SEC536: Adversarial AI - Penetration Testing AI Systems

Join us for this practical, insight-packed webcast and learn how to confidently launch or strengthen your DLP program for immediate value and long-term success.

According to SANS Institute's May 2025 paper, the best approach is to start small by identifying an organization's most valuable data, understanding where it is stored, how it moves, and how it is used, then building the program in incremental stages rather than deploying a broad, one-size-fits-all solution.
The paper recommends a top-down approach involving the CTO, chief compliance officer, chief privacy officer, general counsel, enterprise risk management teams, internal/external communications teams, and department heads responsible for the organization's mission.
People, process, and technology. People includes in-house staff or a managed security service provider; process covers documentation and policy updates; technology covers design, implementation, and continuous monitoring of DLP tooling.
The paper notes that data submitted to private large language models can be poisoned or expose unapproved data such as personally identifiable information, and recommends that a DLP solution flag information submitted to or produced by an LLM, with human review of outputs.
Success is measured with stakeholder-specific metrics: technical teams track toolset uptime and agent coverage, security teams track alert triage and incident response, legal and compliance teams track data misuse incidents, and risk teams track key risk indicators tied to data security controls.