{"id":25442,"date":"2024-11-09T06:00:59","date_gmt":"2024-11-09T14:00:59","guid":{"rendered":"http:\/\/www.palada.net\/index.php\/2024\/11\/09\/news-19172\/"},"modified":"2024-11-09T06:00:59","modified_gmt":"2024-11-09T14:00:59","slug":"news-19172","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2024\/11\/09\/news-19172\/","title":{"rendered":"More value, less risk: How to implement generative AI across the organization securely and responsibly"},"content":{"rendered":"<p><strong>Credit to Author: Bret Arsenault| Date: Thu, 07 Nov 2024 17:00:00 +0000<\/strong><\/p>\n<p>The technology landscape is undergoing a massive transformation, and AI is at the center of this change\u2014posing both new opportunities as well as new threats.&nbsp; While AI can be used by adversaries to execute malicious activities, it also has the potential to be a game changer for organizations to help defeat cyberattacks at machine speed.&nbsp;Already today generative AI stands out as a transformative technology that can help boost innovation and efficiency. To maximize the advantages of generative AI, we need to strike a balance between addressing the potential risks and embracing innovation. In our recent strategy paper, \u201c<a href=\"https:\/\/clouddamcdnprodep.azureedge.net\/gdc\/gdctvIyrZ\/original\"><strong>Minimize Risk and Reap the Benefits of AI<\/strong><\/a>,\u201d we provide a comprehensive guide to navigating the challenges and opportunities of using generative AI.<\/p>\n<p>According to a recent survey conducted by ISMG, the top concerns for both business executives and security leaders on using generative AI in their organization range, from data security and governance, transparency and accountability to regulatory compliance.<sup>1<\/sup>&nbsp;In this paper, the first in a series on AI compliance, governance, and safety from the Microsoft Security team, we provide business and technical leaders with an overview of potential security risks when deploying generative AI, along with insights into recommended safeguards and approaches to adopt the technology responsibly and effectively.<\/p>\n<h2 class=\"wp-block-heading\" id=\"learn-how-to-deploy-generative-ai-securely-and-responsibly\">Learn how to deploy generative AI securely and responsibly<\/h2>\n<p>In the paper, we explore five critical areas to help ensure the responsible and effective deployment of generative AI: data security, managing hallucinations and overreliance, addressing biases, legal and regulatory compliance, and defending against threat actors. Each section provides essential insights and practical strategies for navigating these challenges.&nbsp;<\/p>\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/www.microsoft.com\/en-us\/microsoft-cloud\/blog\/wp-content\/uploads\/2024\/11\/Screenshot-2024-10-31-151302.webp\" alt=\"\" class=\"wp-image-3967\"\/><\/figure>\n<h3 class=\"wp-block-heading\" id=\"data-security\">Data security<\/h3>\n<p>Data security is a top concern for business and cybersecurity leaders. Specific worries include data leakage, over-permissioned data, and improper internal sharing. Traditional methods like applying data permissions and lifecycle management can enhance security.&nbsp;<\/p>\n<h3 class=\"wp-block-heading\" id=\"managing-hallucinations-and-overreliance\">Managing hallucinations and overreliance<\/h3>\n<p><a href=\"https:\/\/news.microsoft.com\/source\/features\/company-news\/why-ai-sometimes-gets-it-wrong-and-big-strides-to-address-it\/\">Generative AI hallucinations<\/a>&nbsp;can lead to inaccurate data and flawed decisions. We explore techniques to help ensure AI output accuracy and minimize overreliance risks, including grounding data on trusted sources and using AI red teaming.&nbsp;<\/p>\n<h3 class=\"wp-block-heading\" id=\"defending-against-threat-actors\">Defending against threat actors<\/h3>\n<p>Threat actors use AI for cyberattacks, making safeguards essential. We cover protecting against malicious model instructions, AI system jailbreaks, and AI-driven attacks, emphasizing authentication measures and insider risk programs.&nbsp;<\/p>\n<h3 class=\"wp-block-heading\" id=\"addressing-biases\">Addressing biases<\/h3>\n<p>Reducing bias is crucial to help ensure fair AI use. We discuss methods to identify and mitigate biases from training data and generative systems, emphasizing the role of ethics committees and diversity practices.<\/p>\n<h3 class=\"wp-block-heading\" id=\"legal-and-regulatory-compliance\">Legal and regulatory compliance<\/h3>\n<p>Navigating AI regulations is challenging due to unclear guidelines and global disparities. We offer best practices for aligning AI initiatives with legal and ethical standards, including establishing ethics committees and leveraging frameworks like the NIST AI Risk Management Framework.