Security automation has become a top concern for many organizations as they struggle with a growing number of cyber threats fueled by new attack vectors in the cloud, and with proliferating endpoints created by the Internet of Things.
That trend was revealed in a recent survey of 300 CISOs, CIOs, CTOs, architects, engineers, and analysts across a variety of industries by the threat detection and hunting company Fidelis Cybersecurity.
More than half the professionals surveyed (57%) said that a lack of automation is their top concern for their organizations.
Here's how to improve your overall security operations with automation.
[ Explore the challenges and opportunities facing SOCs in TechBeacon's new guide. Plus: Getthe 2019 State of Security Operations report. ]
Automation is rising on the priority list because organizations arerealizing it's a way to reduce risks, gain greater visibility into their networks, and get the most from their security stacks.
One of the biggest risks automation can address is human error. When an engineer is asked to repeat the same task every day, looking for needles in the same haystacks, eventually they will make a mistake,said Laurence Pitt,strategic security director at security and performance company Juniper Networks. "Computers will not do this. Once set to a task, they will get it right every single time without failure."
Automated and orchestrated processes can also reduce risks by allowing threats to be detected and addressed faster, said Joseph Blankenship,vice president and research director for security and risk atForrester Research.
"Automated policy orchestration also helps reduce risk by ensuringthat policies exist and are effective, reducing the risk that systems and the data in those systems can be breached."Joseph Blankenship
There's an opportunity to incorporate automation to reduce risk at all stages of security, saidRani Osnat,vice president for strategy atAqua Security, acloud application security provider.
This can startwith automated scanning for vulnerabilities, flaws, malware, and configuration mistakes, and includeautomated profiling of allocation behavior for whitelisting and anomaly detection. Other security areas ripe for automation aredetection of and response tobreaches and attacks.
As good as automation is atreducing human error, it can't eliminate humans entirely.
"Computers can spot patterns, alerts, and bad actions on the network or on connected devices. Humans can spot the unexpected."Laurence Pitt
That's why security automation is so important,he added. "It gives time back to the engineers to do what they are good at."
Integration of security solutions is another area where automation falls short and can actually create risk, said Joseph Carson, the chief security scientist at security tools vendor Thycotic. "For many organizations, this tends to be time-consuming and complicated and can introduce risks when done incorrectly."
[ Effective SecOps requires staying one step ahead.Get up to speed with thisWebinar coveringUEBA and MITREATT&CK]
Automation can help security engineers by noticing patterns inside the millions of alerts sent to them daily. Automation can "spot the ones that actually need to be of concern and either act on them, or flag them for an engineer," Juniper'sPitt explained.
Automation using machine learning can give system defenders greater insight into network operations, too,saidShreyans Mehta,co-founder and CTO ofCequence Security, amaker of automated digital security systems.
"By observing network and application traffic, machine learning can help model how good users behave on a web application. The same models can then be used to identify bad actors with malicious behaviors and intent."Shreyans Mehta
Automation can also help organizations get more from their security stacks. Organizations are "overwhelmed"by the volume and velocity of alerts generated by their security systems,saidRaphael Reich, vice president of product marketing at CyCognito, maker of an attack surface analysis platform.
"By leveraging automated, intelligent prioritization of risks. Organizations can ensure their security resources are focused on addressing the risks that, when eliminated, provide the greatest ROI."Raphael Reich
A majority of organizations surveyed in the Fidelis report admitted they are not using their stack to its full potential. Just 6.54%of all organizations surveyed believe they are using their security stack to its full capability.
The good news, the report said, is that most organizations realize that this is a problem, with 78% of respondents replying that they already have, or are planning to, consolidate their security stack.
One approach to maximizing stack utilization is to create a standardized data ontology that represents the structure and flow of information between the components of the security ecosystem.
"This creates a common language that facilitates communicationnot just between human stakeholders but also between the systems that comprise the security stack," said Syed Abdur,senior director of products at therisk analytics firm Brinqa.
"Of course, when you automate, it means that the resources you have can do so much more, and you can get more value out of your solutions."Joseph Carson
While automation can address some of the concerns organizations have about risk, visibility, and utilization, it needs data to work effectively, said Blankenship. "Automation is only as good as the analytics technologies that exist. Automation can't do anything without good data."
