Cybersecurity News in Asia

RECENT STORIES:

SEGA moves faster with flow-based network monitoring
CyberDSA 2026 Draws Global Cyber Leaders for High-Level Talks on AI, D...
The 3rd GTI Forum on Digital Intelligence, Hong Kong Advances Global I...
Nearly Half of Reported Scam Incidents Go Unresolved Across Southeast ...
Futurise Impact Report 2025 Highlights Progress in Regulatory Innovati...
As more AI agents go rogue, a chief scientist issues a timely warning
LOGIN REGISTER
CybersecAsia
  • Features
    • Featured

      The recovery-first approach to data resilience

      The recovery-first approach to data resilience

      Monday, September 7, 2026, 4:21 PM Asia/Singapore | Features
    • Featured

      Dealing with agentic AI governance and resilience challenges

      Dealing with agentic AI governance and resilience challenges

      Tuesday, September 1, 2026, 11:51 AM Asia/Singapore | Features
    • Featured

      How well do you know your agent?

      How well do you know your agent?

      Thursday, August 20, 2026, 3:21 PM Asia/Singapore | Features
  • Opinions
  • Tips
  • Whitepapers
  • AWARDS 2026
  • Directory
  • E-Learning

Select Page

Tips

Securing the AI ecosystem: The next frontier for APAC enterprises

By Kevin O’Leary, Head of Security & Resiliency and Network & Edge, Kyndryl ASEAN | Friday, December 12, 2025, 6:35 AM Asia/Singapore

Securing the AI ecosystem: The next frontier for APAC enterprises

AI adoption has reached an inflection point in enterprise infrastructure, and securing the AI ecosystem is now the new cybersecurity frontier for organizations.

Just as virtualization transformed compute and cloud-redefined networks, AI is now woven into the fabric of enterprise systems.

Yet this rapid integration has created a new class of vulnerabilities across AI infrastructure – spanning models, data pipelines, and orchestration environments. Each component, if unprotected, can become a potential entry point for compromise, demanding a fresh approach to resilience and governance.

Kyndryl’s 2025 Readiness Report underscores the urgency: only 31% of organizations globally say they are “completely ready” to manage external business risks. Even more concerning, 60% of leaders admit they struggle to keep pace with the velocity of technological change.

This readiness gap exposes enterprises to cascading risks — not only from traditional cyberthreats, but from AI-assisted attacks that can adapt, learn, and automate compromise at scale.

The AI-enabled threat landscape

The security community has long accepted that automation benefits both sides of the battlefield. Threat actors are now integrating LLM-driven reconnaissance, adaptive phishing, and model-based intrusion techniques into their toolkits. Adversaries can generate polymorphic malware, automate vulnerability discovery, and even manipulate datasets to evade detection.

Across APAC, Kyndryl and industry partners have observed the emergence of AI-assisted “campaign frameworks” — reusable malicious models capable of generating spear-phishing content, modifying payloads in real time, and orchestrating multi-stage attacks without human intervention.

For defenders, the response must be equally algorithmic. Security operations centers (SOCs) are beginning to integrate AI-driven telemetry correlation, drift detection, and automated containment into their pipelines. However, securing AI itself — the models, training data, inference APIs, and orchestration systems — remains an unfilled gap in most organizations’ architectures.

From compliance to continuous assurance

Securing AI cannot rely on legacy compliance frameworks. Enterprises must embed secure-by-design principles throughout the AI lifecycle — Singapore’s Guidelines on Securing AI Systems (2024) from data acquisition to model decommissioning offer a globally relevant framework that technical leaders across APAC can adapt.

At a minimum, organizations should operationalize six lifecycle controls:

  1. Ownership and Risk Profiling: Assign accountable owners for every model, classify risk by data sensitivity and criticality.
  2. Data & Model Hygiene: Apply encryption, enforce separation between training and production, implement access controls at dataset and model layers.
  3. Adversarial Testing: Conduct “red team” simulations to detect model poisoning, prompt injection, or bias exploitation.
  4. Visibility and Bill of Materials: Maintain a model and software bill of materials (MBOM/SBOM) to trace every dependency and library version.
  5. Runtime Observability: Log inference requests and outputs, monitor anomalies, and flag deviations in model behavior.
  6. Incident Response and Retirement: Integrate AI systems into existing IR playbooks and securely decommission outdated models.

These practices shift AI security from a compliance checklist to an engineering discipline — one grounded in visibility, automation, and iterative assurance.

APAC’s distinct challenge: hybrid complexity

For APAC enterprises, securing AI is further complicated by hybrid architectures. Organizations in Singapore, Malaysia, Indonesia, and the Philippines commonly operate multi-cloud and edge deployments across jurisdictions with varying data sovereignty rules. According to Kyndryl’s Readiness Report, 44% of global leaders are reevaluating data-governance policies, 41% are considering data repatriation, and 65% of organizations have made changes to their cloud strategies in response to new geopolitical pressures.

Each of these shifts expands the AI threat surface: training data stored across jurisdictions, models deployed on the edge, and vendors integrated into supply chains. The result is a mesh of interdependent risks that require consistent governance frameworks and real-time telemetry correlation.

To close these gaps, enterprises must invest in end-to-end observability that connects cloud workloads, data pipelines, and AI endpoints for real-time correlation. Security and governance policies should be codified through Infrastructure as Code and ModelOps, ensuring consistency across hybrid environments. At the same time, zero-trust principles must extend to model APIs and inference layers, while AI-specific threat-intelligence sharing across industries and regions becomes essential to anticipate emerging exploits.

