Radio and PodcastRadio and PodcastLive Radio & Podcasts
EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! artwork
Technology

EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act!

Cloud Security Podcast by Google by Anton Chuvakin

Mar 2, 202628:54Technology

Guest: Alastair Paterson , CEO and co-founder @ Harmonic Security Topics: Harmonic Security focuses on securing generative AI in use. Can you walk us through a real, anonymized example of a data leak caused by employee A...

About This Episode

EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! is an episode from Cloud Security Podcast by Google by Anton Chuvakin. Guest: Alastair Paterson , CEO and co-founder @ Harmonic Security Topics: Harmonic Security foc...

Podcast

This episode belongs to Cloud Security Podcast by Google.

Listen Online

Use the player on this page to stream the episode online.

Episode Details

Published Mar 2, 2026, 28:54 long, audio available.

Questions About This Episode

What is EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! about?

Guest: Alastair Paterson , CEO and co-founder @ Harmonic Security Topics: Harmonic Security focuses on securing generative AI in use. Can you walk us through a real, anonymized example of a data leak caused by employee AI usage that your platform has identified? AI governance gets thrown around a lot. What does this mean in the context of Shadow AI? How should organizations be thinking about governing AI in light of upcoming AI regulations in the US and in the EU? If we generally agree that employees are using AI tools before they are sanctioned, how can organizations control this? Network, API, endpoint? Many organizations struggle with the "ban vs. embrace" debate for generative AI. Based on your experience, what's a compelling argument for moving from a blanket ban to a managed, secure adoption model? Can you share a success story where this approach demonstrably reduced risk? The term "shadow AI" is often used interchangeably with "shadow IT" (but for AI-powered applications) but you've highlighted that AI is a different beast. What is the single biggest distinction between managing the risk of unsanctioned AI tools versus unsanctioned IT applications? Looking forward, where do you see the biggest risks in the evolution of shadow AI? For instance, will the next threat be from highly specialized AI agents trained on proprietary data, or from the rapid proliferation of new, unmonitored open-source models? Given the speed of change in this space, what's one piece of advice you'd give to a CISO today who is just beginning to get a handle on their organization's shadow AI problem? Resources: Video version Harmonic Security research Shadow AI Strikes Back: Enterprise AI Absent Oversight in the Age of Gen AI blog Shadow Agents: A New Era of Shadow AI Risk in the Enterprise blog (RSA 2026 presentation coming!) Spotlighting 'shadow AI': How to protect against risky AI practices blog EP171 GenAI in the Wrong Hands: Unmasking the Threat of Malicious AI and Defending Against the Dark Side (aka "dirty bomb episode") A Conversation with Alastair Paterson from Harmonic Security video

Where can I listen to EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act!?

You can listen to EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! online on Radio and Podcast. Open the player on this page to stream the available audio.

Which podcast is EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! from?

EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! is an episode from Cloud Security Podcast by Google by Anton Chuvakin.

How long is this episode?

This episode is 28:54 long.

When was this episode published?

This episode was published on Mar 2, 2026.

Can I save EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! for later?

Yes. Use the heart button on the episode page to add it to your favorite episodes list.

Are there related episodes from Cloud Security Podcast by Google?

Yes. This page shows related episodes from Cloud Security Podcast by Google when more episodes are available from the podcast feed.

Quick Answers About This Episode

Where can I listen to EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act!?

You can listen to EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! on this page when the episode audio is available from the podcast feed.

Which podcast is this episode from?

EP265 Beyond Shadow IT: Unsanctioned AI Agents Don't Just Talk, They Act! is from Cloud Security Podcast by Google by Anton Chuvakin.

What are the episode details?

Published Mar 2, 2026 and 28:54 long