AI is increasing the speed, scale and severity of attacks, from enhanced vulnerability discovery to incidents involving autonomous AI systems. The law-firm source suggests legal and response-readiness implications. Incident response plans should address AI-specific scenarios.
Changing the game: How AI forces organizations to revisit assumptions about recovery and resilience
Attackers can use AI to automate operations, find vulnerabilities in high-profile targets and operate more persistently. That increases pressure on defenders and shortens response time. Recovery and resilience plans built on older timing assumptions may need revisiting.
How companies can quantify cyber resilience – and why it’s important they do
Leaders' confidence in their firms' cyber resilience is falling while dependence on digital systems rises. Boards should ask what makes the firm "resilient enough" and not whether it is resilient. The article recommends board-level discussion of value at risk and return on resilience.