Businesses adopt AI but lack clear risk ownership: report
About 25% reported that not a single person or function manages AI risk in their organisation.
Singaporean organisations are quickly adopting artificial intelligence (AI) but are uncertain of who owns the associated risks and how those risks should be governed.
In its AI Security Poll, Okta found that 53% said that AI security risks are within their CISO or security function, whilst 25% reported no single person or function currently owns AI risk in their organisations, Okta, Inc. found in its live survey it conducted last month.
Only 31% expressed confidence in their ability to detect if an AI agent operates outside its intended scope and 33% do not currently monitor AI agent activity at all, it added.
Data leakage via integrations was identified as the top security gap (36%), followed by Shadow AI and unapproved or unmonitored tools (33%).
Only 8% said their identity systems are fully equipped to secure non-human identities such as AI agents, bots, and service accounts.
Fifty-eight percent claimed that their capabilities as only partially equipped, Okta said.
Whilst 50% said their boards are aware of AI-related risks, only 31% reported full board engagement in oversight, it added.
“The poll findings point to a critical need for clearer accountability, stronger governance frameworks and modern identity systems that can secure both human and non-human identities as AI becomes embedded across enterprise operations,” Okta said.