It took the cyber industry decades to move from chasing the latest attacks to formulating the attack-agnostic enterprise security principles that DevSecOps and Security IT used to guide their efforts to secure modern enterprises – e.g. Zero Trust, Least Privilege, Assume Breach….. AI is in the process of reshaping enterprises and cyber security. The existing security principles will still be valid but will no longer be enough. And, we do not have decades to come up with the new ones! In this session we will explain the needs for and share the first draft of the proposed set of new security principles that will start your journey to securing the AI-enlightened enterprises – from understanding and enforcing The Intent, to the Least Agency Principles, to Preparing for Shift-Up and so on.