cybersecurity
Showing posts with label cybersecurity. Show all posts

Lenovo Targets AI Cybersecurity Gaps With Resilience Services

Friday, August 21, 2026


Artificial intelligence is giving businesses new ways to work, but it is also creating another cybersecurity challenge. Lenovo says 90% of IT leaders report gaps in their ability to defend against AI-driven threats, highlighting a growing concern for organizations adopting AI while managing increasingly complex technology environments.

For Philippine businesses, the issue extends beyond protecting computers and networks. Cyber incidents can affect customer data, business continuity, regulatory compliance, and the ability of employees to work. Lenovo is responding by expanding its Security Services portfolio, with a cyber resilience framework designed to give organizations a single point of accountability across security technologies, devices, services, and response operations.

The shift reflects an important change in how businesses approach cybersecurity. Having more security products does not necessarily make an organization more resilient if those products operate in disconnected environments and no single team is responsible for coordinating the response.

Why is cyber resilience becoming more important for Philippine businesses?

Cyber resilience refers to an organization's ability to prepare for, withstand, respond to, and recover from cyber incidents while continuing critical operations.

That distinction separates resilience from traditional cybersecurity. Preventing an attack remains important, but organizations also need plans for what happens when a threat gets through.

This is particularly relevant in the Philippines, where businesses across banking, healthcare, retail, business process outsourcing, education, and government increasingly depend on digital systems.

The country's National Cybersecurity Plan 2023–2028 identifies cyber resilience as a national priority. Organizations handling personal information also operate within data protection requirements overseen by the National Privacy Commission.

For companies, therefore, cybersecurity is no longer solely an IT concern. A serious incident can become a business continuity, privacy, compliance, and reputational issue at the same time.

What is the problem with having too many security tools?

Modern organizations can have multiple security products covering different parts of their environment.

One system may protect endpoints. Another monitors network activity. A separate platform manages identities, while another handles backup and recovery.

The problem arises when these tools, vendors, and teams do not work together effectively.

During a security incident, IT and security teams may have to determine which system detected the problem, who is responsible for responding, which vendor should be contacted, and how operations can be restored.

Lenovo's strategy is built around reducing that fragmentation through what it describes as a single accountable model.

The company says its expanded Security Services portfolio can help reduce system downtime by up to 50% and remediation costs by up to 40%. These are Lenovo's stated potential outcomes, rather than guarantees for every customer.

How is Lenovo changing its cybersecurity services?

Lenovo is expanding its Security Services portfolio around an end-to-end cyber resiliency framework.

The approach brings together several areas of security, including:
  • Identity and Access Management to control who can access systems and information
  • Data Protection to safeguard critical information
  • Extended Detection and Response (XDR) to identify and respond to threats across multiple security layers
  • Visibility and Risk Management to identify potential weaknesses
  • Security for AI to address risks associated with AI adoption

The company says the framework can also work with technology providers including Absolute, Cisco, Google, Microsoft, SentinelOne, and Veeam.

The objective is not simply to add another security layer. Instead, Lenovo wants to coordinate existing technologies and services through a more unified operating model.

That approach is increasingly relevant as companies add cloud applications, remote devices, AI tools, and other digital services to their environments.

What is Lenovo Security Services with Absolute?

One of the offerings Lenovo is introducing is Security Services with Absolute, described as a fully managed, end-to-end resilience service.

The service is designed to help maintain critical security controls across distributed workforces without placing additional operational demands on internal IT teams.

A key feature is automated recovery of essential security controls if they are disrupted. That can reduce the need for manual intervention and help organizations maintain consistent protection across their environments.

The service is supported by Lenovo's global 24/7/365 Security Operations Center (SOC).

A SOC is a centralized team responsible for monitoring an organization's technology environment, identifying suspicious activity, investigating threats, and supporting incident response.

For businesses without the resources to maintain a large internal security operation around the clock, managed SOC services can provide additional monitoring and specialist expertise.

What happens when a company laptop is lost or stolen?

