Cyber Resilience & Recovery
Making ResOps Real: AI, Ransomware, Identity, & Resilience
In this SHIFT 2025 partner panel, leaders from HPE, Kyndryl, CrowdStrike, and Commvault discuss AI resilience, the convergence of AI and ransomware, identity-driven threats, and how ResOps is unifying security, recovery, and operations into a single, continuous discipline.
Puntos Clave
- AI Accelerates Risk and Opportunity
AI is transforming enterprises while simultaneously creating new threat vectors and attack surfaces. - Identity Is the Primary Attack Vector
Compromised identities are now responsible for the majority of breaches across enterprises. - Regulatory Pressure Is Rising
Global regulations around data sovereignty, privacy, and cyber resilience continue to expand rapidly. - ResOps Unifies Disconnected Disciplines
Security, identity, and recovery are converging into a single operational model. - Automation Is Mandatory
Manual detection and recovery processes cannot keep pace with AI-enabled adversaries. - Scale Is the Next Challenge
AI and agentic systems generate unprecedented data volumes and change velocity.
gobernanza y el cumplimiento normativo deben evolucionar junto con la IA para preservar la gestión responsable de los datos.
AI Readiness Requires Guardrails
Industry leaders from HPE, Kyndryl, CrowdStrike, and Commvault emphasize that AI adoption is accelerating faster than enterprise readiness. Without strong guardrails, organizations risk deploying AI without adequate governance, security, and resilience foundations.
Cross-Functional AI Governance
To enable safe and transparent AI operations, organizations such as HPE have established executive AI committees that include legal, cybersecurity, HR, and product leaders. This cross-functional oversight aligns innovation with compliance, risk mitigation, and responsible data use.
ResOps in Practice
The discussion demonstrates how ResOps transforms resilience from isolated tools into an always-on operational discipline – integrating security, identity, and recovery to maintain trust and availability as AI adoption scales.
St. Antonius Hospital
Learn how St. Antonius Hospital protectedpatient data using Commvault AirGap.
ESG Technical Summary
A roadmap for building cyber resilience strategies that scale with modern threats and technologies.
IDC Marketspace
Commvault named a Leader for cyber recovery architecture, platform breadth, and security ecosystem integration.
Preguntas frecuentes
Why do enterprises need guardrails for AI adoption?
AI adoption often outpaces governance and resilience frameworks. Without guardrails, organizations face increased exposure to AI-enabled ransomware, identity abuse, and operational failures driven by untrusted data.
What are key considerations for safe enterprise AI deployment?
Enterprises must understand AI model origin, hosting, tuning practices, and data provenance, while maintaining governance, transparency, and cross-functional oversight.
How do partnerships like HPE and Commvault support AI resilience?
These partnerships combine secure infrastructure with trusted data protection and clean recovery, helping organizations maintain continuity and confidence in AI-driven operations.
Why is identity now a primary attack surface?
AI and automation increase the number of machine and non-human identities, expanding attack surfaces and making identity compromise a leading cause of breaches.
How does ResOps help enterprises respond to AI-era threats?
ResOps unifies security, identity, and recovery into a continuous, automated operational model that helps enable faster detection, clean recovery, and sustained resilience.
Transcripción
Por favor, ve el vídeoaquípara consultar la transcripción con marcas de tiempo
You have been hearing a lot from Commvault this morning, and I think it’s important for
escuchen también a personas ajenas a nuestra empresa.
And we invited a high-powered partner panel to speak about what’s going on in the broader
.
So with today’s announcements, we’re going to talk about a bird’s-eye view of what that
puede significar en el panorama de la IA.
Dicho esto, quiero presentaros a Patrick Osborne, vicepresidente sénior y
de infraestructura de datos en la nube de HPE Storage; a Kris Lovejoy, responsable global de seguridad y
resiliencia en Kyndryl; a Sean Henry, asesor ejecutivo del director general y antiguo
director de seguridad de la información (CISO) de CrowdStrike; y Sanjay Mirchandani, presidente y director ejecutivo de Commvault.
Adelante, subid al escenario.
Gracias.
Gracias a todos.
Un asiento.
Y el repartidor oficial de pretzels.
Sí.
