Fact or Fiction? AI & Machine Learning in Cybersecurity — How Does it Work for MSPs?
Today Artificial Intelligence (AI) & Machine Learning (ML) techniques are in use across the whole IT landscape. Their use is only going to expand as we enter 2022 and over the following years. Cybersecurity protection is ideal for taking advantage of AI & ML due to the amount of data that needs parsing for threats, plus the ever-increasing threat landscape.
The Ever Changing Threat Landscape
The amount of data flowing between endpoint devices, servers, the cloud, and over the web has long been too large for human cybersecurity experts to monitor and move quickly to disrupt emerging attacks or threats. The threat landscape that attackers can target is also rapidly increasing as more endpoint devices get deployed, cloud-based services proliferate, sensor-based IoT devices become ubiquitous, and businesses switch to remote and hybrid working model’s post-pandemic. The latter increases the use of devices and networks not under the control of organisations and provides more surface area for attackers.
Attacks from cybercriminals are sophisticated, and they come at all times of the day, every day of the year. Even if human defenders could counter the threats in real-time (and they can’t — this is not to disparage our cybersecurity professionals), there would need to be 24/7/365 coverage.
Over the last decade, especially in the last few years, the use of AI & ML techniques in cybersecurity solutions has increased both in deployments and in the sophistication of the tools. AI & ML based cybersecurity tools can monitor the data flows on modern networks and spot anomalous behaviours that are indicators of compromise or a pending attack. These tools use neural networks and deep learning combined with massive data sets and baseline knowledge about a network to spot unusual activity in minutes or even seconds. The tools can then stop attacks in their tracks or disrupt attack planning by alerting system admins or automating the takedown of infrastructure used by attackers — for example, blocking dummy domains and websites being used to impersonate an organisation for Phishing attacks.
AI & ML based tools play an essential role in protecting the modern IT landscape. But there is much confusion around what the tools are capable of and how they work. This is concerning as there needs to be an understanding of all tools used in cybersecurity if the defence is going to be robust.
OpenText Fact or Fiction AI & ML Knowledge Survey
OpenText, the parent organisation of Webroot and Carbonite, conducts an annual survey to get a picture of AI & ML cybersecurity knowledge across the IT sector. The survey covers IT use in large enterprises, in SMBs, and also consumers. The results show a significant lack of knowledge on AI & ML cybersecurity use. For example, the 2021 survey found that most enterprises (93%) use AI & ML, yet 55% admit they are unsure what that means.
Businesses are deciding to buy cybersecurity tools with AI & ML built-in, but many do so without insight into how the AI & ML components work. Knowing how these tools work makes for a better cybersecurity posture — it’s the old “know your tools” adage transferred to the cybersecurity realm.
The survey also found that there was still a fair amount of scepticism around the uses of AI & ML across those surveyed. Many businesses and individuals seemed to place more emphasis on whether they perceived their technology to be working rather than on its efficacy or whether they understood how it worked.
With cyberattacks showing no signs of diminishing, businesses must deploy security at appropriate layers and use tools they understand. Companies need to understand AI & ML-based solutions better so they can make informed decisions on how the tools will fit into and augment their existing cybersecurity defences.
The Fact or Fiction: Perceptions and Misconceptions on AI and Machine Learning in Cybersecurity report is free to download, and we would encourage you to do so. The survey makes for interesting reading on what a representative sample of IT executives, admins, and users think about AI & ML cybersecurity solutions. The Webroot blog also has an overview article on the report.
Webroot Intelligence Backed Solutions Can Boost Your Security Posture
The use of AI & ML is essential to deliver cybersecurity protections against the current threats. This is true for organisations of all sizes, including those with their own internal cybersecurity teams and those who use a third-party MSP.
Webroot’s AI & ML based cybersecurity protections are available for MSPs to resell to their clients. This provides an excellent opportunity for MSPs to provide highly effective and efficient cybersecurity solutions in existing accounts, and as a tool to leverage new business. Every organisation is looking for ways to improve its cybersecurity posture while also managing costs. The MSP model is an ideal way for this to happen, and the Webroot MSP solutions are a perfect way for MSPs to serve this demand. See the Lower costs and bigger profits empower MSPs page on the Webroot site for more details of what’s available to MSPs.
Conclusion
Delivering AI & ML based cybersecurity tools into businesses and other organisations provides a significant opportunity for MSPs. Businesses of all sizes are crying out for protection against the phishing email deluge, the ransomware surge, and all the other significant threats they face.
Renaissance partners with Webroot to make their industry-leading AI & ML based cybersecurity tools available to MSPs in Ireland. Contact us to find out more.

