4 key takeaways from Red Sift Radar’s live briefing

If you missed the introduction of our latest innovation, Red Sift Radar, don’t worry – we’ve got you covered! Here are the 5 key takeaways from our launch webinar with Red Sift’s CEO Rahul Powar, Senior Director of Sales Engineering Billy McDiarmid and Zachary Bennett, IT & Security Manager at FHC.

Watch the live briefing below or keep scrolling for the written recap.

But first, a quick recap. What’s Radar?

Red Sift Radar is the upskilled LLM that leverages internet-scale cybersecurity intelligence and the terminal skills of an analyst to help security teams identify and resolve issues up to 10x faster. Radar launched with a first-of-its-kind DMARC integration through Red Sift OnDMARC, with plans for broader integration across the Red Sift portfolio in the coming months.

A new LLM innovation from a company with roots in AI

The Radar launch briefing kicked off with Rahul discussing Red Sift’s deep experience with LLMs and the innovation journey leading to Radar.

In July 2020, the Red Sift team first saw an LLM in action when they gained early beta access to GPT-3. Rahul noted, “This early insight allowed us to start ideating. […] In our swimlanes, we care about making cybersecurity accessible, actionable, and simplified where possible […] so how do we use this technology to try and do that?”.

This initial insight paved the way for a series of milestones: launching the first GPT-4-powered feature in Brand Trust, rolling out AI-powered filtering in Certificates, and eventually prototyping the first version of Radar as a plugin in the OpenAI store. However, the team decided to bring Radar in-house to ensure customer data security and seamless integration with Red Sift’s platform.

“If it’s not there at your point of need, all the time, it becomes a lot less useful. We wanted to bring the AI to where your problem actually is.”

Rahul Powar, CEO & Cofounder, Red Sift

How Red Sift overcame the limitations of traditional LLMs

Rahul expanded on how Red Sift addressed key limitations of traditional LLMs to build a best-in-class cybersecurity solution:

  1. Isolation: Traditional LLMs require users to know exactly what questions to ask, and they exist as standalone tools. Red Sift solved this by integrating Radar directly into OnDMARC, offering ‘jumping-off points’ where users may have complex questions, allowing Radar to assist right when it’s needed.
  2. Incomplete Data: LLMs are often isolated from real-time data. Red Sift tackled this by integrating Radar with its extensive data sets and proprietary tools, exposing Radar to public data, open SSL tooling, and insights from global points of presence. This ensures Radar can provide comprehensive, real-time insights.
  3. Inconsistency: To avoid variable outputs, Red Sift created “guardrails,” or playbooks, that help Radar think through multi-step security queries reliably and consistently. To read more about playbooks, visit the Radar launch blog.

Radar empowers resource-strapped security teams 

Red Sift Radar enhances the security posture of organizations by flagging misconfigurations and exposures to teams and helping them remediate them on the fly, without the need for additional headcount. By combining AI with deep industry knowledge, Radar’s integration with OnDMARC helps security teams:

  1. Find and fix misconfigured records: Radar provides market-leading identification of errors in SPF and DMARC records, ensuring email authentication settings are correctly aligned.
  2. Quickly identify unknown senders: Radar enables fast evaluation of unknown IP addresses to identify and classify potential threats.
  3. Better understand DMARC failure reports: Unlock better analysis of DMARC failure reports to differentiate between legitimate forwarders and email spoofing attempts.

“In the first 24 hours of use, Radar saved us $4,000 by identifying a fraudulent invoice from its header information.”

Zachary Bennett, IT & Security Manager at FHC

In addition to its in-app interactions inside OnDMARC, Billy showed off the Email Analyzer tool that saved Zachary $4000 by spotting a fraudulent invoice by its header information. After a suspicious email was flagged by FHC’s AP/AR team, Zachary used Radar to investigate the email. “Normally, I would have had to look at the header and check in Microsoft where this email was coming from,” he said. “Radar made a complete report with everything I needed to understand that the email was spoofed. It came from an externally compromised email which Radar confirmed with an IP address check, told us that the username did not match the current company’s email address, and revealed that the domain had been registered 2 days prior… Ingenious!”

Best of all, Radar’s chat interface allows users to ask questions in natural language, making it accessible even to those without deep technical expertise. As Billy McDiarmid noted, “We want to allow people with all levels of experience in cybersecurity to use our software … and provide a simplified platform that shares insight and data continuously and automatically across all of our applications.”

Radar delivers real-world impact

Zachary went on to share how Radar transformed his approach to cybersecurity, turning him from an LLM skeptic to a believer. In addition to invoice fraud detection, Radar helped FHC consolidate its cybersecurity tools, boost the team’s efficiency, and streamline day-to-day operations. 

“Radar [has] replaced the need for alternate tools so instead of having a bunch of browser tabs open like MXToolBox and DNS Checkers, it’s all within one application.” He added, “My team isn’t ginormous. We have a lot of different jobs. Having everything in one place without moving between different tools means you have time to do other tasks. The integration with the Red Sift OnDMARC is a huge selling point […] because it’s all there, on the side panel.”

“Radar goes way beyond email security […] it’s an all-in-one tool.”

Zachary Bennett, IT & Security Manager at FHC

To read more about how Radar delivered value to our beta customers, visit the launch blog here.


Red Sift Radar is now available to existing Red Sift customers across our OnDMARC, Brand Trust, and Certificates product portfolio. If you missed the webinar, you can catch up with the recording on YouTube

Ready to get started? Request your account today. 

PUBLISHED BY

Francesca Rünger-Field

11 Oct. 2024

SHARE ARTICLE:

Categories

AI

Recent Posts

VIEW ALL
News

Winter wins: Red Sift OnDMARC wraps up 2024 as a G2 DMARC…

Francesca Rünger-Field

The season of giving has brought us another reason to celebrate! Red Sift OnDMARC continues its winning streak in G2’s Winter 2025 report, earning Leader status in the DMARC category for another consecutive season. This recognition reflects our strong market presence and the unwavering satisfaction of our customers. Cheers to wrapping up 2024 on…

Read more
AI

Text classification in the age of LLMs

Phong Nguyen

As natural language processing (NLP) advances, text classification remains a foundational task with applications in spam detection, sentiment analysis, topic categorization, and more. Traditionally, this task depended on rule-based systems and classical machine learning algorithms. However, the emergence of deep learning, transformer architectures, and Large Language Models (LLMs) has transformed text classification, allowing for…

Read more
Security

How to drive cybersecurity as a top business priority

Jack Lilley

Everyone has a role to play in protecting the enterprise. Whether you’re shaping strategy or implementing solutions, aligning efforts to mitigate critical risks ensures a stronger, more resilient enterprise. If you missed Red Sift’s recent webinar on “From Data to Buy-In: Driving Cybersecurity as a Top Business Priority” we’ve got you covered. The session…

Read more
DMARC

BreakSPF: How to mitigate the attack

Red Sift

BreakSPF is a newly identified attack framework that exploits misconfigurations in the Sender Policy Framework (SPF) a widely used email authentication protocol. A common misconfiguration involves overly permissive IP ranges, where SPF records allow large blocks of IP addresses to send emails on behalf of a domain. These ranges often include shared infrastructures like…

Read more