{"id":17077,"date":"2026-05-31T15:23:27","date_gmt":"2026-05-31T15:23:27","guid":{"rendered":"https:\/\/dmsretail.com\/RetailNews\/in-the-ai-era-defense-starts-with-the-network-heres-how-cisco-is-doing-it\/"},"modified":"2026-05-31T15:23:27","modified_gmt":"2026-05-31T15:23:27","slug":"in-the-ai-era-defense-starts-with-the-network-heres-how-cisco-is-doing-it","status":"publish","type":"post","link":"https:\/\/dmsretail.com\/RetailNews\/in-the-ai-era-defense-starts-with-the-network-heres-how-cisco-is-doing-it\/","title":{"rendered":"In the AI era, defense starts with the network. Here&#8217;s how Cisco is doing it."},"content":{"rendered":"<p> <p><a href=\"https:\/\/dmsretail.com\/online-workshops-list\/\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-496\" src=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png\" alt=\"Retail Online Training\" width=\"729\" height=\"91\" srcset=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png 729w, https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90-300x37.png 300w\" sizes=\"auto, (max-width: 729px) 100vw, 729px\" \/><\/a><\/p><br \/>\n<\/p>\n<div>\n<p><em><span class=\"TextRun SCXW49127196 BCX4\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW49127196 BCX4\">role of the <\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">network<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\"> is <\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">critical in the A<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">I<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\"> era<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\"> \u2014<\/span> <span class=\"NormalTextRun SCXW49127196 BCX4\">it<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">\u2019s<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\"> your greatest asset, your primary target, and your most critical line of defense<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">.<\/span> <span class=\"NormalTextRun SCXW49127196 BCX4\">Cisco <\/span> <span class=\"NormalTextRun SCXW49127196 BCX4\">leaders<\/span> <span class=\"NormalTextRun SCXW49127196 BCX4\">Jon Woolwine <\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">and <\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">Jack Klecha share how Cisco embeds security directly into the network<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\"> to <\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">keep pace with AI-driven threats<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">. <\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">Keep reading and<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">\u00a0<\/span><span class=\"NormalTextRun ContextualSpellingAndGrammarErrorV2Themed SCXW49127196 BCX4\">watch<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\"> the<\/span> short <\/span><span class=\"TextRun SCXW49127196 BCX4\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"none\"\/><span class=\"TextRun SCXW49127196 BCX4\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"> <\/span><span class=\"TextRun SCXW49127196 BCX4\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"none\"> <\/span><span class=\"TextRun SCXW49127196 BCX4\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"none\"\/><span class=\"TextRun SCXW49127196 BCX4\" lang=\"EN-US\" xml:lang=\"EN-US\" data-contrast=\"auto\"><span class=\"NormalTextRun SCXW49127196 BCX4\"> to hear more<\/span><span class=\"NormalTextRun SCXW49127196 BCX4\">.<\/span><\/span><span class=\"EOP SCXW49127196 BCX4\" data-ccp-props=\"{}\">\u00a0<\/span><\/em><\/p>\n<h2><strong>In the AI era, defense starts with the network<\/strong><\/h2>\n<p><span data-contrast=\"auto\">Cloud, hybrid work, IoT, and now an explosion of AI agents \u2014 these aren\u2019t just added complexities of today\u2019s digital environment, they are potential entry points on an ever-growing attack surface. Our digital footprint is expanding faster than we can secure it. And attackers know it.\u00a0<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">As our existing processes struggle to keep up, visibility fragments, and policies and security controls drift \u2014 creating exactly the gaps attackers seek to exploit.\u00a0\u00a0<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">This is compounded by a shift in attacker strategy: years of hardening user endpoints have led attackers to the network as their new target of choice. And with AI, they are now moving at machine speed and scale that traditional defenses weren\u2019t built to handle. AI innovation fundamentally changes how attackers discover and act on vulnerabilities, shrinking the time to exploit from weeks to hours. And with new, more powerful frontier models emerging, that risk will continue to increase.\u00a0\u00a0\u00a0<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Because the network is the common thread through all of this \u2014 connecting users, data, and applications across every branch, campus, data center, and cloud \u2014 it is the ultimate prize for attackers, and the ultimate risk for the enterprise.\u00a0<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Bad actors are also harvesting encrypted network traffic today \u2014 storing it until quantum computing makes it readable. We must act today to prevent threats tomorrow.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">That is why Cisco IT and Security teams view the network as our critical line of defense.