Cloud 101CircleEventsBlog

Working Group

AI Technology and Risk

Explore the latest AI tech, predict risks, and ensure innovation meets security in the realm of AI.
View Current Projects
AI Technology and Risk
The AI Technology and Risk Committee is focused on staying abreast of the latest technological advancements in AI while simultaneously identifying, understanding, and forecasting associated risks, threats, and vulnerabilities. This technical committee aims to act as both a knowledge hub and a proactive risk management entity, bridging the gap between innovation and security in the realm of AI.

Working Group Leadership

Josh Buker
Josh Buker

Josh Buker

Research Analyst, CSA

This person does not have a biography listed with CSA.

Sean Heide
Sean Heide

Sean Heide

Technical Research Director, CSA

This person does not have a biography listed with CSA.

Working Group Co-Chairs

Satish Govindappa
Satish Govindappa

Satish Govindappa

Satish Govindappa is a highly accomplished professional with an extensive background in cloud security and product architecture. With over two decades of experience, Satish has established himself as a prominent figure in the industry, serving as a Board Member and Chapter Leader for the Cloud Security Alliance SFO Chapter.

He holds a master's degree in computer applications (MCA), specializing in cybersecurity and cyber law. Addition...

Read more

Mark Yanalitis Headshot Missing
Mark Yanalitis

Mark Yanalitis

This person does not have a biography listed with CSA.

Chris Kirschke
Chris Kirschke

Chris Kirschke

Cloud Portfolio Information Security Officer at Albertsons Companies

Security Leader with over 20+ years of experience across Financial Services, Streaming, Retail and IT Services with a heavy focus on Cloud, DevSecOps and Threat Modeling. Advises multiple security startups on Product Strategy, Alliances and Integrations. Sits on multiple Customer Advisory Boards helping to drive security product roadmaps, integrations and feature developments. Avid hockey player, backpacker and wine collector in his spare t...

Read more

Publications in ReviewOpen Until
Lenses and Processes - CCSK v5 Study GuideApr 28, 2024
Enterprise Authority To Operate (EATO) Controls FrameworkMay 12, 2024
View all
Who can join?

Anyone can join a working group, whether you have years of experience or want to just participate as a fly on the wall.

What is the time commitment?

The time commitment for this group varies depending on the project. You can spend a 15 minutes helping review a publication that's nearly finished or help author a publication from start to finish.

Virtual Meetings

Attend our next meeting. You can just listen in to decide if this group is a good for you or you can choose to actively participate. During these calls we discuss current projects, and well as share ideas for new projects. This is a good way to meet the other members of the group. You can view all research meetings here.

Apr

29

Mon, April 29, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

1

Wed, May 1, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

2

Thu, May 2, 9:00am - 10:00am PDT
Hinton Crew Meeting (AI Tech & Risk)
See details
AI Transparency: Model Risk Management Drivers

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Hinton Crew, please decline this invite.

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

3

Fri, May 3, 11:00am - 12:00pm PDT
Pearl Crew Meeting (AI Tech & Risk)
See details
LLM Authorization Model Best Practices and Design Patterns

Join Zoom Meeting: https://cloudsecurityalliance.zoom.us/j/89661170501?pwd=NOOiskirIrpgTGhswsBpsl38lLvahU.1

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Pearl Crew, please decline this invite.
Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

6

Mon, May 6, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

8

Wed, May 8, 8:00am - 9:00am PDT
AI Technology & Risk Working Group
See details
Biweekly AI Tech & Risk Working Group Meeting

https://cloudsecurityalliance.zoom.us/j/82692327755

Helpful links:

If you have any questions, please reach out via the CSA Public Slack.

May

8

Wed, May 8, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

9

Thu, May 9, 9:00am - 10:00am PDT
Hinton Crew Meeting (AI Tech & Risk)
See details
AI Transparency: Model Risk Management Drivers

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Hinton Crew, please decline this invite.

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

10

Fri, May 10, 11:00am - 12:00pm PDT
Pearl Crew Meeting (AI Tech & Risk)
See details
LLM Authorization Model Best Practices and Design Patterns

Join Zoom Meeting: https://cloudsecurityalliance.zoom.us/j/89661170501?pwd=NOOiskirIrpgTGhswsBpsl38lLvahU.1

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Pearl Crew, please decline this invite.
Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

13

Mon, May 13, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

15

Wed, May 15, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

16

Thu, May 16, 9:00am - 10:00am PDT
Hinton Crew Meeting (AI Tech & Risk)
See details
AI Transparency: Model Risk Management Drivers

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Hinton Crew, please decline this invite.

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

17

Fri, May 17, 11:00am - 12:00pm PDT
Pearl Crew Meeting (AI Tech & Risk)
See details
LLM Authorization Model Best Practices and Design Patterns

Join Zoom Meeting: https://cloudsecurityalliance.zoom.us/j/89661170501?pwd=NOOiskirIrpgTGhswsBpsl38lLvahU.1

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Pearl Crew, please decline this invite.
Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

20

Mon, May 20, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

22

Wed, May 22, 8:00am - 9:00am PDT
AI Technology & Risk Working Group
See details
Biweekly AI Tech & Risk Working Group Meeting

https://cloudsecurityalliance.zoom.us/j/82692327755

Helpful links:

If you have any questions, please reach out via the CSA Public Slack.

