Skip to Content
  • 오피스

    오피스

    미주
    • Atlanta
    • Austin
    • Bogota
    • Boston
    • Buenos Aires
    • Chicago
    • Dallas
    • Denver
    • Houston
    • Los Angeles
    • Mexico City
    • Minneapolis
    • Monterrey
    • Montreal
    • New York
    • Rio de Janeiro
    • San Francisco
    • Santiago
    • São Paulo
    • Seattle
    • Silicon Valley
    • Toronto
    • Washington, DC
    유럽, 중동, 아프리카
    • Amsterdam
    • Athens
    • Berlin
    • Brussels
    • Copenhagen
    • Doha
    • Dubai
    • Dusseldorf
    • Frankfurt
    • Helsinki
    • Istanbul
    • Johannesburg
    • Kyiv
    • Lisbon
    • London
    • Madrid
    • Milan
    • Munich
    • Oslo
    • Paris
    • Riyadh
    • Rome
    • Stockholm
    • Vienna
    • Warsaw
    • Zurich
    아시아, 호주
    • Bangkok
    • Beijing
    • Bengaluru
    • Brisbane
    • Ho Chi Minh City
    • Hong Kong
    • Jakarta
    • Kuala Lumpur
    • Manila
    • Melbourne
    • Mumbai
    • New Delhi
    • Perth
    • Seoul
    • Shanghai
    • Singapore
    • Sydney
    • Tokyo
    오피스 전체보기
  • 얼럼나이
  • 미디어 센터
  • 구독
  • 연락처
  • Korea | 한국어

    지역 및 언어 선택

    글로벌
    • Global (English)
    미주
    • Brazil (Português)
    • Argentina (Español)
    • Canada (Français)
    • Chile (Español)
    • Colombia (Español)
    유럽, 중동, 아프리카
    • France (Français)
    • DACH Region (Deutsch)
    • Italy (Italiano)
    • Spain (Español)
    • Greece (Elliniká)
    아시아, 호주
    • China (中文版)
    • Korea (한국어)
    • Japan (日本語)
  • Saved items (0)
    Saved items (0)

    You have no saved items.

    관심 있는 내용을 북마크하여 Red 폴더에 저장할 수 있습니다. Red 폴더 에서 저장된 내용을 읽거나 공유해보세요.

    Explore Bain Insights
  • 산업
    메인 메뉴

    산업

    • 우주항공, 방산 및 정부 서비스
    • 농업 관련 산업
    • 화학
    • 인프라, 건설 및 건축 자재
    • 소비재
    • 금융 서비스
    • 헬스케어
    • 산업용 기계 및 장비
    • 미디어 및 엔터테인먼트
    • 금속
    • 광업
    • 석유 및 가스
    • 제지 및 패키징 산업
    • 사모펀드
    • 사회 및 공공 부문
    • 유통
    • 기술
    • 텔레콤
    • 운송
    • 여행·여가
    • 유틸리티 및 재생가능 에너지
  • 컨설팅 서비스
    메인 메뉴

    컨설팅 서비스

    • Customer Experience
    • ESG
    • Innovation
    • M&A
    • 운영
    • 조직
    • 사모펀드
    • 고객 전략 및 마케팅
    • 전략
    • AI, 인사이트 및 솔루션
    • Technology
    • 변화 혁신
  • Digital
  • 인사이트
  • 베인 소개
    메인 메뉴

    베인 소개

    • 업무 소개
    • 베인의 신념
    • 구성원 및 리더십 소개
    • 고객 성과
    • 주요 수상 경력
    • 글로벌 파트너사
    Further: Our global responsibility
    • 다양성과 포용
    • 사회 공헌 활동
    • Sustainability
    • World Economic Forum
    Learn more about Further
  • Careers
    메인 메뉴

    Careers

    • Work with Us
      Careers
      Work with Us
      • Find Your Place
      • Our Work Areas
      • Integrated Teams
      • Students
      • Internships & Programs
      • Recruiting Events
    • Life at Bain
      Careers
      Life at Bain
      • Blog: Inside Bain
      • Career Stories
      • Our People
      • Where We Work
      • Supporting Your Growth
      • Affinity Groups
      • Benefits
    • Impact Stories
    • Hiring Process
      Careers
      Hiring Process
      • What to Expect
      • Interviewing
    FIND JOBS
  • 오피스
    메인 메뉴

