Close Menu
  • Homepage
  • Local News
  • India
  • World
  • Politics
  • Sports
  • Finance
  • Entertainment
  • Business
  • Technology
  • Health
  • Lifestyle
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • DMCA
Facebook X (Twitter) Instagram Pinterest
JHB NewsJHB News
  • Local
  • India
  • World
  • Politics
  • Sports
  • Finance
  • Entertainment
Let’s Fight Corruption
JHB NewsJHB News
Home»Technology»Prompt Security's Itamar Golan on why generative AI security requires building a category, not a feature
Technology

Prompt Security's Itamar Golan on why generative AI security requires building a category, not a feature

November 27, 2025No Comments11 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Prompt Security's Itamar Golan on why generative AI security requires building a category, not a feature
Share
Facebook Twitter LinkedIn Pinterest Email

VentureBeat not too long ago sat down (nearly) with Itamar Golan, co-founder and CEO of Immediate Safety, to speak via the GenAI safety challenges organizations of all sizes face.

We talked about shadow AI sprawl, the strategic choices that led Golan to pursue constructing a market-leading platform versus competing on options, and a real-world incident that crystallized why defending AI functions is not elective anymore. Golan supplied an unvarnished view of the corporate’s mission to empower enterprises to undertake AI securely, and the way that imaginative and prescient led to SentinelOne’s estimated $250 million acquisition in August 2025.

Golan’s path to founding Immediate Safety started with tutorial work on transformer architectures, properly earlier than they turned foundational to right now’s massive language fashions. His expertise constructing one of many earliest GenAI-powered security measures utilizing GPT-2 and GPT-3 satisfied him that LLM-driven functions have been creating a completely new assault floor. He based Immediate Safety in August 2023, raised $23 million throughout two rounds, constructed a 50-person workforce, and achieved a profitable exit in below two years.

The timing of our dialog couldn’t be higher. VentureBeat evaluation reveals shadow AI now prices enterprises $4.63 million per breach, 16% above common, but 97% of breached organizations lack primary AI entry controls, in accordance with IBM’s 2025 knowledge. VentureBeat estimates that shadow AI apps might double by mid-2026 based mostly on present 5% month-to-month progress charges. Cyberhaven knowledge reveals 73.8% of ChatGPT office accounts are unauthorized, and enterprise AI utilization has grown 61x in simply 24 months. As Golan informed VentureBeat in earlier protection, “We see 50 new AI apps a day, and we have already cataloged over 12,000. Round 40% of those default to coaching on any knowledge you feed them, that means your mental property can develop into a part of their fashions.”

The next has been edited for readability and size.

VentureBeat: What made you acknowledge that GenAI safety wanted a devoted firm when most enterprises have been nonetheless determining easy methods to deploy their first LLMs? Was there a selected second, buyer dialog, or assault sample you noticed that satisfied you this was a fundable, venture-scale alternative?

Itamar Golan: From an early age, I used to be drawn to arithmetic, knowledge, and the rising world of synthetic intelligence. That curiosity formed my tutorial path, culminating in a research on transformer architectures, properly earlier than they turned foundational to right now’s massive language fashions. My ardour for AI additionally guided my early profession as a knowledge scientist, the place my work more and more intersected with cybersecurity.

Every little thing accelerated with the discharge of the primary OpenAI API. Round that point, as a part of my earlier job, I teamed up with Lior Drihem, who would later develop into my co-founder and Immediate Safety’s CTO. Collectively, we constructed one of many earliest security measures powered by generative AI, utilizing GPT-2 and GPT-3 to generate contextual, actionable remediation steps for safety alerts. This lowered the time safety groups wanted to grasp and resolve points.

That have made it clear that functions powered by GPT-like fashions have been opening a completely new and susceptible assault floor. Recognizing this shift, we based Immediate Safety in August 2023 to deal with these rising dangers. Our purpose was to empower organizations to experience this wave of innovation and unleash the potential of AI with out it turning into a safety and governance nightmare.

Immediate Safety turned identified for immediate injection protection, however you have been fixing a broader set of GenAI safety challenges. Stroll me via the complete scope of what the platform addressed: knowledge leakage, mannequin governance, compliance, purple teaming, no matter else. What capabilities ended up resonating most with prospects which will have shocked you?

From the start, we designed Immediate Safety to cowl a broad vary of use instances. Focusing solely on worker monitoring or prompt-injection safety for inner AI functions was by no means sufficient. To really give safety groups the boldness to undertake AI safely, we would have liked to guard each touchpoint throughout the group, and do all of it at runtime.

