Table of Contents

Project Perception - a cybersecurity AI from Microsoft that helps analyze threats automatically.

Facebook
X
LinkedIn
Microsoft Project Perception

Today's cyber threats are becoming increasingly sophisticated, making traditional security tools insufficient for protecting modern organizations. Security teams must analyze massive amounts of alerts, investigate complex attack patterns, and respond to incidents faster than ever before. Simultaneously, the widespread use of cloud services, AI applications, and numerous connected devices has significantly expanded the attack surface.

Project Perception "...is one of Microsoft's AI-driven security projects, developed to enhance the capabilities of cybersecurity professionals in detecting, analyzing, and responding to emerging threats. By integrating artificial intelligence with Microsoft's Security Intelligence, it helps security teams understand complex environments, prioritize risks, and improve operational efficiency. Rather than replacing experts, the AI serves as an intelligent assistant that supports faster and more accurate decision-making."

What is Project Perception?

Project Perception is Microsoft's AI-powered cybersecurity project focused on improving threat intelligence through in-depth analysis and contextual interpretation of security data.

Instead of simply generating alerts, the system empowers security teams to interpret vast amounts of data, identify meaningful patterns, and discover risks that should be investigated first.

Modern cyberattacks typically involve multiple steps, such as:

  • Reconnaissance (Target Survey)
  • Credential Compromise (Credit Identity Theft)
  • Lateral Movement (Movement within the system)
  • Data Exfiltration (Theft of data from an organization)

Analyzing these events solely by humans can be time-consuming and complex. AI therefore helps connect related events, providing analysts with a clearer overall picture of the attack.

The main goal is to reduce investigation time while enabling defense teams to make more effective security decisions.

Why AI is transforming cybersecurity.

Today's organizations process millions of security events every day, and this data comes from...

  • Endpoints
  • Identity Systems
  • Cloud Services
  • Applications
  • Networks
  • User Activities

The security team therefore faces several challenges, such as:

  • Numerous security alerts
  • Limited time for the investigation.
  • Shortage of cybersecurity personnel.
  • More complex attack patterns
  • Attack techniques that are constantly changing.

AI can help solve these problems by rapidly processing vast amounts of security data, identifying key patterns, and identifying events that should be investigated first.

Instead of replacing security teams, AI will act as a force multiplier, enabling analysts to work more efficiently.

How does AI improve threat analysis?

One of the key strengths of AI is its ability to connect seemingly unrelated events.

Instead of having to manually check thousands of notifications, AI can...

  • Linking activities from multiple systems together.
  • Identify suspicious patterns of behavior.
  • Detect unusual user activity.
  • Find possible attack routes
  • Suggest areas for further investigation.

Contextual analysis helps reduce alert fatigue and allows analysts to focus on high-priority threats.

The core capabilities of Project Perception.

Intelligent Threat Correlation

Most cyberattacks are not the result of a single event; instead, attackers typically use multiple techniques in combination to achieve their goals.

AI helps to link security data from multiple sources, making it easier to understand the relationships between various events.

Faster investigation of security incidents.

Traditional investigations often require gathering information from multiple tools.

AI helps gather relevant evidence, organize data, and present crucial insights, enabling analysts to understand events more quickly.

Risk prioritization

Not all alerts pose a significant threat.

AI will assess the context of each event and help identify the risks that could have the greatest impact on the business, enabling organizations to allocate resources appropriately.

Increase efficiency in work

When AI helps with repetitive analytical tasks, security experts can spend more time on high-value tasks, such as:

  • Threat Hunting
  • Incident Response
  • Improving safety measures

This results in more efficient and flexible cybersecurity operations.

cyber stack built for agentic security

Benefits for Businesses

Organizations that use AI in security can benefit in several ways, including:

