æ°æéã§ã¯ãªãæ°ç§ã§è åšãç¡åå â äŒæ¥ã¬ãã«ã®ã»ãã¥ãªãã£éçšãå®çŸããAIé§å忀ç¥ãšèªå察å¿ã

çŸä»£ã®äŒæ¥ã¯ãå§åçãªéã®ã»ãã¥ãªãã£ã¢ã©ãŒãã«çŽé¢ããŠããŸãããã®æ°ã¯1æ¥ããã
10,000ä»¶ãè¶ ããããšãçãããªããåŸæ¥ã®SOCããŒã ã§ã¯ã¢ããªã¹ãã®ç²åŽãéçã«éããåã«ããã®ããäžéšãã調æ»ã§ããŸãããå¹³å197æ¥ããã䟵害ç¹å®ãŸã§ã®å¯Ÿå¿æéã®é å»¶ã¯ã³ã¹ãå¢å ãæãã誀æ€ç¥ã¯ã¢ããªã¹ãã®èœåã®
30%以äžãæ¶è²»ããŠããŸããã¬ã¬ã·ãŒãªSIEMãã©ãããã©ãŒã ã¯ãã³ã³ããã¹ããªãã«ãã€ãºãçæããã¯ãã¹ã·ã°ãã«çžé¢ãäžè¶³ããŠãããé²åããæ»æææ³ã«é©å¿ã§ããŸãããéèæ©é¢ã¯ãååŒã·ã¹ãã ã顧客ããŒã¿ãèŠå¶ã€ã³ãã©ã¹ãã©ã¯ãã£ãæšçãšãããŸããŸãå·§åŠãªè åšã«çŽé¢ããŠãããåäžã®æªæ€åºã®äŸµå®³ãæ°åãã«ã®æå€±ã«ã€ãªããå¯èœæ§ããããŸãã
次ã®ãããžã§ã¯ãã®ããã®å®è£ ãã«ãŒããªã³ãããã£ãšèŠã€ãã

æ£è ããŒã¿ãå®å¿ããŠä¿è· â å®å šå¯Ÿçãèªååãããªã¹ã¯ãç£èŠããç£æ»äººã®èŠæ±ãæºããããšã³ãããŒãšã³ãã® HIPAA ã³ã³ãã©ã€ã¢ã³ã¹ã

MicrocosmWorksã¯ãAIãæŽ»çšããSOCãã©ãããã©ãŒã ãæ§ç¯ããŠãããããã«ããMTTDã¯æ¥çå¹³åã®197æ¥ãã10åæªæºã«ççž®ãããŸããããã¯ãmachine learning anomaly detectionãçšããŠãSIEMãEDRãããã³network telemetryã«ãããã€ãã³ãããªã¢ã«ã¿ã€ã ã§çžé¢ãããããšã§å®çŸãããŸããèªååããããã¬ã€ããã¯ã®å®è¡ã«ãããphishingãlateral movementãããã³credential abuseãšãã£ãäžè¬çãªã€ã³ã·ãã³ãã¿ã€ãã«å¯ŸããMTTRã¯æ°æéããæ°åã«ççž®ãããŸãã
ã¯ããMicrocosmWorks AI SOCãã«ãŒããªã³ãã«ã¯ãSplunkãCrowdStrikeãSentinelOneãPalo AltoãFortinetãMicrosoft Defenderãå«ã50çš®é¡ä»¥äžã®äžè¬çãªã»ãã¥ãªãã£ããŒã«çšã®äºåæ§ç¯æžã¿ã³ãã¯ã¿ãå«ãŸããŠããŸãããããã©ã€ãšã¿ãªãŸãã¯ããããªã»ãã¥ãªãã£ããŒã«åãã®ã«ã¹ã¿ã ã€ã³ãã°ã¬ãŒã·ã§ã³ã¯ã1æéããã25ãã«ãã45ãã«ã®æéã§éçºå¯èœã§ãéåžžãã€ã³ãã°ã¬ãŒã·ã§ã³ããã1ã2é±éãèŠããŸãã
MicrocosmWorksã¯ãéå»ã®ã€ã³ã·ãã³ãããŒã¿ã§ãã¬ãŒãã³ã°ãããæåž«ããåé¡åšãšãç°å¢ã®éåžžã®ããŒã¹ã©ã€ã³åäœãåŠç¿ããæåž«ãªãç°åžžæ€ç¥ãçµã¿åããããå€å±€ã¢ã©ãŒãããªã¢ãŒãžãå®è£ ããŠããŸãããã®ã·ã¹ãã ã¯ãè€æ°ã®ãœãŒã¹ããã®äœä¿¡é ŒåºŠã¢ã©ãŒããé«ä¿¡é ŒåºŠã€ã³ã·ãã³ããã©ãã£ãã«çžé¢ãããããšã§ã人éã®ã¢ããªã¹ãã«ãšã¹ã«ã¬ãŒãããåã«85ã95%ã®èª€æ€ç¥åæžãéæããŸãã
