IAPP Asia Forum 2026: Privacy | AI governance | Cybersecurity law
SINGAPORE
21-23 July
The API Crisis: Securing Agentic AI in Asia’s Fastest Growing Threat Surface
Wednesday, 22 July
14:45 - 15:45 SGT
Intermediate level
As the Asia‑Pacific region rapidly deploys agentic artificial intelligence across finance, government, healthcare and digital commerce, APIs have quietly become its most critical — and most exposed — control layer. Weak API governance, shadow APIs and inconsistent multi‑cloud controls have expanded opportunities for exploitation. APIs power data retrieval, workflow automation and multi‑cloud interoperability for AI agents, but also serve as targets for data theft, disruption of service and fraud. Insecure APIs are vulnerable to broken authentication, injection attacks, outdated versions and machine‑generated traffic that obscures malicious activity.
APAC markets exhibit fast‑moving digital expansion, heavy reliance on mobile ecosystems and varied regulatory requirements across borders, creating complex environments where visibility is limited and risk is unevenly distributed. This session will explore why APIs have become a risky failure point in APAC’s emerging AI ecosystem, examine real-world examples of API security failures and present concrete actions to harden controls and strengthen governance of AI‑driven data‑flows.
What you will learn:
• How to identify and assess API risk in AI‑driven environments.
• Practical techniques to strengthen API governance across multi‑cloud and cross‑border systems.
• How to reduce enterprise exposure to API risk in alignment with evolving APAC regu-latory expectations.
Moderator and speakers

Stephen Reynolds
CIPP/US
Partner, Privacy and Cybersecurity
McDermott Will & Schulte

Raktima Roy
International Finance Corporation, World Bank
Privacy and AI Counsel

Aruna Sharma
Global Head of Privacy and Regulatory Affairs
TikTok

Josh Lee Kok Thong
Managing Director, APAC
Future of Privacy Forum