  • Provides a better overview of the system.
    AI helps increase visibility into data from Identity, Endpoints, Cloud Resources, Applications, and the entire infrastructure.
  • ตอบสนองต่อภัยคุกคามได้รวดเร็ว
    การลดระยะเวลาในการสืบสวนช่วยให้องค์กรสามารถตอบสนองต่อภัยคุกคามได้ก่อนที่จะลุกลามเป็นเหตุการณ์ร้ายแรง
  • ตัดสินใจได้แม่นยำยิ่งขึ้น
    ข้อมูลเชิงบริบทช่วยให้ทีมรักษาความปลอดภัยสามารถตัดสินใจได้อย่างมีประสิทธิภาพมากขึ้น
  • ยกระดับ Security Posture
    การวิเคราะห์อย่างต่อเนื่องช่วยให้องค์กรค้นพบจุดอ่อนและปรับปรุงกลยุทธ์ด้าน Cybersecurity ได้อย่างสม่ำเสมอ
  • Increase work efficiency
    เมื่อภาระงานที่ต้องทำซ้ำลดลง ทีมรักษาความปลอดภัยสามารถมุ่งเน้นไปที่งานเชิงกลยุทธ์ได้มากขึ้น

AI enhances capabilities, not replaces experts.

หลายคนเข้าใจผิดว่า AI สามารถทำงานด้าน Cybersecurity ได้ทั้งหมด

ในความเป็นจริง การรักษาความปลอดภัยที่มีประสิทธิภาพยังคงต้องอาศัยความเชี่ยวชาญของมนุษย์

ผู้เชี่ยวชาญยังคงมีหน้าที่สำคัญในการ

  • Validate security findings
  • ประเมินผลกระทบต่อธุรกิจ
  • ตัดสินใจในการตอบสนองต่อเหตุการณ์
  • Make a plan to solve the problem.
  • พัฒนากลยุทธ์ด้านความปลอดภัยในระยะยาว

AI ช่วยเพิ่มความเร็ว ความสามารถในการวิเคราะห์ และรองรับข้อมูลจำนวนมหาศาล ขณะที่มนุษย์ยังคงเป็นผู้ใช้วิจารณญาณ ประสบการณ์ และความเข้าใจบริบทขององค์กรในการตัดสินใจ

การทำงานร่วมกันระหว่าง AI และมนุษย์จึงเป็นแนวทางที่ให้ผลลัพธ์ด้านความปลอดภัยที่ดีที่สุด

Applications in organizations.

แม้การวิจัยด้าน AI ของ Microsoft จะยังคงพัฒนาอย่างต่อเนื่อง แต่เทคโนโลยีอย่าง Project Perception แสดงให้เห็นว่า AI สามารถสนับสนุนการรักษาความปลอดภัยขององค์กรได้หลากหลายด้าน เช่น

  • Security Operations Center (SOC)
  • Threat Hunting
  • Cloud Security Monitoring
  • Identity Protection
  • Vulnerability Management
  • Incident Response
  • Security Analytics

เมื่อองค์กรขยายระบบดิจิทัลมากขึ้น การวิเคราะห์ด้วย AI จะกลายเป็นองค์ประกอบสำคัญของการดำเนินงานด้าน Cybersecurity ในอนาคต

Best Practices for Organizations

องค์กรที่ต้องการยกระดับความปลอดภัยไซเบอร์ควรพิจารณาแนวทางดังต่อไปนี้

  • ใช้งาน AI ควบคู่กับผู้เชี่ยวชาญด้านความปลอดภัย
  • รวมข้อมูลด้านความปลอดภัยจากทั้ง Cloud และ On-premises
  • จัดลำดับความสำคัญของเหตุการณ์ตามผลกระทบต่อธุรกิจ
  • ติดตามและตรวจสอบเหตุการณ์ด้านความปลอดภัยอย่างต่อเนื่อง
  • ลงทุนในการอบรมด้าน Cybersecurity Awareness ให้กับพนักงาน
  • ใช้แนวทางการป้องกันเชิงรุก (Proactive Security) แทนการตอบสนองหลังเกิดเหตุเพียงอย่างเดียว

แนวทางเหล่านี้ช่วยให้องค์กรได้รับประโยชน์สูงสุดจาก AI พร้อมทั้งยังคงรักษาการกำกับดูแลและการควบคุมที่เหมาะสม

