Secure Automation
Initial automation of SASE Services can be visualized as AIOps, but the groundwork for the automation must be laid in the form of modular components that may be observed, triggered, operated, and acted upon by the AIOps solution.
A least prescriptive design must be performed, whereby policy is based on loose requirements through small, simple policies. The small simple policies are initially parallel and can be organized hierarchically, from the greatest common denominator to the least common denominator. Each policy should have the ability to stand alone as a module for the AIOps solution to trigger as needed. An Intrusion Detection System (IDS) detects security threats. An Intrusion Prevention System (IPS) triggers predetermined reactions to individual threats. AIOps operates on the same principle but cannot be effective with prescriptive reactions to threats. Instead of prescription, a library or catalog of small, singular actions must be created to provide...