Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Prof Hernan Huwyler, MBA CPA

@hewyler@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

#GRC professional for global companies. #MBA #CPA #BA. #Management #CorpGov #ERM #RiskManagement #Compliance #GDPR #Audit #Fraud #SAP #FCPA #IFRS

0 Followers
0 Following
5 Posts
Joined November 20, 2022
#InfoSec:
Information security
Open post
Prof Hernan Huwyler, MBA CPA @hewyler@infosec.exchange
· 3mo ago
Learn how to build a production-ready policy engine for AI agents. This guide covers runtime governance, path-aware enforcement, progressive rollout strategies, and real code examples. Stop relying on prompts alone,enforce safety, compliance, and trust with architectural controls that actually work. https://hernanhuwyler.wordpress.com/2026/06/27/how-to-build-a-policy-engine-for-ai-agents-without-losing-control/?utm_source=mastodon&utm_medium=jetpack_social
How to Build a Policy Engine for AI Agents Without Losing Control
AI Governance and Risk Management

How to Build a Policy Engine for AI Agents Without Losing Control

Relying on system prompts to govern enterprise AI agents is a dangerous gamble. In this article, I share how to build a deterministic, path-aware policy engine that intercepts agent actions before …

0
0
0
0
Open post
Prof Hernan Huwyler, MBA CPA @hewyler@infosec.exchange
· 2mo ago
Your Vendor’s “We Don’t Train On Your Data” Promise Is a Sentence, Not A Data Architecture Why the real exposure in generative, predictive, and agentic AI contracts lives in fine-tuning, logs, and retrieval, not in the one line everyone quotes back to legal Every procurement team has now heard the sentence. A vendor says it, a sales deck repeats it, and somebody on the buying side writes it into the approval memo as if it closes the risk. https://hernanhuwyler.wordpress.com/2026/07/21/your-vendors-we-dont-train-on-your-data-promise-is-a-sentence-not-a-data-architecture/?utm_source=mastodon&utm_medium=jetpack_social
Your Vendor’s “We Don’t Train On Your Data” Promise Is a Sentence, Not A Data Architecture
AI Governance and Risk Management

Your Vendor’s “We Don’t Train On Your Data” Promise Is a Sentence, Not A Data Architecture

Hearing “we don’t train on your data” gives buyers a false sense of security. In this article, I break down why that single vendor promise fails to protect fine-tuning weights, RA…

0
0
0
0
Open post
Prof Hernan Huwyler, MBA CPA @hewyler@infosec.exchange
· 2mo ago
Move past trusting model reasoning. The 2026 standard for agentic AI is consequence correctness. Stop hope-based automation and implement a runtime control chain that stops critical failures, like duplicate payments and prompt injection, before they hit your system of record. https://hernanhuwyler.wordpress.com/2026/07/28/the-seven-gates-every-ai-agent-must-clear-before-it-can-act-and-most-skip-at-least-three/?utm_source=mastodon&utm_medium=jetpack_social
The Seven Gates Every AI Agent Must Clear Before It Can Act (And Most Skip at Least Three)
AI Governance and Risk Management

The Seven Gates Every AI Agent Must Clear Before It Can Act (And Most Skip at Least Three)

Your AI agent can reason perfectly and still execute a catastrophic error. I built an execution framework with seven strict gates to bridge the gap between decision logic and actual consequences. C…

0
0
0
0
Open post
Prof Hernan Huwyler, MBA CPA @hewyler@infosec.exchange
· 2mo ago
Most AI security audits miss 70% of the attack surface. Training data, prompt pipelines, model weights, and agentic tool calls are #AI's real battleground. Free open-source #threatmodeling toolkit for engineers and architects: https://github.com/hwyler/ai-threat-modeling-toolkit https://hernanhuwyler.wordpress.com/2026/07/30/a-practical-guide-for-engineers-architects-and-governance-teams-who-need-to-get-it-right/?utm_source=mastodon&utm_medium=jetpack_social
GitHub

GitHub - hwyler/ai-threat-modeling-toolkit: Open-source catalog and assessment toolkit mapping 77 AI vulnerabilities to 49 threat vectors across predictive, generative, and agentic AI systems.

Open-source catalog and assessment toolkit mapping 77 AI vulnerabilities to 49 threat vectors across predictive, generative, and agentic AI systems. - hwyler/ai-threat-modeling-toolkit

0
0
0
0
Open post
Prof Hernan Huwyler, MBA CPA @hewyler@infosec.exchange
· 2mo ago
Article 50 wasn't delayed. High-risk systems were. Your chatbot disclosure, content watermarking, and deepfake labels are due Sunday, August 2, 2026, with fines up to €15M or 3% of global revenue. #EUAIAct #AICompliance #AITransparency #Article50 #AIGovernance https://hernanhuwyler.wordpress.com/2026/08/03/the-eu-ai-acts-transparency-rules-just-went-live/?utm_source=mastodon&utm_medium=jetpack_social
The EU AI Act’s Transparency Rules Just Went Live
AI Governance and Risk Management

The EU AI Act’s Transparency Rules Just Went Live

I am sharing why a compliance officer stood down her Article 50 work in July, convinced the whole AI Act had been delayed, only to find the transparency deadline still landed on August 2 with fifte…

0
0
1
1
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 08:02:42 UTC