Google Cloud Blog
Follow
Cloud CISO Perspectives: How Google monitors AI threats and advances AI defenses
This article discusses Google's dual role as an AI developer and security company, providing unique insights into AI threats. Sandra Joyce highlights three key shifts: AI reshaping software development, expanding attack surfaces, and enhancing threat capabilities. Attackers are contaminating AI-assisted coding tools and targeting AI agents through methods like prompt injection. Google is building security directly into AI development pipelines with real-time "spellcheck for cybersecurity" features. A singular AI model for security is insufficient; Google uses a multi-model approach for comprehensive vulnerability detection. Adversaries are exploiting AI workloads by targeting GPU access and stealing valuable AI data, models, and credentials. Google advocates for a unified security graph connecting code, models, data, and identities to defend against these expanding threats. Manual incident response is being replaced by machine-speed operations to counter AI-driven attacks. Defenders possess an advantage due to their deep internal context, which can be fed into AI models for faster, more accurate security. Google actively defends the ecosystem by disabling malicious infrastructure, hardening its AI models, automating vulnerability hunting, and developing advanced defenses. The article emphasizes that securing the AI era requires AI-powered defenses and a transition to continuous, machine-speed protection.