Cloud Security Podcast by Google

EP224 Protecting the Learning Machines: From AI Agents to Provenance in MLSecOps


Listen Later

Guest:

  • Diana Kelley, CSO at Protect AI

 Topics:

  • Can you explain the concept of "MLSecOps" as an analogy with DevSecOps, with 'Dev' replaced by 'ML'? This has nothing to do with SecOps, right?
  • What are the most critical steps a CISO should prioritize when implementing MLSecOps within their organization? What gets better  when you do it?
  • How do we adapt traditional security testing, like vulnerability scanning, SAST, and DAST, to effectively assess the security of machine learning models? Can we?
  • In the context of AI supply chain security, what is the essential role of third-party assessments, particularly regarding data provenance?
  • How can organizations balance the need for security logging in AI systems with the imperative to protect privacy and sensitive data? Do we need to decouple security from safety or privacy?
  • What are the primary security risks associated with overprivileged AI agents, and how can organizations mitigate these risks? 
  • Top differences between LLM/chatbot AI security vs AI agent security?

 Resources:

  • “Airline held liable for its chatbot giving passenger bad advice - what this means for travellers”
  • “ChatGPT Spit Out Sensitive Data When Told to Repeat ‘Poem’ Forever”
  • Secure by Design for AI by Protect AI
  • “Securing AI Supply Chain: Like Software, Only Not”
  • OWASP Top 10 for Large Language Model Applications
  • OWASP Top 10 for AI Agents  (draft)
  • MITRE ATLAS
  • “Demystifying AI Security: New Paper on Real-World SAIF Applications” (and paper)
  • LinkedIn Course: Security Risks in AI and ML: Categorizing Attacks and Failure Modes
...more
View all episodesView all episodes
Download on the App Store

Cloud Security Podcast by GoogleBy Anton Chuvakin

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

38 ratings


More shows like Cloud Security Podcast by Google

View all
Risky Business by Patrick Gray

Risky Business

360 Listeners

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast) by Johannes B. Ullrich

SANS Internet Stormcenter Daily Cyber Security Podcast (Stormcast)

628 Listeners

The Cloudcast by Massive Studios

The Cloudcast

153 Listeners

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec by Jerry Bell and Andrew Kalat

Defensive Security Podcast - Malware, Hacking, Cyber Security & Infosec

367 Listeners

CyberWire Daily by N2K Networks

CyberWire Daily

1,014 Listeners

AWS Podcast by Amazon Web Services

AWS Podcast

201 Listeners

Click Here by Recorded Future News

Click Here

392 Listeners

Cybersecurity Today by Jim Love

Cybersecurity Today

165 Listeners

Kubernetes Podcast from Google by Abdel Sghiouar, Kaslin Fields

Kubernetes Podcast from Google

180 Listeners

CISO Series Podcast by David Spark, Mike Johnson, and Andy Ellis

CISO Series Podcast

186 Listeners

Hacking Humans by N2K Networks

Hacking Humans

313 Listeners

Defense in Depth by David Spark, Steve Zalewski, Geoff Belknap

Defense in Depth

78 Listeners

Cloud Security Podcast by Cloud Security Podcast Team

Cloud Security Podcast

55 Listeners

Cyber Security Headlines by CISO Series

Cyber Security Headlines

118 Listeners

Risky Bulletin by risky.biz

Risky Bulletin

33 Listeners