For a lot of prospects, the actual turning level was discovering simply what number of AI instruments their staff have been already utilizing. Early on, firms typically discovered not simply ChatGPT however dozens of unmanaged AI companies in lively use fully outdoors IT’s visibility. That made shadow AI discovery a crucial a part of our resolution.

Equally essential was real-time sensitive-data sanitization. As a substitute of blocking AI instruments outright, we enabled staff to make use of them safely by robotically eradicating delicate info from prompts earlier than it ever reached an exterior mannequin. It struck the stability organizations wanted: robust safety with out sacrificing productiveness. Workers might preserve working with AI, whereas safety groups knew that no delicate knowledge was leaking out.

What shocked many shoppers was how enabling secure utilization — moderately than proscribing it — drove quicker adoption and belief. As soon as they noticed AI as a managed, safe channel as a substitute of a forbidden one, utilization exploded responsibly.

You constructed Immediate Safety right into a market chief. What have been the 2 to 3 strategic choices that really accelerated your progress? Was it specializing in a selected vertical?

Wanting again, the actual acceleration did not come from luck or timing: It got here from a couple of deliberate decisions I made early. These decisions have been uncomfortable, costly, and slowed us down within the brief time period, however they created large leverage over time.

First, I selected to construct a class, not a characteristic. From day one, I refused to place Immediate Safety as “simply” safety towards immediate injection or knowledge leakage, as a result of I noticed that as a useless finish.

As a substitute, I framed Immediate because the AI safety management layer for the enterprise, the platform that governs how people, brokers, and functions work together with LLMs. That call was elementary, permitting us to create a price range as a substitute of combating for it, sit on the CISO desk as a strategic layer moderately than a device, and construct platform-level pricing and long-term relevance as a substitute of a slender level resolution. I wasn’t making an attempt to win a characteristic race; I used to be constructing a brand new class.

Second, I selected enterprise complexity earlier than it was snug. Whereas most startups keep away from complexity till they’re compelled into it, I did the alternative: I constructed for enterprise deployment fashions early, together with self-hosted and hybrid; coated actual enterprise surfaces like browsers, IDEs, inner instruments, MCPs, and agentic workflows; and accepted longer cycles and extra advanced engineering in alternate for credibility. It wasn’t the best route, however it gave us one thing rivals could not faux: enterprise readiness earlier than the market even knew it could want it.

Third, I selected depth over logos. Somewhat than chasing quantity or vainness metrics, I went deep with a smaller variety of very severe prospects, embedding ourselves into how they rolled out AI internally, how they thought of threat, coverage, and governance, and the way they deliberate long-term AI adoption. These prospects did not simply purchase the product: they formed it. That created a product that mirrored enterprise actuality, produced proof factors that moved boardrooms and never simply safety groups, and constructed a degree of defensibility that got here from entrenchment moderately than advertising and marketing.

You have been educating the market on threats most CISOs hadn’t even thought-about but. How did your positioning and messaging evolve from yr one to the acquisition?

Within the early days, we have been educating a market that was nonetheless making an attempt to grasp whether or not AI adoption prolonged past a couple of staff utilizing ChatGPT for productiveness. Our positioning targeted closely on consciousness, displaying CISOs that AI utilization was already sprawling throughout their organizations and that this created actual, fast dangers they hadn’t accounted for.

I wasn’t making an attempt to win a characteristic race; I used to be constructing a brand new class.

Because the market matured, our messaging shifted from “that is taking place” to “here is the way you keep forward.” CISOs now absolutely acknowledge the dimensions of AI sprawl and know that straightforward URL filtering or primary controls will not suffice. As a substitute of debating the issue, they’re on the lookout for a approach to allow secure AI use with out the operational burden of monitoring each new device, website, copilot, or AI agent staff uncover.

By the point of the acquisition, our positioning centered on being the secure enabler: an answer that delivers visibility, safety, and governance on the velocity of AI innovation.

Our analysis reveals that enterprises are struggling to get approvals from senior administration to deploy GenAI safety instruments. How are safety departments persuading their C-level executives to maneuver ahead?

Probably the most profitable CISOs are framing GenAI safety as a pure extension of current knowledge safety mandates, not an experimental price range line. They place it as defending the identical property, company knowledge, IP, and consumer belief, in a brand new, quickly rising channel.

What’s probably the most severe GenAI safety incident or near-miss you encountered whereas constructing Immediate Safety that actually drove dwelling how crucial these protections are? How did that incident form your product roadmap or go-to-market method?

