Learning tracks by role

AI learning track: Security, governance and compliance

For security, risk and compliance teams reviewing AI data access, actions and accountability.

After this track: You can review an agent’s access and oversight, identify needed audit evidence and scope adversarial testing.

Follow these 9 steps in order, or return to the one you need for your current work. Reading times are estimates; listening times cover the full episode.

  1. AI Security

    Topic guide · About 1 min reading · overview

    Start with the AI security overview to map model and agent threats onto your existing security responsibilities.

  2. Prompt Injection

    Glossary · About 1 min reading

    Understand how untrusted content can become an instruction before assessing an agent’s access to documents and tools.

  3. How do you give an AI agent an identity and permissions?

    Explainer · About 6 min reading

    Bound what the agent can do even when instructions are manipulated before granting it production credentials.

  4. Data Sovereignty

    Glossary · About 1 min reading

    Identify where data may be processed and held before selecting the service that will receive it.

  5. How do you decide what information an AI assistant may receive?

    Explainer · About 3 min reading

    Translate that data boundary into a sharing policy employees can apply to real records.

  6. How do you govern AI agents in an enterprise?

    Explainer · About 2 min reading

    Assign owners and intervention rules once the system’s data and action boundaries are explicit.

  7. Audit Trail

    Glossary · About 1 min reading

    Specify the records needed to reconstruct an agent’s actions before relying on oversight that cannot be evidenced.

  8. AI Red Teaming

    Glossary · About 1 min reading

    Add adversarial testing to ordinary quality checks so the review also asks how the system can be made to fail.

  9. Microsoft: planning red teaming for LLMs and their applications

    External docs

    Use a concrete planning guide to assign testers, choose application risks and record findings for follow-up.

Choose another role or continue through the five-level pathway.