Elastic Announces General Availability of AI Security Features
Elastic Security has announced the general availability of two key generative AI capabilities, Automatic Import and Attack Discovery, for all Elastic users. Previously in preview, these features are now production-ready and designed to enhance security operations by leveraging large language models (LLMs). Automatic Import streamlines data ingestion by building and validating custom data integrations in minutes, significantly reducing manual effort for security practitioners. Attack Discovery transforms numerous SIEM alerts into actionable insights, helping teams identify advancing attacks with greater precision and speed. A recent study highlighted that one customer reduced over 1,000 alerts to just eight actionable discoveries using this tool. These capabilities are built on Elastic’s Search AI foundation and utilize retrieval augmented generation (RAG) to ensure accuracy and context relevance. Users can integrate their preferred LLMs, including models from Google Cloud, Anthropic, and OpenAI, offering flexibility regarding cost, speed, and privacy. This release aims to lower organizational risk, improve team efficiency, and increase visibility across the attack surface, marking a significant step in bringing security operations into the generative AI era.
Wire timeline
Elastic Announces General Availability of AI Security Features
Elastic Security has announced the general availability of two key generative AI capabilities, Automatic Import and Attack Discovery, for all Elastic users. Previously in preview, these features are now production-ready and designed to enhance security operations by leveraging large language models (LLMs). Automatic Import streamlines data ingestion by building and validating custom data integrations in minutes, significantly reducing manual effort for security practitioners. Attack Discovery transforms numerous SIEM alerts into actionable insights, helping teams identify advancing attacks with greater precision and speed. A recent study highlighted that one customer reduced over 1,000 alerts to just eight actionable discoveries using this tool. These capabilities are built on Elastic’s Search AI foundation and utilize retrieval augmented generation (RAG) to ensure accuracy and context relevance. Users can integrate their preferred LLMs, including models from Google Cloud, Anthropic, and OpenAI, offering flexibility regarding cost, speed, and privacy. This release aims to lower organizational risk, improve team efficiency, and increase visibility across the attack surface, marking a significant step in bringing security operations into the generative AI era.
Elastic Blog - Elasticsearch, Kibana, and ELK Stack