AI controls Microsoft Security Copilot for cyber defense

AI controls Microsoft Security Copilot for cyber defense

Share post

Microsoft has introduced the integration of AI-supported services in the field of cybersecurity. Trained in security and network disciplines, Microsoft Security Copilot is armed with trillions of data signals. This should give SOCs and cyber defense systems a head start in terms of speed and effectiveness.

Microsoft Security Copilot gives security professionals an easy-to-use AI wizard to quickly identify and respond to threats. He combines Microsoft's extensive threat data with industry-leading expertise to better understand the overall threat landscape. Security Copilot helps admins monitor what's happening in their environment and is designed to work seamlessly with security teams. It can learn from existing information, correlate threat activity, and make informed, efficient decisions at machine speed.

Simplify complexity and react purposefully

🔎 The Microsoft Security Copilot should visualize an attack so that it can be better understood (Image: B2B-CS).

With more than 1.200 password attacks per second on average, fragmented tools and infrastructure are no longer enough to stop attackers. While the number of attacks has increased by 67% over the past five years, the security industry has not been able to hire enough cyber risk professionals to keep up. This has left security professionals at times overwhelmed trying to spot well-disguised attacks in growing network traffic and other signals.

Security Copilot simplifies the complexity and expands the capabilities of security teams by consolidating threat intelligence and making it easy for them to understand, allowing those responsible to drill through the immense noise floor of Internet signals to identify malicious activity. It also helps security teams see what they otherwise overlook by prioritizing the correlated and aggregated attack data and recommending the best course of action. Thus, various threats could be eliminated in time.

Expanding the expertise of security teams

Security Copilot is constantly evolving and improving to ensure security teams are operating with the latest knowledge of attackers, their tactics, techniques and procedures. The product provides continuous access to the most advanced OpenAI models to support demanding security tasks and applications. Insight into the threats is made possible both by the security data of the customer company and by Microsoft's extensive threat analysis.

With these capabilities, security teams of all sizes can leverage the knowledge and skills of far larger organizations. In addition, Security Copilot helps address the cybersecurity skills shortage by filling knowledge gaps and improving workflows, threat actor profiles and incident reporting across teams.

Based on industry-leading threat data

Microsoft Security actively tracks more than 50 ransomware criminal organizations and more than 250 individual nation-state cybercriminals, receiving 65 trillion threat signals every day. Microsoft technology blocks more than 25,6 billion attempts to steal passwords every second. Compared to other companies, over 8.000 security experts at Microsoft analyze security signals - on average, analysts at Microsoft's Security Operations Center use over 100 different data sources.

Through acquisitions like RiskIQ and Miburo, Microsoft has a wealth of information from threat actors. Security Copilot also natively integrates with a growing list of Microsoft security products such as Sentinel and Defender.

Microsoft Security Copilot not yet fully available

Microsoft Security Copilot is currently in preview and is not yet generally available. Those interested can sign up for Microsoft security updatesto learn more about product announcements, security insights, and upcoming events.

More at Microsoft.com

 


About Microsoft Germany

Microsoft Deutschland GmbH was founded in 1983 as the German subsidiary of Microsoft Corporation (Redmond, USA). Microsoft is committed to empowering every person and company in the world to achieve more. This challenge can only be mastered together, which is why diversity and inclusion have been firmly anchored in the corporate culture from the very beginning.

As the world's leading manufacturer of productive software solutions and modern services in the age of intelligent cloud and intelligent edge, as well as a developer of innovative hardware, Microsoft sees itself as a partner to its customers to help them benefit from the digital transformation. Security and data protection have top priority when developing solutions. As the world's largest contributor, Microsoft is driving open source technology through its leading developer platform GitHub. With LinkedIn, the largest career network, Microsoft promotes professional networking worldwide.


 

Matching articles on the topic

Cybersecurity platform with protection for 5G environments

Cybersecurity specialist Trend Micro unveils its platform-based approach to protecting organizations' ever-expanding attack surface, including securing ➡ Read more

Data manipulation, the underestimated danger

Every year, World Backup Day on March 31st serves as a reminder of the importance of up-to-date and easily accessible backups ➡ Read more

Printers as a security risk

Corporate printer fleets are increasingly becoming a blind spot and pose enormous problems for their efficiency and security. ➡ Read more

The AI ​​Act and its consequences for data protection

With the AI ​​Act, the first law for AI has been approved and gives manufacturers of AI applications between six months and ➡ Read more

Windows operating systems: Almost two million computers at risk

There are no longer any updates for the Windows 7 and 8 operating systems. This means open security gaps and therefore worthwhile and ➡ Read more

AI on Enterprise Storage fights ransomware in real time

NetApp is one of the first to integrate artificial intelligence (AI) and machine learning (ML) directly into primary storage to combat ransomware ➡ Read more

DSPM product suite for Zero Trust Data Security

Data Security Posture Management – ​​DSPM for short – is crucial for companies to ensure cyber resilience against the multitude ➡ Read more

Data encryption: More security on cloud platforms

Online platforms are often the target of cyberattacks, such as Trello recently. 5 tips ensure more effective data encryption in the cloud ➡ Read more