One reason for the lack of automationthus far is that the legacy systems in many organizations depend on signatures to function. These systems, unlike machine-learning-based systems, require constant writing and updating of manual rules and require manual feedback, which does not support automation,said Cequence's Mehta.
That's especially true in security operations centers (SOCs). Most organizations have very manual processes in their SOCs due to the wide range of technologies analysts work with, the need for human intelligence to identify threats, and the lack of automated tools until about four years ago,said Forrester's Blankenship. "Automation is still relatively new to security operations professionals."
Brinqa'sAbdurexplained that a lack of standardization within security programs themselves can also be a barrier to automation.
"There can be significant differences in how the same cybersecurity program may be designed and implemented across different organizations. As a result, a 'one size fits all' approach to cybersecurity process automation does not work."Syed Abdur
In addition, he said, while it's possible to automate large parts of the vulnerability management process, to do that an organization needs an authoritative, accurate, and complete asset inventory.
A surprisingly large percentage of organizations lag behind in implementing foundational controls like asset management effectively, which makes it difficult to incorporate automation further downstream,Abdur said.
While security professionals say they'reconcerned about thelack of automation, some of that sentimentmay be a bit hypocritical. "At least in part, lack of automation is due to resistance to relinquishing control to automated systems," saidAqua Security'sOsnat.
That's especially true when it comes to preventive controls or response to threats thatcan block processes or applications. In those situations, practitioners can be overly concerned about automation creating false positives that can be a time suck on the development process.
"Unfortunately, sometimes the speed of attacks, which themselves are often automated, requires an automated response if they are to be thwarted or contained in time," Osnat said.
Juniper Networks' Pittagreed that the accuracy of existing automated systems can make security pros nervous. "This leads to solutions being deployed in the 'least automated' mode," he said.
A classic example of that is information intrusion, Pitt said.
"Everyone has the technology, but many run it in detect-only mode rather than risk falsepositives," he said. "So what we have is a lack of fully deployed automation."Laurence Pitt
That's typically the situation in SOCs. The tools are available from vendors,Blankenship said, but many SOCs dont have them implemented or fully implemented.
"Many SOCs lack automated tools to do the grunt workof security, like running searches and collecting data. They also lack the ability to take automated action on identified threats."Joseph Blankenship
Organizations also lack automated tools to do things such as patching and policy management,Blankenship added. But as environments grow increasingly complex, the ability to automatically push out and enforce policies in multiple environmentsincludingon-premises, cloud, multi-cloud, and hybrid"becomes critical."
[ Find out how to take control of credentials privilege in your organization in this Oct. 31 Webinar. You'll learn best practices, more.]
View post:
Automation is now No. 1 for SecOps: How to put it to work on your team - TechBeacon
- The Automation Conference [Last Updated On: December 9th, 2016] [Originally Added On: December 9th, 2016]
- The Best Home Automation Systems of 2016 | Top Ten Reviews [Last Updated On: December 24th, 2016] [Originally Added On: December 24th, 2016]
- Compact Automation - Actuators, Hydraulic Cylinders, Linear ... [Last Updated On: December 24th, 2016] [Originally Added On: December 24th, 2016]
- What is Home Automation? | Home Automation Systems [Last Updated On: December 24th, 2016] [Originally Added On: December 24th, 2016]
- Job Seekers - Automation Personnel Services [Last Updated On: December 24th, 2016] [Originally Added On: December 24th, 2016]
- iAutomation [Last Updated On: December 25th, 2016] [Originally Added On: December 25th, 2016]
- Beyond Automation - hbr.org [Last Updated On: December 25th, 2016] [Originally Added On: December 25th, 2016]
- Automation The Car Company Tycoon Game on Steam [Last Updated On: December 25th, 2016] [Originally Added On: December 25th, 2016]
- Automation - Wikipedia [Last Updated On: December 25th, 2016] [Originally Added On: December 25th, 2016]
- Build automation - Wikipedia [Last Updated On: December 26th, 2016] [Originally Added On: December 26th, 2016]
- Home - Enerwave Home Automation [Last Updated On: December 27th, 2016] [Originally Added On: December 27th, 2016]
- Automation | Technologies | Systems | Integrator ... [Last Updated On: December 27th, 2016] [Originally Added On: December 27th, 2016]
