{"id":60334,"date":"2026-03-18T16:00:00","date_gmt":"2026-03-18T16:00:00","guid":{"rendered":"https:\/\/www.microsoft.com\/en-us\/security\/blog\/?p=145844"},"modified":"2026-03-18T16:00:00","modified_gmt":"2026-03-18T16:00:00","slug":"observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/","title":{"rendered":"Observability for AI Systems: Strengthening visibility for proactive risk detection"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/wp-content\/uploads\/2026\/03\/MS_Actional-Insights_Adversarial-AI.png\" class=\"ff-og-image-inserted\"><\/div>\n<p class=\"wp-block-paragraph\">Adoption of Generative AI (GenAI) and agentic AI has accelerated from experimentation into real enterprise deployments. What began with copilots and chat interfaces has quickly evolved into powerful business systems that autonomously interact with sensitive data, call external APIs, connect to consequential tools, initiate workflows, and collaborate with other agents across enterprise environments. As these AI systems become core infrastructure, establishing clear, continuous visibility into how these systems behave in production can help teams detect risk, validate policy adherence, and maintain operational control.<\/p>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/learn.microsoft.com\/en-us\/security\/zero-trust\/sfi\/observability-ai-systems\">Observability<\/a> is one of the foundational security and governance requirements for AI systems operating in production. Yet many organizations don\u2019t understand the critical importance of observability for AI systems or how to implement effective AI observability. That mismatch creates potential blind spots at precisely the moment when visibility matters most.<\/p>\n<p class=\"wp-block-paragraph\">In February, Microsoft Corporate Vice President and Deputy Chief Information Security Officer, Yonatan Zunger, <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/02\/03\/microsoft-sdl-evolving-security-practices-for-an-ai-powered-world\/\">blogged about expanding Microsoft\u2019s Secure Development Lifecycle (SDL)<\/a> to address AI-specific security concerns. Today, we continue the discussion with a deep dive into observability as a necessity for the secure development of GenAI and agentic AI systems. <\/p>\n<p class=\"wp-block-paragraph\"><em>For additional context, read the <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/03\/09\/secure-agentic-ai-for-your-frontier-transformation\/\">Secure Agentic AI for Your Frontier Transformation<\/a> blog that covers how to manage agent sprawl, strengthen identity controls, and improve governance across your tenant.<\/em><\/p>\n<h2 class=\"wp-block-heading\" id=\"observability-for-ai-systems\">Observability for AI systems<\/h2>\n<p class=\"wp-block-paragraph\">In traditional software, client apps make structured API calls and backend services execute predefined logic. Because code paths follow deterministic flows, traditional observability tools can surface straightforward metrics like latency, errors, and throughput to track software performance in production.<\/p>\n<p class=\"wp-block-paragraph\">GenAI and agentic AI systems complicate this model. AI systems are probabilistic by design and make complex decisions about what to do next as they run. This makes relying on predictable finite sets of success and failure modes much more difficult. We need to evolve the types of signals and telemetry collected so that we can accurately understand and govern what is happening in an AI system.<\/p>\n<p class=\"wp-block-paragraph\">Consider this scenario: an email agent asks a research agent to look up something on the web. The research agent fetches a page containing hidden instructions and passes the poisoned content back to the email agent as trusted input. The email agent, now operating under attacker influence, forwards sensitive documents to unauthorized recipients, resulting in data exfiltration.<\/p>\n<p class=\"wp-block-paragraph\">In this example, traditional health metrics stay green: no failures, no errors, no alerts. The system is working exactly as designed\u2026 except a boundary between untrusted external content and trusted agent context has been compromised.<\/p>\n<p class=\"wp-block-paragraph\">This illustrates how AI systems require a unique approach to observability. Without insights into how context was assembled at each step\u2014what was retrieved, how it impacted model behavior, and where it propagated across agents\u2014there is no way to detect the compromise or reconstruct what occurred.<\/p>\n<p class=\"wp-block-paragraph\">Traditional monitoring, built around uptime, latency, and error rates, can miss the root cause here and provide limited signal for attribution or reconstruction in AI-related scenarios. This is an example of one of the new categories of risk that the SDL must now account for, and it is why Microsoft has incorporated enhanced AI observability practices within our secure development practices.<\/p>\n<h2 class=\"wp-block-heading\" id=\"traditional-observability-versus-ai-observability\">Traditional observability versus AI observability<\/h2>\n<p class=\"wp-block-paragraph\">Observability of AI systems means the ability to monitor, understand, and troubleshoot what an AI system is doing, end-to-end, from development and evaluation to deployment and operation.