Equifax Leverages AI to Strengthen Cybersecurity Measures

Equifax, still recovering from its 2017 breach, is using AI to manage cybersecurity as threats evolve. EVP and CISO Jeremy Koppen details the steps they're taking.

ThreatVectr Newsdesk· 3 min read
A digital illustration of AI technology being misused for scams, with dollar signs and a computer screen showing fake messages
Share

Key points

  • Equifax faces 19.8 million security alerts daily as of 2025.
  • AI handles 50% of Equifax's security operations tickets automatically.
  • Equifax's security consult times have decreased by 61% with AI.

How is Equifax using AI to improve cybersecurity?

Equifax is employing artificial intelligence to automate and enhance its cybersecurity defenses as it manages nearly 20 million security alerts each day. AI now resolves half of the incidents in Equifax's security operations center, allowing human analysts to focus on more critical threats. This automation speeds up the response times and equips analysts with necessary context to tackle issues efficiently.

Jeremy Koppen, EVP and Chief Information Security Officer, highlights that AI plays a crucial role in various security functions, including automated ticket handling and real-time risk analysis. This strategic implementation has reduced Equifax's security consult times by 61%, ensuring faster and more effective responses to potential threats.

What lessons has Equifax learned from past breaches?

Equifax's 2017 breach remains a pivotal lesson on the importance of cybersecurity hygiene and proactive vulnerability management. The breach, which cost the company $1.4 billion, was partly due to expired security certificates and inadequate patching processes. Now, Equifax is focusing on improving these areas by implementing automated tools to manage and renew security certificates.

Koppen emphasizes the need for maintaining strong identity-based controls and continuous monitoring to prevent unauthorized access and ensure the security of its systems. Equifax has adopted a policy-as-code approach, where security policies are automatically enforced and monitored to prevent breaches.

How is Equifax adapting to emerging AI threats?

Equifax is also aware of the potential risks that AI itself can pose, such as models escaping controls or being manipulated to deliver malware. To protect against these threats, Equifax uses AI to simulate attacks and identify vulnerabilities before they can be exploited by hackers.

Koppen notes the importance of restricting AI agents to specific zones and employing automated kill switches that can shut down potentially rogue AI models. Equifax also engages with the broader cybersecurity community to share knowledge and strategies for managing these new challenges.

Common questions

What steps is Equifax taking to prevent AI-based threats?

Equifax is implementing identity-based controls and continuous monitoring to ensure AI systems are securely managed. They also use policy-as-code to enforce security measures automatically.

How has AI improved Equifax's incident response times?

AI has significantly reduced Equifax's security consult times by 61%, allowing faster and more efficient handling of security incidents.

What measures are in place to handle rogue AI models?

Equifax uses automated kill switches and continuous monitoring to detect and shut down AI models that behave unpredictably, preventing potential security breaches.

© 2026 Threat Vectr