AI blind spots are strengthening cybersecurity, operational security, and third-party security‑Risk to parties increases as adoption accelerates
Menlo Park, California, May 7, 2026 /PRNewswire/ — As artificial intelligence becomes embedded across core business functions, many organizations still lack a clear understanding of where and how AI is being used across the enterprise. According to a new study from a global consulting firm, Protivitialmost Half (47%) of large organizations report that they don’t fully understand how their employees are using AI tools.challenges related to cybersecurity, governance, and operational risk are increasing.
The survey results are available below. 4th Protiviti AI Pulse SurveyThis article, titled “No Visibility, No Trust,” examines how executives, board members, and IT leaders are managing AI adoption, monitoring, and risk as its use expands across the enterprise and into third-party platforms.
AI adoption outpaces monitoring and governance
The study reveals a widening gap between the pace of AI adoption and an organization’s ability to effectively manage it.
- 47% of large organizations lack complete visibility Deploy it to the AI tools your employees use.
- 65% report challenges with “shadow AI” If the system is installed or used without proper monitoring.
- only 4 out of 10 organizations A formal AI governance framework is in place. Even within large organizations, 1 in 3 people lack a formal frameworkemphasizes that resources alone do not guarantee effective monitoring.
Research shows that organizations with formal AI governance frameworks in place report:
- Improved visibility into AI usage
- higher reliability In managing AI-related risks
- AI enhances cyber and operational threat awareness at the executive level
“Organizations can’t manage what they can’t see.” Sameer Ansari, CISO Solutions Global Lead, Protiviti. “As AI becomes more deeply embedded throughout the enterprise, leaders are often making decisions based on an incomplete picture. This lack of visibility makes it significantly harder to secure systems, strengthen governance, and build trust in AI-powered outcomes.”
Visibility gaps expose organizations to higher cyber and operational risks
The study also revealed: Disconnect between executives and IT teams When assessing AI-related risks:
- Nearly half (45%) of IT leaders believe AI has significantly increased cyber risk, compared to less than one in three (30%) executives and board members.
IT teams that are close to using AI on a daily basis are more likely to identify gaps beyond their internal systems, such as: Vendor platforms, embedded AI tools, and a third.‑party service. These blind spots can slow decision-making, delay investment in controls, and limit an organization’s ability to respond quickly to emerging AI-driven threats.
As AI scales, visibility and control must scale with it.
As organizations move beyond early experiments and use AI to have a greater impact on customers, financial processes, and other critical elements of their business; Increased scalable governance, accountability, and continuous AI tool monitoring.
“As AI penetrates deeper into business processes and third-party ecosystems, organizations must rethink and strengthen their controls,” Ansari said. “Companies that invest early in governance, transparency, and accountability will be in a much better position to safely scale AI, respond to threats, and maintain long-term value.”
methodology
of Protiviti AI Pulse Survey It was carried out in February 2026 Contains answers from approx. 345℃‑Suite executives, board members, and IT leaders Across our global organization. This is the fourth time this survey has been conducted. Ongoing series of investigations Designed to assess the evolving landscape of AI, it examines how companies are addressing AI-related cybersecurity, governance, and resilience challenges.
Protiviti also AI Governance FAQ Guide. It provides a cross-functional, practical perspective on the governance of AI systems and data, while also addressing broader implications across compliance, cybersecurity, finance, people and culture, customer experience, operations, internal audit, and board oversight.
About Protiviti
Protiviti (www.protiviti.com) is a global consulting firm that helps clients transform and protect their businesses and respond to planned and unplanned events. Through a network of more than 90 offices in more than 25 countries, Protiviti and its independent, locally owned member firms provide deep expertise and customized capabilities across technology, artificial intelligence, data, operations, finance, legal, compliance, human resources, marketing, digital, risk and internal audit, enabling organizations to accelerate innovation, avoid risk and protect what matters most.
A Fortune 100 Best Companies to Work For® list since 2015, Protiviti Inc. has served more than 80 percent of Fortune 100 companies and nearly 80 percent of Fortune 500 companies. The company also works with government agencies and small growing businesses, including those seeking to go public. Protiviti Inc. is a wholly owned subsidiary of Robert Half (NYSE: RHI).
Source Protiviti