Sí.
Gracias.
Gracias.
Gracias.
We’re complaining back taquí that they didn’t have pretzels.
Se me ha caído una servilleta.
Toma, aquí tienes un pretzel.
No es justo.
Partidos de las eliminatorias entre los Red Sox y los Yankees.
Fantástico.
Some napkins and full service aquí.
Okay, let’s jEh…p right in, guys.
Eh… Patrick, thank you for joining us in Fidelma’s absence.
Te lo agradezco.
Ha tenido algunos problemas con la FAA.
Eh…
However, I recently read an interview with Fidelma waquí she talked about the need to lean
por la IA, pero con medidas de protección.
¿Nos hablarías de algunas de las medidas de seguridad que las empresas deberían intentar implementar
hoy en día para garantizar la resiliencia de la IA?
Por supuesto.
So first off, I just want to a big thank you to Sanjay and all the Vaulters out taquí.
La semana pasada celebramos nuestro décimo aniversario con HPE, aunque nuestra relación es anterior
a ese hito.
So it’s been a very strong partnership
y muchas de las personas presentes en esta sala nos han ayudado a construirla juntos.
Así que muchas gracias.
Yeah, so AI and guardrails at HPE, we do a nEh…ber of things with AI.
La integramos en nuestros productos.
La utilizamos constantemente.
We’ve been doing it for about a decade.
IA, aprendizaje automático.
También ayudamos a los clientes a construir algunas de las superordenadoras más grandes del mundo que utilizan IA
y aceleración por GPU.
Así que, desde el principio, hicimos un par de cosas.
We did an internal and external consortiEh… around
la IA ética, ¿verdad?, algo que es sEh…amente importante en las primeras etapas.
Y a medida que empezamos a apostar por el uso de la IA dentro de HPE, en nuestros productos y al servicio de
nuestros clientes, nos dedicamos a optimizar la cadena de sEh…inistro, a mejorar, ya sabes,
la experiencia del cliente y desarrollando cosas como la IA agentiva.
Realmente necesitábamos dar un paso adelante.
Así que creamos un comité ejecutivo de IA que no solo se centraba en el desarrollo de productos,
Exacto.
Los desarrolladores de productos siempre utilizan las últimas novedades, ¿verdad?
Eh… so this brought in folks from legal, from cyber, from security, from HR, from a nEh…ber
of different product groups and functions so that we could understand if we’re gonna lean
, ¿cómo nos formamos?
¿Qué modelos estáis utilizando?
¿Alquiláis ese modelo?
¿Lo estáis ajustando?
Waquí is it sitting?
¿Qué datos nuestros están utilizando?
¿Cómo puedes garantizar la trazabilidad de eso?
E incluso dentro de HPE IT, por ejemplo, colaboramos con Commvault como
partner for our own applications on how we’re gonna go mitigate that.
Así que tiene que ser resiliente, tiene que ser responsable.
Waquí’s that data gonna end up?
It’s a bit of the Wild West, right?
Por eso, debemos incorporar todas esas funciones, tomar la iniciativa y formarnos sobre cómo utilizarlas
use that, because we’re gonna use it.
It’s a fantastic opportunity for all of us, but how do you do that in a way that’s
controlable y segura para nuestros clientes?
Fantástico.
¿Y cuál es tu nivel de confianza en que
The world’s ready for this?
Lo estaremos.
Sí, exactamente.
I mean, we’re using it quite a bit in a nEh…ber of different functions.
Y ya se oyen esas estadísticas que se lanzan por ahí, ya sabes, algunos estudios recientes que indican que entre el 90 y el 95
por ciento de estas, ya sabes, iniciativas fracasan.
So it’s really good when you lean in with the cross-functional team to understand what’s
la misión, cuáles son los casos de uso —al fin y al cabo—, y cómo vas a
hacerlo de forma responsable, y cómo se va a supervisar y evaluar, analizando los
outputs and service of, you know, whether it’s cost efficiency, you know, freeing up
recursos hEh…anos para dedicarlos
en tareas de gran impacto o en ofrecer a los clientes una experiencia realmente excelente, como se ha visto en
some of these demos aquí before, which is great.
Genial, gracias.
