Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Fortinet: Managing Shadow AI Risks in Enterprise Security Operations

Fortinet
06/30/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


that they're monitoring and understanding and getting visibility into. Using that term where you have employees within the organization who are not using perhaps the authorized or sanctioned generative AI tool, but instead going ahead and potentially putting data that might have personal information, for example. And it's certainly something an organization wouldn't want their intellectual property or personal data to be uploaded into a generative AI tool. But needing to monitor the organization to make sure that that isn't happening and that perhaps blocking access to a more generic tool and steering employees towards the enterprise sanctioned version of that. Because employees definitely are looking for things that are going to make their lives easier.

TL;DR

  • Generative AI represents a new attack surface that security operations teams must actively monitor and govern within their organizations.
  • Shadow AI usage—employees using unauthorized AI tools—poses significant risks of intellectual property and personal data exposure.
  • Effective mitigation requires both blocking generic AI tools and providing sanctioned enterprise alternatives that meet employee productivity needs.

Summary

This SecOps Summit segment addresses the emerging security challenge of generative AI as a new attack surface requiring organizational monitoring and governance. The discussion highlights the phenomenon of shadow AI, where employees bypass sanctioned enterprise tools to use unauthorized generative AI applications, potentially exposing sensitive data including personal information and intellectual property. The speakers emphasize that security operations teams must implement visibility controls to detect when corporate data is being uploaded to generic AI tools, while simultaneously providing employees with approved alternatives that meet their productivity needs. The key insight is that blocking alone is insufficient—organizations must understand that employees are seeking efficiency gains and should steer them toward enterprise-sanctioned AI solutions that balance usability with data protection requirements. This represents a shift in SOC responsibilities from traditional threat monitoring to include governance of emerging AI-related data exposure risks.

Chapters

0:00 - Gen-AI as Attack Surface
0:14 - Shadow AI Data Risks
0:49 - Steering to Sanctioned Tools

Key Quotes

0:00 "I would consider Gen-AI to be another attack surface that an organization needs to make sure that they're monitoring and understanding and getting visibility into."
0:34 "It's certainly something an organization wouldn't want their intellectual property or personal data to be uploaded into a generative AI tool."

FAQ

What is shadow AI and why is it a security concern?

Shadow AI refers to employees using unauthorized or unsanctioned generative AI tools instead of enterprise-approved solutions. This creates security risks because employees may inadvertently upload sensitive data, personal information, or intellectual property to external AI platforms that the organization cannot monitor or control.


Categories:
  • » Webinar Library » Fortinet
  • » Cybersecurity » Data Security
  • » Data Protection
Channels:
News:
Events:
Tags:
  • AI & Machine Learning
  • Security Operations
  • Data Privacy
  • Compliance & Governance
  • Executive Briefing
  • Generative AI Security
  • Shadow AI
  • Data Loss Prevention
  • AI Governance
  • Enterprise AI Policy
  • Intellectual Property Protection
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Fortinet: Managing Shadow AI Risks in Enterprise Security Operations

              XStreaminars (watch here)

              • Aug
                27

                Becoming Agent Ready with Cyera: Essential Strategies and Insights

                08/27/202601:00 PM ET
                • Sep
                  03

                  Verge.io: Can You Afford Your Next Storage Refresh?

                  09/03/202601:00 PM ET
                  More events

                  Industry Events (Sponsor Hosted)

                  • Aug
                    27

                    Summer of Satori: FunFoneFarm's Transformation of Fraud into Seamless Integration

                    08/27/202601:00 PM ET
                    More events

                    Upcoming Webinar Calendar

                    • 08/27/2026
                      01:00 PM
                      08/27/2026
                      Becoming Agent Ready with Cyera: Essential Strategies and Insights
                      https://www.truthinit.com/index.php/channel/2081/becoming-agent-ready-with-cyera-essential-strategies-and-insights/
                    • 08/27/2026
                      01:00 PM
                      08/27/2026
                      Summer of Satori: FunFoneFarm's Transformation of Fraud into Seamless Integration
                      https://www.truthinit.com/index.php/channel/2086/summer-of-satori-funfonefarms-transformation-of-fraud-into-seamless-integration/
                    • 09/02/2026
                      12:00 PM
                      09/02/2026
                      Unified Data Security in Action: Uncover, Analyze, and Resolve Threats
                      https://www.truthinit.com/index.php/channel/2045/unified-data-security-in-action-uncover-analyze-and-resolve-threats/
                    • 09/03/2026
                      01:00 PM
                      09/03/2026
                      Verge.io: Can You Afford Your Next Storage Refresh?
                      https://www.truthinit.com/index.php/channel/2082/verge-io-can-you-afford-your-next-storage-refresh/
                    • 09/30/2026
                      04:00 AM
                      09/30/2026
                      AI Command Center: Optimizing Visibility and Control in Your Operations
                      https://www.truthinit.com/index.php/channel/2024/ai-command-center-optimizing-visibility-and-control-in-your-operations/
                    • 11/19/2026
                      01:00 PM
                      11/19/2026
                      360View: Govern, Secure & Recover Your Microsoft 365 Environment
                      https://www.truthinit.com/index.php/channel/2076/360view-govern-secure-recover-your-microsoft-365-environment/
                    Truth in IT
                    • Sponsor
                    • About Us
                    • Terms of Service
                    • Privacy Policy
                    • Contact Us
                    • Preference Management
                    Desktop version
                    Standard version