Presented by Microsoft
RSAC in focus: How AI is improving cybersecurity
AI is revolutionizing cybersecurity by enhancing threat detection, automating defenses, and letting IT professionals tackle evolving digital challenges.


The field of digital protection is continually advancing, and the integration of artificial intelligence in cybersecurity is proving to be a pivotal development. This was unmistakably clear at the recent RSA Conference 2025, where, as reported by ITPro, the overwhelming sentiment was that AI is no longer a future concept but a present-day reality shaping security strategies.
AI discussions at RSAC Conference spotlighted the technology’s dual role in creating challenges and offering defenses. The focus was on how AI enhances security operations centers (SOCs) by managing alerts and accelerating incident responses, proving its critical role in tackling sophisticated digital threats.
AI’s enhanced detection and predictive capabilities
One of the most significant contributions of AI in cybersecurity lies in its ability to dramatically improve the speed and accuracy of identifying potential harmful activities. Machine learning algorithms, a core component of AI, are adept at processing and analyzing immense datasets in real time. They can discern subtle anomalies in network traffic, system logs, or user behavior that might indicate an unauthorized system entry or the presence of malicious software. This capability is crucial for spotting novel or heavily disguised harmful acts that traditional signature-based detection methods might overlook.
AI-powered predictive analytics programs are becoming increasingly valuable. By learning from historical data and identifying patterns often associated with system compromises, these tools can forecast potential vulnerabilities or points of weakness before they are actively targeted. Natural language processing (NLP), another facet of AI, also plays a vital role. NLP algorithms can analyze the content of emails and other digital communications to identify the hallmarks of phishing attempts or other forms of social engineering, helping to flag or block deceptive communications before they can cause damage. This is particularly relevant given the persistent challenge organizations face from targeted deception campaigns aiming to trick employees.
Automating defense and managing vulnerabilities with AI
Beyond detection, AI is instrumental in enabling automated response mechanisms, a critical factor when dealing with the speed at which digital disturbances can unfold. AI-driven security orchestration, automation, and response (SOAR) platforms can execute predefined actions almost instantaneously when a security issue is identified. This might involve isolating an affected device from the network, applying a necessary software update to close a known vulnerability, or blocking communication with a recognized source of harmful activity. Such automation not only speeds up response times but also frees up human security teams to focus on more complex analytical tasks. Reinforcing this trend towards more sophisticated automation, as reported by ITPro, developments such as an agentic AI security assistant aim to automate further and accelerate threat investigation and response by having AI autonomously conduct investigations, significantly reducing manual effort for security teams.
AI tools are revolutionizing vulnerability management by scanning systems for flaws and prioritizing critical issues for resolution. User and entity behavior analytics (UEBA) leverages AI to detect deviations from normal activity, signaling potential risks like compromised credentials or insider threats for swift investigation.
The collaborative future: AI and human expertise
While AI offers powerful advantages, its most effective application in cybersecurity is as a collaborative tool that augments human expertise. The sheer volume of data and alerts generated in modern IT environments can overwhelm human teams; AI excels at sifting through this noise to highlight genuinely concerning events. This allows skilled professionals to apply their contextual understanding and nuanced judgment to complex situations where AI alone might fall short.
Get the ITPro daily newsletter
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
Discussions also highlight AI's dual-use nature, as both defenders and bad actors leverage it, driving the need for resilient and explainable AI (XAI) to ensure trust and accountability. AI helps address the cybersecurity skills gap by automating tasks and enhancing analysts' effectiveness.
While challenges like training data quality and adversarial threats exist, AI's role in automating responses and managing vulnerabilities is critical. As it matures, AI will become even more integral to predicting and tackling digital threats, making its strategic adoption essential for robust cybersecurity.
Rene Millman is a freelance writer and broadcaster who covers cybersecurity, AI, IoT, and the cloud. He also works as a contributing analyst at GigaOm and has previously worked as an analyst for Gartner covering the infrastructure market. He has made numerous television appearances to give his views and expertise on technology trends and companies that affect and shape our lives. You can follow Rene Millman on Twitter.
-
How CISOs can work with business leaders to harness the power of AI
Features Harnessing AI's transformative potential requires a strategic partnership between CISOs and business leaders to ensure secure and ethical innovation
-
RSAC in focus: Key takeaways for CISOs
The RSAC Conference 2025 spotlighted pivotal advancements in agentic AI, identity security, and collaborative defense strategies, shaping the evolving mandate for CISOs.
-
RSAC in focus: Key takeaways for CISOs
The RSAC Conference 2025 spotlighted pivotal advancements in agentic AI, identity security, and collaborative defense strategies, shaping the evolving mandate for CISOs.
-
RSAC in focus: Quantum computing and security
Experts at RSAC 2025 emphasize the need for urgent action to secure data against future cryptographic risks posed by quantum computing
-
RSAC in focus: Collaboration in cybersecurity
Experts at RSA Conference 2025 emphasised that collaboration across sectors and shared intelligence are pivotal to addressing the evolving challenges of cybersecurity.
-
RSAC in focus: Considerations and possibilities for the remainder of 2025
As 2025 unfolds, RSAC explores the pivotal considerations and emerging possibilities shaping the cybersecurity landscape
-
RSAC Conference 2025: The front line of cyber innovation
ITPro Podcast Ransomware, quantum computing, and an unsurprising focus on AI were highlights of this year's event
-
RSAC Conference 2025: AI and quantum complicate security
Organizations are grappling with the complications of adopting AI for security
-
RSAC Conference 2025 was a sobering reminder of the challenges facing cybersecurity professionals
Analysis Despite widespread optimism on how AI can help those in cybersecurity, it’s clear that the threat landscape is more complex than ever
-
RSAC Conference day three: using AI to do more with less and facing new attack techniques