The Future of AI-Powered Cybersecurity

ปัญญาประดิษฐ์กำลังเปลี่ยนแปลงแนวทางการรักษาความปลอดภัยไซเบอร์ จากการป้องกันแบบตอบสนอง (Reactive Defense) ไปสู่การป้องกันเชิงรุก (Proactive Protection)

เมื่อโมเดล AI มีความสามารถในการทำความเข้าใจรูปแบบการโจมตีที่ซับซ้อนมากขึ้น แพลตฟอร์มด้านความปลอดภัยในอนาคตจะสามารถช่วยผู้วิเคราะห์ตรวจจับภัยคุกคาม คาดการณ์ความเสี่ยง และแนะนำแนวทางการตอบสนองที่เหมาะสมได้อย่างชาญฉลาด

การลงทุนอย่างต่อเนื่องของ Microsoft ในด้าน AI สะท้อนถึงวิสัยทัศน์ในการเสริมศักยภาพให้ผู้เชี่ยวชาญด้านความปลอดภัยด้วยเครื่องมืออัจฉริยะที่ช่วยสนับสนุน—not replace—การทำงานของมนุษย์

Summary

ภัยคุกคามไซเบอร์ในปัจจุบันมีความซับซ้อนมากขึ้น ทำให้ทีมรักษาความปลอดภัยต้องวิเคราะห์ข้อมูลจำนวนมหาศาล ตอบสนองได้รวดเร็ว และตัดสินใจได้อย่างแม่นยำมากกว่าที่เคย

Project Perception คือแนวทางของ Microsoft ในการนำ AI มายกระดับ Cybersecurity ผ่านการวิเคราะห์ภัยคุกคามอย่างชาญฉลาด การทำความเข้าใจบริบทของเหตุการณ์ และการเพิ่มประสิทธิภาพในการปฏิบัติงาน โดยช่วยให้ผู้เชี่ยวชาญสามารถตีความข้อมูลด้านความปลอดภัยที่ซับซ้อน จัดลำดับความสำคัญของความเสี่ยง และเสริมสร้างความยืดหยุ่นขององค์กร โดยยังคงให้มนุษย์เป็นผู้กำกับดูแลและตัดสินใจในทุกขั้นตอน

เมื่อธุรกิจเดินหน้าสู่การเปลี่ยนผ่านสู่ดิจิทัลอย่างต่อเนื่อง โครงการอย่าง Project Perception แสดงให้เห็นว่า AI สามารถเป็นพันธมิตรสำคัญในการสร้างกลยุทธ์ด้าน Cybersecurity ที่ชาญฉลาด มีประสิทธิภาพ และพร้อมรับมือกับภัยคุกคามในอนาคตได้ดียิ่งขึ้น

Interested in Microsoft products and services? Send us a message here.

Explore our digital tools

If you are interested in implementing a knowledge management system in your organization, contact SeedKM  for more information on enterprise knowledge management systems, or explore other products such as Jarviz  for online timekeeping, OPTIMISTIC  for workforce management. HRM-Payroll, Veracity  for digital document signing, and CloudAccount  for online accounting.

Read more articles about knowledge management systems and other management tools at Fusionsol Blog, IP Phone Blog, Chat Framework Blog, and OpenAI Blog.

New Gemini Tools For Educators: Empowering Teaching with AI

Digital Signature

E Signature

E Learning

Online Learning

If you want to stay up-to-date with the latest technology and AI news, check out this website It's updated daily!

Fusionsol Blog in Vietnamese

Related Articles

HRM Articles

Frequently Asked Questions (FAQ)

Microsoft Copilot is an AI-powered assistant feature that helps you work within Microsoft 365 apps like Word, Excel, PowerPoint, Outlook, and Teams by summarizing, writing, analyzing, and organizing information.

Copilot currently supports Microsoft Word, Excel, PowerPoint, Outlook, Teams, OneNote, and others in the Microsoft 365 family.

An internet connection is required as Copilot works with cloud-based AI models to provide accurate and up-to-date results.

Users can type commands like “summarize report in one paragraph” or “write formal email response to client” and Copilot will generate the message accordingly.

Yes, Copilot is designed with security and privacy in mind. User data is never used to train AI models, and access rights are strictly controlled.

Facebook
X
LinkedIn

Popular Blog posts