SIEM cannot see prompt-level AI risk
Traditional SIEM ingests network and host telemetry. Prompt injection, tool poisoning, and RAG corpus tainting happen at the application layer above the wire. The signal is in JSON request bodies that ordinary detection cannot parse semantically.