featureEU's DORA regulation explained: New risk management requirements for financial firmsThe proposed Digital Operational Resilience Act includes new incident response and third-party risk requirements for financial firms operating within the EU.By Dan Swinhoe08 Aug 20247 minsComplianceRisk ManagementSecurity news China takes steps to implement digital ID initiativeBy Paul Barker30 Jul 20244 minsFederated IdentityData PrivacyCompliancenews analysis Understanding CISA's proposed cyber incident reporting rulesBy Cynthia Brumfield17 Apr 202410 minsRegulationRansomwareCyberattacks featureGeneral Data Protection Regulation (GDPR): What you need to know to stay compliantBy Michael Nadeau 04 Apr 202421 minsComplianceData and Information SecurityPrivacy featureRise of the cyber CPA: What it means for CISOsBy Evan Schuman 27 Nov 20237 minsCSO and CISOCompliance news analysisRansomware gang files SEC complaint against company that refused to negotiateBy Lucian Constantin 17 Nov 20234 minsRansomwareComplianceCybercrime featureHow US SEC legal actions put CISOs at risk and what to do about itBy Evan Schuman 16 Nov 20238 minsCSO and CISOComplianceRisk Management newsGenerative AI could erode customer trust, half of business leaders sayBy Michael Hill 08 Nov 20234 minsCSO and CISOGenerative AICompliance newsUS launches “Shields Ready” campaign to secure critical infrastructureBy Michael Hill 08 Nov 20233 minsGovernmentComplianceCritical Infrastructure ArticlesnewsAuditBoard adds new AI and analytics capabilities for compliance and risk maWith the new AI algorithms, organizations will be able to streamline audit workflows and automate various risk management and compliance programs.By Shweta Sharma 18 Oct 2023 3 minsGenerative AIComplianceRisk ManagementnewsVanta bakes generative AI into core security and compliance productNew generative AI capabilities are coming to security and compliance vendor Vanta’s main platform, adding a layer of automation to compliance tasks.By Jon Gold 10 Oct 2023 3 minsGenerative AIComplianceRisk ManagementnewsCybersecurity experts raise concerns over EU Cyber Resilience Act’s vulnerability disclosure requirementsOpen letter claims current provisions will create new threats that undermine the security of digital products and individuals.By Michael Hill 03 Oct 2023 4 minsRegulationComplianceVulnerabilitiesnewsOnline Safety Bill passes final parliament debate, set to become UK lawDespite widespread criticism and scrutiny, the UK government is within touching distance of delivering its controversial new internet safety rules.By Michael Hill 20 Sep 2023 3 minsEncryptionCompliancePrivacynews analysisCyber-related False Claims actions are on the uptickVerizon's $4 million settlement with the US DOJ signals stepped-up action by the Justice Department's Civil Cyber-Fraud initiative.By Cynthia Brumfield 18 Sep 2023 7 minsRegulationComplianceSecurity PracticesnewsUK NCSC, ICO sign cybersecurity Memorandum of UnderstandingThe MoU sets out plans for the development of cybersecurity standards and guidance as well as improving the cybersecurity of organisations.By Michael Hill 13 Sep 2023 6 minsRegulationGovernmentCompliancefeatureSecurity and privacy laws, regulations, and compliance: The complete guideThis handy directory provides summaries and links to the full text of each security or privacy law and regulation.By CSO Staff 12 Sep 2023 49 minsRegulationComplianceSecuritynews analysisNIST releases Cybersecurity Framework 2.0 draftNIST seeks comments ahead of the 2024 release of CSF 2.0, which aims to appeal to a broader range of organizations while elevating the importance of corporate governance and more fully addressing supply chain security.By Cynthia Brumfield 12 Sep 2023 7 minsComplianceCritical InfrastructureRisk ManagementfeatureHow financial institutions can reduce security and other risks from MRAsHere's advice on avoiding breakdowns or inadequacies in a US financial institution's security and privacy policies and procedures that can trigger a matter requiring attention notice.By Perry Menezes, Partner/MD, Head, Financial Services, MorganFranklin Consulting; Ahsan Sheikh, CISRO, US Financial Services; Thomas Kartanowicz, CISO Europe and Americas, Global Financial Services Firm; Marco Maiurano, CISO, Large US Financial Services Firm; John Rogers, Global CISO, FinTech Firm; Paul Moreira, Global German Bank, Regional