    오피스

    • 미주
      오피스
      미주
      • Atlanta
      • Austin
      • Bogota
      • Boston
      • Buenos Aires
      • Chicago
      • Dallas
      • Denver
      • Houston
      • Los Angeles
      • Mexico City
      • Minneapolis
      • Monterrey
      • Montreal
      • New York
      • Rio de Janeiro
      • San Francisco
      • Santiago
      • São Paulo
      • Seattle
      • Silicon Valley
      • Toronto
      • Washington, DC
    • 유럽, 중동, 아프리카
      오피스
      유럽, 중동, 아프리카
      • Amsterdam
      • Athens
      • Berlin
      • Brussels
      • Copenhagen
      • Doha
      • Dubai
      • Dusseldorf
      • Frankfurt
      • Helsinki
      • Istanbul
      • Johannesburg
      • Kyiv
      • Lisbon
      • London
      • Madrid
      • Milan
      • Munich
      • Oslo
      • Paris
      • Riyadh
      • Rome
      • Stockholm
      • Vienna
      • Warsaw
      • Zurich
    • 아시아, 호주
      오피스
      아시아, 호주
      • Bangkok
      • Beijing
      • Bengaluru
      • Brisbane
      • Ho Chi Minh City
      • Hong Kong
      • Jakarta
      • Kuala Lumpur
      • Manila
      • Melbourne
      • Mumbai
      • New Delhi
      • Perth
      • Seoul
      • Shanghai
      • Singapore
      • Sydney
      • Tokyo
    오피스 전체보기
  • 얼럼나이
  • 미디어 센터
  • 구독
  • 연락처
  • Korea | 한국어
    메인 메뉴

    지역 및 언어 선택

    • 글로벌
      지역 및 언어 선택
      글로벌
      • Global (English)
    • 미주
      지역 및 언어 선택
      미주
      • Brazil (Português)
      • Argentina (Español)
      • Canada (Français)
      • Chile (Español)
      • Colombia (Español)
    • 유럽, 중동, 아프리카
      지역 및 언어 선택
      유럽, 중동, 아프리카
      • France (Français)
      • DACH Region (Deutsch)
      • Italy (Italiano)
      • Spain (Español)
      • Greece (Elliniká)
    • 아시아, 호주
      지역 및 언어 선택
      아시아, 호주
      • China (中文版)
      • Korea (한국어)
      • Japan (日本語)
  • Saved items  (0)
    메인 메뉴
    Saved items (0)

    You have no saved items.

    관심 있는 내용을 북마크하여 Red 폴더에 저장할 수 있습니다. Red 폴더 에서 저장된 내용을 읽거나 공유해보세요.

    Explore Bain Insights
  • 산업
    • 산업

      • 우주항공, 방산 및 정부 서비스
      • 농업 관련 산업
      • 화학
      • 인프라, 건설 및 건축 자재
      • 소비재
      • 금융 서비스
      • 헬스케어
      • 산업용 기계 및 장비
      • 미디어 및 엔터테인먼트
      • 금속
      • 광업
      • 석유 및 가스
      • 제지 및 패키징 산업
      • 사모펀드
      • 사회 및 공공 부문
      • 유통
      • 기술
      • 텔레콤
      • 운송
      • 여행·여가
      • 유틸리티 및 재생가능 에너지
  • 컨설팅 서비스
    • 컨설팅 서비스

      • Customer Experience
      • ESG
      • Innovation
      • M&A
      • 운영
      • 조직
      • 사모펀드
      • 고객 전략 및 마케팅
      • 전략
      • AI, 인사이트 및 솔루션
      • Technology
      • 변화 혁신
  • Digital
  • 인사이트
  • 베인 소개
    • 베인 소개

      • 업무 소개
      • 베인의 신념
      • 구성원 및 리더십 소개
      • 고객 성과
      • 주요 수상 경력
      • 글로벌 파트너사
      Further: Our global responsibility
      • 다양성과 포용
      • 사회 공헌 활동
      • Sustainability
      • World Economic Forum
      Learn more about Further
  • Careers
    최근 검색어
      최근 방문 페이지

      Content added to saved items

      Saved items (0)

      Removed from saved items

      Saved items (0)

      Technology Report

      Generative AI and Cybersecurity: Strengthening Both Defenses and Threats

      Generative AI and Cybersecurity: Strengthening Both Defenses and Threats

      Breakthroughs in technologies built on large language models will accelerate the arms race between hackers and companies.

