See how Veeam / Securiti AI's public claims connect to security requirements and CSA AI Controls Matrix references.
What this page shows
Requirements connected to Veeam / Securiti AI's public claims
Only requirements with strong or limited public support appear. The framework references identify what to investigate; they do not establish implementation, conformance, certification, or product effectiveness.
Versionv1.1 (June 22, 2026)Current source
Related requirements11security questions in this research
Security requirements with public support8strong or limited public support
References63identifiers, clauses, safeguards, or categories
How to use this map
Framework connections help structure your evaluation
Each connection shows how a security requirement relates to this framework. Public vendor claims are shown separately, and deployed effectiveness still requires confirmation or testing.
Closely aligned
10
Contributes
1
Requirement connections
From Veeam / Securiti AI's public claims to questions to verify
Each row starts with a security requirement that has public support, then shows the connected framework references and the next question to verify.
Closely alignedSpecific reference
AI usage inventory
Maintain an inventory of AI tools, services, models, agents, software as a service (SaaS) AI capabilities, data flows, and provider relationships.
Framework references
DSP-03 · IAM-03 · STA-08 · UEM-04
Lifecycle
Govern · Identify · Monitor
Security requirements with public support
3 requirements with public support
Strong public supportUnapproved AI use discovery
Discover and monitor workforce AI tools, accounts, prompts, domains, models, users, and usage outside approved controls.
Public claims reviewed
1
Next question to verify
An unmanaged AI app used by a test user appears in discovery inventory with user, app or domain, and timestamp.
Review source claims →Strong public supportAI-feature discovery in business applications
Inventory software as a service (SaaS) applications that embed AI features, expose enterprise data to AI capabilities, or create AI-driven data movement.
Public claims reviewed
1
Next question to verify
A software as a service (SaaS) app with an embedded AI feature appears in the software as a service (SaaS) AI inventory with app, provider, and feature context.
Monitor approved AI workspaces, tenants, gateways, and model platforms such as ChatGPT Enterprise, Claude Enterprise, Gemini, Microsoft Copilot, Vertex AI, Elvex, or internal AI gateways.
Public claims reviewed
1
Next question to verify
Approved AI workspace activity appears with user, workspace or tenant, model or provider, and timestamp.
Monitor approved AI workspaces, tenants, gateways, and model platforms such as ChatGPT Enterprise, Claude Enterprise, Gemini, Microsoft Copilot, Vertex AI, Elvex, or internal AI gateways.
Public claims reviewed
1
Next question to verify
Approved AI workspace activity appears with user, workspace or tenant, model or provider, and timestamp.
Protect enterprise-built large language model (LLM) applications, retrieval-augmented generation (RAG) systems, prompts, application programming interfaces (APIs), model calls, tools, and production runtime behavior.
Public claims reviewed
1
Next question to verify
A test large language model (LLM) application event records prompt, application programming interface (API), model, retrieval, or tool interaction context.
Protect enterprise-built large language model (LLM) applications, retrieval-augmented generation (RAG) systems, prompts, application programming interfaces (APIs), model calls, tools, and production runtime behavior.
Public claims reviewed
1
Next question to verify
A test large language model (LLM) application event records prompt, application programming interface (API), model, retrieval, or tool interaction context.
Monitor approved AI workspaces, tenants, gateways, and model platforms such as ChatGPT Enterprise, Claude Enterprise, Gemini, Microsoft Copilot, Vertex AI, Elvex, or internal AI gateways.
Public claims reviewed
1
Next question to verify
Approved AI workspace activity appears with user, workspace or tenant, model or provider, and timestamp.
Secure large language model (LLM) applications, retrieval-augmented generation (RAG) systems, prompts, tool calls, application programming interfaces (APIs), model interactions, and runtime behavior.
Limited public supportGenerative AI application security
Protect enterprise-built large language model (LLM) applications, retrieval-augmented generation (RAG) systems, prompts, application programming interfaces (APIs), model calls, tools, and production runtime behavior.
Public claims reviewed
1
Next question to verify
A test large language model (LLM) application event records prompt, application programming interface (API), model, retrieval, or tool interaction context.
Maintain accountable AI inventory, policy, risk assessments, approvals, exceptions, regulatory mappings, third-party oversight, and audit evidence across the AI lifecycle.
Framework references
GRC-09 · STA-08 · LOG-16
Lifecycle
Govern · Identify · Assess · Approve · Monitor
Security requirements with public support
3 requirements with public support
Strong public supportAI governance, risk, and compliance
Inventory AI systems and owners, translate policy and regulatory obligations into governed workflows, assess risk, manage approvals and exceptions, and retain audit evidence across the AI lifecycle.
Public claims reviewed
1
Next question to verify
A test AI system is registered with owner, intended use, risk tier, lifecycle state, and applicable obligations.
Monitor approved AI workspaces, tenants, gateways, and model platforms such as ChatGPT Enterprise, Claude Enterprise, Gemini, Microsoft Copilot, Vertex AI, Elvex, or internal AI gateways.
Public claims reviewed
1
Next question to verify
Approved AI workspace activity appears with user, workspace or tenant, model or provider, and timestamp.
Review source claims →Strong public supportAI-feature discovery in business applications
Inventory software as a service (SaaS) applications that embed AI features, expose enterprise data to AI capabilities, or create AI-driven data movement.
Public claims reviewed
1
Next question to verify
A software as a service (SaaS) app with an embedded AI feature appears in the software as a service (SaaS) AI inventory with app, provider, and feature context.
Strong public supportAI-feature discovery in business applications
Inventory software as a service (SaaS) applications that embed AI features, expose enterprise data to AI capabilities, or create AI-driven data movement.
Public claims reviewed
1
Next question to verify
A software as a service (SaaS) app with an embedded AI feature appears in the software as a service (SaaS) AI inventory with app, provider, and feature context.
Secure trust, authorization, message flows, tool access, and communication between agents, tools, application programming interfaces (APIs), and external services.
Protect enterprise-built large language model (LLM) applications, retrieval-augmented generation (RAG) systems, prompts, application programming interfaces (APIs), model calls, tools, and production runtime behavior.
Public claims reviewed
1
Next question to verify
A test large language model (LLM) application event records prompt, application programming interface (API), model, retrieval, or tool interaction context.
Strong public supportAI-feature discovery in business applications
Inventory software as a service (SaaS) applications that embed AI features, expose enterprise data to AI capabilities, or create AI-driven data movement.
Public claims reviewed
1
Next question to verify
A software as a service (SaaS) app with an embedded AI feature appears in the software as a service (SaaS) AI inventory with app, provider, and feature context.
Attribute AI usage and spend to accountable owners, workflows, agents, models, and business units while enforcing budget, rate-limit, and routing controls.
Framework references
BCR-02 · GRC-02 · I&S-02 · LOG-14
Lifecycle
Govern · Operate · Optimize
Security requirements with public support
2 requirements with public support
Strong public supportApproved AI usage monitoring
Monitor approved AI workspaces, tenants, gateways, and model platforms such as ChatGPT Enterprise, Claude Enterprise, Gemini, Microsoft Copilot, Vertex AI, Elvex, or internal AI gateways.
Public claims reviewed
1
Next question to verify
Approved AI workspace activity appears with user, workspace or tenant, model or provider, and timestamp.
This page organizes research. Audit conclusions, certification assessments, control implementation statements, and vendor endorsements require separate evidence.