New Delhi: The adoption of artificial intelligence (AI) and generative AI is increasing the risks to Indian enterprises, who are confronting them within the company, according to a new whitepaper by Protiviti and Microsoft. According to the report, SAFETOD, Safeguarding From Within: Insider Risk Management in India, the BFSI, healthcare, life sciences and IT/ITeS industries are most vulnerable, as these industries are highly dependent on sensitive customer data, intellectual property and vendor networks.

The research concludes that insider risk management is a significant gap, with few institutions having a full enterprise-wide structure. As AI and GenAI provide productivity and innovation, they provide a new path toward data leakage. The report highlights the necessity of Indian firms to institutionalise insider risk management (IRM) at board level, particularly with heightened regulation by regulators under the Digital Personal Data Protection (DPDP) Act and industry requirements by RBI, SEBI and IRDAI.

Insider risks on the rise

The research of Microsoft Security Insights indicates that 63 percent of the world’s data breaches include the involvement of insiders in one way. The survey conducted by Protiviti itself also revealed that only a quarter of Indian organisations believe that they are ready to face privacy issues related to new technologies like AI, IoT and blockchain. Risk management continues to grow at a fast pace, with 84 per cent of companies admitting to having gaps in regulating how their employees use generative AI.

Compliance now a business imperative

The leaders in the industry warn that insider risk management cannot be done as an option anymore. The paper provides an enterprise roadmap, which entails the proper ownership of insider risks by cross-functional committees, categorisation of high-value data, such as UPSI, intellectual property, patient records and extra security. Others that can be recommended are role-based access controls, incident response playbooks that are specific to insiders, and specific training of high-risk functions, including finance, legal, and R&D.

The report highlights that technology is an important enabler; strategy and governance have to be put first. Tools such as Microsoft Purview offer policy templates, privacy-maintaining investigations and audit-capable reporting to facilitate the operationalisation of the IRM programmes. Through the integration of solid internal controls, the Indian enterprises are able to minimise the legal risk, create a digital trust, and turn compliance into a competitive edge within the AI-based economy.

Read more
Ollie Watkins update as Unai Emery delivers injury news ahead of Tottenham clash
Newspoint
What happened to four players Wayne Rooney wanted Man Utd to build around
Newspoint
"Rohit-Virat are not on trial": Chief selector Ajit Agarkar
Newspoint
Virat Kohli: Decoding his stats versus Australia in ODI cricket
Newspoint
Pep Guardiola shares true feelings on Jack Grealish with Man City reunion denied
Newspoint
Alan Shearer's comments speak volumes as he backs Erling Haaland to break record
Newspoint
Ranji Trophy: Rajat Patidar's maiden double century puts Madhya Pradesh in command
Newspoint
Oliver Glasner sends Man United manager message after Crystal Palace speculation
Newspoint
Tottenham injury latest as Thomas Frank shares major blow before Aston Villa clash
Newspoint
Delhi Capitals co-owner enters the race to buy IPL 2025 champions
Newspoint