May

22

Wed, May 22, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

23

Thu, May 23, 9:00am - 10:00am PDT
Hinton Crew Meeting (AI Tech & Risk)
See details
AI Transparency: Model Risk Management Drivers

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Hinton Crew, please decline this invite.

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

24

Fri, May 24, 11:00am - 12:00pm PDT
Pearl Crew Meeting (AI Tech & Risk)
See details
LLM Authorization Model Best Practices and Design Patterns

Join Zoom Meeting: https://cloudsecurityalliance.zoom.us/j/89661170501?pwd=NOOiskirIrpgTGhswsBpsl38lLvahU.1

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Pearl Crew, please decline this invite.
Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

27

Mon, May 27, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

29

Wed, May 29, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

30

Thu, May 30, 9:00am - 10:00am PDT
Hinton Crew Meeting (AI Tech & Risk)
See details
AI Transparency: Model Risk Management Drivers

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Hinton Crew, please decline this invite.

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

May

31

Fri, May 31, 11:00am - 12:00pm PDT
Pearl Crew Meeting (AI Tech & Risk)
See details
LLM Authorization Model Best Practices and Design Patterns

Join Zoom Meeting: https://cloudsecurityalliance.zoom.us/j/89661170501?pwd=NOOiskirIrpgTGhswsBpsl38lLvahU.1

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Pearl Crew, please decline this invite.
Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

3

Mon, June 3, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

5

Wed, June 5, 8:00am - 9:00am PDT
AI Technology & Risk Working Group
See details
Biweekly AI Tech & Risk Working Group Meeting

https://cloudsecurityalliance.zoom.us/j/82692327755

Helpful links:

If you have any questions, please reach out via the CSA Public Slack.

Jun

5

Wed, June 5, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

6

Thu, June 6, 9:00am - 10:00am PDT
Hinton Crew Meeting (AI Tech & Risk)
See details
AI Transparency: Model Risk Management Drivers

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Hinton Crew, please decline this invite.

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

7

Fri, June 7, 11:00am - 12:00pm PDT
Pearl Crew Meeting (AI Tech & Risk)
See details
LLM Authorization Model Best Practices and Design Patterns

Join Zoom Meeting: https://cloudsecurityalliance.zoom.us/j/89661170501?pwd=NOOiskirIrpgTGhswsBpsl38lLvahU.1

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Pearl Crew, please decline this invite.
Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

10

Mon, June 10, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

12

Wed, June 12, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

13

Thu, June 13, 9:00am - 10:00am PDT
Hinton Crew Meeting (AI Tech & Risk)
See details
AI Transparency: Model Risk Management Drivers

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Hinton Crew, please decline this invite.

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

14

Fri, June 14, 11:00am - 12:00pm PDT
Pearl Crew Meeting (AI Tech & Risk)
See details
LLM Authorization Model Best Practices and Design Patterns

Join Zoom Meeting: https://cloudsecurityalliance.zoom.us/j/89661170501?pwd=NOOiskirIrpgTGhswsBpsl38lLvahU.1

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Pearl Crew, please decline this invite.
Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

17

Mon, June 17, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

19

Wed, June 19, 8:00am - 9:00am PDT
AI Technology & Risk Working Group
See details
Biweekly AI Tech & Risk Working Group Meeting

https://cloudsecurityalliance.zoom.us/j/82692327755

Helpful links:

If you have any questions, please reach out via the CSA Public Slack.

Jun

19

Wed, June 19, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

20

Thu, June 20, 9:00am - 10:00am PDT
Hinton Crew Meeting (AI Tech & Risk)
See details
AI Transparency: Model Risk Management Drivers

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Hinton Crew, please decline this invite.

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

21

Fri, June 21, 11:00am - 12:00pm PDT
Pearl Crew Meeting (AI Tech & Risk)
See details
LLM Authorization Model Best Practices and Design Patterns

Join Zoom Meeting: https://cloudsecurityalliance.zoom.us/j/89661170501?pwd=NOOiskirIrpgTGhswsBpsl38lLvahU.1

We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Pearl Crew, please decline this invite.
Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Jun

24

Mon, June 24, 9:00am - 10:00am PDT
Sevilla Crew Meeting (AI Tech & Risk)
See details
We are inviting the wider working group to all three crew meetings for better visibility and ease of calendar management. If you are not interested in participating in Sevilla Crew, please decline this invite.

Sevilla crew current draft document: Using AI for Risk Reduction through Offensive Security
CSA Public Slack: https://csaurl.org/csa-public-slack
Slack Channel: #ai-tech-risk-sevilla-crew

Crew meetings are for coordinating and connecting contributors, while writing is primarily done between calls.

Please reach out over Slack if you have any questions!

Open Peer Reviews

Peer reviews allow security professionals from around the world to provide feedback on CSA research before it is published.

Learn how to participate in a peer review here.

Lenses and Processes - CCSK v5 Study Guide

Open Until: 04/28/2024

Lenses represent distinct perspectives through which we analyze and understand cloud security challenges, while processes e...

Enterprise Authority To Operate (EATO) Controls Framework

Open Until: 05/12/2024

The Enterprise Authority To Operate (EATO) working group is opening their Controls Framework for open peer review.<...