CLOUD SECURITY
The future for cyber threat hunting As the cyber threat landscape continues to grow , with ongoing geo-political conflicts meaning the possibility of attack is only increasing , organisations need to be more vigilant than ever . “ The longer they wait to identify it , the greater risk it poses when the malicious actor decides to strike ,” says Simon Mullis , Chief Technology Officer , Venari Security .
“ End-to-end encryption has done a fantastic job at protecting our data , but organisations need to find ways to gain back the visibility of their networks that encryption is currently concealing . Decryption , if even possible with the newer encryption standards , is too cumbersome and time-consuming now that our entire networks are encrypted . Organisations can only hope to keep up if they monitor for malicious activity in their traffic without relying on decryption . To achieve this , security teams need to look towards using behavioural analytics to detect what is happening within encrypted traffic flows ,” he says .
“ A combination of machine learning , artificial intelligence , and behavioural analytics can scan and analyse encrypted traffic without decryption . By accurately understanding the abnormalities between normal and anomalous behaviour , this approach significantly increases the rate and speed at which malicious activity concealed in encrypted traffic can be detected , whilst ensuring data remains private . Security teams can then react proactively to contain the threats it identifies , rather than responding after the fact ,” he concludes .” cybermagazine . com 97