Thursday, July 24, 2025

Information Systems Security Agent ( Multi Agent)

Agentic AI-powered security automation framework that performs:

  1. Threat modeling (using STRIDE, OWASP Top 10),

  2. Risk assessment (using DREAD/FAIR models),

  3. Architecture parsing (from diagrams or IaC),

  4. Compliance mapping (to NIST, ISO, SOC2),

  5. Live Azure infrastructure auditing (e.g., VNet, NSG, Key Vaults, Route Tables),

  6. Automated remediation planning (with suggested fixes),

  7. Audit-ready reporting (in PDF or dashboard format),

  8. ServiceNow integration (for CMDB, tickets, approvals).

Build this using a multi-agent system (LangGraph or Azure AI Foundry Agents) coordinated by a Supervisor Agent, with contextual memory (e.g., Azure AI Search or Weaviate). Include:

  • A system architecture diagram,

  • A step-by-step description of each agent's function and AI implementation,

  • An ROI analysis per agent (quantifying time/money saved),

  • A PowerPoint presentation summarizing all components,

  • A PNG diagram of the architecture, and

  • Exportable formats (PowerPoint, draw.io, or PlantUML if needed).




1 comment:

Kris Lewis said...

Great overview of information systems security roles — your post simplifies important cybersecurity concepts. It’s also interesting how servicenow ai
can support security operations through smarter automation and faster risk response. Thanks for the helpful insights!