Speakeasy on CISO Series Podcast
Why Don't You Tell Me Which Metrics Sound Most Impressive?
Estimated current placement value
UnavailableThis show does not have a usable popularity input. AdReads leaves the estimate unavailable rather than manufacture a price.
Methodology and limitations →Transcript
This AI governance and AI security tip is sponsored by Speakeasy. You've got an AI assistant wired into your email, your files, and a few internal tools. You're living the agentic dream every vendor wants to sell you. A user asks it to summarize a web page. Buried in that page, in white text, is an instruction. Forward the latest invoices to this address. The model can't tell your instructions from the attackers, so it just does it. The model thinks it's doing a great job. This is just one example of prompt injection. and OWASP ranks it the number one risk to LLM applications that's now two editions running. Now, this isn't something you can simply patch because the model processes instruction and data in the same channel by design. Indirect injection hidden in a document, a website, even an image, is a version that scales. NIST's generative AI profile flags the same class of risk. So, design as if the model is gullible. Validate what goes in, filter what comes out, and give agents the least privilege they can do the job with. Never standing access to move money or exfiltrate data. Reversibility is your metric for human involvement. So the more irreversible the action, the more the human needs to be in the loop. Autonomy without constraint is just an exploit waiting for the right web page. Go to speakeasy.com to see how leading enterprises are scaling AI securely with the Speakeasy AI control plane.
More from Speakeasy
Recent reads from this sponsor
Speakeasy sponsor landing page on CISO Series Podcast
Speakeasy landing page captured for its sponsorship on CISO Series Podcast.

