Gartner’s How to Achieve the Minimum Viable AI Governance
Transcript
Hi everybody. My name is Tal Kollender.
I'm one of the founders and the CEO of
Remedio of the things that made me realize.
Creating Remedio from the beginning is the
ability to think like an attacker. So
when you want to hack into something,
you really want to think what can
be breakable. And every computer, let's
say that you have an organizational
computer, then it comes with an
antivirus. It comes with maybe more.
Defense or more tools that
will help protect your device
from potential breach. So
maybe you have it on the e-mail, maybe
you have it on the devices as an
antivirus and firewalls, etc. But when I
do have the entire tool set and I
think I'm protected, organizations are
still get breached every day. You can
read it on the news. What
is the problem?When I
investigated why I pay so much money
on 3rd party tools but I still
get rich even though I'm properly.
Secured. I mean a parent allegedly, um.
When I just saw it, I just
realized that, well, hackers are maybe
they do care at the beginning of
how how to get into your end
endpoints, but at the end of the
day they just move laterally.
Within the devices abusing something that
is called misconfigurations and we are
talking about device misconfigurations,
what is it actually like the
the term of misconfiguration?So
apparently it can be many things, it
can be human errors. Everybody knows
that, everybody makes mistakes. Then the
second thing of that would be default
settings. So when you get your first
computer, even when you have.
The security tools, even if it is
hardened, one of the things that you
should know is that even when you have
it, the security settings will always be
there. The creativity settings and
default settings, sorry of them, of every
single beat and byte that you have on
your device can lead to a massive, I
would say like massive breaches as we, as
we read on the news.
And then another important part on
top of that would be, what
if I told you that you
have?Untouchable
vulnerabilities that are still there out
there on your device. One of
the things that you will say
no way. I have every possible
tool that protects and prevents
everything, but not Edr's and DLP's
and anti e-mail malware, whatever.
That you have. They cannot stop
something. That is called
misconfiguration. Misconfigurations in
general are handled mainly manually and
it means that you need to go
either device by device or write some
scripts or to double check yourself
against it. But what we created is
a new approach of safe remediation.
And let me give you an example of what I
mean. A great example is maybe I'm
not sure if you are aware of WannaCry
is something that maybe 20 year old you
know in terms of the vulnerability of
SMBv one. But it is still out there,
people are still get hacked because of
this SMBv 1. So for those of you
who don't know SMBv 1 is an obsolete
protocol. Obsolete protocol that
exists on your Windows, on
the your Linux, on the
Macs, and even switches, routers
and everywhere. The problem is
that SMBv 1. Is almost on.
Each and every operating system is still
there. It's still enabled. Now you can
run vulnerability checks against it or
pentest and they will all tell you SMBv
1 is enabled. Now you need to disable
it. How can you disable
it without, you know knowing what what
the impact can be?How are you going
to disable it?Without even knowing
how to script against Windows, different
versions, Linux different versions, Max
different versions. And then what
happened if there is an impact and then
you need to revert. Now we
made we just found the perfect way
to stop. And make
a safer mediation. And finally,
save you time. And, of
course, money. Let me jump into
the demo so I can definitely show you
this example and even one more example
that is related to SMBv 1. So what
you can see on the screen here with
my multiple tabs open is this is our
UI. And if I will take the example
of SMBv one which you can see also
here, but I really want you to see
it from, I would say like a better,
a better way. And.
I really want to go and click here on the
SMB V1. You can obviously see like plenty
of other examples, but Matt, let me take
you to the specific thing that we all
know that is still louder.
On the SMB V1 example, what you can
see is not only that SMB V1 is
enabled again. So far easy what we can
show you if SMB was or wasn't used
in the past 90 days. And then
what we can show you is that not only
if it was or wasn't used, you can click,
you can see the entire device list, you
can see every single detail within the
device. You can go and filter by device
if you would like and see what is the SMB
status there. But then remember
our approach, we want to show
you that right now what you
can do is you can select
and go for the entire 4.1
K alert on 4.5 K devices
and click on remediate.
What you are going to see now is
our remediation screen that will explain
to you that you can disable SMBv 1.
On the devices that you chose that
the SMB V1 actually wasn't used in
the past 90 days. We
can even tell you how we do it.
Not only that, we can even of
course like being more than transparent,
we can make sure that it will
be automatically reapplied. When we say
automatically reapply, it means that any
future device and current devices within
Remedio with the same behavior of SMBv,
one that wasn't used in the past
90 days but still enabled, will be
automatically disabled. This is
the power of Remedio, but more
importantly, we added our autonomous.
Autonomous recommendations.
One thing that we do here is
that we find correlated topics or related
topics that we know that if you
are going to close one of them,
the others are. I mean,
you need to close them, no doubt about
it. And This is why when you
click here on the disable the web client
service, this is a dependency. Of
the SMBv one that we can just assure
you. How easy it is just
to do everything in a single click?
Now if you have any kind of you know
you want to do it after a certain time
day, you have some kind of a service now
or a JIRA that you want to do ticketing
for the approval. Everything is doable
here. But what happened after
you remediated? And let's say that you
remediated something. And then you
regret. We can
assure you that after remediating, no
matter what you want to do and to
revert an undo, we can take it and
we can revert it. You can choose a
single device, you can choose multiple
devices. You can select all of the
devices. But then you
can definitely take the entire
action or some specific assets
and revert them.
This is our power. In short, making
safer mediation, but also making sure
that even if you want, let's take
it even seven years after the first
remediation, you can always bring it back
to the misconfigured states. And then you
can mute it if you want and
ignore and what we call accept the
risk. And then you can
just see the entire journey of yours,
how much risk reduction you saved.
Listen, with 0 disruption, 0 downtime,
that's the power of pRemedio. You
can also see the money that you
save. It's also always good to see
how much money you saved. But more
importantly, again, how easy things
become when you have a safe remediation
tool. Are causing the
entire environment, entire devices.
Whether you have like a single
environment, Whether you do Mnas?And
whether if you want just to validate your
Vdis, everything is possible with Prima
deal. I hope you enjoyed the demo. And
if you would like to learn more, please
visit us. And if you like to sign
in for a free trial, please scan the
QR code. Thank you so much.