li>Expand AI threat coverage: Build and maintain detections, correlations, and playbooks for AI-enabled threats (deepfakes, synthetic phishing/impersonation, prompt injection, risky plugins/connectors, and anomalous AI tool usage), with routine testing and tuning. - Accelerate detection and triage: Implement AI-assisted alert enrichment (context correlation, reputation checks, summarization) and tune detections to reduce noise and improve prioritization.