Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Fortinet: Managing Shadow AI Risks in Enterprise Security Operations

Fortinet
06/30/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


that they're monitoring and understanding and getting visibility into. Using that term where you have employees within the organization who are not using perhaps the authorized or sanctioned generative AI tool, but instead going ahead and potentially putting data that might have personal information, for example. And it's certainly something an organization wouldn't want their intellectual property or personal data to be uploaded into a generative AI tool. But needing to monitor the organization to make sure that that isn't happening and that perhaps blocking access to a more generic tool and steering employees towards the enterprise sanctioned version of that. Because employees definitely are looking for things that are going to make their lives easier.

TL;DR

  • Generative AI represents a new attack surface that security operations teams must actively monitor and govern within their organizations.
  • Shadow AI usage—employees using unauthorized AI tools—poses significant risks of intellectual property and personal data exposure.
  • Effective mitigation requires both blocking generic AI tools and providing sanctioned enterprise alternatives that meet employee productivity needs.

Summary

This SecOps Summit segment addresses the emerging security challenge of generative AI as a new attack surface requiring organizational monitoring and governance. The discussion highlights the phenomenon of shadow AI, where employees bypass sanctioned enterprise tools to use unauthorized generative AI applications, potentially exposing sensitive data including personal information and intellectual property. The speakers emphasize that security operations teams must implement visibility controls to detect when corporate data is being uploaded to generic AI tools, while simultaneously providing employees with approved alternatives that meet their productivity needs. The key insight is that blocking alone is insufficient—organizations must understand that employees are seeking efficiency gains and should steer them toward enterprise-sanctioned AI solutions that balance usability with data protection requirements. This represents a shift in SOC responsibilities from traditional threat monitoring to include governance of emerging AI-related data exposure risks.

Chapters

0:00 - Gen-AI as Attack Surface
0:14 - Shadow AI Data Risks
0:49 - Steering to Sanctioned Tools

Key Quotes

0:00 "I would consider Gen-AI to be another attack surface that an organization needs to make sure that they're monitoring and understanding and getting visibility into."
0:34 "It's certainly something an organization wouldn't want their intellectual property or personal data to be uploaded into a generative AI tool."

FAQ

What is shadow AI and why is it a security concern?

Shadow AI refers to employees using unauthorized or unsanctioned generative AI tools instead of enterprise-approved solutions. This creates security risks because employees may inadvertently upload sensitive data, personal information, or intellectual property to external AI platforms that the organization cannot monitor or control.


Categories:
  • » Webinar Library » Fortinet
  • » Cybersecurity » Data Security
  • » Data Protection
Channels:
News:
Events:
Tags:
  • AI & Machine Learning
  • Security Operations
  • Data Privacy
  • Compliance & Governance
  • Executive Briefing
  • Generative AI Security
  • Shadow AI
  • Data Loss Prevention
  • AI Governance
  • Enterprise AI Policy
  • Intellectual Property Protection
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Fortinet: Managing Shadow AI Risks in Enterprise Security Operations

              XStreaminars (watch here)

              • Jul
                28

                Illumio + Netskope: Zero Trust in the Age of AI Autonomy

                07/28/202601:00 PM ET
                • Jul
                  29

                  Ask Your Cloud Anything: Unlocking Governance Silos in your Environments

                  07/29/202601:00 PM ET
                  More events

                  Industry Events (watch there)

                  • Jul
                    14

                    Crafting a Championship-Caliber Security Team for Lasting Defense

                    07/14/202601:00 PM ET
                    • Jul
                      14

                      Understanding the Crucial Role of Context in Safeguarding AI-Accessible Data

                      07/14/202602:00 PM ET
                      • Jul
                        22

                        Insights from Attackers During the FIFA World Cup: A HUMAN Dialogue

                        07/22/202601:00 PM ET
                        More events

                        Upcoming Webinar Calendar

                        • 07/14/2026
                          01:00 PM
                          07/14/2026
                          Crafting a Championship-Caliber Security Team for Lasting Defense
                          https://www.truthinit.com/index.php/channel/2025/crafting-a-championship-caliber-security-team-for-lasting-defense/
                        • 07/14/2026
                          02:00 PM
                          07/14/2026
                          Understanding the Crucial Role of Context in Safeguarding AI-Accessible Data
                          https://www.truthinit.com/index.php/channel/2037/understanding-the-crucial-role-of-context-in-safeguarding-ai-accessible-data/
                        • 07/21/2026
                          04:00 AM
                          07/21/2026
                          Strategies for Managing AI Governance and Securing App-to-LLM API Traffic
                          https://www.truthinit.com/index.php/channel/1967/strategies-for-managing-ai-governance-and-securing-app-to-llm-api-traffic/
                        • 07/22/2026
                          06:30 AM
                          07/22/2026
                          Insights and Strategies in Data Protection and Privacy Management
                          https://www.truthinit.com/index.php/channel/2000/insights-and-strategies-in-data-protection-and-privacy-management/
                        • 07/22/2026
                          01:00 PM
                          07/22/2026
                          Insights from Attackers During the FIFA World Cup: A HUMAN Dialogue
                          https://www.truthinit.com/index.php/channel/2029/insights-from-attackers-during-the-fifa-world-cup-a-human-dialogue/
                        • 07/28/2026
                          01:00 PM
                          07/28/2026
                          Illumio + Netskope: Zero Trust in the Age of AI Autonomy
                          https://www.truthinit.com/index.php/channel/2031/illumio-netskope-zero-trust-in-the-age-of-ai-autonomy/
                        • 07/29/2026
                          04:00 AM
                          07/29/2026
                          Real-Time Strategies for Safeguarding Against Prompt Injections
                          https://www.truthinit.com/index.php/channel/1968/real-time-strategies-for-safeguarding-against-prompt-injections/
                        • 07/29/2026
                          01:00 PM
                          07/29/2026
                          Ask Your Cloud Anything: Unlocking Governance Silos in your Environments
                          https://www.truthinit.com/index.php/channel/2048/ask-your-cloud-anything-unlocking-governance-silos-in-your-environments/
                        • 08/19/2026
                          12:00 PM
                          08/19/2026
                          Becoming Agent Ready: Insights from Cyera's Expertise
                          https://www.truthinit.com/index.php/channel/2036/becoming-agent-ready-insights-from-cyeras-expertise/
                        • 09/02/2026
                          12:00 PM
                          09/02/2026
                          Unified Data Security in Action: Uncover, Analyze, and Resolve Threats
                          https://www.truthinit.com/index.php/channel/2045/unified-data-security-in-action-uncover-analyze-and-resolve-threats/
                        • 09/30/2026
                          04:00 AM
                          09/30/2026
                          AI Command Center: Optimizing Visibility and Control in Your Operations
                          https://www.truthinit.com/index.php/channel/2024/ai-command-center-optimizing-visibility-and-control-in-your-operations/
                        Truth in IT
                        • Sponsor
                        • About Us
                        • Terms of Service
                        • Privacy Policy
                        • Contact Us
                        • Preference Management
                        Desktop version
                        Standard version