Tech with Travis Burmaster

The Risks of Data Entitlements using Gen AI


Listen Later

In this episode of Tech with Travis, we explore the critical issue of data entitlements and their risks, especially in the context of AI tools like large language models (LLMs). Data entitlements, which define user access rights within an organization, can become problematic when mismanaged. This can lead to 'toxic combinations' of permissions, enabling fraud and data breaches. LLMs such as Microsoft Copilot can exacerbate these risks by accessing vast amounts of data based on user permissions, potentially exposing sensitive information if controls are lax. Real-world examples include significant breaches at AT&T and a background check company, where millions of records were compromised due to poor entitlement management. The episode highlights the dangers of entitlement creep and offers solutions like fine-grained access controls, regular audits, and zero-trust principles to mitigate these risks. The discussion underscores the importance of managing data entitlements to protect organizational data effectively.

...more
View all episodesView all episodes
Download on the App Store

Tech with Travis BurmasterBy Travis Burmaster