Blog

The thinking behind AI security review.

Threat models, governance evidence, and the decisions that hold up under scrutiny. Written for security architects and the committees they report to.

Newsletter

New posts in your inbox,
when they publish.

Threat modeling, governance evidence, and what AI Committees actually need — written for security architects and AI governance leads. No cadence promises.

No spam. Unsubscribe anytime.

Reference11 min

Unbounded consumption in LLM applications — OWASP LLM Top 10 explained

OWASP reframed model-DoS as Unbounded Consumption, covering all uncontrolled resource drains. What reviews must now check.

Vendor review10 min

Fyxer AI security review — full inbox access is the highest-risk AI category

Security review framework for Fyxer AI: OAuth scopes, email content exposure, unidentified LLM provider, and what procurement must verify.

Vendor review10 min

Granola AI security review — meeting notes under the microscope

What a security team should assess before approving Granola: audio processing, sub-processor chain, PII exposure, and eight evidence gaps to close.

Vendor review10 min

Claude AI security review — what a procurement team should assess

A security architect's framework for reviewing Claude before enterprise deployment: data handling, model governance, output safety, and evidence gaps.

Reference11 min

ISO 42001 certification — what the external audit actually checks

What an ISO 42001 external auditor samples at Stage 2, the nonconformity categories, and evidence gaps that recur most.

Technical11 min

Multi-tenant RAG — the isolation boundary a security review must verify

Shared RAG serving multiple tenants creates a retrieval boundary user-level ACLs cannot cover. Verify it before sign-off.

Technical12 min

Agent-to-agent protocol security — what A2A adds beyond MCP

A2A governs what agents ask each other to do -- capability-card spoofing, delegation without provenance, transitive access risks.

Regulation11 min

Prohibited AI practices under the EU AI Act — what Article 5 actually bans

Article 5 bans eight AI practices outright regardless of safeguards. What falls inside the line and how reviews distinguish.

Governance12 min

What an AI Governance Committee actually needs in an evidence pack

The six artefacts an AI Committee needs to make a defensible decision, and the gaps that appear most often in evidence packs.

Regulation13 min

ISO 42001 audit readiness — the controls that fail most often

ISO 42001 audits surface the same gaps: incomplete risk registers, missing triggers, intent-not-practice evidence. Close them first.

Reference10 min

Security review for agentic AI procurement — a buyer's checklist

Eight security areas procurement teams must address before an agentic AI system reaches production. A structured buyer checklist.

Technical11 min

LLM output validation — the controls that actually work

Prompt injection and hallucination are symptoms of missing output validation. The controls that close the gap at each gate.