AI Governance Institute
← All news

AI Security

AI security is often treated as a subset of conventional cybersecurity, but it covers a distinct set of failure modes: models can be poisoned during training, agents can be manipulated into misusing the credentials they hold, and a compromised open-weight model can carry a backdoor into every system that downloads it. None of this maps cleanly onto traditional application security tooling.

It is also, increasingly, a compliance requirement rather than a purely technical concern. The EU AI Act's Article 15 sets cybersecurity obligations for high-risk systems. NIST's AI Risk Management Framework treats security as part of the Govern and Manage functions, not an afterthought bolted onto deployment. ISO 42001's Annex A includes controls for data and system security specific to AI management systems.

This hub tracks AI security incidents, emerging threats like prompt injection and agent credential abuse, and the standards and controls organizations are adopting in response.

122 items