Tag: governance
-
How to write an AI usage policy
Write an AI usage policy with this 7-step guide and free template. 63% of breached organizations lacked an AI governance policy, per IBM 2025. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/how-to-write-an-ai-usage-policy/
-
The Governance Gaps Holding Back Enterprise Agentic Networks
Enterprise AI is moving from individual assistants to interconnected networks of autonomous agents. That creates a new governance challenge: knowing which agent acted, why it acted, what permissions it had and who authorized it. Identity, runtime policy, delegation controls and auditability are quickly becoming foundational AI security requirements. First seen on securityboulevard.com Jump to article:…
-
Tricentis macht KI-Sicherheit zur Chefsache: Erika Dean übernimmt CISO-Posten
Tricentis ernennt Erika Dean zur CISO. Sie verantwortet Cybersecurity, Produktsicherheit, Software Supply Chain und Governance rund um Agentic AI. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/tricentis-macht-ki-sicherheit-zur-chefsache-erika-dean-uebernimmt-ciso-posten/a46196/
-
Fast die Hälfte der KI-Nutzung in Unternehmen basiert auf ungesicherter Schatten-KI
Bericht thematisiert unautorisierte Anwendungen, neue Angriffsvektoren und erforderliche Sicherheitsstrategien. Management Summary Schatten-KI ist kein Randphänomen mehr: Fast jede zweite KI-Interaktion läuft über private Identitäten und entzieht sich damit Governance, Monitoring und Compliance. Die Angriffsfläche verlagert sich in den Browser und die Entwicklungsumgebung: Erweiterungen, KI-Coding-Assistenten und agentische Browser werden zu neuen Einfallstoren für Datenabfluss und……
-
OpenAI, Anthropic und AISI: Was die drei KI-Vorfälle über Agentensicherheit aussagen
Drei KI-Sicherheitsvorfälle bei OpenAI, Anthropic und AISI zeigen, warum Unternehmen Kontrolle, Monitoring und Governance für KI-Agenten benötigen. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/openai-anthropic-und-aisi-was-die-drei-ki-vorfaelle-ueber-agentensicherheit-aussagen/a46084/
-
‘GhostJacking’ Exposes Identity Governance Gaps in AI Agents
New research shows how attackers can use security alerts and blocked events to manipulate and hijack AI agents. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/ghostjacking-identity-governance-gaps-ai-agents
-
Zutrittskontrolle als Governance- und Cybersecurity-Priorität
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/zutrittskontrolle-governance-cybersecurity-prioritaet
-
How AI Agents Widen the Enterprise Blast Radius
AWS’s Matt Girdharry and Varonis’ Matt Radolec on Data Security, Machine-Speed Risk. Agentic AI can act at machine speed across data, APIs and cloud services, expanding enterprise risk beyond traditional controls. AWS’ Matt Girdharry and Varonis’ Matt Radolec explain why AI governance, least privilege and runtime visibility now matter more than ever for security teams.…
-
ThreatLabz 2026 Report: Frontier AI and Enterprise Readiness
Tags: access, ai, attack, authentication, breach, cisa, ciso, control, credentials, cyberattack, data, data-breach, endpoint, exploit, flaw, governance, identity, Internet, kev, login, malicious, privacy, radius, resilience, strategy, switch, threat, update, vpn, vulnerability, zero-trustThe BreachIt was 9:14 AM when the CISO’s VPN connection momentarily dropped, something that normally wouldn’t cause any concern. What he couldn’t see was that attackers had already exploited a pre-authentication flaw in the VPN appliance itself, gaining access before any login ever occurred. From there, they extracted stored credentials, forged an identity as his…
-
ThreatLabz 2026 Report: Frontier AI and Enterprise Readiness
Tags: access, ai, attack, authentication, breach, cisa, ciso, control, credentials, cyberattack, data, data-breach, endpoint, exploit, flaw, governance, identity, Internet, kev, login, malicious, privacy, radius, resilience, strategy, switch, threat, update, vpn, vulnerability, zero-trustThe BreachIt was 9:14 AM when the CISO’s VPN connection momentarily dropped, something that normally wouldn’t cause any concern. What he couldn’t see was that attackers had already exploited a pre-authentication flaw in the VPN appliance itself, gaining access before any login ever occurred. From there, they extracted stored credentials, forged an identity as his…
-
BeyondTrust Extends Pathfinder to AI Agents and Other Nonhuman Identities
BeyondTrust is extending its Pathfinder platform to cover AI agents, workloads and other nonhuman identities that can hold or exercise privileged access. The company announced the first wave of native Pathfinder capabilities at Black Hat USA 2026 on Aug. 3. The package includes PathfinderAI and a new MCP Server, AI Agent Security, NHI Governance and..…
-
Europa stark bei der Sicherheit, doch schwach bei der KI-Governance
29 % der europäischen Unternehmen nennen die KI-Regulierung ihre größte Compliance-Sorge, der höchste Wert aller Regionen. Kiteworks hat seinen 2026 Data Security and Compliance Risk: Annual Survey Report veröffentlicht [1]. Die Analyse wurde zum fünften Mal in Folge durchgeführt und basiert auf einer Befragung von 459 Sicherheits-, Compliance-, Risiko- und IT-Fachleuten in zehn Branchen… First…
-
The AI governance audit your clients aren’t ready for
First seen on scworld.com Jump to article: www.scworld.com/perspective/the-ai-governance-audit-your-clients-arent-ready-for
-
Why AI Governance Requires Continuous Compliance Assurance
Schellman CEO Avani Desai on Building Governance Before Technology Enforcement. Artificial intelligence governance must evolve as agentic AI systems make decisions at machine speed. Schellman CEO Avani Desai explains why organizations need continuous auditing, unified controls and multiple frameworks to prove AI trustworthiness without slowing innovation. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/ai-governance-requires-continuous-compliance-assurance-a-32438
