How to secure your AI Agents: A CISOs Journey

How to secure your AI Agents: A CISOs Journey

🎙 Cloud Security Podcast 👥 39K 📅 December 9, 2025 ⏱ 54 min 👁 12K 📄 expert opinion 🧭 2026-08-16
Available in: English (current) Français

Keywords

AI agentssecurityCISOmulti-layer trustincident response

Summary

In this episode of the Cloud Security Podcast, host Ashish Rajan interviews Yash Kosaraju, CISO of Sendbird, about the challenges and strategies for securing AI agents. Yash shares his journey from a traditional API-first company to an AI-first platform, highlighting the need for security to evolve rapidly. He discusses the importance of embedding security engineers into sprint teams, the shift from zero trust to a practical multi-layer trust approach, and the concept of a ‘Trust OS’ for responsible AI. The conversation covers threats like data misuse and prompt injection, the need for new incident response definitions, and the importance of enabling employees with enterprise AI tools. Yash emphasizes the stress on AppSec engineers and the value of AI CTFs for training. The episode provides actionable advice for security professionals navigating the AI landscape.

133 words

Critical Evaluation

Value of the Information & Strength of the Argument

The value of the information is high, offering practical insights from a CISO’s real-world experience. The argumentation is solid, grounded in specific examples and a clear rationale for the multi-layer trust approach. Yash effectively argues against the marketing hype of zero trust, advocating for a more realistic and layered security model. The discussion on incident response and the changing definition of security incidents is particularly valuable, as it addresses a gap in current AI security discourse.

Scientific Rigor, Source Quality, Title Accuracy

The scientific rigor is moderate; the content is based on expert opinion and practical experience rather than formal research. The sources cited are primarily the podcast’s own website and social media, with no external references to academic papers or industry standards. The title accurately reflects the content, focusing on securing AI agents from a CISO’s perspective. The discussion is coherent and well-structured, but lacks formal citations to support claims.

160 words

Title / Content Match

The title accurately reflects the content, focusing on securing AI agents from a CISO's perspective.

Quality & Reliability

8/10

The podcast features a CISO with extensive experience, discussing practical security strategies for AI agents. The content is based on real-world experience and industry best practices, but lacks formal citations or peer-reviewed sources.

Chapters

Cited Sources

Concurring Sources

Dissenting Sources

  • Zero Trust Architecture — The podcast argues against zero trust as a marketing term, but NIST's zero trust architecture is a well-established framework that also emphasizes multiple layers of security.

Contribution & Novelties

The podcast provides a unique perspective on securing AI agents from a CISO who has navigated the transition from a traditional API platform to an AI-first model. It introduces the concept of ‘Multi-Layer Trust’ as a practical alternative to zero trust, and discusses the ‘Trust OS’ framework for responsible AI. The emphasis on embedding security engineers into sprint teams and the use of AI CTFs for training are innovative approaches.

Pour aller plus loin :

117 words

Radar Profile

The radar profile shows high scores in quantity and quality of information, with a strong technical level. The overall reliability is high, reflecting the expert nature of the content. The profile suggests a well-rounded and informative discussion.

Reliability 8/10