- Automation - DESHAZO [Last Updated On: December 27th, 2016] [Originally Added On: December 27th, 2016]
- Custom Automation & Machine Design | Automation GT [Last Updated On: December 27th, 2016] [Originally Added On: December 27th, 2016]
- IT Automation - BMC [Last Updated On: December 27th, 2016] [Originally Added On: December 27th, 2016]
- Werner Electric | Automation [Last Updated On: January 28th, 2017] [Originally Added On: January 28th, 2017]
- Automationtechies | Automation Engineering Recruiting [Last Updated On: January 28th, 2017] [Originally Added On: January 28th, 2017]
- Automation - Mazak Corporation [Last Updated On: January 28th, 2017] [Originally Added On: January 28th, 2017]
- Automation | Food Engineering [Last Updated On: January 28th, 2017] [Originally Added On: January 28th, 2017]
- Test Automation Services for Development of Regression ... [Last Updated On: January 28th, 2017] [Originally Added On: January 28th, 2017]
- UI Automation Overview - msdn.microsoft.com [Last Updated On: February 5th, 2017] [Originally Added On: February 5th, 2017]
- The Evolution of Automation and What It Means for the Integration Industry - Commercial Integrator [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Automation, robots could replace 250000 public sector workers in the next 15 years - Computer Business Review [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- New telecom transformation goals require service automation - TechTarget [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Automation expected to displace insurance underwriters, real estate brokers - CIO Dive [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- The Perks Of Automation And The Risks: Why To Think Twice About Getting Into That Driverless Uber - Forbes [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Voices Reinventing enterprise finance by overhauling AP automation - Accounting Today [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- DFLabs Launches the First Security Automation and Orchestration Platform based Upon Supervised Active Intelligence - Business Wire (press release) [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- VIDEO: Going Big on Automation in a Small Footprint Facility - ENGINEERING.com [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Building a better model of human-automation interaction - Phys.org - Phys.Org [Last Updated On: February 7th, 2017] [Originally Added On: February 7th, 2017]
- Cruise Automation Is Testing an App For Hailing Self-Driving Cars - Fortune [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- AlixPartners examines automation in manufacturing and logistics management - Logistics Management [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Women need to look out for each other in automated workplaces - The Guardian [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Automation vs. the H-1B visa program: Which matters to employees? - TechTarget [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Automation is the unavoidable future of the economy - The Daily Cougar [Last Updated On: February 8th, 2017] [Originally Added On: February 8th, 2017]
- Speeders beware: Legislation would allow automation crackdown ... - SFGate [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Robots versus bureaucrats: Why public sector work is ripe for automation - Financial Post [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Rockwell Automation Surged 10% in January as Growth Picked Up Steam - Motley Fool [Last Updated On: February 9th, 2017] [Originally Added On: February 9th, 2017]
- Global Medical Automation Market to Reach Approximately $75.6 Billion by 2025 - By End User, Application ... - PR Newswire (press release) [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Automation 'key' to advancing Thai production - The Nation [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- WorkWave Releases New Lead Management And Marketing ... - PR Newswire (press release) [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- 'We employ insane levels of automation' Kris Canekeratne - Times of India [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Most people are optimistic about workplace automation, social data suggests - ZDNet [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Yes, there's a job creation argument for automation and technology ... - The Hill (blog) [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Technobabble: Automation and the modern worker - CIO Dive [Last Updated On: February 10th, 2017] [Originally Added On: February 10th, 2017]
- Improving Behavior Through Automation of Vehicle Systems - School Transportation News (blog) [Last Updated On: February 11th, 2017] [Originally Added On: February 11th, 2017]
- Automation Nightmare: Philosopher Warns We Are Creating a World Without Consciousness - Big Think [Last Updated On: February 11th, 2017] [Originally Added On: February 11th, 2017]
