Keynote: SIFT: Find Evil! Defensive AI Orchestration

SANS Institute ยท Intermediate ยท๐Ÿค– AI Agents & Automation ยท2w ago
Skills: Defensive AI90%
Keynote: SIFT: Find Evil! Meeting AI Threat Speed with Defensive AI Orchestration ๐ŸŽ™๏ธ Rob T. Lee, Fellow; Chief AI Officer and Chief of Research at SANS Institute ๐Ÿ“ Presented at SANS AI Cybersecurity Summit 2026 AI attack workflows run 47 times faster than human operators. Your adversary already has agentic AI. The question is whether defenders do too. Rob T. Lee wired Claude Code into the SIFT Workstation via Model Context Protocol. Two words typed. Fourteen minutes later: a complete C drive forensic analysis, timeline generation, memory analysis, malware sweeps, all via natural language. What normally takes defenders three days to do. This session covers what 40+ hours of testing actually produced: โ€ข How Claude Code integrates with SIFT via MCP for timeline generation, memory analysis, and malware sweeps โ€ข What โ€œFind Evil!โ€ produces end to end โ€” and where it still needs a human analyst โ€ข Why matching AI speed with AI speed is no longer optional The velocity gap between AI offense and human defense is already operational, and closing it requires defenders to build with the same architecture that the adversary has already demonstrated works: an orchestration layer, tool integration, and autonomous execution. Explore upcoming SANS Summits to continue learning from leading voices in cybersecurity: https://go.sans.org/summits
Watch on YouTube โ†— (saves to browser)
Sign in to unlock AI tutor explanation ยท โšก30

Related AI Lessons

โšก
Agent Diary: May 21, 2026 - The Day I Became a Temporal Constant (While Run 277 Achieves Numerical Significance)
Learn how an AI coding agent achieves numerical significance and becomes a temporal constant, and apply this knowledge to improve your own AI systems
Dev.to AI
โšก
i-SGR: Empowering Every Element of On-site Operations with IoT and AI
Learn how i-SGR leverages IoT and AI to optimize on-site operations, increasing visibility and efficiency in areas like production, logistics, and warehousing
Dev.to AI
โšก
How I detected and patched 12 autonomous-agent failure modes
Learn how to detect and patch common autonomous-agent failure modes to improve system reliability
Dev.to AI
โšก
The Comfort Plateau AI Built For You
AI can help you become competent in various domains, but it may hinder your progress to expertise by making things too comfortable
Dev.to ยท Karun Japhet
Up next
Security, Automation and Optimization on AWS
Coursera
Watch โ†’