ANUJ SHARMA,
PRESALES MANAGER,
KASPERSKY
If we see over 10-15-year period, most of the organizations and enterprises have adopted best of the breed security solutions comprising of the best firewalls and VPNs. At the same time, certain companies that have come up with services like darker services, credential surveillance, brand monitoring, and so on. Now, despite having best for the breed security and spending crores of money on security, why are there still breaches and leakages. There appears to be a gap somewhere and we need to understand that even if those security solutions are competent enough, there will be some human factors and misconfigurations because of why these breaches are still happening.
In order to bridge that gap on a real-time basis, we have to move forward with AI-based threat intelligence.
So at Kaspersky, we have AI security; we have multiple sources from where we enrich our threat intelligence that includes bot farms, spam traps, and sensors. We have billions of sensors for the users which are providing real-time intelligence to us on a nearly real-time basis. We do have a dedicated research team – GreAT (Global Research and Analysis Team). The moment we receive the data, it goes to the team, they churn out the data, and then forward it to respective threat intelligence products.
We also have multi-layered AI-based threat detection combines machine learning (ML), behavioral Endpoint Detection and Response (EDR), and global threat intelligence to proactively block ransomware, zero-day exploits, and Advanced Persistent Threats (APTs). In other words, Kaspersky has been using AI and ML technologies from past 30 years. We have a legacy of databases, which we are trying to consolidate into our threat intelligence.