<\/p>\n<h2 class=\"wp-block-heading\" id=\"explore-concrete-actions-for-the-future\">Explore concrete actions for the future<\/h2>\n<p>As your organization adopts generative AI, it\u2019s critical to implement&nbsp;<a href=\"https:\/\/www.microsoft.com\/en-us\/ai\/principles-and-approach\/\" target=\"_blank\" rel=\"noreferrer noopener\">responsible AI principles<\/a>\u2014including fairness, reliability, safety, privacy, inclusiveness, transparency, and accountability. In this paper, we provide an effective approach that uses the \u201cmap, measure, and manage\u201d framework as a guide; as well as explore the importance of experimentation, efficiency, and continuous improvement in your AI deployment.<\/p>\n<p>I\u2019m excited to launch this series on AI compliance, governance, and safety with a strategy paper on minimizing risk and enabling your organization to reap the benefits of generative AI. We hope this series serves as a guide to unlock the full potential of generative AI while ensuring security, compliance, and ethical use\u2014and trust the guidance will empower your organization with the knowledge and tools needed to thrive in this new era for business.<\/p>\n<h3 class=\"wp-block-heading\" id=\"additional-resources\">Additional resources<\/h3>\n<ul class=\"wp-block-list\">\n<li>Get the\u00a0<a href=\"https:\/\/info.microsoft.com\/ww-landing-grow-your-business-with-ai-you-can-trust.html\" target=\"_blank\" rel=\"noreferrer noopener\">Grow Your Business with AI You Can Trust<\/a>\u00a0e-book.<\/li>\n<li>Explore the\u00a0<a href=\"https:\/\/clouddamcdnprodep.azureedge.net\/gdc\/gdcrITL6V\/original\" target=\"_blank\" rel=\"noreferrer noopener\">Introduction to Generative AI and Safety<\/a>\u00a0guide.<\/li>\n<\/ul>\n<p><a href=\"https:\/\/clouddamcdnprodep.azureedge.net\/gdc\/gdctvIyrZ\/original\">Minimize Risk and Reap the Benefits of AI<\/a><\/p>\n<p><em>Get more insights from Bret Arsenault on emerging security challenges from his&nbsp;<a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/author\/bret-arsenault\/\" target=\"_blank\" rel=\"noreferrer noopener\">Microsoft Security blogs<\/a>&nbsp;covering topics like next generation built-in security, insider risk management, managing hybrid work, and more.<\/em><\/p>\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n<p><sup>1, 2<\/sup>&nbsp;<a href=\"https:\/\/www.onetrust.com\/resources\/ismg-first-annual-generative-ai-study-business-rewards-vs-security-risks-research-report\/\" target=\"_blank\" rel=\"noreferrer noopener\">ISMG\u2019s First annual generative AI study \u2013 Business rewards vs. security risks: Research report<\/a>, ISMG.<\/p>\n<p>The post <a href=\"https:\/\/www.microsoft.com\/en-us\/microsoft-cloud\/blog\/2024\/11\/04\/more-value-less-risk-how-to-implement-generative-ai-across-the-organization-securely-and-responsibly\/\">More value, less risk: How to implement generative AI across the organization securely and responsibly<\/a> appeared first on <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\">Microsoft Security Blog<\/a>.<\/p>\n<p><a href=\"https:\/\/www.microsoft.com\/en-us\/microsoft-cloud\/blog\/2024\/11\/04\/more-value-less-risk-how-to-implement-generative-ai-across-the-organization-securely-and-responsibly\/\" target=\"bwo\" >https:\/\/blogs.technet.microsoft.com\/mmpc\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Bret Arsenault| Date: Thu, 07 Nov 2024 17:00:00 +0000<\/strong><\/p>\n<p>The technology landscape is undergoing a massive transformation, and AI is at the center of this change.<\/p>\n<p>The post <a href=\"https:\/\/www.microsoft.com\/en-us\/microsoft-cloud\/blog\/2024\/11\/04\/more-value-less-risk-how-to-implement-generative-ai-across-the-organization-securely-and-responsibly\/\">More value, less risk: How to implement generative AI across the organization securely and responsibly<\/a> appeared first on <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\">Microsoft Security Blog<\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10759,10378],"tags":[],"class_list":["post-25442","post","type-post","status-publish","format-standard","hentry","category-microsoft","category-security"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/25442","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=25442"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/25442\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=25442"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=25442"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=25442"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}