Compliance

Why banks’ tech-first approach leaves governance gaps

Why banks’ tech-first approach leaves governance gaps 2025-06-16 at 09:06 By Mirko Zorz In this Help Net Security interview, Rich Friedberg, CISO at Live Oak Bank, discusses how banks can better align cybersecurity efforts with broader cyber governance and risk priorities. Banking institutions often falter when cybersecurity is siloed as purely a technical or compliance […]

React to this headline:

Loading spinner

Why banks’ tech-first approach leaves governance gaps Read More »

Government Data Breaches Are Eroding Public Trust – It’s Time for Stronger Cybersecurity in the Public Sector

Government Data Breaches Are Eroding Public Trust – It’s Time for Stronger Cybersecurity in the Public Sector 2025-06-09 at 16:09 By Craig Searle The recent data breach at the Australian Human Rights Commission (AHRC) is a stark reminder of what’s at stake when public sector cybersecurity falls short. This article is an excerpt from Trustwave

React to this headline:

Loading spinner

Government Data Breaches Are Eroding Public Trust – It’s Time for Stronger Cybersecurity in the Public Sector Read More »

Compyl Raises $12 Million for GRC Platform

Compyl Raises $12 Million for GRC Platform 2025-06-04 at 14:43 By Eduard Kovacs Compyl has raised $12 million in a Series A funding round that will be invested in go-to-market initiatives, hirings, and GRC platform expansion. The post Compyl Raises $12 Million for GRC Platform appeared first on SecurityWeek. This article is an excerpt from

React to this headline:

Loading spinner

Compyl Raises $12 Million for GRC Platform Read More »

Regulations Rising, Risks Persisting: The Cybersecurity Crossroads Facing Australian Hospitality

Regulations Rising, Risks Persisting: The Cybersecurity Crossroads Facing Australian Hospitality 2025-05-30 at 22:22 By Craig Searle Australian hospitality is facing rising cyber threats as ransomware attacks, third-party breaches, and AI-enhanced phishing campaigns increase in frequency and sophistication. New regulations, including the Privacy Act reforms and critical infrastructure laws, are reshaping compliance expectations—but enforcement gaps and limited

React to this headline:

Loading spinner

Regulations Rising, Risks Persisting: The Cybersecurity Crossroads Facing Australian Hospitality Read More »

Exchange 2016, 2019 support ends soon: What IT should do to stay secure

Exchange 2016, 2019 support ends soon: What IT should do to stay secure 2025-05-30 at 07:33 By Help Net Security Microsoft is ending support for Exchange Server 2016, Exchange Server 2019, and Outlook 2016 on October 14, 2025. That date might seem far off, but if you’re managing email systems or Office deployments, it’s worth

React to this headline:

Loading spinner

Exchange 2016, 2019 support ends soon: What IT should do to stay secure Read More »

Outsourcing cybersecurity: How SMBs can make smart moves

Outsourcing cybersecurity: How SMBs can make smart moves 2025-05-23 at 08:32 By Anamarija Pogorelec Outsourcing cybersecurity can be a practical and affordable option. It allows small businesses to get the protection they need without straining their budgets, freeing up time and resources to focus on core operations. 76% of SMBs lack the in-house skills to

React to this headline:

Loading spinner

Outsourcing cybersecurity: How SMBs can make smart moves Read More »

Why legal must lead on AI governance before it’s too late

Why legal must lead on AI governance before it’s too late 2025-05-20 at 08:05 By Mirko Zorz In this Help Net Security interview, Brooke Johnson, Chief Legal Counsel and SVP of HR and Security, Ivanti, explores the legal responsibilities in AI governance, highlighting how cross-functional collaboration enables safe, ethical AI use while mitigating risk and

React to this headline:

Loading spinner

Why legal must lead on AI governance before it’s too late Read More »

New UK Framework Pressures Vendors on SBOMs, Patching and Default MFA

New UK Framework Pressures Vendors on SBOMs, Patching and Default MFA 2025-05-07 at 17:58 By Ryan Naraine By baking minimum expectations into procurement conversations, the plan is to steer software vendors to “secure-by-design and default” basics. The post New UK Framework Pressures Vendors on SBOMs, Patching and Default MFA appeared first on SecurityWeek. This article

React to this headline:

Loading spinner

New UK Framework Pressures Vendors on SBOMs, Patching and Default MFA Read More »

TikTok Fined $600 Million for China Data Transfers That Broke EU Privacy Rules

TikTok Fined $600 Million for China Data Transfers That Broke EU Privacy Rules 2025-05-05 at 11:02 By Associated Press EU privacy watchdog fined TikTok $600 million after a four-year investigation found that data transfers to China put users at risk of spying, in breach of strict EU data privacy rules. The post TikTok Fined $600

React to this headline:

Loading spinner

TikTok Fined $600 Million for China Data Transfers That Broke EU Privacy Rules Read More »

Raytheon, Nightwing to Pay $8.4 Million in Settlement Over Cybersecurity Failures