MicrocosmWorksã®ãã«ãŒããªã³ãã¯éå±€åèªååãå®è£ ããŠãããã¬ãã«1ã®ããªã¢ãŒãžïŒã¢ã©ãŒãã®ãšã³ãªããã¡ã³ããéè€æé€ãåæåé¡ïŒã¯å®å šã«èªååãããŠããŸããäžæ¹ãã¬ãã«2ã®èª¿æ»ãšã¬ãã«3ã®è åšãã³ãã£ã³ã°ã¯ãAIæ¯æŽåã§ãããªãã人éäž»å°ã§ããããã«ãããéåžž10人ã®SOCããŒã ãã以åã¯25ïœ30人ã®ã¢ããªã¹ããå¿ èŠãšããã¯ãŒã¯ããŒããã調æ»å質ãç ç²ã«ããããšãªãåŠçã§ããããã«ãªããŸãã
MicrocosmWorksã¯ãåçšããã³ãªãŒãã³ãœãŒã¹ã®è åšã€ã³ããªãžã§ã³ã¹ãã£ãŒãïŒMISP, OTX, VirusTotal, STIX/TAXIIïŒãçµ±åããã客æ§ã®ãããã¯ãŒã¯ãã°ãDNSã¯ãšãªããšã³ããã€ã³ããã¬ã¡ããªãŒãããã³ã¡ãŒã«ã²ãŒããŠã§ã€ããŒã¿ãšäŸµå®³ææšãèªåçã«çžé¢ãããŸããçžé¢ãšã³ãžã³ã¯ãã°ã©ãããŒã¹ã®åæã䜿çšããŠãã«ãã§ãŒã³ãã¬ãŒã ã¯ãŒã¯å šäœã§æ»æãã§ãŒã³ããããã³ã°ããåŸæ¥ã®SIEMã«ãŒã«ã§ã¯èŠéããããããªé¢é£ããIOCã衚é¢åãããŸãã
å°éããŒã ãã客æ§ã®ããžãã¹ã®ããã«ãã®ãœãªã¥ãŒã·ã§ã³ãæ§ç¯ããæ¹æ³ã«ã€ããŠãåãåãããã ããã
ãåãåããMicrocosmWorksã¯ãæ°ååã®ã»ãã¥ãªãã£ã€ãã³ãã§èšç·Žãããæ©æ¢°åŠç¿ã¢ãã«ã掻çšãã1ç§æªæºã®åé¡ç²ŸåºŠã§ãªã¢ã«ã¿ã€ã ã®è åšæ€ç¥ãå¯èœã«ããæ¬¡äžä»£ã®ã»ãã¥ãªãã£ãªãã¬ãŒã·ã§ã³ã»ã³ã¿ãŒãæäŸããŸããåœç€Ÿã®ãã©ãããã©ãŒã ã¯ãæ¢åã®SIEMã€ã³ãã©ã¹ãã©ã¯ãã£ãšã·ãŒã ã¬ã¹ã«çµ±åããAIé§ååã®ããªã¢ãŒãžãç°ãªãããŒã¿ãœãŒã¹éã®èªåçžé¢ããããŠãã«SOARãã¬ãŒã ã¯ãŒã¯ãéãããªãŒã±ã¹ãã¬ãŒã·ã§ã³ããã察å¿ãã¬ã€ããã¯ãéãåãããŸãããã®ã·ã¹ãã ã¯ã¢ããªã¹ãã®ãã£ãŒãããã¯ããç¶ç¶çã«åŠç¿ããéçšéå§ãã90æ¥ä»¥å ã«æ€ç¥ã¢ãã«ãæŽç·Žããã誀æ€ç¥çã
5%æªæºã«åæžããŸããåçšããªãŒãã³ãœãŒã¹ãããŒã¯ãŠã§ããœãŒã¹ããã®è åšã€ã³ããªãžã§ã³ã¹ãã£ãŒãã¯ãªã¢ã«ã¿ã€ã ã§èåãããçºçãããã¹ãŠã®ã¢ã©ãŒãã«ã³ã³ããã¹ãæ å ±ãæäŸããŸãã
ãã®ã¢ãŒããã¯ãã£ã¯ããïŒã¹ããŒã¯ã¢ãã«ã«åŸããéäžåAIçžé¢ãšã³ãžã³ãããããã¯ãŒã¯ããšã³ããã€ã³ããã¯ã©ãŠããã¢ããªã±ãŒã·ã§ã³ã¬ã€ã€ãŒã«å±éããã忣åã³ã¬ã¯ã¿ããæ£èŠåãããã€ãã³ããåã蟌ã¿ãŸããã¹ããªãŒãã³ã°ããŒã¿ãã€ãã©ã€ã³ã¯ãè€æ°ã®MLã¹ããŒãžïŒç°åžžæ€ç¥ãè¡åãããã¡ã€ãªã³ã°ããã«ãã§ãŒã³ãããã³ã°ïŒãéããŠã€ãã³ãããªã¢ã«ã¿ã€ã ã§åŠçããå®çšçãªã€ã³ã·ãã³ããSOARãªãŒã±ã¹ãã¬ãŒã·ã§ã³ã¬ã€ã€ãŒã«ã«ãŒãã£ã³ã°ããŸãããã©ãããã©ãŒã å šäœã¯ã匷åããã