&nbsp;Traditional services treat inputs as bounded and schema-defined. In AI systems, input is assembled context. This includes natural language instructions plus whatever the system pulls in and acts on, such as system and developer instructions, conversation history, outputs returned from tools, and retrieved content (web pages, emails, documents, tickets).<\/p>\n<p class=\"wp-block-paragraph\">For AI observability, context is key: capture which input components were assembled for each run, including source provenance and trust classification, along with the resulting system outputs.<\/p>\n<p class=\"wp-block-paragraph\">Traditional observability is often optimized for request-level correlation, where a single request maps cleanly to a single outcome, with correlation captured inside one trace. In AI systems, dangerous failures can unfold across many turns. Each step looks harmless until the conversation ramps into disallowed output, as we\u2019ve seen in multi-turn jailbreaks like <a href=\"https:\/\/arxiv.org\/abs\/2404.01833\">Crescendo<\/a>.<\/p>\n<p class=\"wp-block-paragraph\">For AI observability, best practices call for propagating a stable conversation identifier across turns, preserving trace context end-to-end, so outcomes can be understood within the full conversational narrative rather than in isolation. This is \u201cagent lifecycle-level correlation,\u201d where the span of correlation should be the same as the span of persistent memory or state within the system.<\/p>\n<h2 class=\"wp-block-heading\" id=\"defining-ai-system-observability\">Defining AI system observability<\/h2>\n<p class=\"wp-block-paragraph\">Traditional observability is built on logs, metrics, and traces. This model works well for conventional software because it\u2019s optimized around deterministic, quantifiable infrastructure and service behavior such as availability, latency, throughput, and discrete errors.<\/p>\n<p class=\"wp-block-paragraph\">AI systems aren\u2019t deterministic. They&nbsp;evaluate natural language inputs and return probabilistic results that can differ subtly (or significantly) from execution to execution. Logs, metrics, and traces still apply here, but what gets captured within them is different. Observability for AI systems updates traditional observability to capture AI-native signals.<\/p>\n<p class=\"wp-block-paragraph\">Logs, metrics, and traces indicate what happened in the AI system at runtime.<\/p>\n<ul class=\"wp-block-list\">\n<li class=\"wp-block-list-item\"><strong>Logs capture data about the interaction: <\/strong>request identity context, timestamp, user prompts and model responses, which agents or tools were invoked, which data sources were consulted, and so on. This is the core information that tells you what happened. User prompts and model responses are often the earliest signal of novel attacks before signatures exist, and are essential for identifying multi-turn escalation, verifying whether attacks changed system behavior, adjudicating safety detections, and reconstructing attack paths. User-prompt and model-response logs can reveal the exact moment an AI agent stops following user intent and starts obeying attacker-authored instructions from retrieved content.<\/li>\n<li class=\"wp-block-list-item\"><strong>Metrics<\/strong> measure traditional performance details like latency, response times, and errors as well as AI-specific information such as token usage, agent turns, and retrieval volume. This information can reveal issues such as unauthorized usage or behavior changes due to model updates.<\/li>\n<li class=\"wp-block-list-item\"><strong>Traces<\/strong> capture the end-to-end journey of a request as an ordered sequence of execution events, from the initial prompt through response generation. Without traces, debugging an agent failure means guessing which step went wrong.<\/li>\n<\/ul>\n<p class=\"wp-block-paragraph\">AI observability also incorporates two new core components: evaluation and governance.<\/p>\n<ul class=\"wp-block-list\">\n<li class=\"wp-block-list-item\"><strong>Evaluation<\/strong> measures response quality, assesses whether outputs are grounded in source material, and evaluates whether agents use tools correctly. Evaluation gives teams measurable signals to help understand agent reliability, instruction alignment, and operational risk over time.<\/li>\n<li class=\"wp-block-list-item\"><strong>Governance<\/strong> is the ability to measure, verify, and enforce acceptable system behavior using observable evidence. Governance uses telemetry and control plane mechanisms to ensure that the system supports policy enforcement, auditability, and accountability.<\/li>\n<\/ul>\n<p class=\"wp-block-paragraph\">These key components of observability give teams improved oversight of AI systems, helping them ship with greater confidence, troubleshoot faster, and tune quality and cost over time. &nbsp;<\/p>\n<h2 class=\"wp-block-heading\" id=\"operationalizing-ai-observability-through-the-sdl\">Operationalizing AI observability through the SDL<\/h2>\n<p class=\"wp-block-paragraph\">The SDL provides a formal mechanism by which technology leaders and product teams can operationalize observability. The following five steps can help teams implement observability in their AI development workflows.<\/p>\n<ol class=\"wp-block-list\">\n<li class=\"wp-block-list-item\"><strong>Incorporate<\/strong> <strong>AI<\/strong> <strong>observability<\/strong> <strong>into<\/strong> <strong>your<\/strong> <strong>secure<\/strong> <strong>development<\/strong> <strong>standards.<\/strong> Observability standards for GenAI and agentic AI systems should be codified requirements within your development lifecycle; not discretionary practices left to individual teams.