Skip to content
Tiatra, LLCTiatra, LLC
Tiatra, LLC
Information Technology Solutions for Washington, DC Government Agencies
  • Home
  • About Us
  • Services
    • IT Engineering and Support
    • Software Development
    • Information Assurance and Testing
    • Project and Program Management
  • Clients & Partners
  • Careers
  • News
  • Contact
 
  • Home
  • About Us
  • Services
    • IT Engineering and Support
    • Software Development
    • Information Assurance and Testing
    • Project and Program Management
  • Clients & Partners
  • Careers
  • News
  • Contact

From Copilot to agent – AI is growing up, and CISOs need to be ready

Over the past year, CISOs have wrestled with integrating AI into security processes, balancing the promised efficiencies with the need for stringent testing and adherence to security protocols. Hot on the heels of this integration effort comes another innovation: agentic AI. An evolution that marks the next leap in AI maturity, agentic AI offers both opportunities and challenges that could redefine how CISOs, CIOs, and their teams defend against cyber threats.

When I submitted a panel talk to RSA on CISOs’ perspectives on using AI in their organizations and finding AI’s promised productivity gains for their companies this past September, the term Agentic AI was just coming into play. In a few short months, the technology is already advancing, with significant developments in AI autonomy. Today, agentic AI is becoming a part of the strategic roadmap discussion for CIOs and CISOs.

From security Copilots to agentic AI

A year ago, the buzz was all about security copilots—AI-powered assistants designed to enhance threat detection, streamline incident response, and optimize security workflows. These copilots brought automation into enterprise security processes and strategies, transforming how organizations respond to cyber risks.

Now, agentic AI has stepped into the spotlight. More autonomous and adaptive than its predecessors, this next-gen approach can take on more complex security tasks, anticipate emerging threats, and dynamically adjust defenses in real-time. This class of advanced AI systems is designed to operate autonomously, making decisions and taking actions to reach specific goals with little to no human monitoring. The big difference is that agentic AI uses advanced reasoning, adaptability, and learning capabilities to independently navigate complex tasks rather than relying on existing AI’s human approval and guidance to make decisions.

It’s an astonishing step ahead, combining the power of large language models (LLMs) and real-time data processing to act as a proactive “agent” in dynamic environments without human intervention. But questions linger. Will the AI take over entire processes? And if so, could the lack of a human in the loop cause unexpected issues? For example, might an agentic AI stop or block a legitimate business transaction because the agent thinks it’s fraud? Alternatively, could the agent accidentally create a vulnerability that can be exploited?

Understanding the potential of agentic AI

For CISOs, agentic AI represents both a transformative opportunity and a strategic shift. As cyber threats grow in speed and sophistication, CISOs are pressured to maintain or boost their organizational resilience while managing resource constraints and/or worker burnout. That’s where agentic AI can make its mark – stepping in as a force multiplier, automating decision-making, adapting to evolving threats, and enabling CISOs to evolve from reactive defenders to architects of business-aligned security strategies.

But it’s not without challenges. CISOs must grapple with governance policies, along with reliability and compliance issues. How can humans oversee the process without actually overseeing the process? In this scenario, AI decision-making may also erode trust if not addressed with transparent frameworks and human oversight.

Crowdstrike and NVIDIA recently announced a collaborative partnership to work together to advance these areas. The companies aim “to deliver even more intelligent automation, enable real-time decision-making, and enhance precision to help security teams respond to threats with unprecedented speed and accuracy.”

The companies hope that their use of agentic AI security automation will enable faster and more accurate threat detection, more autonomous SOC operations with optimized response times and reduced operational costs, and allow enterprise security teams to get more precise data regarding real threats.

Despite having both incumbent security brands and a large number of newer entrants pushing the agentic AI concept, CISOs are moving forward at a cautious pace. The most cutting-edge and AI-savvy security executive that I regularly speak with stated, “Currently, agentic AI is more hype than reality, but it has massive future potential.” The testing that this executive and his team have done has shown that agentic systems are still not outperforming traditional solutions that incorporate human input and direction in any meaningful way. 

Another security executive pointed to the promise of cutting down on the noise level in the SOC, but had no near-term plans to deploy agentic solutions. Others mentioned that they see nearer-term applicability to basic to moderate complexity work in their organization (including use cases outside of their security domain), but not suitable for high-value and high-complexity tasks.  Combining this sentiment with regulatory questions drove feedback that organizations are not moving to a fully automated defensive environment anytime soon. But as we’ve all seen, the AI markets move faster than prior waves of innovation.

Improving SOC operations

Given the comments above, let’s delve a bit deeper into one of the nearer-term use cases.  Agentic AI solutions that help automate detection and remediation in the SOC (security operations center) could certainly provide a welcome lift to an under-resourced department receiving thousands of daily threat alerts. Automated agentic AI solutions could assist SOC analysts in the following ways:

  • Automating Alerts: Instead of analysts sifting through thousands of alerts, agentic AI could evaluate each one, correlating data from multiple sources and delivering prioritized, fully investigated reports. This could cut work times from days to minutes.
  • Threat Detection: Agentic AI could analyze threat intelligence at scale, distinguishing real threats from false positives with contextual insights.
  • Scaling Efficiency: Agentic AI could automate log analysis and incident correlation. This would allow SOCs to manage higher workloads without adding headcount. Gartner predicts a 40% efficiency boost by 2026 by shifting analyst roles toward AI oversight and strategic initiatives.
  • Faster Response: Agentic AI could autonomously flag suspicious network behavior and isolate compromised devices in real-time. This would help to contain threats faster.

