share_log

Balbix Unveils BIX: the Industry's First GenAI Powered Assistant for Cyber Risk and Exposure Management

Balbix Unveils BIX: the Industry's First GenAI Powered Assistant for Cyber Risk and Exposure Management

Balbix推出BIX:行业首款基于GenAI的网络风险和暴露管理助手
PR Newswire ·  08/06 11:24

BIX enables cybersecurity and business leaders to gain insight into their exposures and speed up cyber risk burn down while keeping your cyber risk data private.

BIX使网络安全和业务领导者能够深入了解其风险,并加速网络风险降低,同时保持您的网络风险数据私密。

LAS VEGAS, Aug. 6, 2024 /PRNewswire/ -- Balbix, an AI-powered Cyber Risk and Exposure Management platform, introduced its BIX conversational AI assistant at Blackhat USA 2024. The BIX AI assistant is already in use at many Fortune 1000 companies as part of an early access program.

美国拉斯维加斯,2024年8月6日 /美通社/ -- Balbix是一款基于人工智能的网络风险和风险管理平台,在Blackhat USA 2024推出了其BIX对话型人工智能助手。BIX人工智能助手已在许多财富1000公司中作为早期访问计划的一部分使用。今天,管理网络风险需要识别关键漏洞,了解相关威胁,分析攻击路径,评估对业务的潜在影响,并评估安全控件的工作情况。这些任务都需要具体的工具、集成、仪表板、报告和带有纠正步骤的票据,以及专门的人员来监督和管理这些活动。然而,由于来自不同来源的大量数据,很难理解和优先考虑这些风险并迅速采取行动。向安全团队外部传达网络风险尤其困难,因为他们通常不理解技术细节或潜在安全漏洞的后果。

Today, managing cyber risks requires identifying key vulnerabilities and understanding related threats, analyzing attack paths, evaluating the potential impact on business, and assessing how well security controls will work. Each of these tasks requires specific tools, integrations, dashboards, reports, and tickets with remediation steps, as well as dedicated personnel to oversee and manage these activities. However, with vast amounts of data from different sources, it is very challenging to understand and prioritize these risks and act quickly. Communicating cyber risks to those outside the security team is particularly difficult, as they often don't grasp the technical details or the consequences of potential security breaches.

想象一下,如果管理网络风险就像向同事问问题并得到明确,可执行的答案那样简单。如果您还可以指示您的助手通知相关的利益相关者他们的职责和截止日期,并向您提供定期更新,那该多好。想象每个网络安全的关键参与者——从CISO、CIO、Vm团队和安全操作到IT员工和法律团队——都有他们自己的AI助手来帮助管理他们的网络风险和风险管理难题,用适合角色的语言进行对话。今天我们向这一愿景迈出了很大的一步。

Imagine if managing cyber risk was as easy as asking a colleague a question and getting a clear, actionable answer. What if you could also instruct your assistant to keep relevant stakeholders informed about their responsibilities and deadlines, and to provide you with periodic updates? Picture every key player in cybersecurity— from the CISO, CIO, VM teams and security operations to IT staff and legal teams—having their own AI assistants to help manage their part of the cyber risk and exposure management puzzle, conversing in role-appropriate language. Today we are taking a huge step forward towards this vision.

BIX具有以下关键功能:

BIX has the following key capabilities:

个性化: BIX根据用户的角色、偏好和过去的对话定制其选择的单词、详细级别、建议和交互。例如,当与IT工作人员互动时,BIX可以用货币术语解释单个威胁(例如“Log4j”的财务影响),同时识别具体案例并建议缓解措施。

