Cybersecurity experts believe the industry is at a turning point as generative and agentic AI create both serious risks and powerful new defence tools. Jon Ramsey, GM and VP of Google Security Operations, says organisations must either embrace autonomous systems to support human defenders or risk falling behind AI driven attackers.
Ramsey highlights Google Cloud’s use of Mandiant threat intelligence and Zero Trust principles as key to addressing long standing gaps in technology, talent and security mindset. He emphasises that the focus should be on resilience, not just compliance, where automation reduces noise and allows experts to focus on complex investigations.
At the centre of this approach is the move from traditional security operations to what Google calls “agentic SOCs.” Unlike conventional SOCs, where analysts handle detection and investigation manually, agentic SOCs deploy semi autonomous agents that execute workflows in real time.
One example is Google’s AI Protection solution, designed to secure AI assets and manage AI related threats. Another is the Alert Investigation agent, now in preview, which can enrich events, analyse logs and build investigative process trees based on Mandiant’s proven methodologies. Ramsey explains that this technology does not replace humans but empowers them, speeding up responses while leaving critical judgment with security professionals.
Ramsey also cautions against boards that equate compliance with security. “Compliance first offers no guarantee of true security,” he says. Instead, he argues that resilience comes from security first strategies that anticipate evolving threats and align with business priorities.
The shortage of cybersecurity professionals remains a pressing issue as attacks grow in number and complexity. Ramsey admits technology alone cannot solve this skills gap. Google’s strategy combines automation to reduce repetitive tasks, tool integration across environments, and measures to ease “alert fatigue,” which often causes burnout among analysts.
By consolidating tools and embedding global threat intelligence into its cloud native platform, Google Cloud aims to give organisations proactive visibility. Ramsey insists that with the backing of Mandiant’s frontline expertise and Google’s AI capabilities, enterprises can shift from reactive defence to a forward looking, anticipatory security posture.
Also read: Viksit Workforce for a Viksit Bharat
Do Follow: The Mainstream formerly known as CIO News LinkedIn Account | The Mainstream formerly known as CIO News Facebook | The Mainstream formerly known as CIO News Youtube | The Mainstream formerly known as CIO News Twitter |The Mainstream formerly known as CIO News Whatsapp Channel | The Mainstream formerly known as CIO News Instagram
About us:
The Mainstream formerly known as CIO News is a premier platform dedicated to delivering latest news, updates, and insights from the tech industry. With its strong foundation of intellectual property and thought leadership, the platform is well-positioned to stay ahead of the curve and lead conversations about how technology shapes our world. From its early days as CIO News to its rebranding as The Mainstream on November 28, 2024, it has been expanding its global reach, targeting key markets in the Middle East & Africa, ASEAN, the USA, and the UK. The Mainstream is a vision to put technology at the center of every conversation, inspiring professionals and organizations to embrace the future of tech.