Lesson 2/6
AI automation & workflows
Find out how AI agents automate the response to a cyberattack. Agentic workflows. APIs and controlled rights. A case study on a real attack. The technician's job is changing, and the forward deployed engineer is what comes next.
☰
Contents
23
▾
0:00 Introduction to the forward deployed engineer role 0:34 Building a block-based workflow tool 0:39 Trigger: a scheduled task, for example a reboot 1:06 Trigger: an event or a system log 1:42 Trigger: an email sent by a human 2:08 A short history of classic automation workflows 2:24 A thought about replacing the human 2:37 Case study: a real cyberattack 2:53 How the events of the attack fire 3:10 The human reaction to the alert is slow 3:57 Escalating to the CIO and setting priorities 4:36 How hard validation and remediation really are 4:50 AI agents enter the defence 5:15 The agent analyses and decides in seconds 5:38 A real news story about an AI-driven attack 6:16 The limits of classic human-operated tools 6:47 A demonstration of an agent named Lia 7:01 The agent uses existing, approved scripts 8:05 A dedicated identity, controlled through the API 8:53 Security centralised at the API level 9:19 Steering the agent and keeping a history of its actions 9:52 Rollback made possible by that history 9:56 Conclusion and call to action