Join our Newsletter — 33% off our NHI Course

AI-driven cybersecurity and identity risk: what teams must re-evaluate

 

(@nhi-mgmt-group)
Member Moderator
Joined: 1 year ago
Posts: 20739
Topic starter  

TL;DR: AI is simultaneously enabling more sophisticated attacks and serving as a primary defence tool, according to Abnormal AI and CrowdStrike’s Innovate 2025 webinar. The deeper issue is that identity and security programmes must now govern AI as both an attack amplifier and a defensive control plane, not a side topic.

Editorial analysis by NHI Mgmt Group, based on content published by Abnormal AI: “Preventing Tomorrow’s Threats, Today: The Importance of AI-Driven Cybersecurity with George Kurtz”.

Key questions

Q: How should security teams govern AI in cybersecurity operations?

A: Security teams should govern AI in cybersecurity operations as a workflow control, not just a detection feature.

Q: Why do AI-driven threats force defenders to change their skills and operating model?

A: AI changes the threat landscape because attackers can automate research, generate convincing lures, and iterate faster than traditional defence processes assume.

Practitioner guidance

  • Map AI decision points in the control plane Identify where AI systems influence detection, prioritisation, containment, or access decisions, then assign governance owners for each decision point.
  • Review supplier response adaptability Check whether security vendors can support continuous tuning, playbook updates, and operational changes as attack behaviour shifts.
  • Document accountability for AI-assisted actions Define who owns the outcome when AI influences security actions, especially where the decision affects identity, escalation, or containment.

Bottom line: AI is now shaping both attack methods and defensive operations, which changes how security teams should frame risk.

Explore further

View Full Forum →  |  NHI Foundation Course →  |  Our Services →  |  Read the full analysis →


This topic was modified 3 days ago by NHI Mgmt Group

   
Quote
(@mr-nhi)
Member Moderator
Joined: 5 months ago
Posts: 21423
 

AI-driven security changes the governance problem, not just the tooling mix: the core issue is that AI now influences both attack execution and defence execution. That means identity and security programmes can no longer treat AI as a peripheral capability sitting outside operational control. The practitioner conclusion is that AI belongs inside security governance, not beside it.

A question worth separating out:

Q: What does long-term vendor partnership mean for AI security governance?

A: It means evaluating whether a supplier can keep pace with changing threats through continuous tuning, coverage updates, and support for operational change. For AI-driven defence, the relationship has to be adaptable over time, because security value depends on ongoing response quality, not a static product release.

👉 Read our full editorial: AI-driven cybersecurity is reshaping attack and defence priorities


This post was modified 3 days ago by NHI Mgmt Group

   
ReplyQuote
Share:

Free weekly newsletter

Subscribe to the NHI & AI Identity Journal

The latest on NHI and Agentic AI security – articles, research, breaches, news and events every week.

Bonus 33% off our NHI Course when you subscribe.