Intelligent CIO Middle East Issue 99 | Page 45

CIO OPINION
• Work with architects and vendors to understand the organisation ' s capabilities to isolate infected systems .
• Containment methods need to be clearly defined and tested .
• Predetermine the contamination risk levels for your systems .
• Systems with little to no interdependencies , may have a lower value than systems with many interdependencies .
• Document this work in your containment strategy workbook .
Due to ransomware ' s impact on a business , Gartner recommends creating a ransomware playbook that includes the processes and procedures for managing this type of attack . CISOs must integrate their defined containment strategy into their enterprise ’ s cybersecurity incident response plan and , or ransomware playbook .
Once the integration has been successfully executed , CISOs must test the reliability and effectiveness of the containment strategy in conjunction with the cybersecurity incident response plan and ransomware playbook .
They must use a tabletop exercise to test their enterprise ' s capability to execute its Incident
Response Plan and Ransomware playbook . It will also help identify gaps in both documents that will require improvements .
Data privacy around GenAI searches
Security and governance are crucial for businesses before adopting any new tool or technology . To enable trust and security while using generative AI search , CIOs must take the following steps :
• Prioritise generative AI providers that provide data privacy guarantees around IP protection .
• Work with providers to deploy approaches such as prompt engineering and , or fine-tuning to reduce hallucinations .
• Choose providers that more closely integrate with enterprise data stores and can demonstrate robust access control , content rights and language understanding .
• Deploy solutions for explainability and content moderation to reduce harmful output and to demystify the black-box nature of these models .
• Conduct adversarial testing across a range of scenarios before deploying Generative AI apps in production .
• Create a mandatory training programme for employees on the benefits and risks of Generative AI applications .
www . intelligentcio . com INTELLIGENTCIO MIDDLE EAST 45