Latest from todayInterviewVaillant CISO: NIS2 complexity and lack of clarity endanger its missionRaphael Reiß, CISO at EU HVAC giant Vaillant Group, explains what cyber challenges his industry faces, including how to operate in a complex regulatory environment.By Julia MutzbauerDec 8, 20255 minsComplianceData and Information SecurityLaws and Regulations How-To Empathetic policy engineering: The secret to better security behavior and awarenessBy Heiko RoßnagelNov 28, 20257 minsComplianceIT Skills and TrainingSecurityOpinion 3 ways CISOs can win over their boards this budget seasonBy Chris WheelerNov 20, 20257 minsBudgetingComplianceRisk Management OpinionBeyond the checklist: Shifting from compliance frameworks to real-time risk assessmentsBy Greg Neville Nov 12, 20257 minsComplianceRisk ManagementSecurity NewsOffice sandbox file security to disappear from enterprise Windows by late 2027, Microsoft confirms By John E. Dunn Nov 5, 20254 minsAnti MalwareComplianceSecurity Software FeatureComing AI regulations have IT leaders worried about hefty compliance finesBy Grant Gross Oct 16, 20257 minsComplianceGovernmentLaws and Regulations OpinionBeyond the checklist: Building adaptive GRC frameworks for agentic AIBy Adetunji Adebayo Oct 15, 20258 minsComplianceIT GovernanceRisk Management News AnalysisSalesforce AI agents set to assist enterprises with security and complianceBy Maria Korolov Oct 8, 20255 minsArtificial IntelligenceComplianceSecurity FeatureIs the CISO chair becoming a revolving door?By Aimee Chanthadavong Oct 7, 20258 minsCSO and CISOCareersCompliance ArticlesfeaturePressure on CISOs to stay silent about security incidents growingA recent survey found that 69% of CISOs have been told to keep quiet about breaches by their employers, up from 42% just two years ago.By John Leyden Sep 4, 2025 8 minsCSO and CISOComplianceData BreachnewsRelief for European Commission as court upholds EU Data Privacy Framework agreement with USLegal challenge by French MP rejected by the EU's General Court, but experts predict ruling will be appealed.By John E. Dunn Sep 3, 2025 5 minsComplianceLaws and RegulationsPrivacyfeatureHow AI is changing the GRC strategyCISOs find themselves at a pinch-point needing to manage AI risks while supporting organizational innovation. The way forward is adapting GRC frameworks.By Rosalyn Page Jul 17, 2025 11 minsComplianceIT GovernanceRisk Managementfeature7 obsolete security practices that should be terminated immediatelyBad habits can be hard to break. Yet when it comes to security, an outdated practice is not only useless, but potentially dangerous.By John Edwards Jul 16, 2025 7 minsAccess ControlComplianceIntrusion Detection SoftwareanalysisThird-party risk management: How to avoid compliance disasterIf third-party providers violate regulations, they expose their clients to a compliance risk. Third-party risk management (TPRM) is intended to help against this.By Sabine Frömling Jul 3, 2025 4 minsComplianceData BreachRisk ManagementopinionThe rise of the compliance super soldier: A new human-AI paradigm in GRCAI is reshaping GRC, demanding a new kind of archetype — forward-operating professionals who don't just manage governance; they engineer it.By Nikhil Sarnot Jun 27, 2025 9 minsComplianceGenerative AIIT GovernancenewsIBM combines governance and security tools to solve the AI agent oversight crisisWith AI agents multiplying across enterprises, IBM’s watsonx–Guardium integration aims to provide unified AgentOps visibility, automated red teaming, and regulatory accelerators to future-proof compliance.By Anirban Ghoshal Jun 20, 2025 5 minsArtificial IntelligenceComplianceSecurityopinionSecurity, risk and compliance in the world of AI agentsWhy autonomy demands a rethink of governance models.By Nikhil Sarnot Jun 17, 2025 13 minsArtificial IntelligenceComplianceIT GovernanceopinionUnmasking the silent saboteur you didn't know was running the showIf your system clocks are off, your entire cybersecurity stack is compromised. Time sync isn’t optional, it’s a critical security control.By Maman Ibrahim Jun 9, 2025 8 minsAccess ControlComplianceZero TrustfeatureHow to