Governance, Risk & Compliance
C1 Adds Autonomous Worker to Automate Identity Governance Tasks
C1 (formerly known as ConductorOne) this week added an autonomous artificial intelligence (AI) agent to its identity governance platform that cybersecurity teams can assign tasks to complete. Kevin Paige, field CISO for ...
Security Boulevard
France to Stop Certifying Products Without Quantum-Safe Encryption in 2027
Regulations are being put in place by countries, but preparation by companies is lagging. The French government reportedly will stop certifying cybersecurity products that don’t include post-quantum cryptography (PQC) starting in 2027, ...
Security Boulevard
TISAX
What is TISAX? TISAX (Trusted Information Security Assessment Exchange) is the information security assessment and exchange mechanism developed specifically for the automotive industry. It was created by the German Association of the ...
Data Storage vs Data Processing: The Distinction Engineers Miss (And Why Compliance Depends on It)
Most engineers think about data storage and data processing as one technical problem. Regulators treat them as two very different things, and the gap between those views is where compliance violations quietly ...
How You Actually Secure Systems: Using OWASP and NIST Together
OWASP and NIST get mentioned in the same breath, but they answer different questions. One tells you what to fix in your code; the other tells you how to run a security ...
Futurum Group Report Sees Cybersecurity Spending Reaching $521.7B by 2031
The global cybersecurity market is projected to reach $521.7 billion by 2031 at a 7.6% compound annual growth rate (CAGR) from an estimated $335.8 billion in spending that occurred in 2025, according ...
Security Boulevard
CISOs need decision-grade risk intelligence, not another workflow
In large enterprises, the hardest security decisions are rarely made in the SOC. They are made in board meetings, budget reviews, audit discussions, customer escalations. The most dire are often represented in ...
CERT-In’s 12-Hour Patch Mandate: Is Your Organisation Ready to Respond at AI Speed?
Vinugayathri Chinnasamy | | AppTrana, CERT-In, Compliance, SwyftComply, virtual patching, Vulnerability Management, Vulnerability Remediation
CERT-In just published a risk-based remediation framework that resets expectations for every organisation operating in India. The timelines are worth reading twice: Internet-facing known exploited vulnerabilities (KEV): contain or remediate within 12 hours Critical externally exposed. The post ...
Why Most SAR Audits Fail to Reflect Real Security Risk?
Banks, financial institutions and fintech companies spend a lot of time and resources during a System Audit Report, during which they evaluate the security coverage and detect vulnerabilities as well as check ...
Ex-IBM Exec Accuses Big Blue and AT&T of Covering Up Foreign Data Breaches
Jeffrey Burt | | ATT, Cloud Security, Data breach, Data Breach Disclosure, federal security regulations, IBM Cybersecurity, Whistleblower
A former IBM cybersecurity executive in a whistleblower lawsuit alleges that the IT vendor and its cloud partner, AT&T, failed to disclose to government officials that their network was breached multiple times ...
Security Boulevard

