Cloud 101CircleEventsBlog
Our website will be down for scheduled maintenance on February 13th from 4:00 PM to 5:00 PM PST. We apologize for any inconvenience and appreciate your patience!

Download Publication

CSA Large Language Model (LLM) Threats Taxonomy
CSA Large Language Model (LLM) Threats Taxonomy

CSA Large Language Model (LLM) Threats Taxonomy

Release Date: 06/10/2024

Working Group: AI Safety Initiative

This document aims to align the industry by defining key terms related to Large Language Model (LLM) risks and threats. Establishing a common language reduces confusion, helps connect related concepts, and facilitates more precise dialogue across diverse groups. This common language will ultimately assist the advancement of Artificial Intelligence (AI) risk evaluation, AI control measures, and responsible AI governance. This taxonomy will also support additional research within the context of CSA’s AI Safety Initiative

Key Takeaways:
  • Define the assets that are essential for implementing and managing LLM/AI systems
  • Define the phases of the LLM lifecycle
  • Define potential LLM risks
  • Define the impact categories of LLM risks
Download this Resource

Bookmark
Share
Related resources
AI Organizational Responsibilities: AI Tools and Applications
AI Organizational Responsibilities: AI Tools an...
AI Risk Management: Thinking Beyond Regulatory Boundaries
AI Risk Management: Thinking Beyond Regulatory ...
AI Organizational Responsibilities - Governance, Risk Management, Compliance and Cultural Aspects
AI Organizational Responsibilities - Governance...
AI in Agriculture: Smarter Crops, Healthier Livestock, Better Yields
AI in Agriculture: Smarter Crops, Healthier Livestock, Better Yields
Published: 02/10/2025
Agentic AI Threat Modeling Framework: MAESTRO
Agentic AI Threat Modeling Framework: MAESTRO
Published: 02/06/2025
From 2024 to 2025: How These GRC Trends are Reshaping the Industry
From 2024 to 2025: How These GRC Trends are Reshaping the Industry
Published: 02/05/2025
Bias Testing for AI in the Workplace: Why Companies Need to Identify Bias Now
Bias Testing for AI in the Workplace: Why Companies Need to Identif...
Published: 02/05/2025
Cloudbytes Webinar Series
Cloudbytes Webinar Series
January 1 | Online

Acknowledgements

Dennis Xu
Dennis Xu
VP Analyst @ Gartner

Dennis Xu

VP Analyst @ Gartner

Rakesh Sharma
Rakesh Sharma
Security Architect

Rakesh Sharma

Security Architect

Avishah Bar
Avishah Bar
Senior Security Architect at CyberArk

Avishah Bar

Senior Security Architect at CyberArk

Michael Roza
Michael Roza
Risk, Audit, Control and Compliance Professional at EVC

Michael Roza

Risk, Audit, Control and Compliance Professional at EVC

Since 2012, Michael Roza has been a pivotal member of the Cloud Security Alliance (CSA) family. He has contributed to over 125 projects, as a Lead Author or Author/Contributor and many more as a Reviewer/Editor.
Michael's extensive contributions encompass critical areas including Artificial Intelligence, Zero Trust/Software Defined Perimeter, Internet of Things, Top Threats, Cloud Control Matrix, DevSecOps, and Key Management. H...

Read more

Are you a research volunteer? Request to have your profile displayed on the website here.

Interested in helping develop research with CSA?

Related Certificates & Training