      글 Syed Ali and Frank Ford

      • 읽기 소요시간
      }

      Report

      Generative AI and Cybersecurity: Strengthening Both Defenses and Threats
      en
      한눈에 보기
      • Generative artificial intelligence (AI) should strengthen cybersecurity, particularly in threat identification, although it’s unlikely to lead to full automation anytime soon.
      • Bad actors are also exploring generative AI’s potential to aid cyberattacks through innovations such as self-evolving malware.
      • Through a range of moves today, both buyers and providers of cybersecurity services can take advantage of the new technology while remaining protected.

      This article is part of Bain's 2023 Technology Report.

      Explore the report

      Only months after its public breakthrough, generative AI has shown the potential to transform cybersecurity products and operations. After the launch of ChatGPT and other products powered by large language models (LLMs), the cybersecurity industry is planning for generative AI to become a key tool. And that’s despite the launch challenge generative AI faces in cybersecurity—namely, the sensitive and siloed nature of security data, which makes it hard to get high-quality, comprehensive datasets to train and update an LLM model.

      So far, threat identification is the hot spot. When we analyzed cybersecurity companies that are using generative AI, we found that all were using it at the identification stage of the SANS Institute’s well-known incident response framework—the biggest uptake in any of the six SANS stages (preparation, identification, containment, eradication, recovery, and lessons learned). That fits our assessment that threat identification holds the greatest potential for generative AI to improve cybersecurity (see Figure 1). Generative AI is already helping analysts spot an attack faster, then better assess its scale and potential impact. For instance, it can help analysts more efficiently filter incident alerts, rejecting false positives. Generative AI’s ability to detect and hunt threats will only get more dynamic and automated.

      Figure 1
      Threat identification holds the most potential for generative AI to improve cybersecurity—and that’s where industry adoption has been strongest so far
      Threat identification holds the most potential for generative AI to improve cybersecurity—and that’s where industry adoption has been strongest so far
      Threat identification holds the most potential for generative AI to improve cybersecurity—and that’s where industry adoption has been strongest so far

      For the containment, eradication, and recovery stages of the SANS framework, adoption rates vary from about one-half to two-thirds of the cybersecurity companies we analyzed, with containment most advanced. In these stages, generative AI is already narrowing knowledge gaps by providing analysts with remedy and recovery instructions based on proven tactics from past incidents. While there will be more gains through automation of containment, eradication, and recovery plans, full automation is unlikely over the next 5 to 10 years, if at all. The longer-term impact of generative AI in these areas is likely to be moderate and will likely always need some human supervision.

      Generative AI is also being used in the lessons-learned stage, where it can automate the creation of incident response reports, improving internal communication. Crucially, the reports can be reincorporated into the model, improving defenses. For example, Google’s Security AI Workbench, powered by the Sec-PaLM 2 LLM, converts raw data from recent attacks into machine-readable and human-readable threat intelligence that can accelerate responses (under human supervision). But while the quality of generative AI–powered incident response reports should keep improving, human involvement is still likely to remain necessary.

      A double-edged sword

      Of course, generative AI can also be used as a cyberattacker's tool, giving them similar capabilities as defenders. For example, less experienced attackers can use it to create more enticing emails or more realistic deepfake videos, recordings, and images to send to phishing targets. Generative AI also allows bad actors to easily rewrite a known attack code to be just different enough to avoid detection.

      Generative AI has certainly become a trending topic for malicious actors. Mentions of generative AI on the dark web proliferated in 2023 (see Figure 2). It’s common to see hackers boasting that they’re using ChatGPT. One hacker posted that he was able to use generative AI to recreate malware strains from research publications, such as a Python-based stealer that can search and retrieve common file types (.docx, PDF, images) across a system.

      Figure 2
      The use of generative AI for nefarious purposes has become an increasingly popular topic on the dark web after the launch of ChatGPT
      The use of generative AI for nefarious purposes has become an increasingly popular topic on the dark web after the launch of ChatGPT
      The use of generative AI for nefarious purposes has become an increasingly popular topic on the dark web after the launch of ChatGPT

      The threat from bad actors will only increase as they use generative AI to standardize and update their tactics, techniques, and procedures. Generative AI–assisted dangers include strains of malware that self-evolve, creating variations to attack a specific target with a unique technique, payload, and polymorphic code that’s undetectable by existing security measures. Only the most agile cybersecurity operations will stay ahead.

      Actions to take now

      Corporate leaders should:

      • understand that generative AI won’t rid cybersecurity of its operational and technical complexities;
      • make generative AI and cybersecurity a recurring agenda item for board and C-suite meetings; and
      • avoid a narrow focus on controls or certain risks—cybersecurity demands a holistic approach.

