Logo
Cybersecurity

Your Incident Response Team Has an AI Problem to Rehearse

Security teams already know how to investigate compromised accounts and suspicious endpoints. AI systems introduce evidence, failure modes and containment decisions that many teams haven’t practised yet.

ITSEC AsiaITSEC Asia
|
Okt 07, 2026
Your Incident Response Team Has an AI Problem to Rehearse

An AI assistant connected to internal data starts returning information it shouldn’t reveal.

What does the incident responder collect first?

Traditional evidence still matters, but the investigation may also require prompts, model outputs, retrieval sources, system instructions, access permissions and records of actions taken through connected tools. Disabling an endpoint won’t necessarily answer what the model accessed or what information it produced.

Recent workforce data suggests many teams haven’t rehearsed that situation.

ISACA’s 2026 State of Cybersecurity research, based on more than 1,800 cybersecurity professionals globally, found that only 8% of organizations regularly conduct AI specific response exercises. The same research found that 45% see LLM SecOps as a skills gap, up 12 percentage points from 2025 and 21 points from 2024. ISACA

AI security is becoming operational work rather quickly.

AI Changes the Evidence

NIST convened an AI Incident Management Workshop in May because a new class of incidents is emerging as AI systems become embedded in critical infrastructure, cybersecurity and other operational environments. Its work covers incident definitions, lifecycles, taxonomies, existing playbooks and gaps in current cybersecurity guidance. NIST

For security practitioners, that means knowing what evidence exists around an AI system.

Depending on the implementation, responders may need to examine:

  • Prompts, outputs and conversation histories
  • Retrieval sources and data accessed by the system
  • Model and application configuration
  • Identity and permission records
  • Connected APIs, tools and automated actions
  • Monitoring data before and after abnormal behaviour
  • Human approvals or interventions

The investigation may involve cybersecurity, AI engineering, data, privacy and business teams simultaneously.

That’s quite a crowd for an incident nobody has rehearsed.

Containment Gets More Complicated Too

Suppose an AI agent can read documents, send messages and update a business application. Suspicious behaviour appears.

Should the organization disable the entire system? Remove one tool permission? Restrict access to certain data? Roll back a configuration? Keep the system running in a reduced mode so investigators can observe it?

Those are technical and business decisions.

ISACA reports that cybersecurity teams are already becoming more involved in AI itself. Fifty-one percent of respondents said they or their teams were involved in developing, onboarding or implementing AI solutions, compared with 40% in 2025 and 29% in 2024. ISACA

The people responsible for security therefore need experience responding to failures in systems they increasingly help deploy.

Put the AI Incident Into the Exercise

A useful exercise could start with a simulated AI assistant that suddenly retrieves confidential information outside its expected scope.

Participants receive logs, prompts, access records and system configurations. They must determine what happened, establish the possible blast radius, preserve evidence and decide how to contain the system without unnecessarily stopping the business process.

Then complicate it.

Perhaps the AI has already called another application. Maybe its output was copied by a user before the alert appeared. Perhaps the original behaviour can’t immediately be reproduced.

Exercises like these fit naturally into hands on learning at ITSEC Cyber & AI Academy, where AI and cybersecurity skills can be developed through scenarios that require investigation and decisions rather than passive familiarity with terminology.

If the first AI incident exercise happens during the first real AI incident, the training schedule has slipped rather badly.

Explore practical cybersecurity and AI training at ITSEC Cyber & AI Academy.

References

  1. ISACA, “Only 8 Percent of Organizations Conduct Regular AI-Specific Response Exercises, ISACA Research Finds,” 22 September 2026
  2. NIST, “NIST Workshop on AI Incident Management,” created 31 March 2026, updated 27 May 2026
Share this post

You may also like

A SOC Can’t Detect What It Never Learned to See
Cybersecurity

A SOC Can’t Detect What It Never Learned to See

A security alert arrives. An analyst opens it, checks the surrounding activity and begins reconstructing what happened. That sounds like the beginning of detection work. In reality, a considerable amount of work happened earlier. Someone decided which events should be logged, configured the systems to produce them, collected those records centrally and made sure the data contained enough detail to support an investigation. If that work is poor, even an excellent analyst is starting with missing pages. An upcoming ITU cybersecurity exercise in Dushanbe makes this dependency unusually explicit. During the three day program from 21 to 23 September 2026, teams will configure centralized monitoring and telemetry collection before responding to simulated ransomware, data exfiltration, server compromise and command and control traffic. The methodology has a catch: performance against attacks on Day 3 depends on the monitoring participants configured on Day 2. That’s a useful model for SOC training. VISIBILITY IS A SKILL SOC development often concentrates on the visible part of the job: analysing alerts, threat hunting and incident response. Those capabilities

ITSEC AsiaITSEC Asia
|
Sep 17, 2026 — 3 minutes read
Web Application Penetration Testing Explained: Why Applications Remain a Top Target for Attackers
Cybersecurity

Web Application Penetration Testing Explained: Why Applications Remain a Top Target for Attackers

Web applications have become the foundation of digital business. From customer portals and online banking platforms to e-commerce systems and internal business applications, organizations rely on web technologies to deliver services and create seamless user experiences. Unfortunately, attackers rely on them too. Because web applications are often exposed to the internet and handle sensitive information, they remain one of the most attractive targets for cybercriminals. This is why Web Application Penetration Testing has become an essential part of a modern cybersecurity strategy. WHAT IS WEB APPLICATION PENETRATION TESTING? Web Application Penetration Testing is a security assessment designed to identify and validate vulnerabilities within web applications before malicious actors can exploit them. Unlike automated vulnerability scanning, penetration testing simulates real-world attack techniques to understand how weaknesses could affect an organization's confidentiality, integrity and availability. The objective is not simply to discover vulnerabilities but to determine their actual impact. WHY ARE WEB APPLICATIONS FREQUENTLY TARGETED? Attackers are constantly searching for exposed applications because they often provide direct access to valuable assets. SENSITIVE DATA Web applications commonly process: * Customer

ITSEC AsiaITSEC Asia
|
Jun 15, 2026 — 5 minutes read
Indonesia’s Cybersecurity Talent Problem Is Becoming a Skills Problem
Cybersecurity

Indonesia’s Cybersecurity Talent Problem Is Becoming a Skills Problem

cybersecurity indonesia
cyber security indonesia
cybersecurity di indonesia
cyber security di indonesia
cybersecurity in indonesia
cyber security in indonesia

Indonesia needs more cybersecurity professionals. That part is obvious. What is becoming less obvious is whether the real problem is still about numbers. The 2026 SANS | GIAC Cybersecurity Workforce Research Report found that 60% of surveyed organizations said their teams lacked the right skills to defend against current threats. More concerning, 27% reported breaches directly linked to capability gaps. That changes the conversation. A company can have a security team, a dashboard full of alerts and a stack of expensive tools. The harder question is whether the people behind them know what to do when something unusual happens. CYBERSECURITY WORK IS MOVING FAST Artificial intelligence is making that question harder. AI can already help with alert analysis, vulnerability prioritization and repetitive investigation tasks. Attackers can use the same technology to make attacks faster and easier to scale. In August 2026, Vice Minister of Communication and Digital Affairs Nezar Patria warned that agentic AI could allow cyberattacks to operate with less direct human involvement. He also highlighted threats such as harvest

ITSEC AsiaITSEC Asia
|
Sep 01, 2026 — 3 minutes read

Receive weekly
updates on new posts

Subscribe