Eh… Sean, yesterday you scared the bejesus out of me when we were speaking and we were
colisión entre la IA y el ransomware.
Will you tell us a little bit about what you’re seeing and how ransomware is being
intensificando el ransomware y cómo, quizá, la combinación de seguridad, identidad, resiliencia y Recovery
puede solucionar esto?
Bueno, en primer lugar, como neoyorquino de nacimiento, me encanta oír cómo todo el mundo disfruta de sus
pretzels.
Eh… Certainly, look, I think about AI in a lot of different ways.
Eh…
La tecnología, desde una perspectiva empresarial y de seguridad, es increíblemente
valiosa.
We’re going to embrace that and utilize that.
Taquí are a lot of guardrails we’ll talk about and have talked about.
Taquí’s a lot more to do.
Pero los adversarios están utilizando la IA para toda una serie de fines.
Cuando hablamos de escalabilidad, de su capacidad para realizar reconocimientos, para crear malware sobre la marcha a
on identified vulnerabilities on the fly, their ability from a phishing perspective, we’ve
visto a adversarios que utilizan deepfakes e IA para conseguir ser contratados en empresas utilizando identidades falsas
.
Es decir, una especie de confluencia entre el mundo virtual y el mundo físico.
So ah that’s an incredible challenge.
And Eh… they’re using it to change data.
They’re using eh many of their capabilities that threatens the integrity of data, which is
que la resiliencia es de vital importancia.
Eh… The second part of your question, repeat to me one more time.
Al aunar seguridad y Recovery.
Sanjay, Pranay y otros han hablado de la identidad y, eh, en CrowdStrike hemos dicho
that…
more than 75 or close to 80 % of the breaches that we’ve seen are based specifically on
las identidades y en que los adversarios utilizan sus capacidades para violarlas.
This whole, when you think about the landscape that we face and it’s disjointed and
fragmentado, y hemos hablado de entornos locales y en la nube, y de todas las diferentes identidades, oh
VMs and…
Eh…
las API y los bots, etcétera, las identidades de agentes.
It’s incredibly complex and very, very difficult to manage.
Lo que me ha gustado escuchar esta mañana de Sanjay y de los demás ponentes, eh, es que la
respuesta es coherente con las prácticas de seguridad estándar.
And I’m talking about even before the internet, from a physical security perspective,
taquí are certain things that are standard and two of the most important are speed and
la visibilidad.
And to think about that, how eh identities…
Eh…
are being identified, you have visibility into the totality of your landscape and you’ve
de la rapidez necesaria para detectar y responder a esos incidentes.
Eh… know, security is not passive, it’s proactive.
Again, it’s being applied.
La IA no es más que una nueva iteración del panorama de amenazas.
It doesn’t change how you eh secure things.
Taquí are some variables to it.
La seguridad es dinámica.
It’s not static.
Por eso me ha gustado escuchar a Sanjay y al resto de ponentes, porque todo eso me
da confianza en cómo la gente, al menos, está reflexionando sobre la IA y esa amenaza emergente.
And it’s really a comprehensive approach from a security perspective to ensure that we
siendo resilientes.
Genial.
Gracias.
Kris.
building on Kyndryl’s recent readiness report, which is fantastic if you have not read it
has leído.
We’ll certainly make it available in the app for download.
Cuéntanos un poco más: has afirmado que las organizaciones están replanteándose la resiliencia en un
panorama normativo cada vez más fragmentado.
¿Cómo crees que evolucionará esto en el mundo de la IA, quizá incluso intensificándose, y qué sugieres
a las organizaciones para que se mantengan al día?
Bueno, creo que la normativa está evolucionando tan rápido como la IA.
Eh… Just to take a step back, for those of you who are not in the security field, you may
que no penséis en esto tanto como lo hacemos Sean y yo cada día.
Pero retrocedamos unos años.
¿Por qué estamos viendo tanta regulación?
Well, during the COVID period, 90 % of the world’s corporations introduced new tecnología.
Y, de ellas, alrededor del 60 % implementó esa tecnología sin controles de seguridad
integrados.
Piénsalo.
