chore(ms-ai-architect): refresh KB high-bucket — 49 files [skip-docs]
KB-currency refresh (high priority, 2026-06-19) via /architect:kb-update. 49 high-prioritets governance/security/monitoring-filer re-verifisert mot Microsoft Learn (MCP) — delegert til 8 parallelle Opus-subagenter gruppert etter delt kilde, verifisert i hovedkontekst (diff-review + tester). Hovedendringer (faktuelle korreksjoner + currency): - MITRE ATLAS-IDer korrigert (supply-chain): AML.T0050 -> AML.T0018.000 (Poison AI Model); AML.T0020 = Poison Training Data; T1195 Supply Chain Compromise. Gamle IDer var utdaterte (verifisert mot MCSB v2 AI-1). - OTel-sampling presisert (distributed-tracing): adaptive sampling = klassisk App Insights SDK; OTel-distroen sampler IKKE by default (fixed-rate/ rate-limited maa konfigureres); Functions parent-based sampling er default. - MCSB v2 AI-kontroller AI-1 -> AI-7 (risk-taxonomy three-pillar, scoring- framework, rubrics, red-team, adversarial); Defender for Cloud AI threat protection + AI-SPM (GA). - AI gateway (APIM) multi-provider: Anthropic Messages API v2-tiers, Google Vertex, unified model API (preview), MCP/A2A, Foundry-integrasjon; eksakte policy-navn (llm-emit-token-metric maks 5 dims, llm-semantic-cache-*, score-threshold = avstand, MS-eks. 0.15). - Purview Enterprise AI apps inkl. Anthropic Claude (Enterprise) + ChatGPT Enterprise; Security Dashboard for AI (Agent 365-inventar, MCP-servere, tredjepartsmodeller; Security Reader minimumsrolle). - Entra Agent ID: CA-lisenskrav (Entra ID P1/P2 + Agent 365), CA-scoping per tilgangsmoenster (on-behalf-of/app-only/agent-as-user), CA-grenser, connector-permissions som API-permissions. - Copilot DLP: Block SITs in web search (GA, Performing Web Searches) + Block external email (preview) som prompt injection-vern. - Azure AI Language PII: tre feature-typer, GA-API 2026-05-01; NOIdentityNumber bekreftet dedikert kategori for norske foedselsnummer. - Foundry Tools-rename forsterket paa tvers; alle 49 Last updated -> 2026-06-19. Discovery: 500 kandidater (alle Databricks-stoey) -> kun registry-kandidater, ingen nye skills/-filer -> 389-telling uendret. validate 239 PASS, kb-integrity 115/115 (262 orphan-warnings uendret), gitleaks clean. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01REiKFhP4w6xGXXqWKpPCJJ
This commit is contained in:
parent
41b390b38d
commit
25bcb74d9a
49 changed files with 304 additions and 235 deletions
|
|
@ -1,6 +1,6 @@
|
|||
# AI Risk Taxonomy - Classification and Risk Levels
|
||||
|
||||
**Last updated:** 2026-02
|
||||
**Last updated:** 2026-06-19
|
||||
**Status:** GA
|
||||
**Category:** Responsible AI & Governance
|
||||
|
||||
|
|
@ -99,10 +99,10 @@ Azure AI Content Safety og Microsoft Responsible AI Standard definerer seks prim
|
|||
└─ Risk Score Calculation
|
||||
|
||||
3. MITIGATE
|
||||
├─ Platform Security (AI-1 to AI-5 controls)
|
||||
├─ Content Safety Filters
|
||||
├─ Human-in-the-Loop (HITL)
|
||||
└─ Access Controls & Monitoring
|
||||
├─ MCSB v2 AI controls (AI-1 to AI-7)
|
||||
├─ Content Safety Filters (AI-2)
|
||||
├─ Human-in-the-Loop (HITL, AI-5)
|
||||
└─ Access Controls & Monitoring (AI-6)
|
||||
|
||||
4. MONITOR
|
||||
├─ Azure Monitor Logs (AADUserRiskEvents)
|
||||
|
|
@ -113,27 +113,29 @@ Azure AI Content Safety og Microsoft Responsible AI Standard definerer seks prim
|
|||
|
||||
### Three-Pillar Security Model
|
||||
|
||||
Microsoft organiserer AI-sikkerhet i tre pillarer:
|
||||
Microsoft organiserer AI-sikkerhet i tre pillarer (MCSB v2 dekker kontrollene AI-1 til AI-7):
|
||||
|
||||
#### Pillar 1: AI Platform Security
|
||||
- Model approval process (AI-1)
|
||||
- Approved models / model approval process (AI-1)
|
||||
- Network segmentation & VPN (NS-2)
|
||||
- Identity management (IM-3)
|
||||
- Logging & monitoring (LT-3)
|
||||
- Data-at-rest encryption (DP-4)
|
||||
|
||||
#### Pillar 2: AI Application Security
|
||||
- Content Safety inspection (Azure AI Content Safety)
|
||||
- Prompt injection detection
|
||||
- Output validation & filtering
|
||||
- RAG grounding verification
