
















Welcome to the second Cloud CISO Perspectives for February 2026. Today, Royal Hansen, vice-president, Engineering, explains how we tackle today’s thorniest cybersecurity challenges.
As with all Cloud CISO Perspectives, the contents of this newsletter are posted to the Google Cloud blog. If you’re reading this on the website and you’d like to receive the email version, you can subscribe here.
By Royal Hansen, vice-president, Engineering

We’re in the midst of a generational refactoring of the entire technology stack, and 2025 was the year AI moved to the forefront of the cybersecurity agenda. It’s clear that as 2026 progresses, the game is changing for both attackers and defenders. It’s an exciting — and daunting — time to be in our industry.
To help support the cybersecurity community, Google Cloud hosts quarterly, free, online Security Talks that bring together security leaders and practitioners to hear from Google and industry experts. Our newest Security Talks takes a deep dive into how Google approaches the thorniest of today’s security challenges, from understanding the threat landscape, to managing AI infrastructure risks, to building a resilient security strategy for the future.
The rapidly-evolving AI threat landscape
Threat actors have been experimenting with AI and are incorporating it into their operations, as John Hultquist discussed earlier this month. Adversaries are using AI to automate and enhance their operations, treating it like software development or knowledge work.
The most concerning developments are:
Foundational risks to AI infrastructure
Fundamentally, the risk of losing control of AI infrastructure goes beyond launch processes and software development processes because it’s about more than just writing software. It's about business processes that could lead to where you might lose control of how AI is being used in any one of those steps — and that makes it an issue of governance.
Google is working on controls to manage key risks to AI generally. These include evaluating:
Google's defense strategy and AI agents
We’ve had a lot to say about defense and AI, and how we’re using agents to boost the defender’s daily workflow. Agentic AI is transforming traditional security operations, as agents combine advanced AI models with security tools. They have started to identify, reason through, and take actions to accomplish goals on behalf of defenders.
These capabilities mark a fundamental shift, where agents work alongside security teams and give human analysts more time to focus on challenges that truly demand their expertise. Using agents in the security operations center (SOC) is a key goal of how we’re innovating with AI, and you’ll continue to see more related offerings throughout 2026.
Some areas where we can highlight that work so far include:
Learn more about how Google does security
Over the past year, we’ve pulled back the curtain on how Google approaches critical security topics, including implementing AI red teams, finding and fixing software vulnerabilities, using threat intelligence to track down cybercriminals, modernizing threat modeling, and building security programs at a global scale.
To learn more, you can check out all of the new Security Talks presentations here.
Here are the latest updates, products, services, and resources from our security teams so far this month:
Please visit the Google Cloud blog for more security stories published this month.
Please visit the Google Cloud blog for more threat intelligence stories published this month.
To have our Cloud CISO Perspectives post delivered twice a month to your inbox, sign up for our newsletter. We’ll be back in a few weeks with more security-related updates from Google Cloud.
此内容由惯性聚合(RSS阅读器)自动聚合整理,仅供阅读参考。 原文来自 — 版权归原作者所有。