Raytheon, Nightwing to Pay $8.4 Million in Settlement Over Cybersecurity Failures 2025-05-02 at 15:50 By Ionut Arghire The US government says defense contractor Raytheon and Nightwing agreed to pay $8.4 million to settle False Claims Act allegations. The post Raytheon, Nightwing to Pay $8.4 Million in Settlement Over Cybersecurity Failures appeared first on SecurityWeek. This

React to this headline:

Loading spinner

Raytheon, Nightwing to Pay $8.4 Million in Settlement Over Cybersecurity Failures Read More »

Half of red flags in third-party deals never reach compliance teams

Half of red flags in third-party deals never reach compliance teams 2025-05-02 at 07:32 By Help Net Security Third-party risk management (TPRM) is compromised in many organizations because those holding the relationship with the third-party (relationship owners) don’t escalate red flags to compliance teams reliably, according to Gartner. The post Half of red flags in

React to this headline:

Loading spinner

Half of red flags in third-party deals never reach compliance teams Read More »

Essential Strategies for HIPAA Compliance and Ransomware Resilience

Essential Strategies for HIPAA Compliance and Ransomware Resilience 2025-04-28 at 23:18 By Understand the critical link between robust healthcare security, ransomware defense, and mandatory compliance (like HIPAA). See why ransomware remains a primary threat targeting healthcare, leading to significant data breaches and costly compliance failures. Explore essential strategies for healthcare organizations to achieve HIPAA compliance,

React to this headline:

Loading spinner

Essential Strategies for HIPAA Compliance and Ransomware Resilience Read More »

Compliance weighs heavily on security and GRC teams

Compliance weighs heavily on security and GRC teams 2025-04-22 at 07:24 By Help Net Security Only 29% of all organizations say their compliance programs consistently meet internal and external standards, according to Swimlane. Their report reveals that fragmented workflows, manual evidence gathering and poor collaboration between security and governance, risk and compliance (GRC) teams are

React to this headline:

Loading spinner

Compliance weighs heavily on security and GRC teams Read More »

How Trustwave’s Microsoft Purview Accelerator Quickly Maximizes Client Security

How Trustwave’s Microsoft Purview Accelerator Quickly Maximizes Client Security 2025-04-18 at 16:01 By Strengthen cybersecurity and regulatory compliance by optimizing Microsoft Purview’s powerful policy and risk management capabilities. Accelerate your Microsoft Purview implementation with Trustwave’s expert-led service designed to streamline data governance and compliance from day one. Maximize the value of Microsoft Purview with Trustwave’s

React to this headline:

Loading spinner

How Trustwave’s Microsoft Purview Accelerator Quickly Maximizes Client Security Read More »

Securing digital products under the Cyber Resilience Act

Securing digital products under the Cyber Resilience Act 2025-04-18 at 08:37 By Mirko Zorz In this Help Net Security interview, Dr. Dag Flachet, co-founder at Codific, explains what the Cyber Resilience Act (CRA) means for companies and how it compares to GDPR in terms of regulatory complexity and impact on organizations. He discusses the technical

React to this headline:

Loading spinner

Securing digital products under the Cyber Resilience Act Read More »

Strategic AI readiness for cybersecurity: From hype to reality

Strategic AI readiness for cybersecurity: From hype to reality 2025-04-16 at 08:34 By Help Net Security AI readiness in cybersecurity involves more than just possessing the latest tools and technologies; it is a strategic necessity. Many companies could encounter serious repercussions, such as increased volumes of advanced cyber threats, if they fail to exploit AI

React to this headline:

Loading spinner

Strategic AI readiness for cybersecurity: From hype to reality Read More »

Organizations can’t afford to be non-compliant

Organizations can’t afford to be non-compliant 2025-04-14 at 07:01 By Help Net Security Non-compliance can cost organizations 2.71 times more than maintaining compliance programs, according to Secureframe. That’s because non-compliance can result in business disruption, productivity losses, fines, penalties, and settlement costs, among other factors that come with a hefty price tag. Even data breaches

React to this headline:

Loading spinner

Organizations can’t afford to be non-compliant Read More »

Anecdotes Raises $30 Million for Enterprise GRC Platform

Anecdotes Raises $30 Million for Enterprise GRC Platform 2025-04-08 at 18:04 By Eduard Kovacs Anecdotes has raised $55 million in an extended Series B funding round that brings the total raised by the company to $85 million.  The post Anecdotes Raises $30 Million for Enterprise GRC Platform appeared first on SecurityWeek. This article is an

React to this headline:

Loading spinner

Anecdotes Raises $30 Million for Enterprise GRC Platform Read More »

PCI DSS 4.0.1: A Cybersecurity Blueprint by the Industry, for the Industry

PCI DSS 4.0.1: A Cybersecurity Blueprint by the Industry, for the Industry 2025-04-07 at 22:17 By Kevin Townsend As PCI DSS 4.0.1 comes into force, it shows the power of industry collaboration in cybersecurity. The post PCI DSS 4.0.1: A Cybersecurity Blueprint by the Industry, for the Industry appeared first on SecurityWeek. This article is

React to this headline:

Loading spinner

PCI DSS 4.0.1: A Cybersecurity Blueprint by the Industry, for the Industry Read More »

Scroll to Top