February 5, 2019

Today’s security analyst, utilizing artificial intelligence, can detect anomalies in even the largest and most complex networks. The problem, says this post from eSentire, is to distinguish “the potentially malicious from the purely anomalous,” and unless that problem is solved the net result could be less security, not more, because analytical resources will be spread thin and squandered. The solution, the writer says, is to adopt “an adversary mindset.” That means considering not only how adversaries might gain access to your system, but why: What are their possible objectives, and what would be needed to achieve them?

