What are the guardrails we can have in AI era to ensure we have the right policies in place for example, DNS filtering policies
One of the key issues around AI is recognising that preventative capabilities aren't just technology. They need to be people and process AND tech to ensure the organisation is building the right abilities to protect and defend.
If your CEO/CTO wants to allow copilot in your organization, what would you as cyber security expert put in place to reduce exposure? How would the processes change and what culture change is required if we already follow DevSecOps using SAST and DAST in CI/CD pipeline
bringing the rigour we typically in other aspects of cyber I think is a great starting point - start with the asset identification (including/especially data assets that the models will have access to) then profile the threat and risks associated with each AI asset
AI provide cyber professionals a great opportunity - how often are we faced with a true green field - so the risk cyber teams been seen as a blocker of AI initiatives is real - we should look to educate and support - be the enablers
at EY we have been developing models/frameworks to do exactly this support of businesses in their exploration of AI
there is the need to also factor ethical considerations beyond DevSecOps etc
Thanks RickIs there a standard/framework as of today that organizations can adopt.
A cookie is a small file of letters and numbers that we store on your browser or the hard drive of your computer if you agree. Cookies contain information that is transferred to your computer's hard drive.
These are cookies that are required for the operation of our website. These essential cookies are always enabled because our website won’t work properly without them. You can switch off these cookies in your browser settings but you may then not be able to access all or parts of our website.
These allow us to recognise and count the number of users and to see how users move around our website when they are using it. This helps us to improve the way our website works.