      Chief information officers/chief information security officers should:

      • get security operations (SecOps) leaders to validate generative AI output, particularly threat-detection algorithms updated by generative AI;
      • train new and junior SecOps employees to hunt threats with and without generative AI to avoid dependence; and
      • where possible, avoid relying on a single vendor or generative AI model across the cybersecurity stack.

      Cybersecurity companies should:

      • hire the right mix of talent to bring generative AI capabilities into their products; and
      • guard against generative AI–created false information (hallucinations) and external tampering with generative AI algorithms and models that might create backdoor vulnerabilities.

      Generative AI will rapidly advance, and it’s essential that all stakeholders from cybersecurity providers to enterprises continuously update their specialist knowledge and strategy to take advantage—and stay protected.

      Read the Next Chapter

      Taking the Hyperbole Out of the Metaverse

      Read our 2023 Technology Report

      Download the PDF Explore the report
      저자
      • Headshot of Syed Ali
        Syed Ali
        파트너, Houston
      • Headshot of Frank Ford
        Frank Ford
        파트너, London
      문의하기
      관련 산업
      • 기술
      • Cybersecurity
      관련 컨설팅 서비스
      • 정보기술(IT)
      • Digital
      최적의 솔루션 찾기
      • Artificial Intelligence
      Technology Report
      Quantum Computing Moves from Theoretical to Inevitable

      Quantum will likely become part of a mosaic, working with classical computing to solve big problems.

      자세히 보기
      Technology Report
      US and China: The Decoupling Accelerates

      Geopolitical tensions are pushing technology companies to revisit their global strategies.

      자세히 보기
      Artificial Intelligence
      Four Ways Leaders Can Make AI Redesigns Stick

      As companies redesign to scale AI, these four lessons help leaders ensure their organizations actually live the new operating model.

      자세히 보기
      Artificial Intelligence
      Reimagining Merchandising in the Era of Agentic AI

      The future of merchandising is not better analysis, but faster, smarter execution—and agentic AI is what makes that possible.

      자세히 보기
      Technology Report
      Will AI Disrupt Tech’s Most Valuable Companies?

      Hyperscalers and other market leaders have adapted well to technology shifts, but generative AI poses new challenges.

      자세히 보기

      Value Evolution

      • Creating Value in Tech Throughout the Life Cycle

      • Preparing for Exit: A Buyer’s Market Is Coming for Tech Assets

      • AI Investors: Act Fast, Act Wisely

      • Technology Enters Its Post-Globalization Era

      Strategic Battlegrounds

      • You’re Out of Time to Wait and See on AI

      • How AI Is Recoding the Software Business Model

      • Generative AI and Cybersecurity: Strengthening Both Defenses and Threats

      • Taking the Hyperbole Out of the Metaverse

      • The Untapped Value at the Intelligent Edge

      • After the Chip Shortage, Fears of a Capacity Glut Are Overblown

      Operational Transformations

      • Digital Innovation: Getting the Architecture Foundations Right

      • The Talent Implications of Generative AI

      • How Enterprise Sales Can Supercharge Product-Led Growth

      • How Your Revenue Can Grow Faster Than Your Salesforce

      • Decarbonizing Technology Supply Chains

      First published in 9월 2023
      태그
      • 기술
      • 정보기술(IT)
      • Artificial Intelligence
      • Cybersecurity
      • Digital
      • Technology Report

      프로젝트 사례

      Digital How a Data-Driven Mindset Powers McAfee’s Growth

      See more related case studies

      Helping a Midsize ERP Player Compete against the Giants

      See more related case studies

      성과 개선 Aggressively growing an IT service provider with a high-performance culture

      See more related case studies

      베인에 궁금하신 점이 있으신가요?

      베인은 주저 없이 변화를 마주할 줄 아는 용감한 리더들과 함께합니다. 그리고, 이들의 담대한 용기는 고객사의 성공으로 이어집니다.

      급변하는 비즈니스 환경에서 살아남기 위한 선도자의 시각. 월간 Bain Insights에서 글로벌 비즈니스의 핵심 이슈를 확인하십시오.

      *개인정보 정책을 읽었으며 그 내용에 동의합니다.

      Privacy Policy를 읽고 동의해주십시오.
      Bain & Company
      문의하기 환경정책 Accessibility 이용약관 개인정보 보호 쿠키 사용 정책 Sitemap Log In

      © 1996-2026 Bain & Company, Inc.

      문의하기

      무엇을 도와드릴까요?

      • 프로젝트 문의
      • 채용 정보
      • 언론
      • 제휴 문의
      • 연사 초청
      오피스 전체보기