<\/li>\n<li class=\"wp-block-list-item\"><strong>Instrument<\/strong> <strong>from<\/strong> <strong>the<\/strong> <strong>start<\/strong> <strong>of<\/strong> <strong>development.<\/strong> Build AI-native telemetry into your system at design time, not after release. Aligning with industry conventions for logging and tracing, such as OpenTelemetry (OTel) and its <a href=\"https:\/\/opentelemetry.io\/docs\/specs\/semconv\/gen-ai\/\">GenAI semantic conventions<\/a>, can improve consistency and interoperability across frameworks. For implementation in agentic systems, use platform-native capabilities such as <a href=\"https:\/\/learn.microsoft.com\/en-us\/azure\/foundry\/observability\/concepts\/trace-agent-concept\">Microsoft Foundry agent tracing<\/a> (in preview) for runtime trace diagnostics in Foundry projects. For Microsoft Agent 365 integrations, use the OTel-based <a href=\"https:\/\/learn.microsoft.com\/en-us\/microsoft-agent-365\/admin\/monitor-agents\">Microsoft Agent 365 Observability SDK<\/a> (in Frontier preview) to emit telemetry into Agent 365 governance workflows.<\/li>\n<li class=\"wp-block-list-item\"><strong>Capture<\/strong> <strong>the<\/strong> <strong>full context.<\/strong> Log user prompts and model responses, retrieval provenance, what tools were invoked, what arguments were passed, and what permissions were in effect. This detail can help security teams distinguish a model error from an exploited trust boundary and enables end-to-end forensic reconstruction. What to capture and retain should be governed by clear data contracts that balance forensic needs against privacy, data residency, retention requirements, and compliance with legal and regulatory obligations, with access controls and encryption aligned to enterprise policy and risk assessments.<\/li>\n<li class=\"wp-block-list-item\"><strong>Establish<\/strong> <strong>behavioral<\/strong> <strong>baselines<\/strong> <strong>and<\/strong> <strong>alert<\/strong> <strong>on<\/strong> <strong>deviation.<\/strong> Capture normal patterns of agent activity\u2014tool call frequencies, retrieval volumes, token consumption, evaluation score distributions\u2014through <a href=\"https:\/\/learn.microsoft.com\/en-us\/azure\/azure-monitor\/fundamentals\/overview\">Azure Monitor<\/a> and <a href=\"https:\/\/learn.microsoft.com\/en-us\/azure\/azure-monitor\/app\/app-insights-overview\">Application Insights<\/a> or similar services. Alert on meaningful departures from those baselines rather than relying solely on static error thresholds.<\/li>\n<li class=\"wp-block-list-item\"><strong>Manage enterprise AI agents. <\/strong>Observability alone cannot answer every question. Technology leaders need to know how many AI agents are running, whether those agents are secure, and whether compliance and policy enforcement are consistent. Observability, when coupled with unified governance, can support improved operational control. <a href=\"https:\/\/learn.microsoft.com\/en-us\/azure\/foundry\/control-plane\/overview?view=foundry\">Microsoft Foundry Control Plane<\/a>, for example, consolidates inventory, observability, compliance with organization-defined AI guardrail policies,&nbsp;and security into one role-aware interface; <a href=\"https:\/\/www.microsoft.com\/en-us\/microsoft-agent-365\">Microsoft Agent 365<\/a> (in Frontier preview) provides tenant-level governance in the Microsoft 365 admin plane.<\/li>\n<\/ol>\n<p class=\"wp-block-paragraph\">To learn more about how Microsoft can help you manage agent sprawl, strengthen identity controls, and improve governance across your tenant, read the <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/03\/09\/secure-agentic-ai-for-your-frontier-transformation\/\">Secure Agentic AI for Your Frontier Transformation<\/a> blog.<\/p>\n<h2 class=\"wp-block-heading\" id=\"benefits-for-security-teams\">Benefits for security teams<\/h2>\n<p class=\"wp-block-paragraph\">Making enterprise AI systems observable transforms opaque model behavior into actionable security signals, strengthening both proactive risk detection and reactive incident investigation.<\/p>\n<p class=\"wp-block-paragraph\">When embedded in the SDL, observability becomes an engineering control. Teams define data contracts early, instrument during design and build, and verify before release that observability is sufficient for detection and incident response. Security testing can then validate that key scenarios such as indirect prompt injection or tool-mediated data exfiltration are surfaced by runtime protections and that logs and traces enable end-to-end forensic reconstruction of event paths, impact, and control decisions. &nbsp;<\/p>\n<p class=\"wp-block-paragraph\">Many organizations already deploy inference-time protections, such as&nbsp;<a href=\"https:\/\/learn.microsoft.com\/en-us\/azure\/foundry\/guardrails\/guardrails-overview\">Microsoft Foundry guardrails and controls.<\/a> Observability complements these protections, enabling fast incident reconstruction, clear impact analysis, and measurable improvement over time. Security teams can then evaluate how systems behave in production and whether controls are working as intended.<\/p>\n<p class=\"wp-block-paragraph\">Adapting traditional SDL and monitoring practices for non-deterministic systems doesn\u2019t mean reinventing the wheel. In most cases, well-known instrumentation practices can be simply expanded to capture AI-specific signals, establish behavioral baselines, and test for detectability. Standards and platforms such as OpenTelemetry and Azure Monitor can support this shift.