NY03:49
    LDN08:49
    HKG15:49
    TYO16:49
    Gold4,509+0.01%
    Bitcoin77,358-0.41%
    Gold4,509+0.0%
    Bitcoin77,358-0.4%
    LATEST NEWS
    Tennessee Halts Execution After Lethal Injection Protocol Failureabout 1 hourNew York Giants give GM Joe Schoen multi-year extension as John Harbaugh arrivesabout 2 hoursNew York Giants set to extend GM Joe Schoen with multiyear dealabout 2 hoursRams confirm Matthew Stafford extension; sources value deal at $55Mabout 2 hoursTrump's "Anti-Woke" Crusade: A New Culture War Frontabout 2 hoursPolice Call for Ban on Unsafe Online Platformsabout 2 hoursStellantis Shifts Gears: $70 Billion Overhaul Revealedabout 2 hoursBears say Chicago options exhausted, focus on Arlington Heights and Hammondabout 2 hoursBears rule out Chicago sites, focus on Arlington Heights or Hammondabout 2 hoursAlberta to Vote on Canadian Unityabout 2 hoursUS Halts Taiwan Arms Dealabout 2 hoursStellantis Plans Seven Sub-$40,000 Models by 2030about 5 hoursTennessee Halts Execution After Lethal Injection Protocol Failureabout 1 hourNew York Giants give GM Joe Schoen multi-year extension as John Harbaugh arrivesabout 2 hoursNew York Giants set to extend GM Joe Schoen with multiyear dealabout 2 hoursRams confirm Matthew Stafford extension; sources value deal at $55Mabout 2 hoursTrump's "Anti-Woke" Crusade: A New Culture War Frontabout 2 hoursPolice Call for Ban on Unsafe Online Platformsabout 2 hoursStellantis Shifts Gears: $70 Billion Overhaul Revealedabout 2 hoursBears say Chicago options exhausted, focus on Arlington Heights and Hammondabout 2 hoursBears rule out Chicago sites, focus on Arlington Heights or Hammondabout 2 hoursAlberta to Vote on Canadian Unityabout 2 hoursUS Halts Taiwan Arms Dealabout 2 hoursStellantis Plans Seven Sub-$40,000 Models by 2030about 5 hours
    Technology

    Shadow AI is spreading at work, raising governance and security risks for IT teams

    Unauthorized AI tool use by employees is widespread, creating data leakage and compliance risks, particularly with autonomous AI agents, necessitating stro…

    Published5 May 2026, 04:40:17
    Shadow AI is spreading at work, raising governance and security risks for IT teams
    A360
    Key Takeaways✦ Atlas AI
    01

    Many employees are using public generative AI tools despite company bans, creating significant data leakage risks as sensitive information enters unsecure external models, potentially compromising intellectual property.

    02

    The rise of autonomous 'agentic AI' introduces complex security and compliance challenges, as organizations struggle to monitor and audit these self-deciding systems for accountability and control.

    03

    Organizations often overestimate their AI readiness, lacking robust governance and security frameworks, which makes strong identity and access management crucial for mitigating 'shadow AI' risks and ensuring accountability.

    Atlas AI

    Atlas AI

    Unauthorized employee use of public generative AI tools is becoming widespread, creating new governance and security headaches for IT leaders.

    A Gartner survey cited by The Register found that 69% of organizations believe employees are using prohibited public GenAI tools, and about half say the activity continues even where bans are in place. The behavior spans public large language model (LLM) services as well as AI-enabled sosourcesware-as-a-service applications adopted by teams outside approved IT channels.

    Data leakage and IP exposure concerns

    A primary risk is data leakage when employees enter sensitive company information into external AI services. The Register report warns that such data may be stored outside an organization’s security perimeter and could be used to train future models, potentially exposing intellectual property and other confidential material.

    Agentic AI adds auditing and compliance complexity

    The rise of agentic AI—systems designed to operate more autonomously and make decisions with limited human oversight—adds another layer of difficulty. Monitoring agent actions, tracing decision paths, and maintaining auditability can be challenging, especially at scale.

    The source also notes ongoing concern across the industry about accountability if an AI agent takes an incorrect action that results in data exposure, including questions over who authorized the action and how organizations can investigate and reverse it.

    Governance gaps can amplify risk

    The report highlights a potential mismatch between how mature organizations think they are in AI adoption and how prepared they are internally to deploy it safely. Lacking clear governance frameworks, a well-defined view of security posture, and practical AI usage guidelines by department can increase the likelihood of shadow AI-related security and compliance incidents.

    Why identity and access management matters

    Stronger identity and access management (IAM) is presented as a key mitigation step. A consistent identity foundation can help organizations improve visibility into what humans and non-human entities are doing across the enterprise environment, enabling better monitoring, accountability, and oversight as AI usage expands.

    Share

    Related Articles

    Atlas360

    Sign up for Atlas Daily

    The daily global news briefing you can trust.

    every weekday·Read it now

    or
    Sign in

    Already subscribed? Sign in and we won't show you this message again.