Whenever I ask a room of CIOs and CISOs to list the AI risks they are actively managing, I get answers clustered heavily in one area, almost always technical: hallucination, model drift, the occasional mention of robustness. What I rarely hear, unprompted, is a comprehensive answer that spans al thel four domains that actually matter….
AI Risk – a User’s Guide (Part III): Four Risk Domains to focus across
Whenever I ask a room of CIOs and CISOs to list the AI risks they’re actively managing, I get answers clustered heavily in one area, almost always technical: hallucination, model drift, the occasional mention of robustness. What I rarely hear, unprompted, is a comprehensive answer that spans all four domains that actually matter. So let…
AI Risk – a User’s Guide (Part II): ‘Who’s on First’ for AI Risk?
Buying the AI Doesn’t Transfer the Risk There is a comforting story a lot of enterprises tell themselves when they adopt a third-party AI tool: “we bought this from a reputable vendor who has indemnified us in their contract, so the vendor owns the risk.” I understand the appeal of that story. It is the…
AI Risk – a User’s Guide (Part I): The Approval Nobody Signed off
Here’s a question I’ve been asking CIOs and CISOs at every conference session I speak at these days: “what if the riskiest AI decision your company made this year is one nobody approved?” Sit with that for a second. Not a decision your board debated. Not a model or Agentic deployment your risk committee signed…
AI’s Anna Delvey Problem: How Enterprises Are Faking It Till They (Don’t) Make It
I’ll admit it. I binge-watched Inventing Anna on Netflix over a couple of nights, the way most of us did back in 2022. And like most viewers, I walked away simultaneously appalled and a little bit fascinated by Anna Delvey. Here was a woman with no trust fund, no inheritance, and no real business, who…
