AI anomaly detection

New innovations in cloud threat detection give SOC teams the edge to pinpoint suspicious activity across their attack surface.

  • Thursday, 23rd November 2023 Posted 2 years ago in by Phil Alsop

Rapid7 has introduced its newest innovation in artificial intelligence (AI)-driven threat detection for the cloud. Now available in early access to select Rapid7 customers, this enhancement improves SOC teams’ visibility and response time to cyber threats across public cloud environments.

Rapid7’s cloud anomaly detection is an AI-powered, agentless detection capability designed to detect and prioritize anomalous activity within an organization’s cloud environment. The proprietary AI engine continuously learns and adapts to the customer’s environment, surfacing suspicious behavior and automatically suppressing benign signals to reduce noise. This results in a significant reduction in false positives and enables teams to focus on investigating and responding to active threats. When such activity is identified, native automation within the Rapid7 platform can immediately adjust configurations, right-size permissions and privileges, and integrate SOC, engineering, and IT teams into incident investigations.

“Identifying threats in the cloud has traditionally been a complex problem for organizations to solve,” said Aniket Menon, Vice President of Product Management, Rapid7. “This is critical in the SOC environment, where teams can’t waste time investigating innocuous alerts. We are always striving to reduce a customer's mean time to respond, especially in highly dynamic cloud environments, where AI and ML are critical in addressing the scale and velocity of alerts to enable effective investigation and response.”

Rapid7’s cloud anomaly detection combines with cloud providers’ services to help detect known and unknown threats earlier and surface true-positive alerts. Rapid7 customers can access these cloud threat detections in their investigation and response workflows on a single SecOps platform.

WSO2 unveils a fresh focus on supporting agentic enterprises, aiming to strengthen AI deployment...
Samsung demonstrates multi-cell network validation using NVIDIA’s computing platform,...
The latest OSSRA report reveals rising challenges in AI-driven open source development,...
Alteryx One aims to enable enterprises to scale AI and automation by providing governed, repeatable...
A new WBBA report highlights the untapped potential of AI in telecoms beyond internal efficiency,...
Sophos’ latest report highlights the rise of identity-related cyberattacks, emphasising the need...
The new global Code of Professional Conduct sets ethical standards for cybersecurity practitioners...
Exploring the impact of AI in telecoms, Colt's report underlines the necessity for a people-first...