Key takeaways “Security for AI” isn’t a distinct discipline. AI systems need the same governance, access controls, and monitoring as everything else in the stack. Adopting AI often functions as an unplanned pen test, exposing pre-existing weaknesses like excessive permissions, weak identity controls, and poor data classification.