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h2><strong>From reactive to resilient: How Cisco fuses security into the network<\/strong><\/h2>\n<p><span data-contrast=\"auto\">Bolting security tools onto an existing network adds complexity and leaves gaps. Our approach is different: we embed security directly into every layer of the network, from the campus and branch to the data center and cloud.\u00a0<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">This allows us to use the network to see, authenticate, and defend every connection in real-time, creating a unified, interconnected fabric. Here is a look at our unified approach:<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<ul>\n<li><b><span data-contrast=\"auto\">A resilient infrastructure foundation: <\/span><\/b><span data-contrast=\"auto\">If the infrastructure is compromised, every security tool above it is bypassed. We harden operating systems and boot processes across our infrastructure so that the foundation itself can\u2019t be compromised. And we\u2019re integrating <\/span><span data-contrast=\"none\">post-quantum cryptography<\/span><span data-contrast=\"auto\"> to get ahead of \u2018harvest now, decrypt later\u2019 risks. When vulnerabilities are found in the network infrastructure, we\u2019ll be able to put compensating controls in place with Cisco Live Protect.<\/span><span data-ccp-props=\"{&quot;134233279&quot;:false}\">\u00a0<\/span><\/li>\n<li><b><span data-contrast=\"auto\">Identity-first access control: <\/span><\/b><span data-contrast=\"auto\">With the foundation secure, the next question is<\/span><i><span data-contrast=\"auto\">: who, or what, is connecting to the network?\u00a0<\/span><\/i><span data-contrast=\"auto\"> It is no longer just humans, but thousands of IoT devices and AI agents. We take an <\/span><span data-contrast=\"none\">identity-first approach<\/span><span data-contrast=\"auto\"> \u2014 continuously verifying every identity and granting least privilegeaccess<\/span><\/li>\n<li><b><span data-contrast=\"auto\">Limiting the blast radius: <\/span><\/b><span data-contrast=\"auto\">Even with strong preventative measures in place, we prepare for a breach. Segmentation is our primary defense against lateral movement. We moved past static VLANs to software-defined segmentation. Using <\/span><span data-contrast=\"none\">Cisco Identity Services Engine (ISE),<\/span><span data-contrast=\"auto\"> and <\/span><span data-contrast=\"none\">TrustSec<\/span><span data-contrast=\"auto\"> to we can identify, profile, and enforce policy on every connection, compartmentalizing the network. If an attacker does get in, lateral movement is contained in a single, isolated area.<\/span><span data-ccp-props=\"{&quot;134233279&quot;:false}\">\u00a0<\/span><\/li>\n<li><b><span data-contrast=\"auto\">Protection extended from campus to branch to the data center and beyond: <\/span><\/b><span data-contrast=\"auto\">A breach at the perimeter can\u2019t be allowed to become a full compromise. Today, we deploy Secure Firewalls to control traffic across our data centers \u2014 protecting our most critical applications and data from east-west threats. As we extend toward Hybrid Mesh Firewalling, that same consistent protection will be distributed to our applications and infrastructure everywhere they live, across data centers, cloud, and hybrid environments \u2014 enforced at scale, without gaps.<\/span><span data-ccp-props=\"{&quot;134233279&quot;:false}\">\u00a0<\/span><\/li>\n<li><b><span data-contrast=\"auto\">Visibility and insights across the environment:<\/span><\/b><span data-contrast=\"auto\"> By centralizing signals from <\/span><span data-contrast=\"none\">ThousandEyes<\/span><span data-contrast=\"auto\"> and our network controllers into <\/span><span data-contrast=\"none\">Splunk<\/span><span data-contrast=\"auto\">, we get a real-time, cross-domain view of every device, connection, and dependency \u2014 inside our walls and beyond. That visibility is what gives every other layer of this architecture its teeth.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/li>\n<\/ul>\n<p>These layers function as an interconnected fabric\u2014if a threat bypasses one, the next is already there. But traditional human-led processes alone cannot operationalize this at the speed required.<\/p>\n<h2><strong>Operating at machine speed\u2014across every layer<\/strong><\/h2>\n<p><span data-contrast=\"auto\">Each layer of this architecture is only as strong as the policy behind it \u2014 and only as effective as the operations supporting it. AI-driven threats have exposed the breaking point of traditional approaches: fragmented policies create gaps, and manual processes can\u2019t respond at machine speed. <\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Our work toward <\/span><b><span data-contrast=\"auto\">Common Policy<\/span><\/b><span data-contrast=\"auto\"> will allow us to define once and enforce consistently everywhere \u2014 from branch access switches to data center firewalls \u2014 replacing the fragmented, system-by-system approach that creates gaps attackers exploit.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Where Common Policy defines the what, our advancements toward <\/span><b><span data-contrast=\"auto\">AgenticOps<\/span><\/b><span data-contrast=\"auto\"> will handle the how and when\u2014 autonomously detecting changes, triaging incidents, and enforcing updates at machine speed. This will allow us to resolve multi-week ticket processes in just minutes \u2014 a critical capability to keep pace with AI threats.