Architecture
Model choice, gateways, retrieval, orchestration and application boundaries.
EXPERTISE · GENERATIVE AI
Generative AI systems create or transform content using foundation models. In enterprise environments, the risk surface extends beyond the model to prompts, retrieval systems, data sources, orchestration, plugins, identity, applications and runtime controls.
DEFINITION
Generative AI systems create or transform content using foundation models. In enterprise environments, the risk surface extends beyond the model to prompts, retrieval systems, data sources, orchestration, plugins, identity, applications and runtime controls.
CONTROL DIMENSIONS
Model choice, gateways, retrieval, orchestration and application boundaries.
Sensitive-data exposure, retrieval permissions, lineage and retention.
Prompt injection, insecure tool use, model supply chain and application abuse.
Use-case classification, ownership, evaluation, human oversight and evidence.
QUESTIONS TO ASK
The answer should identify an accountable owner, a defined control expectation and evidence that the control operates.
The answer should identify an accountable owner, a defined control expectation and evidence that the control operates.
The answer should identify an accountable owner, a defined control expectation and evidence that the control operates.
The answer should identify an accountable owner, a defined control expectation and evidence that the control operates.
RESEARCH
The research library is published separately under /research/ using WordPress.
INDEPENDENT ADVISORY
For AI strategy, governance, Agentic AI, security, assurance or cyber-risk requirements, describe the decision you are facing and the context around it.