Security pros are missing attacks due to an overload of pointless alerts

It probably isn’t much of a surprise that workers are overwhelmed with notifications and emails on a daily basis, but new research has suggested this is actually having a detrimental effect on day-to-day cybersecurity operations.

A Vectra AI survey has shown that 71% of security practitioners worry that they will miss a real attack buried in a flood of inconsequential alerts, as vendors scramble to cover all bases in an ever evolving threat landscape.

In some cases, threat detection tools are causing more problems than they solve, as 47% don’t trust their tools to work the way they need them to, and the majority (54%) say their workload has actually increased instead.

The signal and the noise

A staggering 81% of security pros spend over 2 hours per day trawling through and triaging security events, reporting that only 16% of the alerts they receive are ‘real attacks’.

Things are improving though, with teams are more confident in their defenses than they were a year ago. The introduction of AI is helping, with 73% saying their workload and burnout have reduced thanks to AI. Since AI is playing a bigger role in cyberattacks, many security pros are adopting it as part of their response.

“Teams believe AI delivers an attack signal that will help them identify and prioritize threats, accelerate response times, and reduce alert fatigue, however, trust needs to be rebuilt. AI-powered offerings are proving to have a positive impact, but to truly reestablish trust, vendors will need to show how they add value beyond just the technologies they sell,” said Mark Wojtasiak, vice president of research and strategy at Vectra AI.

The trust has certainly been broken between practitioners and vendors, so the introduction of AI tools may take some convincing, but almost all (89%) plan to use more AI tools to replace legacy threat detection and response.

Take a look at some of the best malware removal softwareIf we want to still have privacy, we need to ban spyware Check out our pick for best antivirus software

Related posts

New Androxgh0st botnet targets vulnerabilities in IoT devices and web applications via Mozi integration

TrueNAS device vulnerabilities exposed during hacking competition

Could this be Dell’s fastest laptop ever built? Dell Pro Max 18 Plus set to have ‘RTX 5000 class’ GPU capabilities and Tandem OLED display

This website uses cookies to improve your experience. We'll assume you're ok with this, but you can opt-out if you wish. Read More