Thursday 23 April, 2026
[email protected]
Resilience Media
  • About
  • News
  • Resilience Conference
    • Resilience Conference Warsaw 2026
    • Resilience Conference Copenhagen 2026
    • Resilience Conference London 2026
  • Guest Posts
    • Author a Post
  • Subscribe
No Result
View All Result
  • About
  • News
  • Resilience Conference
    • Resilience Conference Warsaw 2026
    • Resilience Conference Copenhagen 2026
    • Resilience Conference London 2026
  • Guest Posts
    • Author a Post
  • Subscribe
No Result
View All Result
Resilience Media
No Result
View All Result

AI in cybersecurity remains a tool for understanding, not response

Analysis of thousands of real-world security queries shows practitioners are using AI primarily to contextualise risk, rather than to automate remediation.

Carly PagebyCarly Page
January 22, 2026
in News
Laptop screen showing a search bar.
Share on Linkedin

Despite industry hype around autonomous defence, new research shows security teams spent 2025 using AI mainly to explain and contextualise security data, not to take action.

You Might Also Like

How to find the needle in the startup haystack in Ukraine: observations from an early-stage VC

Rivan raises €28.7M to increase synthetic fuel production in Europe

In the era of precise mass, FPVs are outgrowing the pilot

That’s according to a new report based on anonymised prompts from more than 2,000 users of the Sola Security platform between May and December 2025. The data shows security teams turning to AI for explanation and investigation, with close to 60 percent of prompts focused on understanding issues rather than triggering automated response. This reflects what the report describes as a persistent “clarity bottleneck” inside security teams.

The report cites earlier ISC2 research showing limited AI adoption in security teams, with only one in three professionals using it day to day.

Looking across all 7,592 prompts, Sola Security found that most questions clustered around a small number of areas, led by application security, followed by cloud and infrastructure, security operations, and identity and access management. Application security alone accounted for more than a quarter of all queries, with risk assessment standing out as the most common concern. Many of the requests were narrowly focused, referring to specific GitHub repositories, OWASP frameworks, APIs, and known vulnerabilities in live code.

Most cloud questions focused on exposed or misconfigured resources, particularly systems left publicly accessible and the extent of the impact. Identity and access requests were often messier, pulling in several platforms at once as teams tried to untangle permissions across large environments.

The data also shows that security concerns change as organisations get bigger. Smaller teams mostly worry about cloud configuration issues, mid-sized firms spend more time on application vulnerabilities as development ramps up, and larger organisations are preoccupied with access controls, audit requirements, and creeping privileges.

While early users mostly asked AI to help them identify issues, behaviour changed over the course of 2025. Requests to “Monitor and Track” activity grew by 8.8 percentage points in the latter part of the year, while simple discovery declined. As the report puts it, early questions asked “what is this?”, while later ones asked “keep watching this”.

The report references comments from Andrew Ng, a leading AI researcher, who has argued that organisations are moving beyond single prompts towards “very complex workflows in these iterative multi-step agentic workflows”.

Even so, the report is clear that full autonomy is not the goal. Based on what practitioners actually asked AI to do in 2025, the priority remains helping security teams understand, prioritise, and monitor their environments more effectively – not replacing human judgement or decision-making.

Tags: AIsecurity
Previous Post

Capital under siege: Sanctions, supply chains and politics now drive VC decisions

Next Post

Inside Dronamics bid to become the unmanned logistics carrier for future conflicts

Carly Page

Carly Page

Carly Page is a freelance journalist and copywriter with 10+ years of experience covering the technology industry, and was formerly a senior cybersecurity reporter at TechCrunch. Bylines include Forbes, IT Pro, LeadDev, The Register, TechCrunch, TechFinitive, TechRadar, TES, The Telegraph, TIME, Uswitch, WIRED, & more.

Related News

How to find the needle in the startup haystack in Ukraine: observations from an early-stage VC

How to find the needle in the startup haystack in Ukraine: observations from an early-stage VC

byLuke Smith
April 23, 2026

After an investor demo day in early 2022, Roman Sulzhyk, head of investment at early-stage venture capital firm Resist.UA, found...

Rivan raises €28.7M to increase synthetic fuel production in Europe

Rivan raises €28.7M to increase synthetic fuel production in Europe

byJohn Biggs
April 22, 2026

UK-based startup Rivan has raised €28.7 million to expand domestic synthetic fuel production across Europe. The round was led by...

black drone during daytime

In the era of precise mass, FPVs are outgrowing the pilot

byThomas Macaulay
April 22, 2026

No weapon has shaped the Russia-Ukraine War like the first-person-view drone. Commonly known as FPVs, these unmanned aircraft stream live...

Tiberius says it’s successfully tested Sceptre munitions that behave like more costly missiles

Tiberius says it’s successfully tested Sceptre munitions that behave like more costly missiles

byIngrid Lunden
April 22, 2026

One of the big themes running through recent conflicts in Ukraine and the Middle East has been how older, expensive...

Atmos Space Cargo raises $30M to help get to space and back

Atmos Space Cargo raises $30M to help get to space and back

byIngrid Lunden
April 22, 2026

Atmos Space Cargo, a German startup building systems to transport assets to space and then return them for use and...

Anduril taps UK’s Kraken to fast-track small USVs into US Navy hybrid fleet push

Anduril taps UK’s Kraken to fast-track small USVs into US Navy hybrid fleet push

byCarly Page
April 21, 2026

Anduril Industries has teamed up with Kraken Technology Group to deepen its involvement in the US Navy’s plans for a...

birds on sky

Countering Iran’s UAS swarms ‘requires compressing the kill chain’

byTom Pashby
April 21, 2026

Since the start of the US and Israeli-led war against Iran on 28 February 2026, Iran has been retaliating against...

black and gray laptop computer turned on

NCSC sounds resilience warning as cyberattacks threaten real-world disruption

byCarly Page
April 20, 2026

The UK’s cyber defence arm has warned that organisations must be ready to operate through attacks that go beyond data...

Load More
Next Post
Inside Dronamics bid to become the unmanned logistics carrier for future conflicts

Inside Dronamics bid to become the unmanned logistics carrier for future conflicts

white and black mountain under blue sky during daytime

Weekly Digest: Greenland stays safe, but geopolitics still drives defence tech

Most viewed

InVeris announces fats Drone, an integrated, multi-party drone flight simulator

Uforce raises $50M at a $1B+ valuation to build defence tech for Ukraine

Auterion, the drone software startup, eyes raising $200M at a $1.2B+ valuation

Senai exits stealth to help governments harness online video intelligence

Palantir and Ukraine’s Brave1 have built a new AI “Dataroom”

Twentyfour Industries emerges from stealth with $11.8M for mass-produced drones

Resilience Media is an independent publication covering the future of defence, security, and resilience. Our reporting focuses on emerging technologies, strategic threats, and the growing role of startups and investors in the defence of democracy.

  • About
  • News
  • Resilence Conference
    • Resilience Conference Copenhagen 2026
    • Resilience Conference Warsaw 2026
    • Resilience Conference 2026
  • Guest Posts
  • Subscribe
  • Privacy Policy
  • Terms & Conditions

© 2026 Resilience Media

No Result
View All Result
  • Home
  • Subscribe
  • About
  • Events
  • Guest Posts
  • Interview
  • News
  • Resilience Conference London 2026
  • Resilience Conference Copenhagen 2026
  • Resilience Conference Warsaw 2026
  • Startups
  • Venture
  • Weekly Digest

© 2026 Resilience Media

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.