilities is the inevitable way forward to identify, analyze and respond to real and potential security threats. This cloud-centric approach relying on hyperscalers includes elements of key detection and response such as endpoint detection and response (EDR) and extended detection and response (XDR).
The key is to unlock the growing potential of cloud providers to deliver game-changing capabilities for automated visibility, threat detection and data-driven analytics and mitigation tools. Proactive organizations are wisely looking to AI’s evolving power to create a secure environment and remain ahead of malicious actors.
KPMG professionals advice to clients is to work to ‘make every endpoint a sentry versus a target.’ With modern automation, threat detection can be done within seconds instead of hours or days, taking level-one noise detection to new levels while replacing labor-intensive manual processes prone to human error. This allows security teams to focus on level-two and level-three activities, enabling them to respond, remediate and recover much more quickly.
Hyperscale cloud service providers have many platform-native technologies to enhance the detection of potential threats. To build modern effective security monitoring, businesses need to apply a modern threat and signal monitoring program enterprise-wide using the following approach that focuses on people, processes and technology enablement:
- Build the foundation with your maturity level defined and a single cloud that is service provider native.
- Enhance and extend your maturity level with managed multi-cloud that is native and cloud service provider (CSP) agnostic.
- automate and integrate to optimize the maturity level with multi-cloud enterprise integration that is enterprise-centric.