  1. Personalization: BIX customizes its choice of words, detail level, recommendations, and interactions according to the user's role, preferences, and past conversations. For example, BIX can explain the financial impact of a threat like "Log4j" in monetary terms to executives while also identifying specific cases and suggesting mitigating actions when interacting with IT staff.
  2. Context Awareness: From time to time, we all use Google, ChatGPT and other tools to understand risk concepts on a generic level. BIX integrates with your cybersecurity, IT, and business systems and understands details about your assets, apps, software versions, users, and their roles in your business, specific threats facing your organization, your security measures, who's responsible for what, who works fast and who does not, acceptable risk levels, and your target SLAs. By querying BIX, you can leverage this knowledge to help understand specific security risks and recommended mitigation tasks in context.
  3. Mobile Experience: BIX is available on your smartphone and provides answers when you need them, greatly improving your situational awareness. BIX streamlines cybersecurity decision-making by eliminating the need to consult multiple widgets and dashboards across different tools, saving you hours or even days of gathering analytics.
  4. Recommendations: In cybersecurity, it's common to get sidetracked by irrelevant tasks or overwhelmed by endless research on complex topics, especially for less experienced IT and security staff. BIX acts like an executive assistant, guiding stakeholders by suggesting key questions to ask. This helps organizations move from a focus on threats to a more effective, risk-based approach to cybersecurity.
  1. 上下文感知: 我们都会时不时地使用Google、ChatGPt和其他工具在普通水平上理解风险概念。BIX与您的网络安全、IT和业务系统集成,并了解您平台的资产、应用程序、软件版本、用户及其在业务中的角色、特定面对组织的威胁、您的安全措施,谁负责什么,谁快谁慢,可接受的风险级别和您的目标服务级别协议。通过查询BIX,您可以利用这些知识来帮助了解特定的安全风险和上下文中的建议性缓解任务。
  2. 移动体验: BIX可在您的智能手机上使用,提供需要时的答案,极大地提高了您的情境意识。BIX通过消除在不同工具的多个小部件和仪表板之间查阅的需求,显著简化了网络安全决策,从而为您节省了收集分析的时间,帮您摆脱掌握数据策略的困境。
  3. 建议: 在网络安全方面,很常见的一个情况是因为设备被黑而被迫停止正在进行中的工作,然后去关注网络安全,导致烦忧和不必要的疲惫感。那些不那么熟悉IT和安全的人尤其容易因复杂的话题而分心。BIX就像一个执行助手,通过建议意图、针对性问问题和推荐策略等方式来指引利益相关者。这有助于组织从威胁关注逐渐转向更有效的基于风险的网络安全做法。
  4. 研究和咨询公司TAG Cyber的创始人兼首席执行官Ed Amoroso表示:"在可接受水平上管理企业网络风险是一项极其具有挑战性的工作。遗憾的是,由于工具众多、技能缺口和预算限制,整个行业的组织都面临深刻的网络安全挑战。此外,未能遵守关于重要事项、修补程序和及时软件更新的监管要求已经大大增加了组织的财务和声誉风险。"爱文思控股的新AI助手可以提高企业对实质性风险的总体理解,并加速响应时间。这有助于新涉足网络安全的组织以及那些拥有庞大已确立团队的组织。"

Ed Amoroso, Founder and CEO of research and advisory firm TAG Cyber, stated, "Managing enterprise cyber risk at acceptable levels is an extremely challenging job. Unfortunately, organizations across the industry face deep cybersecurity challenges due to tools sprawl, skills gaps, and budget limitations. Further, failure to comply with regulatory requirements on materiality, patching, and timely software updates has sharply increased organizations' financial and reputational risk". Ed also added, "Balbix's new AI assistant can improve overall enterprise understanding of material risks as well as operational efficiency, speeding up response times. This benefits organizations new to security and those with established large teams."

