share_log

Balbix Unveils BIX: the Industry's First GenAI Powered Assistant for Cyber Risk and Exposure Management

Balbix Unveils BIX: the Industry's First GenAI Powered Assistant for Cyber Risk and Exposure Management

Balbix推出BIX:行業首款基於GenAI的網絡風險和暴露管理助手
PR Newswire ·  08/06 11:24

BIX enables cybersecurity and business leaders to gain insight into their exposures and speed up cyber risk burn down while keeping your cyber risk data private.

BIX使網絡安全和業務領導者能夠深入了解其風險,並加速網絡風險降低,同時保持您的網絡風險數據私密。

LAS VEGAS, Aug. 6, 2024 /PRNewswire/ -- Balbix, an AI-powered Cyber Risk and Exposure Management platform, introduced its BIX conversational AI assistant at Blackhat USA 2024. The BIX AI assistant is already in use at many Fortune 1000 companies as part of an early access program.

美國拉斯維加斯,2024年8月6日 /美通社/ -- Balbix是一款基於人工智能的網絡風險和風險管理平台,在Blackhat USA 2024推出了其BIX對話型人工智能助手。BIX人工智能助手已在許多財富1000公司中作爲早期訪問計劃的一部分使用。今天,管理網絡風險需要識別關鍵漏洞,了解相關威脅,分析攻擊路徑,評估對業務的潛在影響,並評估安全控件的工作情況。這些任務都需要具體的工具、集成、儀表板、報告和帶有糾正步驟的票據,以及專門的人員來監督和管理這些活動。然而,由於來自不同來源的大量數據,很難理解和優先考慮這些風險並迅速採取行動。向安全團隊外部傳達網絡風險尤其困難,因爲他們通常不理解技術細節或潛在安全漏洞的後果。

Today, managing cyber risks requires identifying key vulnerabilities and understanding related threats, analyzing attack paths, evaluating the potential impact on business, and assessing how well security controls will work. Each of these tasks requires specific tools, integrations, dashboards, reports, and tickets with remediation steps, as well as dedicated personnel to oversee and manage these activities. However, with vast amounts of data from different sources, it is very challenging to understand and prioritize these risks and act quickly. Communicating cyber risks to those outside the security team is particularly difficult, as they often don't grasp the technical details or the consequences of potential security breaches.

想象一下,如果管理網絡風險就像向同事問問題並得到明確,可執行的答案那樣簡單。如果您還可以指示您的助手通知相關的利益相關者他們的職責和截止日期,並向您提供定期更新,那該多好。想象每個網絡安全的關鍵參與者——從CISO、CIO、Vm團隊和安全操作到IT員工和法律團隊——都有他們自己的AI助手來幫助管理他們的網絡風險和風險管理難題,用適合角色的語言進行對話。今天我們向這一願景邁出了很大的一步。

Imagine if managing cyber risk was as easy as asking a colleague a question and getting a clear, actionable answer. What if you could also instruct your assistant to keep relevant stakeholders informed about their responsibilities and deadlines, and to provide you with periodic updates? Picture every key player in cybersecurity— from the CISO, CIO, VM teams and security operations to IT staff and legal teams—having their own AI assistants to help manage their part of the cyber risk and exposure management puzzle, conversing in role-appropriate language. Today we are taking a huge step forward towards this vision.

BIX具有以下關鍵功能:

BIX has the following key capabilities:

個性化: BIX根據用戶的角色、偏好和過去的對話定製其選擇的單詞、詳細級別、建議和交互。例如,當與IT工作人員互動時,BIX可以用貨幣術語解釋單個威脅(例如“Log4j”的財務影響),同時識別具體案例並建議緩解措施。