Another part of Lenovo's strategy addresses a less dramatic but very practical cybersecurity problem: what happens when an employee's corporate laptop disappears.

Traditional endpoint security and management tools often rely on a device being powered on, connected, and able to communicate with the organization's systems.

Lenovo ThinkShield TraceLock, powered by Absolute Security, is designed to extend visibility and control when a device is disconnected or outside the normal reach of endpoint management.

According to Lenovo, the solution uses built-in cellular connectivity to allow IT teams to remotely locate, wake, and wipe supported devices.

That capability can be particularly relevant to organizations handling sensitive information. A missing laptop is not simply a hardware loss if it contains corporate documents, customer information, employee records, or other confidential data.

ThinkShield TraceLock became available beginning July 1, 2026, on select ThinkPad devices, according to Lenovo.

Why does AI create another cybersecurity challenge?

AI is changing the cybersecurity equation in two directions.

Businesses are using AI to automate tasks, analyze information, improve productivity, and support decision-making. At the same time, cybercriminals can use AI to make certain attacks more sophisticated, scalable, or difficult to identify.

This creates a moving target for security teams.

Organizations must protect not only traditional endpoints and networks, but also the data, identities, applications, and AI systems being incorporated into their operations.

That helps explain why AI security has become one of the components in Lenovo's broader cyber resiliency framework.

The challenge for businesses is finding a balance between adopting useful AI tools and establishing appropriate controls around access, data, privacy, monitoring, and incident response.

What does this mean for businesses adopting AI?

The bigger lesson is that cybersecurity cannot be treated as an afterthought to digital transformation.

A company that introduces AI tools, moves more operations to the cloud, or supports a distributed workforce also expands the number of systems and access points that need protection.

That makes integration and accountability increasingly important.

Lenovo's approach is one response to this problem, bringing hardware, security technologies, managed services, and technology partners into one operating model.

Industry analyst research cited by Lenovo from ISG Research also describes the company's Security Services as combining hardware trust, layered protection, and AI-enabled operations within a unified framework.

Lenovo has additionally received recognition in the 2026 Fortress Cybersecurity Awards in categories including cyber resilience, application security, and AI security.

These recognitions provide external context, but businesses evaluating cybersecurity services still need to assess whether a particular offering fits their own infrastructure, regulatory requirements, risk profile, and budget.

The business case for resilience

For Philippine organizations, the cybersecurity conversation is increasingly moving from "How do we stop attacks?" to "How quickly can we keep operating when something goes wrong?"

That is the core idea behind cyber resilience.

A strong resilience strategy combines prevention with detection, response, recovery, and business continuity. It also requires clear ownership when multiple technologies and service providers are involved.

As AI adoption accelerates, that coordination will become more important, not less.

For business leaders, the takeaway is straightforward: investing in cybersecurity is no longer only about buying another security tool. It is about making sure the organization's people, devices, data, and operations remain protected and recoverable when the unexpected happens.

As Philippine businesses pursue AI and digital transformation, cyber resilience is becoming a business capability rather than simply an IT function.
Read More

Saviynt Unveils AI Identity Security With Intent-Aware Runtime Authorization

Friday, June 26, 2026


As artificial intelligence moves beyond chatbots and into autonomous agents capable of making decisions and executing tasks, organizations are facing a new cybersecurity challenge: how do you control what AI agents are allowed to do in real time?

To address this growing concern, identity security company Saviynt has introduced new capabilities for its Identity Security for AI platform, including Intent-Aware Runtime Authorization (IARA), a technology designed to monitor and control AI agent behavior while actions are taking place. The latest enhancements also strengthen identity verification to help organizations reduce impersonation and fraud risks as AI adoption accelerates.

Why AI Agents Need a New Approach to Identity Security

AI agents are becoming increasingly capable of performing complex business tasks with minimal human intervention. From accessing company applications to interacting with APIs, databases, and other AI systems, these digital workers can complete thousands of actions within seconds.

While this creates significant productivity gains, it also introduces new security concerns.

Traditional identity and access management systems were designed primarily for human users and conventional software applications. They often rely on static permissions that may not accurately assess whether an AI agent's action is appropriate in a specific situation.