- Why Don't We See More Automation in Federal Networks? - Nextgov [Last Updated On: February 11th, 2017] [Originally Added On: February 11th, 2017]
- Automation can revitalize the US workforce - Fox News [Last Updated On: February 11th, 2017] [Originally Added On: February 11th, 2017]
- Readers Write (Feb. 12): The moose population; jobs, start-ups and automation; diversity in the funny pages - Minneapolis Star Tribune [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Automation can replace bureaucrats and save taxpayers money - Hot Air [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- TigerStop hopes to ride automation to new heights - The Columbian [Last Updated On: February 12th, 2017] [Originally Added On: February 12th, 2017]
- Your Most Valuable Resource is Time Get More of it through Automation - CMS Critic (press release) (blog) [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- What Does Device Automation Mean for Users? - Medical Device and Diagnostics Industry (blog) [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- How To Beat Automation And Not Lose Your Job - Forbes [Last Updated On: February 13th, 2017] [Originally Added On: February 13th, 2017]
- Logistics firm gets automation boost - The Straits Times [Last Updated On: February 14th, 2017] [Originally Added On: February 14th, 2017]
- PP Control & Automation launch new video to kick-start exciting plans for 2017 - Manufacturer.com [Last Updated On: February 14th, 2017] [Originally Added On: February 14th, 2017]
- Automation's Impace on Data Center Monitoring Alerts - The Data Center Journal [Last Updated On: February 14th, 2017] [Originally Added On: February 14th, 2017]
- Hollysys Automation Technologies Reports Unaudited Financial Results for the First Half Year and the Second Quarter ... - PR Newswire (press release) [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- 4 Automation Hacks to Save You Money and Manpower - Yahoo Finance [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Istuary Innovation Group and Bluewrist Partner to Bring Robotics and Automation into China's Manufacturing Sector - Yahoo Finance [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Redwood Software Named a Strong Performer in Independent Robotic Process Automation (RPA) Report - Yahoo Finance [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Boeing ramps up automation, innovation as it readies 737MAX | The ... - The Seattle Times [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- Robots and AI are coming for our jobs, but can augmentation save us from automation? - Digital Trends [Last Updated On: February 15th, 2017] [Originally Added On: February 15th, 2017]
- The Impact of Bad Data in Automation: Why Quality Management is Critical - R & D Magazine [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- Automation: Are We Empowering Human Interaction Or Displacing It? - Business 2 Community [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- Life in the Fast LaneAutomation with Software-Defined Intelligence - InfoWorld [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- Luddite Lefty Journalists Apparently Think Workplace Automation is Conservatives' Fault [VIDEO] - Daily Caller [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- Will automation define the future of network technology? - TechTarget [Last Updated On: February 16th, 2017] [Originally Added On: February 16th, 2017]
- Editorial: Improving automation - The Motorship [Last Updated On: February 17th, 2017] [Originally Added On: February 17th, 2017]
- TigerText Unveils Role-based Scheduling Automation, Amazon Alexa integration - HIT Consultant [Last Updated On: February 17th, 2017] [Originally Added On: February 17th, 2017]
- 89% people want automation at workplace: Adobe - Economic Times [Last Updated On: February 18th, 2017] [Originally Added On: February 18th, 2017]
- Delta veers to EV parts, automation - Bangkok Post [Last Updated On: February 18th, 2017] [Originally Added On: February 18th, 2017]
- Robotic process automation makes nearshore outsourcing more ... - CIO [Last Updated On: February 18th, 2017] [Originally Added On: February 18th, 2017]
- The working-class job that Trump could save from automation - Washington Post [Last Updated On: February 18th, 2017] [Originally Added On: February 18th, 2017]
- China must be ready for automation - Basic Income News [Last Updated On: February 18th, 2017] [Originally Added On: February 18th, 2017]
- Bill Gates Says Robots Should Be Taxed Like Workers - Fortune [Last Updated On: February 18th, 2017] [Originally Added On: February 18th, 2017]
- Trump and automation challenge India's IT industry - VentureBeat [Last Updated On: February 18th, 2017] [Originally Added On: February 18th, 2017]
- Both Trump and Automation Are Challenging India's IT Industry - Fortune [Last Updated On: February 20th, 2017] [Originally Added On: February 20th, 2017]
- 89% people want automation at workplace: Adobe - ETCIO.com [Last Updated On: February 20th, 2017] [Originally Added On: February 20th, 2017]