  1. Personalization: BIX customizes its choice of words, detail level, recommendations, and interactions according to the user's role, preferences, and past conversations. For example, BIX can explain the financial impact of a threat like "Log4j" in monetary terms to executives while also identifying specific cases and suggesting mitigating actions when interacting with IT staff.
  2. Context Awareness: From time to time, we all use Google, ChatGPT and other tools to understand risk concepts on a generic level. BIX integrates with your cybersecurity, IT, and business systems and understands details about your assets, apps, software versions, users, and their roles in your business, specific threats facing your organization, your security measures, who's responsible for what, who works fast and who does not, acceptable risk levels, and your target SLAs. By querying BIX, you can leverage this knowledge to help understand specific security risks and recommended mitigation tasks in context.
  3. Mobile Experience: BIX is available on your smartphone and provides answers when you need them, greatly improving your situational awareness. BIX streamlines cybersecurity decision-making by eliminating the need to consult multiple widgets and dashboards across different tools, saving you hours or even days of gathering analytics.
  4. Recommendations: In cybersecurity, it's common to get sidetracked by irrelevant tasks or overwhelmed by endless research on complex topics, especially for less experienced IT and security staff. BIX acts like an executive assistant, guiding stakeholders by suggesting key questions to ask. This helps organizations move from a focus on threats to a more effective, risk-based approach to cybersecurity.
  1. 上下文感知: 我們都會時不時地使用Google、ChatGPt和其他工具在普通水平上理解風險概念。BIX與您的網絡安全、IT和業務系統集成,並了解您平台的資產、應用程序、軟件版本、用戶及其在業務中的角色、特定面對組織的威脅、您的安全措施,誰負責什麼,誰快誰慢,可接受的風險級別和您的目標服務級別協議。通過查詢BIX,您可以利用這些知識來幫助了解特定的安全風險和上下文中的建議性緩解任務。
  2. 移動體驗: BIX可在您的智能手機上使用,提供需要時的答案,極大地提高了您的情境意識。BIX通過消除在不同工具的多個小部件和儀表板之間查閱的需求,顯著簡化了網絡安全決策,從而爲您節省了收集分析的時間,幫您擺脫掌握數據策略的困境。
  3. 建議: 在網絡安全方面,很常見的一個情況是因爲設備被黑而被迫停止正在進行中的工作,然後去關注網絡安全,導致煩憂和不必要的疲憊感。那些不那麼熟悉IT和安全的人尤其容易因複雜的話題而分心。BIX就像一個執行助手,通過建議意圖、針對性問問題和推薦策略等方式來指引利益相關者。這有助於組織從威脅關注逐漸轉向更有效的基於風險的網絡安全做法。
  4. 研究和諮詢公司TAG Cyber的創始人兼首席執行官Ed Amoroso表示:"在可接受水平上管理企業網絡風險是一項極其具有挑戰性的工作。遺憾的是,由於工具衆多、技能缺口和預算限制,整個行業的組織都面臨深刻的網絡安全挑戰。此外,未能遵守關於重要事項、修補程序和及時軟件更新的監管要求已經大大增加了組織的財務和聲譽風險。"愛文思控股的新AI助手可以提高企業對實質性風險的總體理解,並加速響應時間。這有助於新涉足網絡安全的組織以及那些擁有龐大已確立團隊的組織。"

Ed Amoroso, Founder and CEO of research and advisory firm TAG Cyber, stated, "Managing enterprise cyber risk at acceptable levels is an extremely challenging job. Unfortunately, organizations across the industry face deep cybersecurity challenges due to tools sprawl, skills gaps, and budget limitations. Further, failure to comply with regulatory requirements on materiality, patching, and timely software updates has sharply increased organizations' financial and reputational risk". Ed also added, "Balbix's new AI assistant can improve overall enterprise understanding of material risks as well as operational efficiency, speeding up response times. This benefits organizations new to security and those with established large teams."

