GOVERNGUARD · AI SECURITY & GOVERNANCE
AI Governance, Engineered.
I’m Vasan Kidambi (VK), an AI security architect working with CISOs and security leaders at regulated enterprises and defense organizations. GovernGuard pairs the two halves of AI risk that rarely meet: running the governance program — NIST AI RMF, the EU AI Act, ISO/IEC 42001 — and engineering the guardrails that make it real in production.
Currently writing about how AI guardrails get tested, not just documented.
NIST AI RMF · EU AI Act · ISO/IEC 42001 · LLM guardrails · AI risk & GRC engineering
Latest insights
-
Is AI Security Certification Worth It? An Expert’s 2025 Take
ChatGPT’s release marked a turning point two years ago, unleashing generative AI and fundamentally changing the digital world. These AI…
-
Navigating Generative AI Governance: Best Practices
In a rapidly evolving AI landscape, only 5% of organizations report a mature, responsible, Generative AI governance program. Meanwhile, 27%…
-
Harnessing AI in Cyber Security: Revolutionizing Protection Strategies
Sam Altman, the CEO of OpenAI, believes we’re entering a new era called the AI revolution. He says the next…
The work
Standing up AI governance programs, assessing where they actually stand, building the guardrails that enforce them, and running the program from the inside. See how I work →
Reference implementation
soc-triage-agent is a defensive AI agent that triages SOC identity alerts, paired with the governance layer that controls it. Deterministic guardrails, complete tool mediation, fail-closed human approval, and a control matrix mapped to OWASP LLM Top 10, MITRE ATLAS and NIST AI RMF. A validator fails when the governance drifts from the code. Apache-2.0 on GitHub.