The AI IT Security Audit™

The AI IT Security Audit™

Stephen R Jordan

39,05 €
IVA incluido
Disponible
Editorial:
SRJ Consulting & Services Publishing
Año de edición:
2026
Materia
Inteligencia artificial
ISBN:
9798996940226
39,05 €
IVA incluido
Disponible
Añadir a favoritos

You built a real security program. Patch cycles on schedule, zero trust implemented correctly, incident response tested under pressure. Then AI agents, MCP servers, embedded vendor features, and autonomous tools walked into your environment faster than your operating model could absorb them. That is not a failure of effort. It is a failure of speed. Now a question is forming, from a regulator, an audit committee, an insurer, or an enterprise customer expanding its security questionnaire: can you prove your AI exposure is known, controlled, and governed? Every dashboard shows green, and none of them are lying. Every control functions. But none of those tools were built to watch what AI agents do inside your environment, because they were designed before AI agents entered it at scale. This is the Green Dashboard Fallacy. It is not a detection failure, it is an assumption failure. The greatest AI security risk facing your organization is not that you are undefended. It is that leadership believes the existing program is already watching. The audit produces six artifacts built to survive outside scrutiny: an AI exposure map across the six CISO domains, a non-human identity inventory and agent boundary matrix, a tested AI Red Button procedure, an AI vendor tier map and data flow map, a regulatory crosswalk, and a four-page board pack. These are not concepts to understand. They are documents to hand over. Three instruments carry the method. The Visibility Triangle sorts every gap into visible, suspected, or undetectable. The Six-Domain Operating View structures the work across governance, security operations, architecture, application security, third-party risk, and data protection. The Defensible AI Security Baseline sets a dated, scored standard across seven areas with a named owner for each, which turns a one-time audit into a program. Seven binding frameworks run underneath: NIST AI RMF, ISO/IEC 42001, the OWASP LLM and Agentic Top 10, OWASP AIVSS, MITRE ATLAS, HITRUST AI, and Google SAIF. The thesis is stated plainly. AI agents must be audited as privileged, non-human actors inside your control environment. Once an agent can retrieve data, invoke tools, write records, or trigger workflows, it is an operational actor with an identity, a privilege scope, and a blast radius. No products are recommended and the book does not end in a pitch. Volume V of The Operating Discipline for AI Library, and the opening volume of Pillar II, AI Risk Governance and Security. The timeline belongs to whoever moves first.

Artículos relacionados

  • Artificial Cognition Systems
    ...
  • Cross-Disciplinary Applications of Artificial Intelligence and Pattern Recognition
    Vijay Kumar Mago
    The need for intelligent machines in areas such as medical diagnostics, biometric security systems, and image processing motivates researchers to develop and explore new techniques, algorithms, and applications in this evolving field. Cross-Disciplinary Applications of Artificial Intelligence and Pattern Recognition: Advancing Technologies provides a common platform for researc...
  • Emerging Applications of Natural Language Processing
    Over the last few years, the area of Natural Language Processing has drastically grown in recognition, not only within the research and development community, but also with industry professionals. As NLP continues to be discussed and researched, certain areas continue to grow and mature. As a result, the need for advanced research and information is in high demand. Emerging App...
  • Androids, Cyborgs, and Robots in Contemporary Culture and Society
    Steven John Thompson
    Mankind’s dependence on artificial intelligence and robotics is increasing rapidly as technology becomes more advanced. Finding a way to seamlessly intertwine these two worlds will help boost productivity in society and aid in a variety of ways in modern civilization. Androids, Cyborgs, and Robots in Contemporary Culture and Society is an essential scholarly resource that delve...
  • Deep Learning Innovations and Their Convergence With Big Data
    The expansion of digital data has transformed various sectors of business such as healthcare, industrial manufacturing, and transportation. A new way of solving business problems has emerged through the use of machine learning techniques in conjunction with big data analytics. Deep Learning Innovations and Their Convergence With Big Data is a pivotal reference for the latest sc...
  • Computational Psychoanalysis and Formal Bi-Logic Frameworks
    Giuseppe Iurato
    Computational psychoanalysis is a new field stemming from Freudian psychoanalysis. The new area aims to understand the primary formal structures and running mechanisms of the unconscious while implementing them into computer sciences. Computational Psychoanalysis and Formal Bi-Logic Frameworks provides emerging information on this new field which uses psychoanalysis and the unc...

Otros libros del autor

  • Application Security in the Age of AI™
    Stephen R Jordan
    The application passed every security check. Then it approved something it should not have.The expense assistant approved a reimbursement with legitimate credentials, against the legitimate endpoint, with parameters that passed every rule in the schema. It did so on the instruction of a wiki page an employee had edited that morning. Eleven controls had looked at it, and every o...
    Disponible

    39,22 €

  • The AI IT Security Implementation & Strategy™
    Stephen R Jordan
    You ran the AI security audit. You have the model inventory, the non-human identity count, the vendor map, and the data flows. The audit committee accepted it. Then you walked back to your desk and realized the environment it describes changes every week. Someone deployed an agent on Tuesday. A vendor activated an AI feature inside a product you already own on Wednesday and did...
    Disponible

    41,67 €

  • The AI Efficiency & Process Optimization™
    Stephen R Jordan
    Governance identifies what must change. The optimization work changes it.Most AI governance work ends at the risk register. The findings get documented, the target state gets approved, and then nothing moves. Projected labor savings stay projected. Usage climbs, dashboards glow, and the CFO still cannot defend the ROI number on the slide.The AI Efficiency and Process Optimizati...
    Disponible

    37,51 €

  • The AI Risk & Governance Review™
    Stephen R Jordan
    Somewhere ahead of you, someone with authority will ask you to prove your AI is governed.It could be an acquirer in diligence, a regulator opening an inquiry, an auditor in fieldwork, or your own board in a moment that does not feel quiet. The question is the same in every version. The companies that can answer it produce a signed document. The companies that cannot improvise a...
    Disponible

    37,45 €

  • The AI Readiness & Performance Assessment
    Stephen R Jordan
    Nobody knows if the AI in your business is working. Including you.It’s drafting your emails, supporting your decisions, and shaping the work that goes to your clients. It’s running inside your tools, your vendors’ platforms, and your employees’ personal accounts. None of it was governed the way you govern hiring, finance, or compliance. You’ve been signing off on AI for months ...
    Disponible

    19,81 €