The second that crystallized all the pieces for me occurred with a big, extremely regulated firm that launched a customer-facing GenAI assist agent. This wasn’t a sloppy experiment. They’d all the pieces the safety textbooks suggest: WAF, CSPM, shift-left, common purple teaming, a safe SDLC, the works. On paper, they have been doing all the pieces proper.

What they did not absolutely account for was that the AI agent itself had develop into a brand new, uncovered assault floor. Inside weeks of launch, a non-technical consumer found that by rigorously crafting the precise dialog circulation (not code, not exploits, simply pure language) they might prompt-inject the agent into revealing info from different prospects’ assist tickets and inner case summaries. It wasn’t a nation-state attacker. It wasn’t somebody with superior abilities. It was primarily a curious consumer with time and creativity. And but, via that single conversational interface, they managed to entry among the most delicate buyer knowledge the corporate holds.

It was each fascinating and terrifying: realizing how creativity alone might develop into an exploit vector.

That was the second I really understood what GenAI adjustments in regards to the risk mannequin. AI does not simply introduce new dangers, it democratizes them. It makes programs hackable by individuals who by no means had the talent set earlier than, compresses the time it takes to find exploits, and massively expands the harm radius as soon as one thing breaks. That incident validated our unique method, and it pushed us to double down on defending AI functions, not simply inner use. We accelerated work round:

• Runtime safety for customer-facing AI apps

• Immediate injection and context manipulation detection

• Cross-tenant knowledge leakage prevention on the mannequin interplay layer

It additionally reshaped our go-to-market. As a substitute of solely speaking about inner AI governance, we started displaying safety leaders how GenAI turns their customer-facing surfaces into high-risk, high-exposure property in a single day.

What’s your position and focus now that you just’re a part of SentinelOne? How has working inside a bigger platform firm modified what you are capable of construct in comparison with operating an unbiased startup? What bought simpler, and what bought more durable?

The main target now could be on extending AI safety throughout all the platform, bringing runtime GenAI safety, visibility, and coverage enforcement into the identical ecosystem that already secures endpoints, identities, and cloud workloads. The mission hasn’t modified; the attain has.

Finally, we’re constructing towards a future the place AI itself turns into a part of the protection material: not simply one thing to safe, however one thing that secures you.

The larger image

M&A exercise continues to speed up for GenAI startups which have confirmed they will scale to enterprise-level safety with out sacrificing accuracy or velocity. Palo Alto Networks paid $700 million for Defend AI. Tenable acquired Apex for $100 million. Cisco purchased Sturdy Intelligence for a reported $500 million. As Golan famous, the businesses that survive the following wave of AI-enabled assaults will probably be those who embedded safety into their AI adoption technique from the start.

Submit-acquisition, Immediate Safety’s capabilities will lengthen throughout SentinelOne’s Singularity Platform, together with MCP gateway safety between AI functions and greater than 13,000 identified MCP servers. Immediate Safety can be delivering model-agnostic protection throughout all main LLM suppliers, together with OpenAI, Anthropic, and Google, in addition to self-hosted or on-prem fashions as a part of the corporate’s integration into the Singularity Platform.

Source link

building Category feature Generative Golan Itamar prompt requires security security039s
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Apple iPad Air (2026) Review: More Power, Same Formula

March 9, 2026

Australians reach for VPNs, find porn sites blocked as online age-restrictions take effect | Technology News

March 9, 2026

Your next phone will cost more—and have less RAM: The hidden ‘AI Tax’ hitting India’s mid-range market | Technology News

March 9, 2026

King Charles’ New Security Measure to Hide Andrew Revealed

March 9, 2026
Add A Comment
Leave A Reply Cancel Reply

Editors Picks

India to include crypto assets in financial account reporting from 2026

March 9, 2026

Kristi Noem Gets ‘Reassigned Under The Bus’ In Brutal ‘SNL’ Goodbye Message

March 9, 2026

Dolly Parton, 80, Plans Wedding With Secret Lover Months After Loss

March 9, 2026

Apple iPad Air (2026) Review: More Power, Same Formula

March 9, 2026
Popular Post

Adolescence Star Owen Cooper Has Broken Barriers For My Hometown Of Warrington

Michael Milken says the Fed won’t move too early and risk massive inflation like the 1970s

Immuta updates its Data Security Platform for Databricks to strengthen AI workload protection

Subscribe to Updates

Get the latest news from JHB News about Bangalore, Worlds, Entertainment and more.

JHB News
Facebook X (Twitter) Instagram Pinterest
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • DMCA
© 2026 Jhb.news - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.