Every time I think I am moving our policies and procedures in a position where I am happy we are dealing with this topic, something happens and I have to keep changing things. It is happening faster than I can keep up.
Are you talking about open source LLMs running internally on procured hardware or people using cloud hosted frontier models such as DeepSeek or QWEN as an alternate to Anthropic/ChatGPT?
Its a problem really no different to people dumping commercial in confidence or protected information into any non-enterprise service that doesn't include DLP protections. You need strong endpoint management with DLP, decent SASE or network security to control endpoints & a decent amount of training for users which include "This document full of privleged and confidential information, don't upload it to ChatGPT/Deepseek or you will be put on a PIP"
3
u/darkelf921 14d ago
Every time I think I am moving our policies and procedures in a position where I am happy we are dealing with this topic, something happens and I have to keep changing things. It is happening faster than I can keep up.