InfoSec Insider Podcast S2.E35 - AI Supplier Management
In this episode of InfoSec Insider, Jack Woods and George Ryan, both Consultants at URM, share their insights on how organisations can effectively manage AI suppliers and navigate the emerging risks associated with artificial intelligence in the supply chain. Jack and George draw on their experience supporting organisations with AI governance and supplier risk management to discuss: • What AI supplier management is and how it differs from traditional supplier management, including the impact of rapidly evolving AI models and changing service structures • The key risks associated with AI suppliers, such as data leakage, unauthorised model training, hallucinations, bias, and compliance challenges • The growing issue of shadow AI, and how a lack of visibility over employee use of AI tools can introduce significant security and governance risks • How organisations can adapt due diligence processes to assess AI suppliers, including evaluating data handling practices, model governance, human oversight, and security maturity • Contractual and governance considerations, such as restricting data use, ensuring transparency on model updates, and defining audit and incident response expectations • The importance of understanding extended AI supply chains, including dependencies on underlying models and fourth-party providers • Why AI supplier management must be treated as an ongoing activity, with continuous monitoring, internal communication, and reassessment of risk as technologies evolve Ask Jack and George a question: https://www.urmconsulting.com/podcast... If you enjoyed this episode of InfoSec Insider – Talk Cyber, you can leave us a rating and review here: https://ratethispodcast.com/infosecin... You can find more episodes of InfoSec Insider here: https://urmconsulting.com/podcasts?ut... Brought to you by URM, the UK’s leading information and cyber security specialists.

InfoSec Insider Podcast - s2 e39 Real‑World Data Protection Questions

InfoSec Insider Podcast - s2 e40 Unusual GRC Questions

No Celebrity Has ZERO Filter Like Harrison Ford _ and It’s HILARIOUS!

From spreadsheets to smart agents in procurement

The Future of AI Agents with Andrew Ng | Interrupt 26
![Lending Insight | The Handelsbanken Difference [Ft. Handelsbanken] // Network Insight #103](https://i.ytimg.com/vi/lVAe2mr1qEQ/hqdefault.jpg?sqp=-oaymwE9CNACELwBSFryq4qpAy8IARUAAAAAGAElAADIQj0AgKJDeAHwAQH4Af4JgALQBYoCDAgAEAEYEyBeKH8wDw==&rs=AOn4CLCS7mzwlDbr6bQYGSpypOoYayUcwg)
Lending Insight | The Handelsbanken Difference [Ft. Handelsbanken] // Network Insight #103

How To Think SO CLEARLY People Assume You're A Genius

InfoSec Insider Podcast S2.E38 - Business Approaches to Risk Management

Inside the Mind of Anthropic CEO Dario Amodei | The Circuit | Extended Interview

What do tech pioneers think about the AI revolution? - The Engineers, BBC World Service

InfoSec Insider Podcast - s2 e41 - PCI DSS and Service Providers

How to Introduce Yourself — and Get Hired | Rebecca Okamoto | TED

The FULL VIDEO of Trump they didn’t want released

Is RAG Still Needed? Choosing the Best Approach for LLMs

InfoSec Insider Podcast S2.E37 - PCI DSS and Severless Architecture

Andrej Karpathy: From Vibe Coding to Agentic Engineering w/ Stephanie Zhan

The Man Asked If I Was Still Looking for My Son—Then He Said, “I’m the Kid in..." - Calm Dad Stories

Professor Jiang: World War 3 Is About To Begin, Let Me Explain!

InfoSec Insider Podcast S2.E34 - Understanding Relevant Risks

