Security Practitioners Overwhelmed by Alert Fatigue, Survey Finds

A recent survey conducted by cybersecurity firm Vectra AI has unveiled significant challenges facing security practitioners, with many overwhelmed by a deluge of notifications and emails each day. This issue is increasingly impacting day-to-day cybersecurity operations across organisations.

The survey highlights that 71% of security professionals express concerns about missing genuine cyber-attacks amidst a sea of inconsequential alerts. This overwhelming influx of alerts is attributed to vendors striving to address every potential threat in a constantly evolving cybersecurity landscape. However, this attempt to safeguard organisations against all possible threats is inadvertently causing more harm, as practitioners find it difficult to discern which alerts warrant attention.

Furthermore, the survey reveals that nearly half of respondents, 47%, lack confidence in the effectiveness of their threat detection tools, expressing concerns that these tools might not meet their operational needs effectively. Adding to this, a majority of participants, 54%, have noted an increase in their workload, indicating that the current systems may be exacerbating the problem rather than alleviating it.

Delving deeper into the issue, the survey found that an overwhelming 81% of security professionals spend over two hours each day sifting through and managing security alerts. Alarmingly, only 16% of these alerts are identified as genuine threats, highlighting the significant noise amidst the critical signals these teams must navigate.

Despite these challenges, the survey does provide a glimmer of hope. Many security teams are reportedly more confident in their cyber defences compared to a year ago, thanks in part to the integration of Artificial Intelligence (AI) into their operations. According to the survey, 73% of respondents indicated that AI has helped reduce their workload and mitigate burnout. With AI playing an increasingly crucial role in counteracting cyber-attacks, it is being adopted more widely as an integral component of threat response strategies.

Mark Wojtasiak, Vice President of Research and Strategy at Vectra AI, commented on this trend: “Teams believe AI delivers an attack signal that will help them identify and prioritise threats, accelerate response times, and reduce alert fatigue. However, trust needs to be rebuilt. AI-powered offerings are proving to have a positive impact, but to truly re-establish trust, vendors will need to demonstrate how they add value beyond just the technologies they sell.”

While trust may currently be eroded between security practitioners and vendors, the findings suggest that the introduction of AI tools could potentially bridge this gap. Nearly 89% of those surveyed plan to integrate more AI tools into their systems, aiming to supplant outdated threat detection and response mechanisms.

As cybersecurity continues to evolve and threats advance, the industry awaits further developments in AI-driven solutions, hoping for a future where security teams can efficiently manage their workloads without compromising on the effective identification and response to real cyber threats.

Source: Noah Wire Services