Skip to main content

Check out Interactive Visual Stories to gain hands-on experience with the SSE product features. Click here.

Skyhigh Security

LLM Risk Attributes for AI Category Services

Skyhigh CASB has introduced 17 new sub-categories under the AI services for shadow IT users to develop AI-related threat detection and better AI service classifications. 

We are extending our support by capturing Large Language Model (LLM) details for AI categories on the Cloud Registry to provide a deeper assessment of the risks related to AI services. LLMs are advanced AI models that can understand and generate human-like text based on their input. The LLMs play a crucial role in protecting AI-generated content in Cloud Services.

Skyhigh Collaboration with Enkrypt AI

Enkrypt AI secures Generative AI and governs compliance and risks with seamless monitoring of the AI services. Skyhigh collaborates with Enkrypt AI to enforce controls and offer detailed visibility into AI operations. Accordingly, Enkrypt AI provides the LLM security attribute values for Skyhigh that helps effectively analyze the risks associated with AI services. Enkrypt AI performs LLM Security analysis using red teaming methodology.

Skyhigh Supported LLM Attributes

In the Cloud Registry, under the AI category, if any service supports LLM, the following risk attributes are displayed for each AI service. You can view the LLM attributes on the Registry Overview page:

  • Jailbreaking. The degree to which a model can be manipulated to generate content misaligned with its intended purpose.
  • Toxicity. The degree to which a model generates toxic or harmful content like threats and hate speech.  
  • Bias. The degree to which a model generates biased or unfair content that could be introduced due to training data. 
  • Malware. The degree to which a model can be manipulated to generate malware or known malware signatures.

The table below displays the attribute values based on the LLM’s availability with respect to Enkrypt AI assessment: 

Skyhigh Mapping Based on LLM Jailbreaking Toxicity Bias Malware
The Skyhigh CSP supports LLM, and the model is available in Enkrypt AI

High/Medium/Low

High/Medium/Low

High/Medium/Low

High/Medium/Low

The Skyhigh CSP supports LLM, and the model is not available in Enkrypt AI

Not Publicly Known

Not Publicly Known

Not Publicly Known

Not Publicly Known

The Skyhigh CSP does not support LLM

NA

NA

NA

NA

View LLM Attributes

Perform the below steps to view the LLM attributes:

  1. Go to Governance > Cloud Registry.
  2. Click Filters tab, and then select Artificial Intelligence category under Service Category.
    Select_AICategory.png
  3. Click Actions > Settings > Edit Table Columns.
  4. On the Edit Table Columns dialog, under Risk Attributes, select the LLM Models and LLM Supported checkboxes, and then click Save Table Settings. The table on the Cloud Registry page displays only the services with the selected columns.
    Edit table columns.png
  5. Select any service from the table.
  6. On the Registry Overview page, click the Risk tab, and then click the Service Risk tab.
  7. Under AI Security category, the LLM attributes and its values corresponding to the selected service are displayed. 

For more insight into LLM risk and to understand the value proposition of Enkrypt, click the link *Powered by Enkrypt AI listed in the Value and Score column. 

NOTE: The risk score for each attribute is derived from the Enkrypt AI. However, the overall representation of these attributes is evaluated and displayed for each CSP by categorizing them into High, Medium, and Low values.

 

 

 

 

 

 

 

 

Registry_Overview_Page_New.png

Filter Attribute Based Values

You can filter any risk attribute and its values by selecting the attribute name from the Risk Attributes menu and applying the desired values for the selected attribute. Below is an example to filter the attribute based values.

To filter attribute based values:

  1. On the Cloud Registry page, select Filters tab.
  2. On the Risk Attributes category, select LLM Model - Bias from the menu.
    Select LLM Model - Bias.png
  3. Select Medium Risk and High Risk value checkboxes, and then click Apply.
    Click Apply.png
  4. The table displays the services with medium and high-risk values for the LLM Model - Bias attribute.
    Bias_with_High_Medium.png

NOTE: Enkrypt AI evaluates LLM attributes' security risk assessment and risk scoring. However, LLM attributes are not part of Skyhigh default risk scoring.

Reports

The LLM attributes are included when you download a report for any service. The supported file formats are CSV, XLS, and PDF (Business Report).

  • Was this article helpful?