Sarcouncil Journal of Engineering and Computer Sciences
Sarcouncil Journal of Engineering and Computer Sciences
An Open access peer reviewed international Journal
Publication Frequency- Monthly
Publisher Name-SARC Publisher
ISSN Online- 2945-3585
Country of origin-PHILIPPINES
Impact Factor- 3.7
Language- English
Keywords
- Engineering and Technologies like- Civil Engineering, Construction Engineering, Structural Engineering, Electrical Engineering, Mechanical Engineering, Computer Engineering, Software Engineering, Electromechanical Engineering, Telecommunication Engineering, Communication Engineering, Chemical Engineering
Editors

Dr Hazim Abdul-Rahman
Associate Editor
Sarcouncil Journal of Applied Sciences

Entessar Al Jbawi
Associate Editor
Sarcouncil Journal of Multidisciplinary

Rishabh Rajesh Shanbhag
Associate Editor
Sarcouncil Journal of Engineering and Computer Sciences

Dr Md. Rezowan ur Rahman
Associate Editor
Sarcouncil Journal of Biomedical Sciences

Dr Ifeoma Christy
Associate Editor
Sarcouncil Journal of Entrepreneurship And Business Management
Secure by Design: Architecting Enterprise AI with Comprehensive Access Control across RAG, Fine-tuning, and Data Interaction Systems
Keywords: Enterprise AI Security, Access Control Architecture, Retrieval-Augmented Generation, Fine-Tuning Protection, Data Interaction Safeguards.
Abstract: This article presents a comprehensive framework for securing enterprise AI systems across their entire lifecycle, with a focus on Retrieval-Augmented Generation (RAG), fine-tuning, and data interaction interfaces. The architecture advocates for a "protection by design" philosophy that embeds robust authorization controls into every layer of the AI stack. Beginning with secure data preparation and storage, the framework addresses vector database vulnerabilities through the use of authorization metadata, section-level classification, and encrypted embeddings. It then explores access-controlled retrieval pipelines that maintain protection boundaries during inference through identity propagation, permission-based query augmentation, and multi-stage retrieval processes. For model adaptation, the article details strategies for safeguarding training data and hardening fine-tuning pipelines to prevent the extraction of confidential information. Finally, it examines protection mechanisms for user interaction interfaces, including natural language query fortification and comprehensive audit capabilities. Throughout, the article emphasizes that effective AI security requires not merely perimeter defenses but deeply integrated protection measures that preserve functionality while maintaining strict confidentiality boundaries.
Author
- Junaid Syed
- Georgia Institute of Technology USA
- Zubair Atha
- Columbia University USA
- Bushra Aijaz
- Georgia Institute of Technology USA