Detection at Scale

Two Candlesticks' Matthew Martin on Leveraging AI for Resource-Constrained Security Operations


Listen Later

In this episode of Detection at Scale, Matthew Martin, Founder of Two Candlesticks, shares practical approaches for implementing AI in security operations, particularly for smaller companies and those in emerging markets. Matthew explains how AI chatbots can save analysts up to 45 minutes per incident by automating initial information gathering and ticket creation. Matthew’s conversation with Jack explores critical implementation challenges, from organizational politics to data quality issues, and the importance of making AI decisions auditable and explainable. 

Matthew emphasizes the essential balance between AI capabilities and human intuition, noting that although AI excels at analyzing data, it lacks understanding of intent. He concludes with valuable advice for security leaders on business alignment, embracing new technologies, and maintaining human connection to prevent burnout.

Topics discussed:

  • Implementing AI chatbots in security operations can save analysts approximately 45 minutes per incident through automated information gathering and ticket creation.
  • Political challenges within organizations, particularly around AI ownership and budget allocation, often exceed technical challenges in implementation.
  • Data quality and understanding are foundational requirements before implementing AI in security operations to ensure effective and reliable results.
  • The balance between human intuition and AI capabilities is crucial, as AI excels at data analysis but lacks understanding of intent behind actions.
  • Security teams should prioritize making AI decisions auditable and explainable to ensure transparency and accountability in automated processes.
  • Generative AI lowers barriers for both attackers and defenders, requiring security teams to understand AI capabilities and limitations.
  • In-house data processing and modeling are preferable for sensitive customer data, with clear governance frameworks for privacy and security.
  • Future security operations will likely automate many Tier 1 and Tier 2 functions, allowing analysts to focus on more complex issues.
  • Security leaders must understand their business thoroughly to build controls that align with how the company generates revenue.
  • Technology alone cannot solve burnout issues; leaders must understand their people at a human level to create sustainable efficiency improvements.
  •  

    ...more
    View all episodesView all episodes
    Download on the App Store

    Detection at ScaleBy Panther Labs

    • 5
    • 5
    • 5
    • 5
    • 5

    5

    11 ratings


    More shows like Detection at Scale

    View all
    Security Now (Audio) by TWiT

    Security Now (Audio)

    1,966 Listeners

    Risky Business by Patrick Gray

    Risky Business

    360 Listeners

    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

    SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

    628 Listeners

    Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

    Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

    367 Listeners

    CyberWire Daily by N2K Networks

    CyberWire Daily

    1,014 Listeners

    Smashing Security by Graham Cluley & Carole Theriault

    Smashing Security

    314 Listeners

    Click Here by Recorded Future News

    Click Here

    392 Listeners

    Hacking Humans by N2K Networks

    Hacking Humans

    313 Listeners

    Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

    Defense in Depth

    78 Listeners

    Dwarkesh Podcast by Dwarkesh Patel

    Dwarkesh Podcast

    352 Listeners

    Cyber Security Headlines by CISO Series

    Cyber Security Headlines

    118 Listeners

    The Ezra Klein Show by New York Times Opinion

    The Ezra Klein Show

    15,037 Listeners

    Cloud Security Podcast by Google by Anton Chuvakin

    Cloud Security Podcast by Google

    40 Listeners

    Risky Bulletin by risky.biz

    Risky Bulletin

    33 Listeners

    No Priors: Artificial Intelligence | Technology | Startups by Conviction

    No Priors: Artificial Intelligence | Technology | Startups

    129 Listeners