AI workloads scattered across product teams. Azure OpenAI deployed with default content filtering. No classification on grounding data or prompt logs. Defender for Cloud Azure-only, not extended to AI workloads. No central evaluation framework.
Typical concerns
- ·AI workloads spinning up faster than security can govern
- ·Default content filters miss scenario-specific risks
- ·Prompt logs storing sensitive content
- ·No central registry of AI workloads
- ·Compliance team blocked from approval
Capability gaps
- ·AI workload secure-score baseline
- ·Content classification for grounding + prompts
- ·Custom content filtering per scenario
- ·Identity-bound endpoint access
- ·Prompt-injection evaluation tooling