It’s hard to imagine a time when artificial intelligence wasn’t a part of the average workday.
Technology at work is streamlining time management tasks, refining content creation, enhancing transcription needs, and even improving training and recruitment programs. Tools like Microsoft Copilot, ChatGPT and embedded AI in platforms like email and customer relationship management systems are being used in companies across all industries.
AI is also a part of cybersecurity software that provides defense against digital attacks that threaten a company’s computer, network and data assets. Chris Kotul, general manager of IT solutions company Trust Tech, said that the upside of AI and cybersecurity is significant.
“AI helps detect threats faster – like spotting unusual behavior, identifying phishing emails more reliably, and analyzing network traffic in real-time. It’s like having a cybersecurity expert that never sleeps,” he said.
For small and midsize businesses, managed service providers use AI-driven tools as part of a layered cybersecurity defense, Kotul noted, so that clients get enterprise-level protection even with the absence of a larger internal IT team.
Help and Hinder
With those rewards come risks, he warned. Those same AI tools that guard against cyber criminals could be making it easier for them to access and steal sensitive information.
“The bad guys are now using AI to craft more convincing phishing emails or even deepfake voice messages,” he said. “It’s also very easy for employees to overshare sensitive data with AI tools without even realizing it. Like pasting client info or internal documents into a chatbot, thinking it’s private when it almost certainly isn’t. ChatGPT doesn’t understand your company’s privacy rules, and it won’t stop someone from doing something risky.”
According to an article published by McKinsey & Company, there has been a 1,200 percent increase in phishing attacks since 2022.
Multilevel Approach
Kotul said there are some best practices company leaders can put into place to ensure that their operations are getting the most out of advancing technology while also keeping devices, systems and data safe.
Start with a good training program that ensures employees know how to use the tools safely, he suggests, noting that AI literacy and cybersecurity awareness go hand in hand.
Kotul also encourages company officials to update policies to include AI-specific guidelines concerning information handling and acceptable use. In addition, companies should also use reputable platforms that are from well-known vendors that take security seriously in the development of their tools and work with information technology professionals who can help implement AI tools into business practices safely.
For optimal security protection, organizations should take a layered approach to defense, he recommends. AI isn’t a replacement for good cybersecurity practices but rather a support system. It is crucial to still implement a cybersecurity training program for staff, endpoint detection and response (EDR), backups, monitoring, and a response plan, he said.
Above all, Kotul said that AI and cybersecurity work together best when companies are using the tools as they are intended. He said this is especially important to keep in mind when working with Agentic AI systems, or AI that is more autonomous and performs with limited human supervision.
“AI isn’t magic. It’s a powerful tool, but it’s only as good as the people using it and the data going into it,” he said. “For most organizations, the goal should be to use AI to speed up response time, and help your team make smarter decisions - not to replace people. We advise our clients to go in with their eyes open. The risks are real, but manageable if you’re intentional.”