• About
  • Subscribe
  • Contact
Monday, June 16, 2025
    Login
FutureCISO
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
No Result
View All Result
FutureCISO
No Result
View All Result
Home Process Compliance and Governance

APAC's AI growth risks data security without strong governance

FutureCISO Editors by FutureCISO Editors
June 16, 2025
APAC's AI growth risks data security without strong governance

Photo by Fernando Arcos: https://www.pexels.com/photo/white-caution-cone-on-keyboard-211151/

Share on FacebookShare on Twitter

A recent survey by Kiteworks reveals a troubling disconnect between the rapid adoption of artificial intelligence (AI) in the Asia-Pacific (APAC) region and the necessary governance controls to protect sensitive data. Conducted among 461 cybersecurity and IT professionals, the survey highlights that 27% of AI-ingested data is private, yet many organisations lack sufficient visibility and enforceable safeguards.

Despite being at the forefront of AI innovation, the technology sector exhibits a paradoxical approach to AI security. While these companies build AI platforms and sell security solutions, they demonstrate practices that are often no better—and sometimes worse—than those in less advanced industries.

Key findings from the survey include:

  • Security control implementation: A staggering 83% of tech companies lack automated controls, mirroring trends in other sectors. Reliance on employee training (40%) and warnings (20%) underscores a "cobbler’s children have no shoes" scenario.
  • Data Exposure Patterns: 27% of tech firms report that over 30% of AI-ingested data is private, with 17% unsure of their exposure levels. This is especially concerning given their responsibility for critical assets like source code and customer data.
  • Governance Frameworks: Only 40% of respondents claim full implementation of AI governance, reflecting a disconnect between their advisory roles and internal practices.
  • Risk Prioritisation: Concerns about data leakage (28%), system vulnerabilities (23%), and compliance (12%) mirror industry norms, indicating a lack of sector-specific threat modelling.
  • Privacy vs. Innovation: Alarmingly, 23% of tech firms operate without formal privacy controls, eroding customer trust and credibility.

The credibility gap

This disconnect raises serious questions about the credibility of technology companies. AI security vendors lack visibility and automated controls, while privacy tech firms neglect essential privacy measures. Governance advisors exhibit no better implementation than their clients, threatening to erode customer trust and reputational capital.

Related:  Cyber vulnerability management is a critical governance challenge

Innovation paradox

The sector's failure to exceed average security benchmarks indicates systemic cultural and organisational issues rather than mere technical incapacity. With 27% reporting extreme data exposure, tech firms face significant risks, including intellectual property theft and customer data loss.

Key takeaway

The technology sector’s AI security posture reflects a troubling internal security culture. Despite possessing unparalleled expertise and resources, tech companies often mirror the baseline practices of less sophisticated sectors.

"The data reveals organizations significantly overestimate their AI governance maturity," concluded Tim Freestone, chief strategy officer at Kiteworks.

"With incidents surging, zero-day attacks targeting the security infrastructure itself, and the vast majority lacking real visibility or control, the window for implementing meaningful protections is rapidly closing." Tim Freestone

To regain industry credibility and ensure robust AI protection, technology firms must lead by example, adopting the very governance frameworks they advocate for others. As AI adoption surges, the imperative for effective security measures has never been clearer.

Tags: Artificial Intelligencecredibility gapinnovation paradoxKiteworks
FutureCISO Editors

FutureCISO Editors

No Result
View All Result

Recent Posts

  • APAC's AI growth risks data security without strong governance
  • Networks must evolve or face failure, warns Cisco
  • AISP to address growing security challenges from AI use
  • Commvault enhances PQC to secure long-term data
  • Fortinet's AI-powered security suite to redefine collaboration protection

Categories

  • Blogs
  • Compliance and Governance
  • Culture and Behaviour
  • Cybersecurity careers
  • Data Protection
  • Endpoint Security
  • Incident Response
  • Network Security
  • People
  • Process
  • Resources
  • Risk Management
  • Technology
  • Training and awarenes
  • Videos
  • Webinars and PodChats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCISO serves the interests of the Chief Information Security Officer (CISO) and the information security profession. Its purpose is to provide relevant and timely industry insights around all things important to security professionals and organisations that recognize and value the importance of protecting the organisation’s data and its customers’ privacy.

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • People
  • Process
  • Technology
  • Resources
    • White Papers
    • PodChats
Login

Copyright © 2024 Cxociety Pte Ltd | Designed by Pixl