Un aEh…ento enorme, realmente enorme, en el panorama de los ataques, así como una mayor atención a los proveedores,
los proveedores externos que nos sEh…inistran tecnología, que incorporan malware en esa
tecnología.
Como resultado, se observa una gran cantidad de ransomware.
Y las autoridades reguladoras, que reconocen que «vaya, esto es un problema», están interviniendo
con medidas reguladoras.
¿Por qué la regulación?
Because taquí’s only three reasons why people buy security controls.
One, they’ve had an incident and they need to repair from it.
Dos: un alto ejecutivo se despierta en mitad de la noche y se preocupa por
la seguridad, o cena con alguien que le dice «mi hija trabaja en seguridad» y le da
muerte de miedo.
Or third, taquí’s a regulation.
So we should be not, we shouldn’t be surprised that following COVID and following the
ampliación del panorama de los ataques, veamos esta profusión de normativa, especialmente en
the area of resilience, which is recognizing it’s gotten beyond us.
No podemos protegernos contra esta amenaza.
Tenemos que ser capaces de encajar el golpe y recuperarnos.
Ahora bien, en lo que respecta a la IA, este es un tema realmente delicado.
Now, let’s just be realistic.
La IA no es nada nuevo.
We’ve been using AI for a very long time.
Lo que sí es nuevo es la IA agentiva.
Lo nuevo es cómo estas herramientas se están comercializando y poniendo al alcance de los
atacantes, lo que aEh…enta el panorama de amenazas para nosotros, etcétera, etcétera.
Lo que está ocurriendo ahora es muy interesante y se está desarrollando de dos formas distintas desde el
punto de vista normativo.
Por un lado, muchos Estados-nación, debido al aEh…ento del populismo y el nacionalismo, están
worried about their inability to compete effectively internationally because they don’t
disponen de IA.
So what they’re doing, nation states are investing in AI technology industries within
de sus propios territorios utilizando tecnología de código abierto que no ha
sido sometida a pruebas adecuadas, y están creando sectores e infraestructuras críticas utilizando
estas tecnologías porque consideran que tienen que competir.
What they’re also doing is they’re creating digital sovereignty and data sovereignty rules
de soberanía digital y de soberanía de datos dentro y en torno a estos Estados-nación para poder proteger los datos de sus ciudadanos,
well as protect that nascent industry that’s being created.
Now what’s happening from an AI perspective
which is really interesting and impacts the resilience question, is you’re now seeing a
balcanización de los datos y los sistemas.
And anybody who’s in the security field knows the more you have to spend to protect those
systems, the more complexity taquí is, the harder it becomes for you to actually manage
esta infraestructura.
That’s why honestly, Sanjay, I want to say thank you to Commvault for having released what
habéis presentado hoy.
Eso me facilita la vida.
Porque estamos asistiendo a una… esto es una repatriación de datos
a gran escala.
La mayoría de los Estados y de los sectores nos preguntan hoy en día: «¿Podéis construirnos un centro de datos
?».
¿Podéis crearnos una nube soberana?
Can you run these systems aquí, not taquí?
And systems that you’re building, I think, are gonna help us all.
If I can add to that, because I think it’s really important when you talk about nation
y sus inversiones en IA.
I think you also have to look at they’re not just investing from a financial perspective
and RRD perspective, they’re actually looking to steal it, which makes your agentic
un objetivo enorme y algo que hay que tener muy en cuenta.
Es evidente que los adversarios están desarrollando protocolos y tienen un plan agresivo para robar
what you’re developing.
Porque cualquier nueva tecnología que genere este entusiasmo desenfrenado, y que quieras dar a conocer
out taquí and you want to try it, you don’t want to be left behind.
Creo que, en el pasado, la seguridad podía ponerse al día.
Brunei’s liveware AI adoption in one year has outpaced anything in the history of mankind.
It has to be while you’re deploying it.
It can’t anymore be after you’ve deployed it.
Y mientras las herramientas, las tecnologías y los procesos aún están, por así decirlo, en fase de asentamiento
, tenemos que adelantarnos en la metodología, en cómo mantenerlo todo a salvo,
antes de que se convierta en un problema, que es lo que esperaba transmitir hoy.
Solo una última cosa, y quiero volver sobre la integración de la identidad, la seguridad y
la resiliencia.
