Infra

How to Think About Foundation Models for Cybersecurity

Zane Lackey, Joel de la Garza, and Derrick Harris Posted May 10, 2024

In this episode of the AI + a16z podcast, a16z General Partner Zane Lackey and a16z Partner Joel de la Garza sit down with Derrick Harris to discuss how generative AI — LLMs, in particular — and foundation models could effect profound change in cybersecurity. After years of AI-washing by security vendors, they explain why the hype is legitimate this time as AI provides a real opportunity to help security teams cut through the noise and automate away the types of drudgery that lead to mistakes.

Here are some highlights:

[8:07] Zane Lackey: “Often when you’re running a security team, you’re not only drowning in noise, but you’re drowning in just the volume of things going on. And so I think a lot of security teams are excited about, ‘Can we utilize AI and LLMs to really take at least some of that off of our plate?’

“I think it’s still very much an open question of how far they go in helping us, but even taking some meaningful percentage off of our plate in terms of overall work is going to really help security teams overall.”

[15:06] Joel de la Garza: “As far as security foundation models go, that’s going to be interesting. . . . The first iteration of AI and ML didn’t work particularly well for security because, to a large extent, people don’t want to share security data so that they can train these models.

“If you’re a company and you have a lot of incidents, you have a lot of security data, [and] you would be a great place to train these models, you’re very unlikely to share this with anyone. Because if you have 20,000 incidents a year, like a large org does, probably half of those would make a really juicy New York Times story. And so you tend to be very protective of this data that you don’t necessarily want to see out there.”

[24:55] Joel de la Garza: “I think the constraints around the infrastructure to run a lot of this stuff are painful, but I think that’s improving. . . .  The other thing that’s happening is that you have the release of these open source models and you’re actually seeing the development of meaningful open source. And I just think that when you start to allow that to happen, you unlock a lot of innovation.

“. . . It’s the classic Julian Simon versus [Paul] Ehrlich debate, about innovation versus resource scarcity. And the bet is always that innovation will find a way around scarcity. So that’s the bet I’m happy to make. I think these open source models are going to really unlock a lot of innovation, and I think you’ll see people starting to innovate around some of the supply constraints.”

[32:00] Zane Lackey: “If you went and talked to CISOs, most would say they don’t misunderstand [generative AI]. It’s just, they’re trying to fully grasp how it is impacting their organization and how it’s impacting the entire industry. . . . And from the flip side, what attacks and threat factors does it really change? What ones does it [not] change that much yet? And really feeling like you’ve got a comprehensive understanding of that.

“Now, the tough bit is, if you’re a CISO, you’re still a full-time CISO every day. And this world is changing . . . every few weeks and months. So even if you were able to get up to speed three months ago, the world looks different now. And it’s going to look different three months from now.”

About the Contributors
AI + a16z

Artificial intelligence is changing everything from art to enterprise IT, and a16z is watching all of it with a close eye. This podcast features discussions with leading AI engineers, founders, and experts, as well as our general partners, about where the technology and industry are heading.

Learn More
Want More a16z Infra?

Analysis and news covering the latest trends reshaping AI and infrastructure.

Learn More
Recommended For You
Infra

Performance and Passion: Fal’s Approach to AI Inference

Burkay Gur, Batuhan Taskaya, and Jennifer Li
Infra

How to Vibe Code Securely

Feross Aboukhadijeh and Joel de la Garza
Infra

AI Is Upending SaaS Pricing

Scott Woody and Martin Casado
Infra

AI’s Unsung Hero: Data Labeling and Expert Evals

Manu Sharma and Matt Bornstein
Infra

AI, Data Engineering, and the Modern Data Stack

Tristan Handy, Jennifer Li, and Matt Bornstein

Want More Infra?

Analysis and news covering the latest trends reshaping AI and infrastructure.

Sign Up On Substack

Views expressed in “posts” (including podcasts, videos, and social media) are those of the individual a16z personnel quoted therein and are not the views of a16z Capital Management, L.L.C. (“a16z”) or its respective affiliates. a16z Capital Management is an investment adviser registered with the Securities and Exchange Commission. Registration as an investment adviser does not imply any special skill or training. The posts are not directed to any investors or potential investors, and do not constitute an offer to sell — or a solicitation of an offer to buy — any securities, and may not be used or relied upon in evaluating the merits of any investment.

The contents in here — and available on any associated distribution platforms and any public a16z online social media accounts, platforms, and sites (collectively, “content distribution outlets”) — should not be construed as or relied upon in any manner as investment, legal, tax, or other advice. You should consult your own advisers as to legal, business, tax, and other related matters concerning any investment. Any projections, estimates, forecasts, targets, prospects and/or opinions expressed in these materials are subject to change without notice and may differ or be contrary to opinions expressed by others. Any charts provided here or on a16z content distribution outlets are for informational purposes only, and should not be relied upon when making any investment decision. Certain information contained in here has been obtained from third-party sources, including from portfolio companies of funds managed by a16z. While taken from sources believed to be reliable, a16z has not independently verified such information and makes no representations about the enduring accuracy of the information or its appropriateness for a given situation. In addition, posts may include third-party advertisements; a16z has not reviewed such advertisements and does not endorse any advertising content contained therein. All content speaks only as of the date indicated.

Under no circumstances should any posts or other information provided on this website — or on associated content distribution outlets — be construed as an offer soliciting the purchase or sale of any security or interest in any pooled investment vehicle sponsored, discussed, or mentioned by a16z personnel. Nor should it be construed as an offer to provide investment advisory services; an offer to invest in an a16z-managed pooled investment vehicle will be made separately and only by means of the confidential offering documents of the specific pooled investment vehicles — which should be read in their entirety, and only to those who, among other requirements, meet certain qualifications under federal securities laws. Such investors, defined as accredited investors and qualified purchasers, are generally deemed capable of evaluating the merits and risks of prospective investments and financial matters.

There can be no assurances that a16z’s investment objectives will be achieved or investment strategies will be successful. Any investment in a vehicle managed by a16z involves a high degree of risk including the risk that the entire amount invested is lost. Any investments or portfolio companies mentioned, referred to, or described are not representative of all investments in vehicles managed by a16z and there can be no assurance that the investments will be profitable or that other investments made in the future will have similar characteristics or results. A list of investments made by funds managed by a16z is available here: https://a16z.com/investments/. Past results of a16z’s investments, pooled investment vehicles, or investment strategies are not necessarily indicative of future results. Excluded from this list are investments (and certain publicly traded cryptocurrencies/ digital assets) for which the issuer has not provided permission for a16z to disclose publicly. As for its investments in any cryptocurrency or token project, a16z is acting in its own financial interest, not necessarily in the interests of other token holders. a16z has no special role in any of these projects or power over their management. a16z does not undertake to continue to have any involvement in these projects other than as an investor and token holder, and other token holders should not expect that it will or rely on it to have any particular involvement.

With respect to funds managed by a16z that are registered in Japan, a16z will provide to any member of the Japanese public a copy of such documents as are required to be made publicly available pursuant to Article 63 of the Financial Instruments and Exchange Act of Japan. Please contact compliance@a16z.com to request such documents.

For other site terms of use, please go here. Additional important information about a16z, including our Form ADV Part 2A Brochure, is available at the SEC’s website: http://www.adviserinfo.sec.gov.