CSAIChaptersEventsBlog
Learn how to uncover runtime risks, close governance gaps, and strengthen oversight. Register now for the June 9 webinar →

CSA Official Press Release

Published 06/08/2026

CSAI Foundation Announces RiskRubric V2 as the Next Key Milestone to Secure the Agentic Control Plane

CSAI Foundation Announces RiskRubric V2 as the Next Key Milestone to Secure the Agentic Control Plane

Deloitte Italy, PointGuardAI, and Tumeryk partner with CSA to evolve the reference framework for assessing the security of AI systems

SEATTLE – June 8, 2026 Cloud Security Alliance (CSA), the world's leading not-for-profit organization committed to AI, cloud, and Zero Trust cybersecurity education, today announced the upcoming launch of RiskRubric V2, the next key milestone in expanding the CSAI Foundation's capacity to deliver on its 2026 mission of Securing the Agentic Control Plane. 

RiskRubric V2, a systematic methodology to quantify AI model risk, will officially launch later this year. CSA is also pleased to announce partnerships with Deloitte Italy, PointGuardAI, and Tumeryk to lead the evolution of RiskRubric V2. Together, these organizations are helping advance a more transparent, evidence-based approach to evaluating AI systems.

“Today’s security leaders cannot secure the agentic era with yesterday's tools. We need an infrastructure that governs how autonomous AI agents identify themselves, what they are authorized to do, and how we trust them at scale,” said Jim Reavis, CEO and co-founder of the Cloud Security Alliance. “CSAI delivers exactly that through six integrated programs designed to embed trust, assurance, and risk intelligence into AI ecosystems. The upcoming launch of RiskRubric V2 is the next key milestone in CSAI’s mission and aims to  deliver a framework that measures the true boundary of modern AI systems, from models to autonomous control loops, without compromising reproducibility and transparency.”

RiskRubric is the Cloud Security Alliance’s evidence-based risk rating system for AI. RiskRubric V2 will include:

  • A multi-scanner ecosystem powered by independent evaluation partners: PointGuard, Deloitte Italy, and Tumeryk.

  • Expanded assessment coverage beyond AI Models to include MCP Servers.

  • Modernized evaluation pillars addressing emerging operational and autonomous AI risks.

  • A new Confidence Scoring model to provide greater transparency into assessment validation.

Dedicated to secure and trustworthy AI, CSAI is a global community advancing research, responsible AI education, and open frameworks that help AI scale with trust. As enterprises move from experimental AI to autonomous, agent-driven AI, the risk surface shifts from models alone to identity, authorization, orchestration, runtime behavior, and trust assurance across complex agent ecosystems. CSA is evolving from defining best practices to operating the trust infrastructure for the agentic ecosystem.

RiskRubric V2 will be available later in Q3 2026. Please visit https://riskrubric.ai./ for additional information. Learn more about the CSAI Foundation and how you can help shape the future of Agentic AI security.

About CSAI Foundation

CSAI is a 501(c)3 non-profit foundation launched by the Cloud Security Alliance, dedicated exclusively to AI security and safety. With a 2026 mission of Securing the Agentic Control Plane, CSAI delivers integrated programs spanning risk intelligence, operational best practices, professional and agent certification, executive collaboration, global assurance, and forward-looking research to govern the autonomous AI economy. Visit www.CSAI.foundation.

About Cloud Security Alliance

The Cloud Security Alliance (CSA) is the world’s leading not-for-profit organization committed to awareness, practical implementation, and credentialing of forward-looking cybersecurity topics, including AI, cloud, and Zero Trust. In an era where digital transformation drives business success, CSA stands as the global authority ensuring organizations can operate securely while harnessing cutting-edge technology. Through the 501(c)3 CSAI Foundation, volunteer-driven research, globally-accepted standards, and award-winning vendor-neutral education programs that unite varied associations, governments, chapters, and corporate members, CSA bridges the gap between innovation and pragmatic security execution. Visit CSA’s website to learn more.

Media Contact 

Blair Moreland

[email protected]

ZAG Communications for CSA

Share this content on your favorite social network today!

About Cloud Security Alliance

The Cloud Security Alliance is a not-for-profit organization with a mission to promote the use of best practices for providing security assurance within Cloud Computing, and to provide education on the uses of Cloud Computing to help secure all other forms of computing. The Cloud Security Alliance is led by a broad coalition of industry practitioners, corporations, associations and other key stakeholders. For further information, follow us on Twitter @cloudsa.

For press inquiries, email Zenobia Godschalk of ZAG Communications or reach her by phone at 650.269.8315.