AWS CISO: Need for Continuous Observability is Now Critical
好,我现在要帮用户总结这篇文章的内容,控制在100个字以内。首先,我需要通读文章,抓住主要观点。 文章主要讲的是AWS的CISO Amy Herzog关于网络安全的看法。她提到,随着IT环境变化加快,威胁也在迅速演变,尤其是AI的使用让网络攻击更复杂。因此,安全团队需要更高的可见性和自动化能力来快速响应攻击。 接下来,她指出大多数组织目前还达不到这个目标,但改革网络安全流程变得越来越紧迫。犯罪集团也在投资自动化和AI来降低攻击成本和时间。同时,安全团队人员不足,必须依靠更多自动化工具。 此外,她建议重组安全团队,招聘更有创造力的人才,并引入数据工程师来处理大量数据。最终目标是建立一个跨学科团队,深入了解保护的IT环境。这需要大量投资,而网络犯罪分子也在快速投资。 总结下来,重点是:AI驱动攻击增加、需更高可见性和自动化、团队重组和投资需求。 现在我要把这些要点浓缩到100字以内,确保涵盖所有关键点。 </think> AWS首席信息安全官Amy Herzog指出,在快速变化的IT环境中,网络安全威胁正因AI而迅速升级。安全团队需提升可见性与自动化能力以快速应对攻击。尽管多数组织尚未达标,但改革需求日益迫切。犯罪集团正利用AI降低成本与时间投入。安全团队普遍人手不足,需加强自动化工具与人才重组以应对挑战。 2026-1-5 12:23:47 Author: securityboulevard.com(查看原文) 阅读量:8 收藏

The CISO for Amazon Web Services (AWS) is advising fellow cybersecurity leaders to observe, learn and innovate as quickly as possible in an era where IT environments are rapidly changing faster than ever.

AWS CISO Amy Herzog said that while threat prevention remains critical, it’s clear that the tactics and techniques being employed by adversaries are rapidly evolving as AI is increasingly employed to continuously launch more sophisticated cyberattacks. Cybersecurity teams now need to be able to continuously observe IT environments in order to be able to respond faster than those adversaries can act, said Herzog.

In effect, cybersecurity teams now need much higher levels of visibility and automation to enable them to resolve issues at speeds that make it significantly less profitable for adversaries to launch a cyberattack in the first place, she added.

Most organizations are a very long way from being able to achieve that goal today, but the need to revamp cybersecurity workflows is becoming more pressing with each passing day. Cybercriminal syndicates are investing more in automation and AI with an eye toward not just reducing the cost of launching a cyberattack but also the amount of time required to exploit any newly discovered vulnerability.

At the same time, most cybersecurity teams, even in the age of AI, remain understaffed, noted Herzog. The only viable option will be to invest more in automation to enable organizations to combat threats in near real time, she added.

Additionally, most organizations will need to reconstitute how their cybersecurity teams are organized with an eye toward hiring more creative thinkers who are able to anticipate how a cyberattack might be launched against a specific IT environment, noted Herzog.

As part of that effort, cybersecurity teams will also need data engineers to manage the massive amounts of telemetry data that are needed to continuously observe IT environments, she added.

The ultimate goal is to create a cross-disciplinary team that has a much deeper level of understanding of the IT environment they are tasked to protect, said Herzog.

Achieving that goal will require significant investments, which may be one reason that even during challenging economic times, the size of the average cybersecurity budget continues to increase. The issue is that cybersecurity syndicates and nation-states are leveraging much larger financial resources to make similar investments at a much faster pace.

Like it or not, many of the tools and platforms that cybersecurity teams currently rely on are not designed to enable them to respond in near real time to cyberattacks. Each organization will need to determine to what degree to replace those tools and platforms versus, alternatively, adding an integration framework capable of processing and analyzing telemetry data in real time that they would have to deploy and maintain.

Regardless of approach, the one thing that is certain is that the pace at which cyberattacks are launched and, hopefully, thwarted is about to exponentially increase. Unfortunately, the only thing left to determine in the meantime is the damage those cyberattacks might inflict before organizations are able to effectively respond.

Recent Articles By Author


文章来源: https://securityboulevard.com/2026/01/aws-ciso-need-for-continuous-observability-is-now-critical/
如有侵权请联系:admin#unsafe.sh