AI forExecutives
CISO~30 min

Chief Information Security Officer

Why this path

CISOs face AI as both a security tool and a security risk. This path addresses the threats specific to AI systems and the governance gaps that create exposure.

Path progress

10 concepts

0% complete

Threat Surface

0 / 4

Large Language Models

Generative AIIntermediate
Read →

The AI models behind most generative tools today — capable of remarkable language tasks, and unreliable about facts they were never trained on.

Why it matters for CISOs: Understanding the systems creating the most new attack surface

Prompt Engineering

Generative AIIntermediate
Read →

Prompt engineering is the practice of writing clear instructions for an AI system, specifying the task, context, format, and constraints, so it produces more useful, consistent output.

Why it matters for CISOs: Including prompt injection as a security vector

Shadow AI

Governance and RiskGovernance
Read →

Shadow AI is what happens when employees use AI tools the organization hasn't approved, usually because the approved options don't meet their needs.

Why it matters for CISOs: The most immediate AI security risk in most organizations

Data Security

Governance and RiskGovernance
Read →

Protecting data from unauthorized access — including the new attack surfaces that AI tools introduce.

Why it matters for CISOs: Data exposure risks from AI tool adoption

Governance

0 / 3

Data Privacy

Governance and RiskGovernance
Read →

AI creates more ways for personal data to move, be retained, and end up somewhere it shouldn't than most organizations have mapped.

Why it matters for CISOs: Privacy obligations when data flows into AI systems

AI Safety

Governance and RiskGovernance
Read →

Ensuring AI systems do what you intended — and stop when they shouldn't continue.

Why it matters for CISOs: Safety requirements for agentic and autonomous AI

AI Governance

Governance and RiskGovernance
Read →

AI governance is the system that determines who can deploy AI, under what conditions, with what oversight, turning ad hoc experimentation into accountable organizational practice.

Why it matters for CISOs: Governance structures that enable security oversight

Controls & Accountability

0 / 3

AI Risk Management

Governance and RiskGovernance
Read →

AI risk management is the discipline of deciding which AI systems need controls, what those controls should be, and who is accountable when something goes wrong before something does.

Why it matters for CISOs: Integrating AI risks into the security risk framework

Auditability

Governance and RiskGovernance
Read →

The ability to show — after the fact — exactly what your AI system did, why, and who was watching.

Why it matters for CISOs: What logging and traceability AI systems require

Responsible AI

Governance and RiskGovernance
Read →

Responsible AI is the difference between an organization that says it uses AI ethically and one that can actually prove it.

Why it matters for CISOs: Security's role in the responsible AI framework

Explore other paths