CyberWire Daily

Closing cracks before hackers do.

Nov 12, 2025
In a captivating conversation, Bob Maley, the Chief Security Officer at Black Kite and an expert in third-party risk management, delves into the newly proposed BKGA3 AI assessment framework. He explains its goal of synthesizing fragmented AI standards to minimize risk and discusses the importance of open standards in the AI landscape. Bob shares insights on the rapid growth of LLM capabilities and how the framework will adapt to emerging threats. Tune in for actionable insights on responsible AI risk management and the future of AI assessments!
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Third-Party Risk Pressure Is Extreme

  • Third-party risk teams face extreme pressure because AI is evolving faster than assessment methods.
  • Existing assessments are largely static and struggle to capture AI's rapid change.
INSIGHT

AI Governance Is Fragmented

  • The AI governance landscape is fragmented with many overlapping frameworks and standards.
  • Synthesizing common controls can reveal non-negotiable security fundamentals across frameworks.
ADVICE

Assess To Reduce Surprise

  • Reduce surprise by assessing third parties to understand and limit unknown risks in relationships.
  • Use assessments to reveal where uncertainty exists and prioritize controls accordingly.
Get the Snipd Podcast app to discover more snips from this episode
Get the app