Cyber resilience as a board and engineering imperative

The CISO’s remit is expanding beyond data protection to include model integrity and algorithmic reliability. Modern incident-response plans must now account for scenarios like model drift, prompt leakage, or training-data compromise. The metrics of resilience are evolving, too — from MTTR (Mean Time to Recovery) for systems to MTTM (Mean Time to Mitigate) for AI incidents.

As Singapore’s recent breach of critical infrastructure revealed, cyber resilience must integrate governance, engineering, and operations. Technical teams should partner with compliance, HR, and finance to conduct joint readiness drills — because AI incidents will not respect departmental silos.

The road ahead: building secure AI infrastructures

AI will be embedded into every layer of enterprise infrastructure — from network optimization to predictive maintenance. For APAC organizations, the imperative is clear: secure the models before they secure the market.

In a hyper-connected region defined by diverse regulatory environments and fast-moving digital ecosystems, resilience depends on engineering discipline. The frontier of cybersecurity is no longer just the perimeter or supply chain — it is the model layer itself.

Enterprises that catalog, test, monitor, and govern their AI assets as rigorously as their codebases will be the ones that thrive. Because in the age of intelligent automation, the only sustainable advantage is secure intelligence.

Share:

PreviousFescaro sees rising demand for automotive cybersecurity solutions
NextJust when we thought AI-powered IDEs were invaluable…

Related Posts

More businesses targeted by ransomware in the past year: study

More businesses targeted by ransomware in the past year: study

Monday, August 23, 2021

First autonomous agentic attack documented in Australia

First autonomous agentic attack documented in Australia

Tuesday, August 11, 2026

Bad actors in the unreal world – a growing threat to businesses

Bad actors in the unreal world – a growing threat to businesses

Tuesday, July 12, 2022

Three interesting cyber threat trends spotted in June 2023

Three interesting cyber threat trends spotted in June 2023

Tuesday, August 8, 2023

Leave a reply Cancel reply

You must be logged in to post a comment.

Voters-draw/RCA-Sponsors

Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
Slide
previous arrow
next arrow

CybersecAsia Voting Placement

Gamification listing or Participate Now

PARTICIPATE NOW

Vote Now -Placement(Google Ads)

Top-Sidebar-banner

Whitepapers

  • Critical Security Threatsand the Need for ZTNA: How evolving cyberattacks demand a Zero Trust approach

    Critical Security Threatsand the Need for ZTNA: How evolving cyberattacks demand a Zero Trust approach

    Cyber threats have become more frequent and sophisticated, targeting organizations of all sizes across all …Download Whitepaper
  • Zero Trust Made Simple: Why it matters and how to get started

    Zero Trust Made Simple: Why it matters and how to get started

    Data breaches and cyberattacks are no longer limited to large, high-profile organizations.Download Whitepaper
  • Cloud Secure Edge: Remote access, better security

    Cloud Secure Edge: Remote access, better security

    ​SonicWall Cloud Secure Edge™ is a modern, cloud-native Security Service Edge (SSE) solution that addresses …Download Whitepaper
  • Closing the Gap in Email Security:How To Stop The 7 Most SinisterAI-Powered Phishing Threats

    Closing the Gap in Email Security:How To Stop The 7 Most SinisterAI-Powered Phishing Threats

    Insider threats continue to be a major cybersecurity risk in 2024. Explore more insights on …Download Whitepaper

Middle-sidebar-banner

Case Studies

  • How a Vietnamese D2C retailer built its own secure digital infrastructure

    How a Vietnamese D2C retailer built its own secure digital infrastructure

    Would your organization build your own digital infrastructure – including AI governance and cybersecurity – …Read more
  • Cyber protection for medical clinics in Singapore

    Cyber protection for medical clinics in Singapore

    As Singapore’s healthcare sector becomes increasingly digital and interconnected, clinics are facing heightened cyber risks, …Read more
  • India’s WazirX strengthens governance and digital asset security

    India’s WazirX strengthens governance and digital asset security

    Revamping its custody infrastructure using multi‑party computation tools has improved operational resilience and institutional‑grade safeguardsRead more
  • Bangladesh LGED modernizes communication while addressing data security concerns

    Bangladesh LGED modernizes communication while addressing data security concerns

    To meet emerging data localization/privacy regulations, the government engineering agency deploys a secure, unified digital …Read more

Bottom sidebar

Other News

  • CyberDSA 2026 Draws Global Cyber Leaders for High-Level Talks on AI, Digital Trust and Critical Infrastructure

    Friday, September 11, 2026
    Minister of Digital Malaysia YB …Read More »
  • The 3rd GTI Forum on Digital Intelligence, Hong Kong Advances Global Inclusive AI Development

    Thursday, September 10, 2026
    HONG KONG, Sept. 10, 2026 …Read More »
  • Nearly Half of Reported Scam Incidents Go Unresolved Across Southeast Asia, Undermining Digital Trust, New GSMA Findings Reveal

    Wednesday, September 9, 2026
    Two new GSMA reports launched …Read More »
  • Futurise Impact Report 2025 Highlights Progress in Regulatory Innovation Future-Ready Technologies

    Wednesday, September 9, 2026
    CYBERJAYA, Malaysia, Sept. 9, 2026 …Read More »
  • Parseur Achieves SOC 2 Type II Compliance with Oneleet, Strengthening Enterprise-Grade Security for AI Document Processing

    Tuesday, September 8, 2026
    AI document processing platform serving …Read More »
  • Our Brands
  • DigiconAsia
  • MartechAsia
  • Home
  • About Us
  • Contact Us
  • Sitemap
  • Privacy & Cookies
  • Terms of Use
  • Advertising & Reprint Policy
  • Media Kit
  • Subscribe
  • Manage Subscriptions
  • Newsletter

Copyright © 2026 CybersecAsia All Rights Reserved.