AI Risks Drive New Cybersecurity Governance Approaches
A recent Ernst & Young study of 500 senior security leaders found that most organizations consider their current cybersecurity budgets insufficient to address AI‑enabled threats, yet they plan to increase spending, with two‑thirds expecting to allocate at least $5 million on AI solutions within two years. The study highlighted the benefits of AI, such as higher analyst efficiency and the shift of staff to strategic tasks, while stressing the ongoing talent shortage—90 % report difficulty hiring AI‑savvy security professionals—and the need for human‑in‑the‑loop controls, which 85 % maintain for critical decisions. Governance emerged as a critical foundation for responsibly scaling AI in security operations.
In Tunisia, experts warn that the rapid expansion of AI use in business creates new information‑security risks, from inadvertent data leakage into public AI tools to malicious code injection that can alter AI behavior. They argue that the traditional “passive defense” model is obsolete and advocate a proactive strategy: early risk identification, data classification, limited access, and continuous monitoring to protect against both accidental and intentional misuse of AI.
Together, these insights underscore a shift toward proactive, governance‑focused cybersecurity practices as AI becomes more embedded in enterprise operations.