-
The Best Firewall Management Tools, Compared and Priced (2026)
The firewall policy management market had its earthquake: Skybox Security shut down overnight in February 2025, selling its technology to Tufin and leaving customers to migrate a reminder that in this category, vendor viability is a feature. The value verdict: Tufin (now absorbing Skybox’s base) and AlgoSec lead enterprise policy governance, FireMon owns real-time visibility…
-
Patch Me If You Can, The VPN, the Backup Server, and the Browser Zero-Day
Actively exploited VPN, browser and backup vulnerabilities show why effective patching depends on risk-based cybersecurity governance, not perfect security. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/patch-me-if-you-can-the-vpn-the-backup-server-and-the-browser-zero-day/
-
KI-Arbeitsplatz unter Zero Trust: Cloudflare bündelt Agenten, Governance und Analyse
Cloudflare verbindet einen offenen KI-Arbeitsplatz mit identitätsbasierter Kontrolle über Agenten, Datenflüsse, Modellnutzung und Kosten. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/ki-arbeitsplatz-unter-zero-trust-cloudflare-buendelt-agenten-governance-und-analyse/a46037/
-
ElringKlinger modernisiert Identitäts- und Zugriffsmanagement mit Omada
ElringKlinger modernisiert sein Identitäts- und Zugriffsmanagement mit Omada Identity und ersetzt SAP IDM durch eine zentrale Governance-Plattform. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/elringklinger-modernisiert-identitaets-und-zugriffsmanagement-mit-omada/a46035/
-
Jscrambler Launches Unified Client-Side Security Platform
Jscrambler has launched a Unified Client-Side Security Platform that combines software integrity and data governance through a browser runtime architecture. The platform is built on Jscrambler’s Behavioral Enforcement Core, which continuously monitors browser behavior, analyzes activity and enforces policy through a single deployment. The company said the goal is to extend security controls to the..…
-
AI governance is the missing security control
First seen on scworld.com Jump to article: www.scworld.com/perspective/ai-governance-is-the-missing-security-control
-
Why Healthcare AI Use Demands Transparency to Manage Risks
Anne Snowdon of SCAN Health on AI Governance, Supply Chains. Healthcare organizations adopting AI must prioritize transparency, measurable outcomes and vendor accountability. Anne Snowdon of SCAN Health explains why AI governance, supply-chain visibility, cyber preparedness and patient trust determines whether emerging tech deliver value or create new risks. First seen on govinfosecurity.com Jump to article:…
-
The OpenAI and Anthropic Incidents Mark a Turning Point for AI Governance
Incidents at OpenAI, Anthropic, Replit, and PocketOS show AI is acting inside production systems. See why governance now has to start at the database. First seen on securityboulevard.com Jump to article: securityboulevard.com/2026/08/the-openai-and-anthropic-incidents-mark-a-turning-point-for-ai-governance/
-
JetStream Launches AI Kill Switch for Individual Agents
JetStream Security has launched an AI Kill Switch that can shut down a single compromised or malfunctioning AI agent without affecting other AI operations. The control is part of JetStream’s AI governance platform. The company said it combines the person who invoked an action, the agent identity carrying it out, the system’s stated intent and..…
-
Drata Opens Limited Availability for AI Agent Governance Product
Drata has opened limited availability for AI Agent Governance, a product designed to discover, monitor, govern and prove the traceability of AI agents inside an enterprise. The product ships first for Anthropic, with full lifecycle support available to qualified enterprises running agents on Anthropic. Drata said native coverage for OpenAI, Google Vertex AI and AWS..…
-
Why AI Agents Challenge Identity Governance
CIOs Need New Controls for Discovery, Intent and Token Costs. AI agents can operate within legitimate permissions and still take actions their creators never intended. Saviynt Chief Product Officer Vibhuti Sinha explains why CIOs need stronger discovery, runtime oversight, identity data and cost controls to scale agents safely. First seen on govinfosecurity.com Jump to article:…
-
Subscriber Security: Trust Is Telecom’s Most Valuable Asset
Why Protecting Subscriber Identity has Become Industry’s Cybersecurity Priority As subscriber identities become the foundation of digital services, telecom and DTH providers must move from protecting networks to safeguarding customer trust. Identity-centric security, stronger governance, AI-driven fraud detection and evolving regulations are reshaping cybersecurity priorities. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/blogs/subscriber-security-trust-telecoms-most-valuable-asset-p-4165
-
Airlock Digital Unveils Agentic AI Control Governance to Extend Preventative Endpoint Security
Atlanta, GA, August 4th, 2026, CyberNewswire Airlock Digital announces Agentic AI Control & Governance, extending its preventative endpoint security solution with visibility into trusted AI agent behavior and governance over what trusted agents are allowed to do on endpoints. Airlock Digital, a leader in preventative endpoint security, today announced Agentic AI Control & Governance at…
-
Airlock Digital Unveils Agentic AI Control Governance to Extend Preventative Endpoint Security
Atlanta, GA, 4th August 2026, CyberNewswire First seen on hackread.com Jump to article: hackread.com/airlock-digital-unveils-agentic-ai-control-governance-to-extend-preventative-endpoint-security/

