PLAY PODCASTS
Ep137: AI Without Borders - Extending analyst capabilities across the modern SOC
Episode 137

Ep137: AI Without Borders - Extending analyst capabilities across the modern SOC

AWS for Software Companies Podcast · Nate Goyer

August 27, 202531m 9s

Audio is streamed directly from the publisher (rss.art19.com) as published in their RSS feed. Play Podcasts does not host this file. Rights-holders can request removal through the copyright & takedown page.

Show Notes

Gagan Singh of Elastic discuses how agentic AI systems reduce analyst burnout by automatically triaging security alerts, resulting in measurable ROI for organizations

Topics Include:

  • AI breaks security silos between teams, data, and tools in SOCs
  • Attackers gain system access; SOC teams have only 40 minutes to detect/contain
  • Alert overload causes analyst burnout; thousands of low-value alerts overwhelm teams daily
  • AI inevitable for SOCs to process data, separate false positives from real threats
  • Agentic systems understand environment, reason through problems, take action without hand-holding
  • Attack discovery capability reduces hundreds of alerts to 3-4 prioritized threat discoveries
  • AI provides ROI metrics: processed alerts, filtered noise, hours saved for organizations
  • RAG (Retrieval Augmented Generation) prevents hallucination by adding enterprise context to LLMs
  • AWS integration uses SageMaker, Bedrock, Anthropic models with Elasticsearch vector database capabilities
  • End-to-end LLM observability tracks costs, tokens, invocations, errors, and performance bottlenecks
  • Junior analysts detect nation-state attacks; teams shift from reactive to proactive security
  • Future requires balancing costs, data richness, sovereignty, model choice, human-machine collaboration


Participants:


Additional Links:


See how Amazon Web Services gives you the freedom to migrate, innovate, and scale your software company at https://aws.amazon.com/isv/

Topics

cloud computing providersawsAmazon.comcloud servicesAmazoncloud computingcloud serviceAI#AWSforSoftwareGenerative AIAgentic AI