For CISOs, deploying agentic AI could result in a leaner, more effective SOC that counters automated attacks with equal speed.

Automating help desk operations

Another use case for agentic AI would be to evolve the enterprise help desk. Because the help desk is critical for both IT and security, it’s often weighed down by repetitive tickets and user requests. This causes delays and strains resources. Agentic AI could improve this area by:

  • Automating Repetitive Tasks: Agentic AI resolves routine issues like password resets and software troubleshooting without human intervention. This reduces ticket volume and wait times and frees company help desk staff for other projects.
  • Delivering User Experience: Agentic AI offers personalized 24/7 support, offering tailored solutions for common user needs.
  • Flagging Alerts for Security: Agentic AI automatically flags phishing reports or device anomalies and escalates them to the SOC. This will boost collaboration between CIO and CISO teams on various security issues.

Having an automated assist at the help desk could be a boon of support for weary CIOs and CISOs. Agentic AI could handle minor issues before they grow into serious breaches. Despite all of these potential advantages, agentic AI is still in its deployment infancy. It is an area of high promise, but not without its risks and concerns. It will be interesting to see where the market adoption sits at this time next year. As I said at the beginning of this, a year ago, we were just talking about co-pilots, and agentic AI was not yet part of the discussion.


Read More from This Article: From Copilot to agent – AI is growing up, and CISOs need to be ready
Source: News

Category: NewsApril 18, 2025
Tags: art

Post navigation

PreviousPrevious post:“실내 5G 시장, 2030년까지 연평균 22.1%씩 성장··· 생성형 AI도 성장 요인”NextNext post:The project of reform and revival that saved JAL

Related posts

기업 AI 도입을 가로막는 5가지 장애물
June 13, 2025
‘시스템 통합업체가 AI로 제안서 쓰는 시대···’ 조직의 대응법 6가지
June 13, 2025
가트너 “전체 마케팅 지출 중 61.1%가 디지털···검색 광고 비중 13.9%”
June 13, 2025
‘검색 결과 상단에 노출’··· 딥시크 사칭 웹사이트 주의보
June 13, 2025
세일즈포스, 슬랙 API 약관 개정··· ‘LLM 통한 데이터 수집 제한’
June 13, 2025
“올해 1분기 의료·교육기관 겨냥한 랜섬웨어 공격 급증” SK쉴더스
June 13, 2025
Recent Posts
  • 기업 AI 도입을 가로막는 5가지 장애물
  • ‘시스템 통합업체가 AI로 제안서 쓰는 시대···’ 조직의 대응법 6가지
  • 가트너 “전체 마케팅 지출 중 61.1%가 디지털···검색 광고 비중 13.9%”
  • ‘검색 결과 상단에 노출’··· 딥시크 사칭 웹사이트 주의보
  • 세일즈포스, 슬랙 API 약관 개정··· ‘LLM 통한 데이터 수집 제한’
Recent Comments
    Archives
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024
    • November 2024
    • October 2024
    • September 2024
    • August 2024
    • July 2024
    • June 2024
    • May 2024
    • April 2024
    • March 2024
    • February 2024
    • January 2024
    • December 2023
    • November 2023
    • October 2023
    • September 2023
    • August 2023
    • July 2023
    • June 2023
    • May 2023
    • April 2023
    • March 2023
    • February 2023
    • January 2023
    • December 2022
    • November 2022
    • October 2022
    • September 2022
    • August 2022
    • July 2022
    • June 2022
    • May 2022
    • April 2022
    • March 2022
    • February 2022
    • January 2022
    • December 2021
    • November 2021
    • October 2021
    • September 2021
    • August 2021
    • July 2021
    • June 2021
    • May 2021
    • April 2021
    • March 2021
    • February 2021
    • January 2021
    • December 2020
    • November 2020
    • October 2020
    • September 2020
    • August 2020
    • July 2020
    • June 2020
    • May 2020
    • April 2020
    • January 2020
    • December 2019
    • November 2019
    • October 2019
    • September 2019
    • August 2019
    • July 2019
    • June 2019
    • May 2019
    • April 2019
    • March 2019
    • February 2019
    • January 2019
    • December 2018
    • November 2018
    • October 2018
    • September 2018
    • August 2018
    • July 2018
    • June 2018
    • May 2018
    • April 2018
    • March 2018
    • February 2018
    • January 2018
    • December 2017
    • November 2017
    • October 2017
    • September 2017
    • August 2017
    • July 2017
    • June 2017
    • May 2017
    • April 2017
    • March 2017
    • February 2017
    • January 2017
    Categories
    • News
    Meta
    • Log in
    • Entries feed
    • Comments feed
    • WordPress.org
    Tiatra LLC.

    Tiatra, LLC, based in the Washington, DC metropolitan area, proudly serves federal government agencies, organizations that work with the government and other commercial businesses and organizations. Tiatra specializes in a broad range of information technology (IT) development and management services incorporating solid engineering, attention to client needs, and meeting or exceeding any security parameters required. Our small yet innovative company is structured with a full complement of the necessary technical experts, working with hands-on management, to provide a high level of service and competitive pricing for your systems and engineering requirements.

    Find us on:

    FacebookTwitterLinkedin

    Submitclear

    Tiatra, LLC
    Copyright 2016. All rights reserved.