Online Fireside Chat

AI in the SOC - Beyond the Hype

Join industry leaders in this online fireside chat to explore what the AI-enabled SOC looks like today and how security teams must adapt their people, processes, and technology.

Online Fireside Chat
October 1st
2:00pm ET

AI has moved from an experimental capability in the SOC to a fundamental part of how security operations are run. But adopting AI is not simply about automating more tasks.

It requires security leaders to rethink how alerts are investigated, where human expertise provides the most value, and which decisions can safely happen at machine speed.

Join industry leaders for a candid discussion on what the AI-enabled SOC actually looks like, where organizations are seeing meaningful impact today, and how the roles of people, processes and technology must change.

Attendees will learn:

  • Where AI can make the biggest impact today: How organizations are applying AI to triage, investigation and repetitive SOC workflows, and where human judgment remains critical.

  • How the role of the security analyst is changing: Why the future SOC may require fewer people manually working alert queues and more professionals overseeing AI-driven investigations, improving detections and focusing on higher-value security work.

  • How to move from AI experimentation to measurable outcomes: What CISOs should consider when evaluating AI in security operations, including accuracy, trust, transparency, coverage, response time and the ability to demonstrate actual improvements in security outcomes.

Register Here

Fireside Chat Panelists

Fireside Chat Summary

As employees adopt more AI tools and assistants in their daily work, the endpoint has become the primary place where sensitive data is accessed, processed, shared, and sometimes unintentionally exposed. Files are summarized by AI, customer records are pasted into prompts, internal strategies are discussed with chatbots, and code is reviewed by AI copilots. All of this is happening at the edge, on endpoints you already manage – but in ways traditional endpoint security programs were never designed to see or control.

This shift creates a new class of risk:

  • Data leaving the organization through AI prompts and plugins

  • AI tools with unclear data retention and training policies

  • Embedded AI features in SaaS and productivity apps that bypass existing controls

  • Non-human identities and agents making decisions and acting on data autonomously

Most legacy endpoint and EDR approaches were built to detect malware and respond to incidents after they occur. They were not built to understand AI usage patterns, data flows into and out of models, or how AI changes the behavior of users and applications at the endpoint. As a result, you face new visibility gaps, blind spots in your detections, and increased exposure of regulated and business-critical data.

We will explores how endpoint security must change from reactive incident response to proactive, continuous risk reduction before exposure occurs. We will look at what it means to treat the endpoint as the primary gateway to AI and data, and how to design controls that protect that gateway without slowing down innovation and productivity.

By the end of this session, you will have a clear, actionable view of how to modernize your endpoint strategy so it keeps pace with AI adoption across the business. You will leave with concrete steps to close visibility gaps, strengthen prevention where work actually gets done, and build an endpoint program that supports both security and innovation in the AI era.

George Griesler Cyber Security Tribe
George Griesler
Senior Director, Cybersecurity, NFL
Daniel Trout Cyber Security Tribe Speaker
Daniel Trout
Director information Security Operations, Stewart Title
Itai Tevet Cyber Security Tribe Speaker
Itai Tevet
CEO, Intezer
New Dorene 2026
Dorene Rettas - Moderator
Co-Founder, Cyber Security Tribe

Fireside Chat Sponsor

intezer logo

FAQs

Is it free to join the event?

Yes, there is no charge to join the event.

Can anyone join the event?

Only those who are Cybersecurity practitioners can join. 

How do I Join the Event?

After registering you will receive an email with all details allowing you to join on the day. The system will send you a reminder the day before and 1 hour before it starts so you don't forget! 

We do also send a calendar invite within the first email to help you simply click and add to your desired calendar with all the information required to join. 

Back to top