The one thing I would say is when you’re thinking about agentic AI, so polymorphic agents,
agentes que evolucionan por sí mismos,
lo interesante desde el punto de vista normativo es: ¿cómo se crean normas para los trabajadores digitales
?
Hay que pensar en ellos más como personas que como activos tecnológicos.
So identity management within this particular, it’s incredibly important.
Sí, estoy de acuerdo, totalmente de acuerdo.
Eh…
Sanjay, eso también ha sido interesante.
Eh… It just made me think, I think the crowd would be interested in hearing, how are you
sobre ResOps dentro de Commvault.
Commvault.
Me preguntaba por qué me habías invitado a este panel.
Pensé que ya me había ganado el sueldo de esta mañana.
Bueno, ya sabes, creo que tenemos… ya sabes, la mayoría de las empresas tecnológicas tienen características bastante únicas
en cuanto a cómo gestionan su propia TI.
It just is I’ve worked for tech companies my whole life and no two tech companies do it
hagan de la misma manera.
Eh… Ser director de sistemas de información (CIO), director de seguridad de la información (CISO) o director técnico (CTO) en una empresa tecnológica es un trabajo muy diferente al
de trabajar en un entorno no tecnológico, así que lo primero es asegurarnos de que nuestro CIO y nuestro CISO
trabajen realmente en estrecha colaboración.
And that starts with hEh…ans, no agents, just hEh…ans.
So we have them aquí somewaquí.
A ver, levantad la mano.
Uno al lado del otro, de hecho.
Taquí you go.
So I’ve got Ha, who’s a CIO, and Bill, who’s our CISO, sitting right taquí together.
So when I send an email or a Slack on a topic, usually, it’s bidirectional, it goes to
los dos.
And that’s really important.
Culturally, it’s really important not to have that segregation.
Porque los procesos, las herramientas y la capacidad real tienden a estar separados.
We have another interesting capability waquí Rajiv, who you saw up aquí as our Chief
Product Officer, if you go to his LinkedIn, he doesn’t call himself the Chief Product
, sino que se autodenomina director de copias de seguridad.
Así que, de hecho, se encarga de las copias de seguridad de la empresa.
Así que ahora tengo un trío de personas.
I’ve got these two and I’ve got Rajiv and they have to work together.
Así que ResOps es exactamente eso.
Seguridad, identidad y Recovery.
Y hacer que todo encaje.
Now we’re in the early days of ResOps as I described it this morning.
But if I take all the disciplines we’ve built.
Eh…
En el ámbito cibernético, la ciberresiliencia encaja perfectamente en esto.
And now we’re looking at AI.
Now Ha’s on point to build our internal AI capabilities.
Y Pranay y Rajiv se encargan de todas nuestras capacidades relacionadas con los productos, pero trabajan juntos.
And we have a Chief Trust Officer eh who’s on point to make sure that what we’re doing, to
your point, is responsible and we’re it the right way.
So it’s work in progress.
En cuanto a las herramientas, nuestra plataforma de productos nos permite conectarnos
por este lado, o con CrowdStrike, que utilizamos, o con Microsoft Defender, que empleamos en otros ámbitos.
Así que esa tecnología tiene que comunicarse con nuestra plataforma para que podamos tener un ciclo completo de
inteligencia.
Por eso intentamos ser el «cliente cero» dentro de nuestro entorno.
And we’re committing, as part of this launch actually, to start publishing more of how we
do things, what mistakes we make, so that you don’t make the same.
Okay, so we’re gonna share that with you.
Genial, y de hecho sí que lo hacemos —un poco de autopromoción descarada por parte de la directora de marketing—; de hecho, lo compartimos en nuestro
Readiverse.
She’s ahead it…
en nuestra página web.
Pero, de nuevo, el objetivo es compartir realmente las mejores prácticas que vemos en nuestra propia experiencia y asegurarnos de
make sure that we’re sharing that responsibly with others.
eh
Patrick, ¿cómo ayudará un enfoque unificador, un enfoque de ResOps, a los clientes de HPE orientados a la IA, tanto en entornos locales
como en GreenLake?
Yeah, so in general, so we’re talking about ResOps aquí.
