Angy Shavit-Dominguez shows how source-of-truth knowledge, clear rules, automation, and human review can accelerate security RFIs without sacrificing accuracy or oversight.
About Angy Shavit-Dominguez
Angy Shavit-Dominguez is an information security professional at DoubleVerify, where she works across security, privacy, and compliance, partnering closely with Legal and Privacy on enterprise customer assurance, vendor risk, contracting, and AI-related controls. Her work spans ISO/IEC 27001, ISO/IEC 27701, ISO/IEC 42001, and SOC 2 Type II, from program readiness and control evidence through customer-facing assurance. She builds practical AI workflows across security and legal operations, including RFI and RFP responses, contract and DPA review, security exhibit redlines, and other repeatable assurance tasks, so teams move faster without sacrificing accuracy or oversight.
What motivated you to join the AI Builders Global Conference?
Yes, genuinely so excited! AI Builders feels oriented toward people who are actually shipping workflows that change how work gets done, across industries. I joined because I wanted a community where a security practitioner building an internal agent is treated as a builder, not an edge case. My day job sits at the intersection of Legal, Product, Sales, and Security, and that's exactly the kind of cross-functional AI adoption this network seems built for.
What shaped your journey through technology and AI?
I work in Information Security at DoubleVerify, focused on security assurance: customer questionnaires, vendor reviews, privacy and security wording, and increasingly AI governance. My path into AI wasn't "I set out to become an AI engineer." It was practical. Enterprise deals kept stalling on the same security and AI questions, answered slightly differently every time. I started using AI tooling the way builders do, to encode our knowledge base, rules, and scripts so the repetitive work got faster without inventing answers that Legal can't stand behind. What inspired me was realizing AI is most useful in regulated work when it's paired with source-of-truth systems and human review, not when it replaces judgment. That problem, trustworthy automation for high-stakes content, is what pulled me deeper into building with AI.
Why automate enterprise security RFIs?
Because security RFIs are where trust gets negotiated and they're also where deals quietly die. I've lived the version where a questionnaire takes days of copy-paste, Slack threads, and legal review. I've also lived the version where an agent drafts from an approved knowledge base, marks new text for review, and leaves the hard calls, including controller versus processor, AI training, and SLAs, to humans. The second version isn't just faster, it's safer for the company and clearer for the customer. This topic matters to me because it shows a path for non-traditional builders: you don't need to fine-tune a model to create real leverage. You need a knowledge base, good rules, scripts, and discipline about what AI must never invent. If more teams adopt that pattern, AI stops being a risk theater slide and becomes operational advantage.
Who should be part of this discussion?
Security, privacy, GRC, and legal operations professionals who want to use AI without losing auditability; founders and product managers selling to enterprise who keep losing cycles to questionnaires and AI addenda; engineers and automation builders who want to see AI applied to messy real documents, not toy demos; and anyone mid-career pivoting into AI from a domain specialty. This conference rewards cross-industry builders, not only people with AI in their title.