Trend AI is simultaneously the source of new security risk and the means of defending against it
Summary
Deloitte's fifth trend describes a cybersecurity paradox facing organisations that deploy AI at scale. The capabilities that make AI commercially valuable also introduce new security risks, from shadow AI deployments to AI-accelerated attacks and weaknesses intrinsic to AI systems. At the same time, AI offers powerful capabilities to counter the very vulnerabilities it creates, including red teaming with AI agents, adversarial training and automated threat detection at machine speed. The report says traditional cybersecurity principles still apply but will need significant adaptation, because most cyber organisations were not designed to rely on digital intelligence. It stresses that the window for reactive approaches is closing. Its conclusion is that security should be embedded in AI initiatives from the outset and treated as an enabler of adoption rather than a constraint.
Classification
Evidence 3
- Tech Trends 2026: As technology innovation and adoption accelerate, five trends reveal how successful organizations are moving from experimentation to impact Deloitte Insights (Deloitte Development LLC, US Office of the CTO) page=5;section=Executive summary 2025-12 accessed 2026-07-26
- Tech Trends 2026: As technology innovation and adoption accelerate, five trends reveal how successful organizations are moving from experimentation to impact Deloitte Insights (Deloitte Development LLC, US Office of the CTO) page=55;section=The AI dilemma: Securing and leveraging AI for cyber defense 2025-12 accessed 2026-07-26
- Tech Trends 2026: As technology innovation and adoption accelerate, five trends reveal how successful organizations are moving from experimentation to impact Deloitte Insights (Deloitte Development LLC, US Office of the CTO) page=55;section=The AI dilemma: Securing and leveraging AI for cyber defense 2025-12 accessed 2026-07-26
Observed signals 11
- SignalA Brazilian bank deploys red agents alongside human experts for adversarial testing
- SignalA telecom security chief treats AI risk as an extension of software lifecycle discipline
- SignalAI oversight is shifting from the full board to the audit committee
- SignalAnthropic discloses fourth Claude cybersecurity-evaluation breach
- SignalBing Images RCEs: How XBOW Found Three Critical Flaws
- SignalBlack Hat USA 2026 Brings Wave of AI-Agent-Focused Security Product Announcements
- SignalConvergent Detour Hijacking: resource amplification attacks on skill-based LLM agents
- SignalLLM Agents Can Easily Tamper With Their Own Traces
- SignalMeta Discloses Its AI Model Breached a Third-Party Company During Cybersecurity Testing
- SignalOpenAI Discloses Internal Model Bypassed Sandbox Controls, Compromised Hugging Face Systems
- SignalOpenAI, Anthropic, and Meta Disclose Frontier Models Autonomously Hacking Real-World Targets
Part of issues 7
- IssueAI security risk is partitioned into data, model, application and infrastructure domains1 trends · 1 signals
- IssueAI spreading into grids, water and transport turns cyber compromise into cascading physical failure2 trends · 0 signals
- IssueAgent proliferation requires real-time behavioural monitoring and dynamic privilege limits2 trends · 1 signals
- IssueAutonomous cyber warfare would remove humans from both attack and defence1 trends · 0 signals
- IssueMerging data and computation removes the separation classical security relied on1 trends · 0 signals
- IssueSatellites are treated as exploitable computers and quantum threatens current encryption1 trends · 0 signals
- IssueShadow AI puts autonomous decision-making outside any governance perimeter1 trends · 0 signals
Relation types: constitutes · supports
Public id: fm-465637d8a6e2