在内部,BIX利用基于RAG的大型语言模型(LLMs),运行在专用的英伟达硬件上。然而,即使是最先进的独立LLMs,在涉及多个上下文和处理依赖和隐私约束的多步骤任务时也会遇到困难。这就是BIX的多代理架构的作用,将复杂的问题分解成由专门的代理处理的离散子任务,这些代理通常在不同的隐私领域中操作。这使BIX可以提供一种安全、准确且可扩展的网络安全对话方式,并自动化此前认为无法实现的任务。

Under the hood, BIX utilizes RAG-based Large Language Models (LLMs) running on specialized NVIDIA hardware. However, even the most advanced standalone LLMs struggle with multi-step tasks that require navigating different contexts and managing dependencies and privacy constraints. This is where BIX's multi-agent architecture comes in, breaking down complex problems into discrete subtasks handled by specialized agents, often operating in different privacy domains. This enables BIX to offer a safe, accurate, and extensible approach to cybersecurity conversations and automate tasks previously considered beyond reach.

BIX的早期用户发现他们的网络风险和风险暴露管理体验有了显著的改善。风险理解、决策和风险响应时间从几天甚至几周缩短为几分钟。配合Balbix的其他功能,这已经转化成了大幅降低的风险和生产力改进节省的成果。

Early users of BIX have seen a dramatic improvement in their overall cyber risk and exposure management experience. Understanding risk, making decisions, and risk response times have gone down from days and weeks to minutes. Combined with the rest of Balbix's capabilities, this has translated into sharply reduced risk and savings from productivity improvements.

"网络安全本质上是复杂的,不仅需要广泛的自动化,还需要简化和精简的沟通," Balbix的创始人兼首席执行官Gaurav Banga表示。"到目前为止,Balbix主要将AI用于网络风险管理中的计算任务。我们正在开创其用于解决全体利益相关者的网络风险复杂性并增强其之间交流的应用。发布BIX是网络风险和风险暴露管理方面更加有效地管理风险和敞口的一项重大进展。这标志着我们在网络安全方面主动而非被动的努力。"

"Cybersecurity is inherently complex, demanding not only extensive automation but also simplification and streamlined communication," stated Gaurav Banga, founder and CEO of Balbix. "Until now, Balbix has used AI primarily for computational tasks in cyber risk management. We are pioneering its use to demystify the complexities of cyber risk for all stakeholders and enhance communication between them. This release of BIX is a step forward in managing risk and exposures more effectively. It marks a significant development in our ability to be proactive, rather than reactive, in our cybersecurity efforts."

有关Balbix AI和BIX AI助手的更多信息,请访问

More information about the Balbix AI and BIX AI assistant can be found at AND

与 一起。

About Balbix
Balbix enables businesses to rapidly reduce cyber risk by identifying and mitigating their riskiest cybersecurity exposures. Balbix ingests data from hundreds of security and IT tools to deliver actionable insights for risk reduction. With Balbix, businesses get a unified asset inventory, risk-based exposure and vulnerability prioritization, mobilization for remediation and mitigation activities as well as cyber risk quantification in a single platform. A rapidly growing set of Fortune 500 companies trust Balbix as the "brain" of their infosec programs. Balbix was recognized in Forbes America's Best Startup Employers 2024, by CNBC in their 2022 Top 25 Startups for the Enterprise and ranked #32 on the 2021 Deloitte Fast 500 North America.

关于Balbix
Balbix通过识别和减轻风险最高的网络安全风险来快速减少企业网络风险。Balbix从数百个安全和IT工具中摄取数据,为降低风险提供具有可行性的洞察。利用Balbix,企业可以获得统一资产清单、基于风险的暴露和漏洞优先级、动员规避与减轻风险的活动、以及单一平台中的网络风险量化。越来越多的财富500强企业相信Balbix是他们信息安全计划的"大脑"。 Balbix在Forbes America's Best Startup Employers 2024、CNBC的2022年企业最佳25家初创公司和2021年德勤500强北美排名中排名第32位。

Media contact:
Makayela Hills
[email protected]

媒体联系人:
Makayela Hills
[email protected]

SOURCE Balbix

源自Balbix

声明:本内容仅用作提供资讯及教育之目的,不构成对任何特定投资或投资策略的推荐或认可。 更多信息
    抢沙发