Kubernetesã¯ã©ã¹ã¿ãŒäžã«å±éããããšã¢ã®ã£ãããããã¢ãã«ãã¬ãŒãã³ã°ç°å¢ãšãã©ã¬ã³ãžãã¯ä¿æã®ããã®æå·åãããããŒã¿ã¬ã€ã¯ãåããŠããŸãã
ãã±ããã·ã¹ãã ãšçµ±åãããšã³ãããŒãšã³ãã®ã€ã³ã·ãã³ã察å¿ãå®çŸ
䟵害ãããèªèšŒæ å ±ãç¶ç¶åŠç¿ã«ãã瀺ãåå·®ããã©ã°ä»ãããUEBAãšã³ãžã³
| ã¬ã€ã€ãŒ | ãã¯ãããžãŒ |
|---|---|
| ããã¯ãšã³ã | Python, Go, Apache Kafka, gRPC |
| AI / ML | PyTorch, scikit-learn, Hugging Face Transformers, ONNX Runtime |
| ããã³ããšã³ã | React, D3.js, Grafana, Kibana |
| ããŒã¿ããŒã¹ | Elasticsearch, Apache Druid, PostgreSQL, Redis |
| ã€ã³ãã©ã¹ãã©ã¯ã㣠| Kubernetes (EKS), Terraform, Vault, AWS GovCloud |
| ææš | æ¹å | 詳现 |
|---|---|---|
| å¹³åæ€ç¥æé (MTTD) | 92%åæž | ç¶ç¶çãªAIç£èŠã«ãããå¹³å197æ¥ãã15æ¥æªæºã«ççž® |
| ã¢ã©ãŒã誀æ€ç¥ç | 5%æªæº | MLããªã¢ãŒãžããã€ãºãé€å»ããã¢ããªã¹ãã¯çã®è åšã«éäž |
| ã€ã³ã·ãã³ãå¯Ÿå¿æé | 85%é«éå | èªååãããSOARãã¬ã€ããã¯ã«ãããå°ã蟌ããæ°æéã§ã¯ãªãæ°ç§ã§å®è¡ |
| ã¢ããªã¹ãçç£æ§ | 3ååäž | AIãTier 1ããªã¢ãŒãžãåŠçããã¢ããªã¹ããé«åºŠãªè åšãã³ãã£ã³ã°ã«è§£æŸ |
| ã³ã³ãã©ã€ã¢ã³ã¹ç£æ»å¯Ÿå¿æºå | 99%ã«ã㌠| PCI-DSSãSOXãããã³OCCèŠä»¶ã«å¯Ÿããèªå蚌æ åé |
1. 1-3é±ç®: ã€ã³ãã©ã¹ãã©ã¯ãã£ããããžã§ãã³ã°ãSIEMçµ±åããã°ãœãŒã¹ãªã³ããŒãã£ã³ã°ãããã³ããŒã¹ã©ã€ã³ãã¬ã¡ããªåé
2. 4-7é±ç®: AIã¢ãã«å±éãçžé¢ã«ãŒã«ãã¥ãŒãã³ã°ãããã³SOCããŒã ãšã®åæ¥ã«ããSOARãã¬ã€ããã¯éçº
3. 8-10é±ç®: è åšã€ã³ããªãžã§ã³ã¹ãã£ãŒãçµ±åãUEBAãã£ãªãã¬ãŒã·ã§ã³ãããã³ã¢ããªã¹ãã¯ãŒã¯ãã³ãã®ã«ã¹ã¿ãã€ãº
4. 11-12é±ç®: å®å šãªæ¬çªçšŒåç§»è¡ãã¢ã©ãŒãæ€èšŒãããã©ãŒãã³ã¹ãã¥ãŒãã³ã°ãããã³ã¢ããªã¹ããã¬ãŒãã³ã°ããã°ã©ã
5. 13-14é±ç®: æé©åã¹ããªã³ã â ããŒã«ã«ããŒã¿ã§ã®ã¢ãã«åãã¬ãŒãã³ã°ããã¬ã€ããã¯ã®æŽç·Žãããã³KPIããŒã¹ã©ã€ã³ã®ç¢ºç«
ç¶ç¶çãªAIæ¯æŽåã»ãã¥ãªãã£æ€èšŒ â æ»æè ãããæ©ãè匱æ§ãçºèŠã»ä¿®æ£ããæäœæ¥ã®ãªãŒããŒãããããŒãã«ã