What is AI Detection and Response (AIDR)?
AI Detection and Response (AIDR) is a capability label for detecting, investigating, containing, and learning from security events involving AI systems or AI-enabled abuse. It can cover misuse of an AI application, compromise of identities or data connections, unsafe tool activity, and failures in controls around model use. It is not a universally standardized framework. NIST’s AI Risk Management Framework provides lifecycle risk-management context but does not define AIDR as a product category.
What is AI Detection and Response (AIDR) used for?
Security teams use AIDR to add AI-relevant telemetry to detection and response operations, investigate suspicious behavior, contain unsafe access to tools or data, preserve evidence, and feed lessons into engineering and governance. It should connect to incident-response processes with clear ownership and tested escalation paths. Its effectiveness depends on coverage, telemetry quality, response authority, and evidence handling.