Artificial intelligence is revolutionizing cybersecurity, moving organizations from manual defenses toward fully autonomous threat management. As cyber threats become increasingly complex, AI is no longer merely a supportive tool; it is becoming an autonomous decision-maker within security operations. However, there are still challenges, particularly in balancing automation with human control.
At CPX APAC 2025, Dan Karpati, VP of AI at Check Point, discussed the evolving role of AI in cybersecurity and the future trajectory. He detailed the progression from AI-assisted security to fully autonomous systems and highlighted the hurdles that organizations must navigate to achieve this transition.
The Path to Autonomous Cybersecurity
Cyber threats are advancing at an extraordinary pace, with AI-powered phishing, deepfake fraud, and adaptive malware posing significant challenges to traditional defenses. Check Point is developing AI-driven security systems that can proactively counter these emerging threats.
Karpati outlined the stages of AI-driven cybersecurity development:
• Manual Security: Threat detection and response driven entirely by human action.
• AI-Assisted Security: AI automates routine tasks and provides analytical insights.
• AI-Augmented Security: AI enhances human decision-making through predictive analytics.
• Supervised-AI Autonomy: AI operates independently while under human oversight.
• Full Security Autonomy: AI autonomously detects, mitigates, and resolves threats without human intervention.
The ultimate aim is to remove human bottlenecks, allowing AI to manage network security autonomously. However, Karpati believes that full autonomy is a distant prospect: “In the long run, humans will want to retain control. I don’t envision a future where machines have total control, as it goes against human nature.”
Current Phase: AI-Assisted Security
According to Karpati, the industry is currently in the “AI-assisted security” phase, where AI is reactive, offering insights and recommendations, with humans still in charge. The industry is now moving towards the “AI-augmented” phase, where AI systems will handle more tasks autonomously, with humans overseeing operations.
“Moving forward, we will see an augmented phase where AI will take on more autonomous tasks,” Karpati explained. “As we advance, security operations will become more autonomous, but a fully autonomous system might remain a distant goal. Yet, striving for it is essential.”
Striking a Balance: AI and Human Expertise
While AI can automate numerous cybersecurity functions, human expertise remains essential. Karpati envisions AI as a part of a hierarchical structure where it starts as a junior-level assistant, gradually taking on more responsibilities as it learns. “Over time, humans will focus more on orchestrating—guiding AI systems rather than handling each security task individually,” he noted.
However, this progression raises ethical concerns. AI decision-making in cybersecurity can have significant implications, especially in human-related incidents. “There are ethical issues that require resolution, as these systems make decisions that impact people,” Karpati cautioned.
Transformational Impact: Generative AI
Karpati highlighted generative AI (Gen AI) as a game-changer in cybersecurity. Unlike traditional AI, which relied on domain-specific proprietary data, Gen AI utilizes extensive human-generated data, enabling more sophisticated and adaptable solutions.
“Previously, our security engines were built using proprietary data,” Karpati explained. “Now, with Gen AI, organizations can leverage human language to create a vast array of use cases, bringing AI closer to human thinking, even generating code on the fly.”
While this presents enormous opportunities, it also brings new risks, such as securing dynamically generated code. “The ability of AI to generate backend code on the fly is both promising and risky,” Karpati warned. “We need robust AI-driven security measures to guard against AI-generated threats.”
Conclusion: An AI-Driven Future Guided by Humans
The shift to autonomous cybersecurity is more than just a technological change; it represents a fundamental shift in how organizations approach digital defense. While AI will assume greater responsibility, human oversight will be indispensable in directing its development.
“The future is exciting,” Karpati concluded. “AI innovation empowers underdogs to redefine the game, much like DeepSeek’s breakthroughs disrupted OpenAI with their creativity.”
As AI continues to evolve, businesses must embrace its potential and confront its challenges. Those who adapt to this new era of AI-driven security will be best equipped to stay ahead of sophisticated cyber threats.