As enterprises deploy AI agents into production environments, organizations need security tools that evaluate access decisions dynamically rather than relying solely on predefined permissions.

Saviynt Introduces Intent-Aware Runtime Authorization

To meet this need, Saviynt has enhanced its Agent Access Gateway with Intent-Aware Runtime Authorization (IARA).

Rather than simply checking whether an AI agent has permission to perform a task, IARA evaluates several factors at the exact moment an action is requested, including:

  • The identity of the AI agent
  • The surrounding context
  • Organizational security policies
  • The agent's intended objective

If an action falls outside approved policies or appears inconsistent with its intended purpose, the system can immediately block the request while generating an audit record for security teams.

This runtime approach allows organizations to respond to AI behavior as it happens instead of relying solely on permissions granted beforehand.

Moving Beyond Static Access Controls

According to Vibhuti Sinha, Chief Product Officer at Saviynt, AI agents should now be viewed as a new category of enterprise identity.

"AI agents are becoming a new class of enterprise identity, autonomous, powerful, and capable of taking action across critical business systems."

He explained that Agent Access Gateway enables organizations to make security decisions at the point where AI actions occur.

"With IARA, organizations can move beyond static permissions and make access decisions based on what an agent is trying to do, why it is doing it, and whether that action should be allowed."

This approach aims to give enterprises greater confidence as they automate increasingly sensitive business processes.

How Runtime Authorization Protects Business Systems

One of the biggest challenges with AI agents is that technical authorization alone does not always guarantee appropriate behavior.

For example, a sales support AI may legitimately access customer relationship management (CRM) data to summarize a sales opportunity.

However, if that same AI suddenly attempts to export customer records, alter pricing information, or initiate customer communications without approval, organizations need a way to determine whether those actions align with the user's original intent.

Saviynt's runtime authorization engine is designed to identify these mismatches instantly and stop unauthorized actions before they can impact sensitive systems or data.

Expanded Governance Across the AI Ecosystem

Alongside runtime authorization, Saviynt has expanded governance capabilities throughout its broader Identity Security for AI platform.

Organizations can now manage:

Runtime access control for AI agents

Policies can evaluate and regulate AI agent behavior dynamically while tasks are being executed.

Tool and application permissions

Security teams can define both static and adaptive policies that determine which tools, applications, APIs, and resources AI agents are permitted to use.

AI delegation tracking

The platform can distinguish whether an AI agent is acting independently, operating on behalf of a human user, or carrying out requests from another AI agent, providing greater accountability across automated workflows.

These controls help organizations enforce least-privilege access while improving visibility into autonomous AI activity.

Stronger Identity Verification to Reduce AI-Driven Fraud

As AI-generated content and impersonation techniques become increasingly sophisticated, verifying human identities is also becoming more important.

To address this, Saviynt has introduced new identity verification capabilities directly within its platform.

The enhanced verification process includes:

  • Biometric scanning
  • Selfie photo verification
  • Liveness detection
  • Support for more than 4,000 government-issued identity documents across over 177 countries

These features are designed to strengthen identity assurance during certification processes while helping reduce impersonation, unauthorized access, and social engineering attacks.

Broader Integration Across Enterprise AI Platforms

Saviynt also continues to expand compatibility across enterprise AI ecosystems.

The latest release introduces additional native integrations with platforms including:

  • Microsoft Foundry
  • N8N
  • Snowflake Cortex

These integrations help organizations manage AI identities consistently across where agents are built, deployed, and interact with enterprise applications.

Addressing the Next Generation of AI Security Challenges

As organizations increasingly rely on autonomous AI systems, securing those systems will require more than traditional identity management.

By combining runtime authorization, AI governance, and advanced identity verification, Saviynt aims to help enterprises address two rapidly emerging security priorities: controlling AI agent behavior during execution and reducing the risk of identity impersonation.

As AI continues to reshape business operations, solutions that provide real-time visibility and policy enforcement are becoming essential for organizations seeking to innovate without compromising security.
Read More
...