在內部,BIX利用基於RAG的大型語言模型(LLMs),運行在專用的英偉達硬件上。然而,即使是最先進的獨立LLMs,在涉及多個上下文和處理依賴和隱私約束的多步驟任務時也會遇到困難。這就是BIX的多代理架構的作用,將複雜的問題分解成由專門的代理處理的離散子任務,這些代理通常在不同的隱私領域中操作。這使BIX可以提供一種安全、準確且可擴展的網絡安全對話方式,並自動化此前認爲無法實現的任務。

Under the hood, BIX utilizes RAG-based Large Language Models (LLMs) running on specialized NVIDIA hardware. However, even the most advanced standalone LLMs struggle with multi-step tasks that require navigating different contexts and managing dependencies and privacy constraints. This is where BIX's multi-agent architecture comes in, breaking down complex problems into discrete subtasks handled by specialized agents, often operating in different privacy domains. This enables BIX to offer a safe, accurate, and extensible approach to cybersecurity conversations and automate tasks previously considered beyond reach.

BIX的早期用戶發現他們的網絡風險和風險暴露管理體驗有了顯著的改善。風險理解、決策和風險響應時間從幾天甚至幾周縮短爲幾分鐘。配合Balbix的其他功能,這已經轉化成了大幅降低的風險和生產力改進節省的成果。

Early users of BIX have seen a dramatic improvement in their overall cyber risk and exposure management experience. Understanding risk, making decisions, and risk response times have gone down from days and weeks to minutes. Combined with the rest of Balbix's capabilities, this has translated into sharply reduced risk and savings from productivity improvements.

"網絡安全本質上是複雜的,不僅需要廣泛的自動化,還需要簡化和精簡的溝通," Balbix的創始人兼首席執行官Gaurav Banga表示。"到目前爲止,Balbix主要將AI用於網絡風險管理中的計算任務。我們正在開創其用於解決全體利益相關者的網絡風險複雜性並增強其之間交流的應用。發佈BIX是網絡風險和風險暴露管理方面更加有效地管理風險和敞口的一項重大進展。這標誌着我們在網絡安全方面主動而非被動的努力。"

"Cybersecurity is inherently complex, demanding not only extensive automation but also simplification and streamlined communication," stated Gaurav Banga, founder and CEO of Balbix. "Until now, Balbix has used AI primarily for computational tasks in cyber risk management. We are pioneering its use to demystify the complexities of cyber risk for all stakeholders and enhance communication between them. This release of BIX is a step forward in managing risk and exposures more effectively. It marks a significant development in our ability to be proactive, rather than reactive, in our cybersecurity efforts."

有關Balbix AI和BIX AI助手的更多信息,請訪問

More information about the Balbix AI and BIX AI assistant can be found at AND

與 一起。

About Balbix
Balbix enables businesses to rapidly reduce cyber risk by identifying and mitigating their riskiest cybersecurity exposures. Balbix ingests data from hundreds of security and IT tools to deliver actionable insights for risk reduction. With Balbix, businesses get a unified asset inventory, risk-based exposure and vulnerability prioritization, mobilization for remediation and mitigation activities as well as cyber risk quantification in a single platform. A rapidly growing set of Fortune 500 companies trust Balbix as the "brain" of their infosec programs. Balbix was recognized in Forbes America's Best Startup Employers 2024, by CNBC in their 2022 Top 25 Startups for the Enterprise and ranked #32 on the 2021 Deloitte Fast 500 North America.

關於Balbix
Balbix通過識別和減輕風險最高的網絡安全風險來快速減少企業網絡風險。Balbix從數百個安全和IT工具中攝取數據,爲降低風險提供具有可行性的洞察。利用Balbix,企業可以獲得統一資產清單、基於風險的暴露和漏洞優先級、動員規避與減輕風險的活動、以及單一平台中的網絡風險量化。越來越多的財富500強企業相信Balbix是他們信息安全計劃的"大腦"。 Balbix在Forbes America's Best Startup Employers 2024、CNBC的2022年企業最佳25家初創公司和2021年德勤500強北美排名中排名第32位。

Media contact:
Makayela Hills
[email protected]

媒體聯繫人:
Makayela Hills
[email protected]

SOURCE Balbix

源自Balbix

声明:本內容僅用作提供資訊及教育之目的,不構成對任何特定投資或投資策略的推薦或認可。 更多信息
    搶先評論