Today, the average enterprise security operations center (SOC) is crushed under the burden of an estimated 200,000 pieces of security event data per day, according to IBM research. However, only a tiny percentage of those events require immediate action. Because alerts lack context, security teams must treat each equally. That means the average enterprise wastes more than 20,000 hours per year on malware containment alone, according to a Ponemon Institute report.

On top of that, the cybersecurity industry remains fragmented, creating integration problems, orphaned products and training overhead for an industry that already faces a shortage of skilled worked — a gap that’s estimated to reach 1.5 million professionals by 2020.

Introducing IBM’s Cognitive Security Operations Center With Watson for Cyber Security

IBM’s Cognitive Security Operations Center (SOC), powered by Watson for Cyber Security, enhances analysts’ ability to fill gaps in intelligence and act with speed and accuracy. It finds connections between obscure data points that humans can’t see on their own and enables enterprises to more quickly and confidently tackle cyberthreats. Built on the IBM Security Operations and Response architecture, it integrates advanced cognitive technologies with leading security analytics solutions to understand and respond to sophisticated threats across cloud, networks, endpoints and users.

Watson for Cyber Security shines a light on data that was previous dark to organizational defenses and uncovers new insights, patterns and security context. Think about the more than 100,000 documented software vulnerabilities in the IBM X-Force Exchange database, as well as the 10,000 security research papers and 700,000 security blogs published each year. Now security analysts can quickly interpret this unstructured data — created by humans, for humans — and integrate it with structured data from countless sources and locations.

Cognitive security uses intelligent technologies such as machine learning and natural language processing to mimic the way the human brain functions. It gets stronger over time, learning with each interaction and getting better at proactively stopping threats. In fact, a recent survey revealed a threefold increase in the percentage of companies implementing cognitive-enabled security solutions in the next two to three years.

The Power of IBM QRadar Advisor and IBM BigFix Detect

The centerpiece of IBM’s new Cognitive SOC is QRadar Advisor with Watson. It combines IBM QRadar, the industry’s leading security analytics platform, with the cognitive capabilities of Watson for Cyber Security to automatically investigate and qualify security incidents. It augments security analysts’ expertise by uncovering hidden threats and automating insights. Security analysts, armed with this collective knowledge and instinct, can respond to threats with unprecedented speed and accuracy.

Another key component of the Cognitive SOC is IBM BigFix Detect. This is an endpoint detection and response (EDR) solution that extends cognitive processing to the points in the network where cyberattacks typically begin. BigFix Detect pinpoints malicious behavior and delivers targeted remediation to the compromised endpoints within minutes, cutting off attacks before they have a chance to spread.

When tied to IBM Resilient’s incident response dynamic playbooks, clients can quickly and accurately automate and orchestrate threat response across the entire organization. The IBM Cognitive SOC also brings together other technologies from IBM Security, including i2 for cyberthreat hunting and the IBM X-Force Exchange.

Step Up to the Cognitive Security Era

Security threats far exceed the capacity of even the most skilled security professionals. Security analysts need a trusted advisor that can provide key insights and intelligence so they can make better, more informed and more accurate decisions with confidence. The power of Watson and cognitive computing embodied in the IBM Cognitive SOC brings you the future of security, today.

More from Intelligence & Analytics

2022 Industry Threat Recap: Manufacturing

It seems like yesterday that industries were fumbling to understand the threats posed by post-pandemic economic and technological changes. While every disruption provides opportunities for positive change, it's hard to ignore the impact that global supply chains, rising labor costs, digital currency and environmental regulations have had on commerce worldwide. Many sectors are starting to see the light at the end of the tunnel. But 2022 has shown us that manufacturing still faces some dark clouds ahead when combatting persistent…

Cybersecurity in the Next-Generation Space Age, Pt. 3: Securing the New Space

View Part 1, Introduction to New Space, and Part 2, Cybersecurity Threats in New Space, in this series. As we see in the previous article of this series discussing the cybersecurity threats in the New Space, space technology is advancing at an unprecedented rate — with new technologies being launched into orbit at an increasingly rapid pace. The need to ensure the security and safety of these technologies has never been more pressing. So, let’s discover a range of measures…

Backdoor Deployment and Ransomware: Top Threats Identified in X-Force Threat Intelligence Index 2023

Deployment of backdoors was the number one action on objective taken by threat actors last year, according to the 2023 IBM Security X-Force Threat Intelligence Index — a comprehensive analysis of our research data collected throughout the year. Backdoor access is now among the hottest commodities on the dark web and can sell for thousands of dollars, compared to credit card data — which can go for as low as $10. On the dark web — a veritable eBay for…

The 13 Costliest Cyberattacks of 2022: Looking Back

2022 has shaped up to be a pricey year for victims of cyberattacks. Cyberattacks continue to target critical infrastructures such as health systems, small government agencies and educational institutions. Ransomware remains a popular attack method for large and small targets alike. While organizations may choose not to disclose the costs associated with a cyberattack, the loss of consumer trust will always be a risk after any significant attack. Let’s look at the 13 costliest cyberattacks of the past year and…