PARTNERS

Add selected Workbench capabilities through bounded OEM and partner integrations

DEF-01

What Defend Changes

Defend reduces dangerous authority, strengthens control boundaries, and converts remediation into retestable system changes.

capability plane

INPUTSQualified risk contextQualified paths andfailuresDangerous authoritycompositionWeak trust andpolicy boundariesUncertainty andresidual riskENGINEDefendReduceunnecessaryauthorityStrengthenapproval andpolicy gatesSegment data andaction pathsRedesign unsafeworkflowtransitionsRESULTSRetestable system changeImplementedcontrolNamedimplementationownerRetest criteriaExpected proofartifact

About this figure

Defend changes the system by reducing unnecessary authority, tightening approval and policy gates, and separating data paths from action paths so unsafe transitions are redesigned instead of merely patched. It starts from a qualified risk context and traces qualified paths, failures, and residual uncertainty to identify where dangerous authority is composed and where trust boundaries are too weak. The result is a retestable system change: an implemented control with a named owner, explicit retest criteria, and an expected proof artifact that demonstrates the remediation actually holds under replay.

Embed in a route

<FigureFromSource sourcePath="content/publications/figures/platform/defend.dsl.md" figureId="DEF-01" />

Citation

What Defend Changes (DEF-01). AI Security LLC Figure Library. https://aisecurity.llc/publication-dsl/figures/DEF-01