DSE security knowledge hub

Cybersecurity
Knowledge

Source-backed guidance for identity, vulnerability reduction, ransomware readiness, detection, response, and recovery.

DSE-authoredOfficial sourcesReviewed guidance
Explore this topic

Cybersecurity knowledge center

Source-backed guidance for identity, vulnerability reduction, ransomware readiness, detection, response, and recovery.

Start with the cornerstone guide
DSE post stream

Cybersecurity

164 articles
DSE visual briefContinuity & recovery

Set retention, deletion, and tenant boundaries before an AI assistant remembers

AI memory can improve continuity while retaining sensitive or hostile context beyond the original exchange. Define what may be remembered, its provenance, tenant boundary, expiry, user controls, deletion path, and incident response before enabling persistence.

Published Reviewed 3 min readBy Gavin Stewart
Read the guide
DSE visual briefIdentity & cloud

Treat every MCP server as a software-supply-chain and identity boundary

An MCP server can expose data and executable tools to an AI client. Inventory the publisher, code, tool definitions, identities, token audiences, network destinations, versions, changes, logs, and revocation path before allowing production use.

Published Reviewed 3 min readBy Gavin Stewart
Read the checklist
DSE visual briefContinuity & recovery

Enforce approval outside the model before an AI agent commits a consequential action

An AI agent must not decide for itself whether its next action needs human review. Define consequential actions in policy and code, present the exact proposed effect, issue narrow expiring approval, detect compound actions, and preserve an accountable record.

Published Reviewed 3 min readBy Gavin Stewart
Read the playbook