ChaptersEventsBlog
Register for The Case for Agentic Teammates webinar Oct 28 to learn how agentic AI transforms the SOC.

Download Publication

CSA Large Language Model (LLM) Threats Taxonomy
CSA Large Language Model (LLM) Threats Taxonomy

CSA Large Language Model (LLM) Threats Taxonomy

Release Date: 06/10/2024

Working Group: AI Safety

This document aims to align the industry by defining key terms related to Large Language Model (LLM) risks and threats. Establishing a common language reduces confusion, helps connect related concepts, and facilitates more precise dialogue across diverse groups. This common language will ultimately assist the advancement of Artificial Intelligence (AI) risk evaluation, AI control measures, and responsible AI governance. This taxonomy will also support additional research within the context of CSA’s AI Safety Initiative

Key Takeaways:
  • Define the assets that are essential for implementing and managing LLM/AI systems
  • Define the phases of the LLM lifecycle
  • Define potential LLM risks
  • Define the impact categories of LLM risks
Download this Resource

Bookmark
Share
Related resources
Beyond the Hype: A Benchmark Study of AI Agents in the SOC
Beyond the Hype: A Benchmark Study of AI Agents...
Analyzing Log Data with AI Models to Meet Zero Trust Principles
Analyzing Log Data with AI Models to Meet Zero ...
Agentic AI Identity and Access Management: A New Approach
Agentic AI Identity and Access Management: A Ne...
AI-Integrated Cloud Pentesting: How LLMs Are Changing the Game
AI-Integrated Cloud Pentesting: How LLMs Are Changing the Game
Published: 10/24/2025
The Reasoning Revolution: When Logs Finally Explain "Why"
The Reasoning Revolution: When Logs Finally Explain "Why"
Published: 10/22/2025
Introducing TAISE: The Trusted AI Safety Expert Certificate
Introducing TAISE: The Trusted AI Safety Expert Certificate
Published: 10/22/2025
What to Know About the EU AI Code of Practice
What to Know About the EU AI Code of Practice
Published: 10/20/2025
Cloudbytes Webinar Series
Cloudbytes Webinar Series
January 1 | Virtual

Acknowledgements

Dennis Xu
Dennis Xu
VP Analyst @ Gartner

Dennis Xu

VP Analyst @ Gartner

Rakesh Sharma
Rakesh Sharma
Security Architect

Rakesh Sharma

Security Architect

David Gee
David Gee
CIO, CISO, Board Risk Advisor, Author & NED

David Gee

CIO, CISO, Board Risk Advisor, Author & NED

 David brings over 25 years of distinguished C-suite leadership to the boardroom, seamlessly blending cybersecurity expertise with strategic technology vision. His global career spans executive leadership, digital transformation, and risk governance across diverse markets and industries. Drawing from his operational experience at the highest levels, he brings invaluable perspective on technology strategy, cyber resilience, data/AI and ...

Read more

Avishah Bar
Avishah Bar
Senior Security Architect at CyberArk

Avishah Bar

Senior Security Architect at CyberArk

Michael Roza
Michael Roza
Risk, Audit, Control and Compliance Professional at EVC

Michael Roza

Risk, Audit, Control and Compliance Professional at EVC

Michael Roza is a seasoned risk, audit, control and compliance, and cybersecurity professional with over 20 years of experience across multinational enterprises and startups. As a Cloud Security Alliance (CSA) Research member for over 10 years, he has led and contributed to more than 140 CSA projects spanning Zero Trust, AI, IoT, Top Threats, DecSecOps, Cloud Key Management, Cloud Control Matrix, and many others.

He has co-chaired...

Read more

Are you a research volunteer? Request to have your profile displayed on the website here.

Interested in helping develop research with CSA?

Related Certificates & Training