When we started the GreenLake cloud platform a nEh…ber of years ago, it was in service of
AIOps en general, ¿verdad?
And now you’ve seen AI ops, sustainability ops, FinOps, right?
And so the whole premise for us was how do you, Eh…
gestionar todos estos sistemas, sistemas de TI, aplicaciones y cargas de trabajo a gran escala con un
enfoque de plataforma?
It’s very similar to what your team talked about earlier today with the Commvault Cloud
Platform.
Así que, para nosotros, adelantar las fases en el proceso de desarrollo —aspectos como la ciberseguridad, la seguridad
and resiliency at the time of development, right, when you’re actually architecting the
aplicación, qué es el servicio, etcétera, es sumamente importante.
Y la única forma en que, en esencia, podemos permitir
a los clientes hacer esto a gran escala
This is, you know, it becomes out of bounds for a hEh…an intervention eh type of feedback
que permita la intervención humana.
Por eso, hemos incorporado AIOps a la plataforma.
All of our systems have eh MCP agents and we can help them create agentic eh mesh to do a
nEh…ber of things in a nEh…ber of different categories.
eh And so this ResOps thing, this concept is really resonates with me because when we
el proyecto de la plataforma Greenlight Cloud,
todo giraba en torno al uso de la IA y el aprendizaje automático para simplificar las operaciones.
And so now we can take that foundational work we’ve done for GPU, compute, ah Obviously,
we’re bringing in Juniper Mist into our AIOps platform now that that acquisition has been
cerrada, ah, así como los datos.
Así que poder contar con ese enfoque de plataforma con GreenLake y luego asociarnos con
Commvault hace que todo el proceso
automatizada, ¿verdad?
You get visibility across the estate whether that’s on-prem, in a colo, at the edge, in
la nube pública, ¿verdad?
And so this is stuff that’s really difficult for the developers to do manually, right
? Basado en excepciones, todo tiene que estar automatizado.
Crear agentes, agentes que compartan datos y se comuniquen entre sí al servicio de tus cargas de trabajo más
críticas para la misión y para el negocio.
So the approach that Commvault’s taking and the one that we introduced a nEh…ber of years
con GreenLake Cloud Platform es la única forma de alcanzar esa escala.
Contamos con 50 000 clientes en nuestra plataforma.
We’re managing ah close to five million infrastructure endpoints with the platform.
Así pues, la única forma de alcanzar esa escala es a través de AIOps y ResOps, adelantando las
tareas en
the development cycle, and we’re partnering to help our customers achieve that.
Eh… Sean, what does ResOps mean for threat intelligence and incident response
ante incidentes?
When I think about, Eh… I talked earlier about adversaries and the automation of their
proceso de ataque, así como de la automatización del proceso de respuesta.
eh
hay que ponerlo en marcha, empezando, creo, por la detección.
Así que quizá asociarnos con CrowdStrike.
Tomemos el ransomware como ejemplo.
A ransomware eh attack is detected.
Y las
identities are rotated, credentials are rotated because you want to protect other eh
dispositivos y las identidades del entorno.
El proceso de Recovery y la verificación de la validez de los datos antes de su restablecimiento están
automatizados.
Y lasn the intelligence that you obtain from this particular attack is the TTPs, the
, técnicas y procedimientos), los indicadores de ataque o los indicadores de
comprometimiento.
Toda la información que se obtiene de este ataque concreto se vuelve a introducir en el
sistema y, a continuación, se vuelve a llevar a cabo el proceso de detección.
So it’s automated and it’s continuous and it is dynamic and it’s so important, I think, to
—ya sabéis, solía poner este ejemplo hace años,
but I think it’s still valid.
eh You can’t build a 10-foot wall because the adversary comes in with a 15-foot ladder,
¿Verdad?
So it’s this concept of this constantly dynamic.
Las cosas cambian a medida que se identifican nuevos patrones de ataque.
We talked today about agenetic AI, and then we talk about what quantEh… looks like and
what’s the next attack vector after that.
It’s going to continue to evolve.
Tenemos que seguir evolucionando.
Así pues, ese proceso de inteligencia debe conducir a una mejor detección y a la
la capacidad de contar con una resiliencia de recuperación automatizada.
