MI-One Issue #14 - Lyrid Edition

Dive into MI-One Issue #14 - Lyrid Edition where we cover AWS and industry news.

MI-One Issue #14 - Lyrid Edition

Hello there.

Fresh off the heels of our Pi Day celebrations (which marked the first anniversary of this newsletter), we're happy to connect with you once again.

Following a March that saw GenAI's influence expand across various security domains, April continues to underscore the importance of proactive and forward-thinking strategies.

Let's dive into what's been happening:

  • GenAI's pivotal role in enhancing data security programs, including the increasing preference for synthetic data and Metron's contributions in this space with Mock Servers and data annotation services. While GenAI continues its expansion, the focus has shifted toward governance and accountability. The CISA AI Security Framework released has quickly become the de facto standard for organizations implementing AI in security operations, with particular emphasis on the explainability and auditability of AI-driven decisions.

  • AI-Powered Security Fabric Expansion: The integration of AI capabilities across comprehensive security platforms continues to accelerate. Fortinet's FortiAI has been expanded across their entire Security Fabric platform, enhancing threat detection and automated response capabilities through deep learning models that identify sophisticated attack patterns and zero-day threats. This expansion enables security teams to leverage AI-driven insights across network, endpoint, and cloud security controls through a unified management interface.

  • Agentic AI Emerges as Security's New Frontier: The cybersecurity landscape is witnessing the rise of true agentic AI capabilities, moving toward autonomous systems that can operate without human intervention. As per Forrester Research's recent analysis, agentic AI represents "systems of foundation models, rules, architectures, and tools which enable software to flexibly plan and adapt to resolve goals by taking action in their environment, with increasing levels of autonomy." Agentic AI orchestrates complex steps through planning and reasoning across data sources. It allows vendors to automate alert triage and investigation processes. As this technology matures, organizations should prepare for both its potential benefits in addressing resource constraints and the new security considerations it introduces.

  • OT and IT Convergence through Strategic Cloud Partnerships: The convergence of operational technology (OT) and information technology (IT) continues to accelerate through strategic partnerships. Rockwell Automation and Amazon Web Services have announced a collaboration to transform manufacturing through advanced industrial automation solutions. Rockwell is expanding its FactoryTalk Hub to AWS Marketplace, featuring DataMosaix industrial DataOps solution and Fiix computerized maintenance management system. This partnership aims to provide manufacturers with scalable cloud solutions that optimize asset performance, increase operational visibility, and deliver actionable insights from factory floor data.

  • SecurityWeek reports that MITRE Corporation warns of potential disruptions to the Common Vulnerabilities and Exposures (CVE) program. With the contract expiring, MITRE anticipates negative impacts like the deterioration of vulnerability databases, slower vendor response, and compromised incident response.  This comes alongside NIST's ongoing struggle to manage a growing backlog of CVEs in the NVD, highlighting concerns about the timely availability of crucial vulnerability information for organizations.

We’ll aim to keep you updated as these trends evolve.

Before you go…

We'd love to connect if you're planning to attend:

  1. RSAC,  April 28 — May 1, 2025,  San Francisco