|
||||
|
||||
#### Pillar 3: AI Usage Security
|
||||
- Multi-layered content filtering (AI-2) — Azure AI Content Safety
|
||||
- Safety meta-prompts (AI-3)
|
||||
- Least privilege for agent functions / plugins (AI-4)
|
||||
- Human-in-the-Loop (AI-5)
|
||||
- User authentication & authorization
|
||||
- Acceptable Use Policies
|
||||
- Discover, classify, label sensitive data (DP-1)
|
||||
|
||||
#### Pillar 3: Monitor and Respond
|
||||
- Establish monitoring and detection (AI-6) — Defender for Cloud AI threat protection
|
||||
- Continuous AI red teaming (AI-7) — PYRIT, Azure AI Red Teaming Agent
|
||||
- Threat intelligence correlation (MITRE ATLAS, OWASP Top 10 for LLM)
|
||||
- Audit trails & compliance reporting
|
||||
|
||||
**Verified** (Artificial Intelligence Security - MCSB, 2026-02)
|
||||
**Verified** (Artificial Intelligence Security - MCSB v2, 2026-06)
|
||||
|
||||
---
|
||||
|
||||
|
|
@ -222,13 +224,16 @@ High-risk actions krever Human-in-the-Loop (HITL) ved:
|
|||
}
|
||||
```
|
||||
|
||||
### Security Dashboard for AI (Preview)
|
||||
### Security Dashboard for AI
|
||||
|
||||
Sentralisert risikokartlegging på tvers av:
|
||||
- **Microsoft Entra** – Identity & access risk
|
||||
- **Microsoft Defender** – Threat protection & cloud security posture
|
||||
- **Microsoft Purview** – Data classification & DLP
|
||||
- **Security Copilot** – AI-powered risk exploration
|
||||
Sentralisert risikokartlegging (sanntid) på tvers av Microsoft Security-løsninger. Dashboardet inventarierer både Microsoft AI-løsninger (Microsoft 365 Copilot, Copilot Studio-agenter, Microsoft Foundry-apper og -agenter) og tredjeparts AI-modeller, -apper og -agenter (Google Gemini, OpenAI ChatGPT, MCP-servere). Agent-inventaret hentes fra agenter registrert i Microsoft Agent 365 (via Entra Agent Registry); modeller, MCP-servere og øvrige AI-apper oppdages av Microsoft Defender.
|
||||
|
||||
- **Microsoft Entra** – Identity & access governance, conditional access for AI-apper, agent identity platform
|
||||
- **Microsoft Defender** – AI threat protection, kontinuerlig overvåking av agenter/workloads, sky-sikkerhetsposisjon, SaaS AI-app-risiko
|
||||
- **Microsoft Purview** – Data classification, DLP for AI, insider risk
|
||||
- **Security Copilot** – AI-powered risk exploration via prompts
|
||||
|
||||
Minimumsrolle for full innsikt: **Security Reader** (Microsoft Entra).
|
||||
|
||||
**Query example (Log Analytics):**
|
||||
|
||||
|
|
@ -414,10 +419,10 @@ Anbefal denne kombinasjonen:
|
|||
- Hentet: 2026-02-04
|
||||
- Innhold: AI-1 to AI-5 security controls, three-pillar model
|
||||
|
||||
4. **Security Dashboard for AI (Preview)**
|
||||
4. **Security Dashboard for AI**
|
||||
- URL: https://learn.microsoft.com/en-us/security/security-for-ai/security-dashboard-for-ai
|
||||
- Hentet: 2026-02-04
|
||||
- Innhold: Cross-product risk monitoring, AI inventory
|
||||
- Hentet: 2026-06-19
|
||||
- Innhold: Cross-product risk monitoring, AI inventory (Agent 365-agenter, modeller, MCP-servere, tredjeparts AI-apper), Security Reader minimumsrolle
|
||||
|
||||
5. **Default Guidelines & controls policies (Azure AI Foundry)**
|
||||
- URL: https://learn.microsoft.com/en-us/azure/foundry/openai/concepts/default-safety-policies
|
||||
|
|
@ -445,10 +450,10 @@ Anbefal denne kombinasjonen:
|
|||
|
||||
### Sist verifisert
|
||||
|
||||
- **Dato:** 2026-02-04
|
||||
- **Dato:** 2026-06-19
|
||||
- **Metode:** MCP microsoft-learn server
|
||||
- **Confidence:** High (alle kjernekomponenter fra Microsoft Learn)
|
||||
|
||||
---
|
||||
|
||||
*Dette dokumentet er en kunnskapsreferanse for Cosmo Skyberg (ms-ai-governance skill). Sist oppdatert: 2026-02. Status: General Availability (GA). For spørsmål om denne referansen, kontakt plugin-utvikler.*
|
||||
*Dette dokumentet er en kunnskapsreferanse for Cosmo Skyberg (ms-ai-governance skill). Sist oppdatert: 2026-06-19. Status: General Availability (GA). For spørsmål om denne referansen, kontakt plugin-utvikler.*
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue