Business Wire India
According to the new Rubrik Zero Labs’ State of Data Security report, only 56% of IT and security leaders reported developing or reviewing an incident response plan in 2022. Furthermore, Security Operations Center (SOC) and incident response teams are inundated with thousands of alerts each day, and it can take hours to sort through and prioritize responses. These challenges reflect the need for a modern solution that can not only help SOC teams investigate the most pressing cyber events but provide guidance on how to remediate.
“In a time when bad actors are becoming increasingly inventive, organizations must lean on AI to turn the tables on attackers,” said Charlie Bell, Executive Vice President of Security, Compliance, Identity, and Management at Microsoft. “Working with Rubrik establishes a counterpoint to the modern threats that our customers are facing and allows organizations to react to incidents more quickly. Through the speed of AI, we believe security defenders will be able to identify and stop attacks faster than ever before.”
Rubrik’s ability to provide time series data insights directly into Microsoft Sentinel enables organizations to address evolving cyber threats and safeguard their most sensitive information. With this integration, the platform is designed to automatically create a recommended task workstream in Microsoft Sentinel created by Rubrik by leveraging large language models and generative AI through OpenAI.
This integration will empower security and IT teams to:
- Streamline Incident Creation to help incident response teams prioritize alerts by automatically creating an incident in Sentinel based on anomalous activity within Rubrik Security Cloud.
- Automate Recommended Task Workstream by suggesting incident response tasks that will enable IT and security teams to investigate the incident more rapidly while preserving evidence for forensics purposes.
- Accelerate Cyber Recovery by dynamically generating code for investigating the incident in Microsoft Sentinel, allowing IT and security teams to react swiftly to maintain business resiliency.
To learn more, read this blog post.