Blueprint: Build the Best in Cyber Defense

David Hoelzer: Threat Detection with Machine Learning and AI

11 snips
Jul 12, 2022
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

ML Accelerates Threat Detection

  • Machine learning in cybersecurity acts as an accelerator to find new patterns humans might miss.
  • It explores probability spaces to uncover threats in ways not biased by human preconceptions.
ADVICE

Choose Supervised Learning for Detection

  • Prefer supervised learning for actionable threat detection with minimal data.
  • Use unsupervised learning cautiously as it requires massive data and time to produce useful results.
ANECDOTE

Quick Threat Discovery Using Unsupervised ML

  • A government agency used an unsupervised machine learning solution to analyze millions of DNS queries.
  • This revealed a covert channel and unknown active threat within an hour of implementation.
Get the Snipd Podcast app to discover more snips from this episode
Get the app