Send us Fan Mail
Keith Weisman, Head of Forward Deployed Engineering, Jetstream Security
In this episode of The Data Diva Talks Privacy, Debbie Reynolds, The Data Diva speaks with Keith Weisman, Head of Forward Deployed Engineering at Jetstream Security, about AI governance, security, visibility, and the growing challenges organizations face as artificial intelligence becomes deeply integrated into business operations. Keith shares his engineering and security background and explains how organizations are increasingly struggling to understand where AI is being used, how it accesses data, and what governance controls are necessary to support safe and responsible adoption.
The conversation explores how AI is rapidly becoming embedded across organizations, often faster than governance programs can keep pace with. Debbie and Keith discuss the growing problem of shadow AI, where employees adopt AI tools outside approved processes and oversight structures. They examine why organizations need greater visibility into AI usage, including what tools are being used, who is using them, what data is being shared, and how AI systems interact with business processes and sensitive information.
Keith introduces Jetstream Security's framework for addressing what he describes as five critical AI trust gaps: visibility, design control, continuous monitoring and drift management, agentic identity, and trust enforcement. He explains that organizations must first understand where AI is being used and how it operates before they can effectively govern it. The framework emphasizes the importance of understanding AI system design, monitoring for changes and unexpected behavior over time, establishing accountability for AI actions, and creating safeguards that maintain trust as AI capabilities continue to evolve.
The episode also explores the rise of AI agents and non-human identities. Keith explains that organizations have traditionally managed identities for people, applications, and devices, but AI introduces a new category of actors that can make decisions, interact with systems, and perform tasks autonomously. Debbie and Keith discuss why AI agents require the same level of oversight, permissions management, monitoring, and accountability that organizations already apply to human users and other privileged identities.
Throughout the conversation, Keith shares real-world examples illustrating the risks associated with AI systems that are granted excessive access or insufficient oversight. These examples include AI systems making unauthorized changes, interacting with systems in unexpected ways, and performing actions that organizations did not anticipate. The discussion highlights the importance of applying established governance principles such as least-privilege access, monitoring, accountability, and risk management to AI-enabled environments.
Debbie and Keith also discuss the relationship between innovation and governance, emphasizing that governance should not be viewed as a barrier to innovation. Instead, effective governance provides the foundation organizations need to deploy AI responsibly and at scale. As AI systems become increasingly integrated into business operations, organizations must develop new approaches to visibility, accountability, identity management, and trust that address both human and non-human actors operating within complex digital ecosystems.
The conversation concludes with a discussion of the future of AI governance and the importance of creating frameworks that allow organizations to benefit from AI while maintaining security, privacy, compliance, and trust. Keith emphasizes that organizations that invest in visibility, accountability, and governance today will be better positioned to manage risk and realize the long-term benefits of AI adoption.
By popular demand, Debbie Reynolds Consulting is now offering executive briefings on emerging data privacy risks and how companies can avoid them. To learn more, visit the Executive briefings page on my website.
Support the show
Join Data Diva Confidential for exclusive email content featuring practical guidance, expert analysis, and strategic insights on data privacy, AI governance, cybersecurity, and emerging technology, delivered directly to your inbox. Subscribe at https://www.debbiereynoldsadvisory.com/datadivaconfidential
Debbie Reynolds Consulting, LLC