establish an effective AI GRC frameworkTo get the most from artificial intelligence without falling prey to the risks, your company must implement a governance, risk, and compliance (GRC) framework specific to AI. Here’s how to develop a corporate policy that works.By Bob Violino May 16, 2025 10 minsComplianceIT GovernanceRisk ManagementnewsNew data privacy act puts Indian companies on high alertWith the Digital Personal Data Protection Act set to become law soon, experts say there’s still a significant gap in awareness and implementation.By Nidhi Singal Apr 24, 2025 5 minsCompliancePrivacySecurityfeatureCIOs and CISOs take on NIS2: Key challenges, security opportunitiesBetween complexity, bureaucracy, and costs, NIS2 compliance has been a challenging journey for many IT leaders — and one that isn’t over. The next phase? Leveraging NIS2 to achieve a higher security posture.By Patrizia Licata Mar 14, 2025 10 minsComplianceData and Information SecurityLaws and Regulations Show more Show less View all Resources whitepaper How Agentic AI is Revolutionizing Tax and Compliance Analysts say the Agentic AI revolution is here. In this webcast from Avalara, experts from Avalara and IDC will explore a key use case for Agentic AI: Agentic Tax and Compliance. The post How Agentic AI is Revolutionizing Tax and Compliance appeared first on Whitepaper Repository –. By Avalara 25 Nov 2025Business OperationsCompliance View all Video on demand video Aligning security, compliance and privacy across inventory tracking Brad Wells, Executive Director, Information Security, and Kandice Samuelson, Senior Director, IT Governance at PPD lead a team enhancing PPD’s inventory tracking system that identifies PPD’s most valuable assets. Join us to learn how they distribute security resources for appropriate levels of protection, maintain compliance with government regulations and industry standards, and leverage information security controls aligned with client requirements, industry frameworks and privacy regulations. May 28, 2021 20 minsComplianceData and Information SecurityPrivacy How the California Consumer Privacy Act (CCPA) will affect you and your business | TECH(talk) Sep 6, 2019 23 mins ComplianceGovernmentPrivacy What the FTC’s $5 billion fine really means for Facebook | TECH(feed) Jul 16, 2019 3 mins ComplianceGovernmentTechnology Industry Facebook faces billions in potential fines | TECH(feed) Apr 30, 2019 3 mins Data BreachGovernmentTechnology Industry See all videos Explore a topicApplication SecurityBusiness ContinuityBusiness OperationsCareersCloud SecurityCritical InfrastructureCybercrimeIdentity and Access ManagementIndustryIT LeadershipNetwork SecurityPhysical SecurityPrivacyRisk ManagementView all topics Show me morePopularArticlesPodcastsVideos opinion Cybersecurity isn’t underfunded — It’s undermanaged By JC GaillardDec 11, 20257 mins C-SuiteCSO and CISOIT Strategy how-to How to justify your security investments By Chritstoph SchuhwerkDec 11, 20256 mins C-SuiteCSO and CISOIT Leadership news Fortinet admins urged to update software to close FortiCloud SSO holes By Howard SolomonDec 10, 20254 mins Access ControlIdentity and Access ManagementSingle Sign-on podcast CISO Reality: Record Pay, Rising Pressure, and Retention Risk By Joan GoodchildDec 10, 202527 mins CSO and CISOSecurity Infrastructure podcast Inside Visa’s Cyber Defense: CISO Subra Kumaraswamy on blending AI and Human Defense By Joan GoodchildDec 3, 202527 mins Artificial IntelligenceCSO and CISOPhishing podcast The Future of Cybersecurity Leadership: AI, Governance & Education | Kevin Powers, Boston College Nov 19, 202523 mins CyberattacksCybercrimeRisk Management video CISO Reality: Record Pay, Rising Pressure, and Retention Risk By Joan GoodchildDec 10, 202527 mins CSO and CISOSecurity Infrastructure video Inside Visa’s Cyber Defense: CISO Subra Kumaraswamy on blending AI and Human Defense By Joan GoodchildDec 3, 202527 mins Artificial IntelligenceCSO and CISOPhishing video The Future of Cybersecurity Leadership: AI, Governance & Education | Kevin Powers, Boston College Nov 19, 202523 mins CyberattacksCybercrimeRisk Management