Head, Cyber, BCM, VRM, Operational resilience 29 Aug 2023 10 minsFinancial Services IndustryComplianceRisk ManagementnewsDope Security wants to help CISOs get a handle on shadow IT Dope's new Extended Shadow IT capability is aimed at cybersecurity and IT teams that want to better track data used by applications and devices that they have not vetted or approved.By Shweta Sharma 23 Aug 2023 3 minsData PrivacyComplianceData and Information Securitynews analysisNew SEC rules give companies four days to report cyber incidentsThe new SEC rules also require registrants to report ransomware payments within 24 hours to report ransomware payments and to submit annual cyber risk management, strategy, and governance reports.By Cynthia Brumfield 26 Jul 2023 11 minsRegulationCompliancefeatureWhy and how CISOs should work with lawyers to address regulatory burdensAs the scope of cybersecurity related regulations grows, CISOs may need to partner more closely with legal teams to understand the changing requirements.By Rosalyn Page 19 Jul 2023 11 minsRegulationComplianceRisk Management Show more Show less View all Resources whitepaper Best Practices in Cybersecurity and Cyber Resilience In today’s digital world, consumers and employees expect organizations of all types and sizes to operate without interruption. In fact, contractual obligations and service level agreements demand it. The post Best Practices in Cybersecurity and Cyber Resilience appeared first on Whitepaper Repository –. By Cohesity Inc. 26 Aug 2024Business OperationsCybercrimeData and Information Security whitepaper Cyber resilience in the ransomware era By Cohesity Inc. 26 Aug 2024Business OperationsCybercrimeSecurity whitepaper Unlock the power of AI and ML for data protection By Cohesity Inc. 26 Aug 2024Artificial IntelligenceBusiness OperationsMachine Learning View all Video on demand videoAligning security, compliance and privacy across inventory trackingBrad Wells, Executive Director, Information Security, and Kandice Samuelson, Senior Director, IT Governance at PPD lead a team enhancing PPD’s inventory tracking system that identifies PPD’s most valuable assets. Join us to learn how they distribute security resources for appropriate levels of protection, maintain compliance with government regulations and industry standards, and leverage information security controls aligned with client requirements, industry frameworks and privacy regulations. 28 May 2021 20 minsComplianceData and Information SecurityPrivacy See all videos Explore a topic Application Security Business Continuity Business Operations Careers Cloud Security Critical Infrastructure Cybercrime Identity and Access Management Industry IT Leadership Network Security Physical Security Privacy Risk Management View all topics All topics Close Application Security Business Continuity Business Operations Careers Cloud Security Critical Infrastructure Cybercrime Identity and Access Management Industry IT Leadership Network Security Physical Security Privacy Risk Management Security Security Infrastructure Software Development Vulnerabilities Generative AI Show me morePopularArticlesPodcastsVideos feature How to ensure cybersecurity strategies align with the company’s risk tolerance By Rosalyn Page 03 Sep 202410 mins CSO and CISORisk Management news North Korean hackers actively exploited a critical Chromium zero-day By Shweta Sharma 02 Sep 20243 mins Zero-day vulnerability feature Ransomware recovery: 8 steps to successfully restore from backup By Maria Korolov 02 Sep 202417 mins RansomwareMalwareBackup and Recovery podcast CSO Executive Sessions: Guardians of the Games – How to keep the Olympics and other major events cyber safe 07 Aug 202417 mins CSO and CISO podcast CSO Executive Session India with Dr Susil Kumar Meher, Head Health IT, AIIMS (New Delhi) 17 Jul 202417 mins CSO and CISO podcast CSO Executive Session India with Charanjit Bhatia, Head of Cybersecurity, COE, Bata Brands 08 Jul 202418 mins CSO and CISO video CSO Executive Sessions: Guardians of the Games – How to keep the Olympics and other major events cyber safe 07 Aug 202417 mins RansomwareZero TrustCloud Security video CSO Executive Session India with Dr Susil Kumar Meher, Head Health IT, AIIMS (New Delhi) 17 Jul 202417 mins CSO and CISO video Cybersecurity Insights for Tech Leaders: Addressing Dynamic Threats and AI Risks with Resilience 10 Jul 202424 mins CSO and CISO