compliance

Apple encryption row: Does law enforcement need to use Technical Capability Notices?

How far are criminal investigations inhibited by the wide availability of end-to-end encryption (E2E)? The Home Office and UK law enforcement agencies think the problem is urgent, hence the politically tricky decision to use a little-known feature of the Investigatory Powers legislation – the Technical Capability Notice – to seek to impose back-door conditions on…

Apple encryption row: Does law enforcement need to use Technical Capability Notices? Read More »

Fortifying the future: The pivotal role of CISOs in AI operations

By Published: 04 Jun 2025 The widespread adoption of artificial intelligence (AI) applications and services is driving a fundamental shift in how chief information security officers (CISOs) structure their cyber security policies and strategies. The unique characteristics of AI, its data-intensive nature, complex models, and potential for autonomous decision-making introduce new attack surfaces and risks…

Fortifying the future: The pivotal role of CISOs in AI operations Read More »

Building the foundations: A national roadmap for digital identity and sovereign data

After months of missteps and confusion, the UK digital identity sector now has the clarity to move forward. Technology secretary Peter Kyle’s recent blog outlining the role of the private sector alongside his department’s work on the Gov.uk Wallet is a moment that demands open collaboration between government and industry. We have a lot to…

Building the foundations: A national roadmap for digital identity and sovereign data Read More »

CISOs: Don’t block AI, but adopt it with eyes wide open

The introduction of generative AI (GenAI) tools like ChatGPT, Claude, and Copilot has created new opportunities for efficiency and innovation – but also new risks. For organisations already managing sensitive data, compliance obligations, and a complex threat landscape, it’s essential not to rush into adoption without thoughtful risk assessment and policy alignment. As with any…

CISOs: Don’t block AI, but adopt it with eyes wide open Read More »

AI and compliance: What are the risks?

The rapid growth of artificial intelligence (AI), especially generative AI (GenAI) and chatbots, gives businesses a wealth of opportunities to improve the way they work with customers, drive efficiencies and speed up labour-intensive tasks. But GenAI has brought problems, too. These range from security flaws and privacy concerns to questions about bias, accuracy and even…

AI and compliance: What are the risks? Read More »

UK biometric surveillance exists in ‘legal grey area’

The UK’s patchwork approach to regulating biometric surveillance technologies is “inadequate”, placing fundamental rights at risk and ultimately undermining public trust, says the Ada Lovelace Institute (ALI). As UK public and private organisations rapidly expand their use of various biometric surveillance technologies, an analysis by the ALI has found that “significant gaps and fragmentation” in…

UK biometric surveillance exists in ‘legal grey area’ Read More »

AI compliance: Dealing with data change and proliferation

In this podcast, we talk to Mathieu Gorge, CEO of Vigitrust, about the compliance risks posed by data during artificial intelligence (AI) processing, and training in particular. The key challenges here are that as datasets are trained, more data is created, and it can be difficult to ensure that data is also compliant, especially as…

AI compliance: Dealing with data change and proliferation Read More »

AI and compliance: Staying on the right side of law and regulation

Regulations and legal frameworks for artificial intelligence (AI) currently lag behind the technology’s uptake. The rise of generative AI (GenAI) has pushed artificial intelligence to the fore of organisations’ modernisation plans, but so far, most development has taken place in a regulatory vacuum. Regulators are rushing to catch up. According to industry analyst Gartner, between…

AI and compliance: Staying on the right side of law and regulation Read More »

RSAC rewind: Agentic AI, governance gaps and insider threats

This year’s RSAC Conference drew record numbers of nearly 44,000 attendees, 730 speakers, 650 exhibitors and 400 media members. And as one of those who attended and spoke with countless organizations, partners and CISO peers, I can safely say that practically every single person there had something to say about the use of or abuse…

RSAC rewind: Agentic AI, governance gaps and insider threats Read More »

Signalgate is a signal to revisit security onboarding and training

The recent leak of sensitive US military operations via the Signal messaging platform, triggered by the accidental inclusion of a journalist in a group chat, underscores a fundamental and often overlooked vulnerability in many organisations: people. Specifically, individuals who operate within or adjacent to an organisation but fall outside standard onboarding and training processes. This…

Signalgate is a signal to revisit security onboarding and training Read More »

Shopping Cart
Shopping cart0
There are no products in the cart!
Continue shopping
0
Scroll to Top