<\/p>\n<p class=\"wp-block-paragraph\">AI observability should be a release requirement. If you cannot reconstruct an agent run or detect trust-boundary violations from logs and traces, the system may not be ready for production.<\/p>\n<p> READ MORE <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2026\/03\/18\/observability-ai-systems-strengthening-visibility-proactive-risk-detection\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>As AI systems grow more autonomous, observability becomes essential. Learn how visibility into AI behavior helps detect risk and strengthen secure development.<br \/>\nThe post Observability for AI Systems: Strengthening visibility for proactive risk detection appeared first on Microsoft Security Blog. READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[276],"tags":[],"class_list":["post-60334","post","type-post","status-publish","format-standard","hentry","category-microsoft-secure"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Observability for AI Systems: Strengthening visibility for proactive risk detection 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Observability for AI Systems: Strengthening visibility for proactive risk detection 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2026-03-18T16:00:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/wp-content\/uploads\/2026\/03\/MS_Actional-Insights_Adversarial-AI.png\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"9 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Observability for AI Systems: Strengthening visibility for proactive risk detection\",\"datePublished\":\"2026-03-18T16:00:00+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/\"},\"wordCount\":1765,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.microsoft.com\\\/en-us\\\/security\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/03\\\/MS_Actional-Insights_Adversarial-AI.png\",\"articleSection\":[\"Microsoft Secure\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/\",\"name\":\"Observability for AI Systems: Strengthening visibility for proactive risk detection 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.microsoft.com\\\/en-us\\\/security\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/03\\\/MS_Actional-Insights_Adversarial-AI.png\",\"datePublished\":\"2026-03-18T16:00:00+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.microsoft.com\\\/en-us\\\/security\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/03\\\/MS_Actional-Insights_Adversarial-AI.png\",\"contentUrl\":\"https:\\\/\\\/www.microsoft.com\\\/en-us\\\/security\\\/blog\\\/wp-content\\\/uploads\\\/2026\\\/03\\\/MS_Actional-Insights_Adversarial-AI.png\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Observability for AI Systems: Strengthening visibility for proactive risk detection\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Observability for AI Systems: Strengthening visibility for proactive risk detection 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/","og_locale":"en_US","og_type":"article","og_title":"Observability for AI Systems: Strengthening visibility for proactive risk detection 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2026-03-18T16:00:00+00:00","og_image":[{"url":"https:\/\/www.microsoft.com\/en-us\/security\/blog\/wp-content\/uploads\/2026\/03\/MS_Actional-Insights_Adversarial-AI.png","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"9 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Observability for AI Systems: Strengthening visibility for proactive risk detection","datePublished":"2026-03-18T16:00:00+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/"},"wordCount":1765,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/#primaryimage"},"thumbnailUrl":"https:\/\/www.microsoft.com\/en-us\/security\/blog\/wp-content\/uploads\/2026\/03\/MS_Actional-Insights_Adversarial-AI.png","articleSection":["Microsoft Secure"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/","url":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/","name":"Observability for AI Systems: Strengthening visibility for proactive risk detection 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/#primaryimage"},"thumbnailUrl":"https:\/\/www.microsoft.com\/en-us\/security\/blog\/wp-content\/uploads\/2026\/03\/MS_Actional-Insights_Adversarial-AI.png","datePublished":"2026-03-18T16:00:00+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/#primaryimage","url":"https:\/\/www.microsoft.com\/en-us\/security\/blog\/wp-content\/uploads\/2026\/03\/MS_Actional-Insights_Adversarial-AI.png","contentUrl":"https:\/\/www.microsoft.com\/en-us\/security\/blog\/wp-content\/uploads\/2026\/03\/MS_Actional-Insights_Adversarial-AI.png"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/observability-for-ai-systems-strengthening-visibility-for-proactive-risk-detection\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Observability for AI Systems: Strengthening visibility for proactive risk detection"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/60334","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=60334"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/60334\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=60334"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=60334"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=60334"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}