That process has to be automated because in today’s eh state with waquí we are and what
the adversaries are doing, if it’s not automated, if you don’t start to remove hEh…ans,
hEh…ans are still a part of this, of course an important part, then you’re gonna fall way
atrás.
La parte del aprendizaje es muy importante.
Like you have one customer that is seeing Eh… either attack vector or some anomaly,
aprender de ese único
cliente puede beneficiar a toda tu comunidad.
It’s almost like the power of the crowd.
El crowdsourcing.
Y es impresionante.
Kris, I’m going to have you bring us home with some practical advice for CISOs, CIOs in
aquí in the room today.
Eh… You have often said that to be successful in this new world, security and resilience
deben integrarse desde el diseño y a través de las políticas.
So what advice would you give to our practitioners aquí today?
Quiero mencionar algo que ha dicho Sanjay, que tiene que ver, una vez más, con la
combinación de factores.
oh
Honestly, I think that the fact that we’ve got security, resilience, and identity is very
lástima.
Those aren’t three different markets.
It’s becoming one market.
And I’ve always defined cyber resilience as the ability to anticipate, protect against,
resistir y, posteriormente, recuperarse de cualquier incidente relacionado con la ciberseguridad, incluyendo, pero sin
la ciberseguridad.
Now that’s important because when you are looking and anticipating cyber threats,
those aren’t just threats from a security individual with a 15-foot ladder.
It’s from our employees doing something stupid.
It’s from a network fiber cut.
It’s from, you name it, something bad can happen.
Por eso, los edificios, la seguridad y la resiliencia integradas en el diseño no son más que
anticiparse, utilizando la inteligencia sobre amenazas, para comprender lo que podría suceder.
Now, I can invest this much aquí to protect
contra ello, pero ¿sabes qué?
Los atacantes tienen una escalera de 15 pies.
So we’re going to have to invest in making sure that we can recover because it is
inevitable que pase algo.
Por lo tanto, la seguridad y la resiliencia integradas en el diseño no consisten en proteger a la organización de todas
threats, it’s about enabling the organization to balance its investments
entre la protección y la Recovery, de modo que pueda cumplir sus objetivos empresariales.
Here’s the however, and I won’t talk too much about it, but on the agentic AI side, gotta
que planteárselo de otra manera porque, de nuevo, en un mundo polimórfico, el desarrollo de la seguridad
and resilience has to include a redefinition of what we’re thinking about vis-a-vis policy
y por supervisión de la misma.
Because again, like monitoring your employees, you’ve got to establish a policy that has
unos límites
para que, a medida que los agentes empiecen a evolucionar por su cuenta, se disponga de mecanismos
de aplicación de políticas que los mantengan dentro de su marco.
That is something that we’re all working on today, but it’s something for you to be
pensar.
The only thing I’d add to that is I think we haven’t seen yet the scale at which this
esto puede cambiar.
Sí.
That’s, you know, in this era,
la escala es algo completamente nuevo; cuando nos pusimos a desarrollar nuestras nuevas capacidades de Active Directory
, nos quedamos… fue increíble la cantidad de datos que se generan, no todos malos
data, good data, but it’s just the change factors.
We’re a mid-sized company, we ran it on ourselves, was like tens of thousands of events
por minuto y, luego, poder correlacionar eso con toda la demás inteligencia sobre amenazas que
nos mostró Pranay, ya sabes, no es cosa para los débiles de corazón.
And so you’ve got to build systems that scale to that capability, whatever they may be.
I’m not just talking about the platform we’ve built, but in general, I think the one
reto que la gente tiende a subestimar es la escala a la que la gestión y las
operaciones de todo esto tienen que evolucionar, ya sabes, porque si utilizas los enfoques y las
tooling to your point of the past will…
you’ll have a lot of natural roadblocks that won’t work.
So I think that’s something we learned quickly in the process of how we restructured our
forma de pensar sobre la plataforma.
Bueno, chicos, quiero daros las gracias.
Se nos ha acabado el tiempo y nos queda un invitado más muy apreciado.
Así que gracias, socios, amigos.
Gracias.
Se lo agradecemos.