Cloud Native

Simbian has an army of AI agents with top security skills and tools | Ambuj Kumar

0

Guest: Ambuj Kumar (LinkedIn
Company: Simbian (Twitter)
Show: Let’s Talk

Simbian is building AI-driven agents to transform cybersecurity defense, automating tasks and boosting efficiency. In this episode of Let’s Talk, Ambuj Kumar, Co-Founder and CEO of Simbian, delves into the pressing challenges in cybersecurity and how Simbian’s AI agents automate key processes like alert triage and GRC (Governance, Risk, and Compliance), and shares notable use cases and future plans. Kumar says, “We give you an army of AI agents, trained in the top security skills and equipped with the best security tools. These agents understand your unique needs and work for you.”

Simbian’s foundation and focus on AI for cybersecurity

  • Simbian is focused on building AI agents tailored for cybersecurity defense. Kumar emphasizes the necessity for a collaborative effort between humans and AI machines to tackle increasingly sophisticated cyberattacks, leveraging the strengths of both parties.
  • The company name, “Simbian,” was chosen to reflect this collaborative vision, highlighting the need for harmony between human input and machine automation in order to defend against dynamic cybersecurity threats.
  • Simbian’s AI agents act as virtual employees who work under the direction of human users. These agents are designed to relieve users of repetitive tasks, allowing security teams to focus on more strategic activities while maintaining a strong security posture.

Addressing the challenges facing the cybersecurity landscape

  • Kumar delves into the fast-paced nature of cybersecurity, noting how attackers are always evolving, which puts pressure on defenders to constantly innovate. The cybersecurity space, Kumar adds, is a battleground of evolving techniques and strategies.
  • Kumar highlights the growing workload security teams face as they struggle to keep pace with the introduction of new tools and techniques, which makes it difficult to adequately address incoming threats. This creates a significant operational bottleneck.
  • Kumar warns that with the rise of AI, the challenge will only escalate as attackers will leverage AI to create more personalized, cost-effective, and targeted attacks, dramatically increasing the threat landscape.
  • In response, Simbian was created to offer a proactive solution: an army of AI agents trained in various security tools and techniques, providing real-time, AI-driven defenses to offset the burden on human teams.

Role of generative AI (GenAI) in enhancing cybersecurity defenses

  • Kumar explains that GenAI’s ability to control and analyze unstructured data is a game changer for cybersecurity. It enables the rapid identification of vulnerabilities across web applications, boosting the speed and accuracy of threat detection.
  • On the offensive side, Kumar notes how AI-driven phishing campaigns and social engineering attacks have become more sophisticated, highlighting how GenAI can automate these tasks for attackers, making them more efficient and damaging.
  • Defensively, Simbian’s AI agents are trained to operate like Security Operations Center (SOC) analysts but with far greater efficiency. These agents can quickly analyze security alerts and automate responses, helping organizations stay ahead of threats.

Real-world use cases and examples of customer adoption

  • Kumar shares that GenAI has garnered significant interest from customers, and Simbian recently demonstrated its first production use case with Matillion. Their GRC agent has automated the collection and review of security questionnaires, a time-consuming task for security teams.
  • At Matillion, the GRC agent has notably improved operational efficiency, reducing the manual effort required to manage compliance processes, freeing up the security team to focus on higher-priority tasks.
  • A large managed security service provider (MSSP) is noted, using Simbian’s SOC AI agent to triage and investigate alerts for multiple clients, streamlining their operations and enhancing their ability to manage security incidents.

The evolving threat landscape requires AI-driven solutions

  • The conversation turns to the constantly shifting cybersecurity threat landscape, with Kumar likening the situation to a never-ending game where attackers keep changing the rules, forcing defenders to remain in a reactive state.
  • Kumar emphasizes that Simbian’s AI agents are continuously learning from both historical and new security data. These agents adapt in real-time, responding to new tactics used by attackers, ensuring that defenders are not caught off-guard.
  • The promise of AI agents lies in their ability to provide organizations with a flexible, scalable software solution capable of handling a wide range of security challenges, ultimately allowing human security teams to focus on more strategic, high-level tasks.
  • Simbian’s goal, Kumar adds, is to equip organizations with the AI-driven tools necessary to defend against the sophisticated and rapidly changing nature of modern cyberattacks, with AI as the central enabler of this defense.

AI vs. traditional machine learning in cybersecurity solutions

  • Kumar explains the distinction between AI and traditional machine learning (ML), particularly in the context of cybersecurity applications, saying that traditional machine learning models primarily focus on classification tasks and anomaly detection, offering more limited, task-specific capabilities compared to AI models.
  • In contrast, large language models (LLMs) used by Simbian, serve as reasoning engines capable of understanding complex security tools, concepts, and workflows. They can automate processes, collaborate with humans, and develop new strategies.
  • Kumar believes that this next-generation AI enables a different approach to cybersecurity, one that provides dynamic and adaptable defenses, marking a significant improvement over the more static solutions that traditional machine learning offers.

Simbian’s culture and focus on customer-centric processes

  • Kumar explains that Simbian fosters a culture of excellence, driven by top-tier talent and a relentless focus on innovation. This approach influences product development and strengthens customer relationships, ensuring high-quality solutions.
  • Simbian’s approach is deeply customer-centric, ensuring that the company delivers on its promises even in the most challenging situations, with a goal to make life easier for their clients through top-tier security solutions.
  • Kumar emphasizes that the combination of talent, hard work, and a commitment to customer satisfaction is the cornerstone of Simbian’s success, as they aim to not only meet but exceed customer expectations.

Simbian’s future plans and focus on continuous innovation

  • Kumar talks about Simbian’s plans for future product updates, mentioning that the company is gearing up to release new updates for both their SOC and GRC AI agents, with a focus on automating more tasks to improve the overall efficiency of security teams.
  • Kumar shares Simbian’s ambitious goal of providing a 10x boost in the ability to handle alerts and tasks, allowing organizations to significantly increase productivity without expanding their security teams.
  • Kumar explains that Simbian is committed to continuous improvement, ensuring that its AI agents remain cutting-edge and capable of addressing the latest challenges in cybersecurity, helping customers stay protected as the threat landscape evolves.

This summary was written by Emily Nicholls.

Motivations for forming the Special Interest Group (SIG) for OpenTelemetry on Mainframe | Rüdiger Schulze

Previous article

Banishing the sprawl: Why your engineering team needs an internal developer portal

Next article