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h2><strong>Security is a team sport: How Cisco IT and Security win together<\/strong><\/h2>\n<p><span data-contrast=\"auto\">Technology is only part of the equation. The teams operationalizing it need to be just as strong.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">Traditionally, networking teams focus on uptime while security teams focus on risk reduction \u2014 incidents are tossed over the fence, creating slow response times and fragmented defense.\u00a0<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">When the network is the primary target, security <\/span><i><span data-contrast=\"auto\">is<\/span><\/i><span data-contrast=\"auto\"> a performance and uptime issue. A breach isn\u2019t just a security alert \u2014 it\u2019s a business disruption that affects everyone.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">At Cisco, we treat security as a team sport. Our IT and Security teams share visibility, planning, and goals \u2014 not because of an org chart, but because a breach is a network outage, and a network outage is everyone\u2019s problem. We conduct quarterly planning together, operate with shared metrics, and move as one team. Aligning our teams has allowed us to stop playing defense and start building resilience to protect the future.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<h2><strong>The impact of converging security and networking<\/strong><\/h2>\n<p><span data-contrast=\"auto\">This combination of having security deeply embedded in the network and unified teams has allowed us to stop firefighting yesterday\u2019s threats and focus on proactively protecting our future. We\u2019ve seen a 50% improvement in our incident response SLA<\/span> <span data-contrast=\"auto\">\u2014<\/span> <span data-contrast=\"auto\">not because of a single tool, but because we eliminated the manual handoffs that once slowed us down. It\u2019s built a foundation for operational excellence that allows our teams to innovate at speed.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">AI-driven threats don\u2019t stop at our walls \u2014 and neither do our learnings. Through work with <\/span><span data-contrast=\"none\">Project Glasswing<\/span><span data-contrast=\"auto\"> and OpenAI Daybreak, we are stress-testing our own network at unprecedented scale and speed, sharing what we discover as repeatable, proven practices every organization can use to build stronger defenses.<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p><span data-contrast=\"auto\">The takeaway is simple: <\/span><b><span data-contrast=\"auto\">the network is the foundation of our business; it must also be the foundation of our defense. <\/span><\/b><span data-contrast=\"auto\">We\u2019ve moved beyond the perimeter to secure the entire fabric, using our own telemetry to turn our greatest risk into our most powerful asset. That is the only way to achieve true digital resilience in an AI-driven world.<\/span><br \/><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<p style=\"text-align: center;\">Watch the short video about Cisco\u2019s internal approach to secure networking:<\/p>\n<p style=\"text-align: center;\"><iframe class=\"lazy lazy-hidden\" data-lazy-type=\"iframe\" data-src=\"https:\/\/players.brightcove.net\/1384193102001\/41XYD7gTx_default\/index.html?videoId=6396676609112\" allowfullscreen=\"\" webkitallowfullscreen=\"\" mozallowfullscreen=\"\" width=\"640\" height=\"360\"><\/iframe><noscript><iframe loading=\"lazy\" src=\"https:\/\/players.brightcove.net\/1384193102001\/41XYD7gTx_default\/index.html?videoId=6396676609112\" allowfullscreen=\"\" webkitallowfullscreen=\"\" mozallowfullscreen=\"\" width=\"640\" height=\"360\"><\/iframe><\/noscript><\/p>\n<blockquote>\n<p style=\"text-align: center;\">Dive deeper: Watch the full one-hour conversation<\/p>\n<\/blockquote>\n<p><span data-contrast=\"auto\">More resources:<\/span><span data-ccp-props=\"{}\">\u00a0<\/span><\/p>\n<\/p><\/div>\n<p><p><a href=\"https:\/\/dmsretail.com\/online-workshops-list\/\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-496\" src=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png\" alt=\"Retail Online Training\" width=\"729\" height=\"91\" srcset=\"https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90.png 729w, https:\/\/dmsretail.com\/RetailNews\/wp-content\/uploads\/2022\/05\/RETAIL-ONLINE-TRAINING-728-X-90-300x37.png 300w\" sizes=\"auto, (max-width: 729px) 100vw, 729px\" \/><\/a><\/p><br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>role of the network is critical in the AI era \u2014 it\u2019s your greatest asset, your primary target, and your most critical line of defense. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":17078,"comment_status":"","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[5],"tags":[],"class_list":["post-17077","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technology"],"_links":{"self":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts\/17077","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/comments?post=17077"}],"version-history":[{"count":0,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/posts\/17077\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/media\/17078"}],"wp:attachment":[{"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/media?parent=17077"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/categories?post=17077"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/dmsretail.com\/RetailNews\/wp-json\/wp\/v2\/tags?post=17077"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}