How agencies can balance AI’s potential and risks for cyber attacks

Just_Super via Getty Images

Through adequate AI training and keeping humans in the loop of AI-driven solutions, governments can harness the technology to address increasing cyber threats to the public sector, speakers said during a recent event.

Cybersecurity remains a top priority for state and local leaders, and technology like artificial intelligence has emerged as one tool in governments’ arsenals to thwart cyber attacks. But leaders must find a balance between AI's potential and its risks in order to effectively use the technology, speakers said at the Engage Public Sector Summit hosted by GovExec, Carahsoft and Check Point last week in Washington, D.C. 

Bad actors have increasingly targeted critical government functions from elections to public transit systems and schools. The growing threat landscape presents government leaders with the opportunity to explore innovative solutions like AI to combat cyber attacks, Keith Hartung, chief security officer at the Pennsylvania Treasury Department, said.

“AI and security are a natural fit … because we’ve been leveraging [them] for years,” said Hartung. While generative AI is a newer concept to tech and cyber leaders, “deep learning and machine learning that [AI] is built on are the same baseline technologies that we’ve used to analyze emails and sort the logs in our SIM tools for forever,” he said. 

Now, tech staff can do more and do it faster because AI has become more advanced, Hartung said. As an example, he explained that the Pennsylvania Treasury Department has 360 employees, but only three of them — including Hartung — make up the agency’s security team. 

That’s where AI in cybersecurity has functioned as a “force enabler” for the trio in charge of managing the approximately $120 billion that flows through the Treasury Department annually, Hartung said. Without AI, the team would not be able to keep up with sorting the thousands of log files that they need to stay on top of in order to monitor and address cyber threats. 

The team also leans on an AI model to predict cyber threats because the system can scour social media, dark web sources or public websites to alert staff of potential vulnerabilities that could be exploited by bad actors, Hartung said. Such insights enable the security team to “create a beautiful little report that I can hand off to my [chief information officer] and say, ‘This is a threat we saw, this is the action we’ve taken and this is what we think we may have mitigated proactively.’ Talk about a win,” he said. 

But keeping a human in the loop when implementing AI tools, particularly when it comes to generative AI solutions that recommend action steps to users, remains “super critical for all of us,” he said. “I don't want people in my agency to think of it as artificial intelligence. I tell them every day, ‘Stop thinking in that term, think of it as augmented intelligence. [AI] is not there to replace, it is there to make you better.’”

Indeed, government agencies should break down how they want to implement AI in cybersecurity to mitigate concerns about the tech’s impact on critical operations and infrastructure, said Glen Deskin, head of engineering and cybersecurity evangelist at Check Point Software Technologies. 

Many people are hesitant to explore AI cybersecurity options in the first place because they haven’t taken time to determine which tasks they want an AI tool to assume and which ones can remain under human responsibility, he explained. For example, agencies can configure an AI solution to help analyze data without progressing to making automated decisions or actions that a human with cyber expertise and experience is better suited to do. 

“The big thing is not the technology, it’s actually the people that will run these technologies,” said Suneel Cherukuri, chief information security officer for the District of Columbia. 

An agentic security operations center, for example, could help governments field cyber threats by leveraging agents to triage and address attacks, he said. Such tools can not only streamline the process of identifying a cyber attack, they can provide educational resources for staff to further beef up agencies’ cybersecurity. 

For instance, agency leaders can take data insights from an SOC to curate training resources that “I can take back to my school districts and university partnerships to say, ‘Here is how we can train our kids [for] real scenarios,” Cherukuri explained. 

Indeed, SOCs are gaining traction as a way for state and local governments to partner with nearby educational institutions to build a cyber talent pipeline. Louisiana State University, for example, offers an SOC program that trains students on how to protect institutions across the state from cyber threats while also building a workforce capable of dealing with today’s evolving threat landscape.

X
This website uses cookies to enhance user experience and to analyze performance and traffic on our website. We also share information about your use of our site with our social media, advertising and analytics partners. Learn More / Do Not Sell My Personal Information
Accept Cookies
X
Cookie Preferences Cookie List

Do Not Sell My Personal Information

When you visit our website, we store cookies on your browser to collect information. The information collected might relate to you, your preferences or your device, and is mostly used to make the site work as you expect it to and to provide a more personalized web experience. However, you can choose not to allow certain types of cookies, which may impact your experience of the site and the services we are able to offer. Click on the different category headings to find out more and change our default settings according to your preference. You cannot opt-out of our First Party Strictly Necessary Cookies as they are deployed in order to ensure the proper functioning of our website (such as prompting the cookie banner and remembering your settings, to log into your account, to redirect you when you log out, etc.). For more information about the First and Third Party Cookies used please follow this link.

Allow All Cookies

Manage Consent Preferences

Strictly Necessary Cookies - Always Active

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Sale of Personal Data, Targeting & Social Media Cookies

Under the California Consumer Privacy Act, you have the right to opt-out of the sale of your personal information to third parties. These cookies collect information for analytics and to personalize your experience with targeted ads. You may exercise your right to opt out of the sale of personal information by using this toggle switch. If you opt out we will not be able to offer you personalised ads and will not hand over your personal information to any third parties. Additionally, you may contact our legal department for further clarification about your rights as a California consumer by using this Exercise My Rights link

If you have enabled privacy controls on your browser (such as a plugin), we have to take that as a valid request to opt-out. Therefore we would not be able to track your activity through the web. This may affect our ability to personalize ads according to your preferences.

Targeting cookies may be set through our site by our advertising partners. They may be used by those companies to build a profile of your interests and show you relevant adverts on other sites. They do not store directly personal information, but are based on uniquely identifying your browser and internet device. If you do not allow these cookies, you will experience less targeted advertising.

Social media cookies are set by a range of social media services that we have added to the site to enable you to share our content with your friends and networks. They are capable of tracking your browser across other sites and building up a profile of your interests. This may impact the content and messages you see on other websites you visit. If you do not allow these cookies you may not be able to use or see these sharing tools.

If you want to opt out of all of our lead reports and lists, please submit a privacy request at our Do Not Sell page.

Save Settings
Cookie Preferences Cookie List

Cookie List

A cookie is a small piece of data (text file) that a website – when visited by a user – asks your browser to store on your device in order to remember information about you, such as your language preference or login information. Those cookies are set by us and called first-party cookies. We also use third-party cookies – which are cookies from a domain different than the domain of the website you are visiting – for our advertising and marketing efforts. More specifically, we use cookies and other tracking technologies for the following purposes:

Strictly Necessary Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Functional Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Performance Cookies

We do not allow you to opt-out of our certain cookies, as they are necessary to ensure the proper functioning of our website (such as prompting our cookie banner and remembering your privacy choices) and/or to monitor site performance. These cookies are not used in a way that constitutes a “sale” of your data under the CCPA. You can set your browser to block or alert you about these cookies, but some parts of the site will not work as intended if you do so. You can usually find these settings in the Options or Preferences menu of your browser. Visit www.allaboutcookies.org to learn more.

Sale of Personal Data

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.

Social Media Cookies

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.

Targeting Cookies

We also use cookies to personalize your experience on our websites, including by determining the most relevant content and advertisements to show you, and to monitor site traffic and performance, so that we may improve our websites and your experience. You may opt out of our use of such cookies (and the associated “sale” of your Personal Information) by using this toggle switch. You will still see some advertising, regardless of your selection. Because we do not track you across different devices, browsers and GEMG properties, your selection will take effect only on this browser, this device and this website.