Compliance

HelmGuard Raises $7.3 Million for Agentic GRC and Security

HelmGuard Raises $7.3 Million for Agentic GRC and Security 2026-09-09 at 20:23 By Ionut Arghire The company will increase its US market presence and will expand its engineering and go-to-market teams. The post HelmGuard Raises $7.3 Million for Agentic GRC and Security appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

HelmGuard Raises $7.3 Million for Agentic GRC and Security Read More »

NIS2 compliance: Fixing IAM and access control before the 2026 audit

NIS2 compliance: Fixing IAM and access control before the 2026 audit 2026-09-01 at 08:00 By Help Net Security The NIS2 Directive places direct obligations on organizations across supply chain risk management, incident reporting, and board-level accountability. October brings a new wave of legally binding deadlines across the EU, as member states move from transposition into […]

NIS2 compliance: Fixing IAM and access control before the 2026 audit Read More »

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC 2026-08-27 at 05:00 By LevelBlue is making a multi-million-dollar investment in a new local Security Operations Center (SOC) in Sydney, going live August 25, 2026. The Sydney SOC gives Australian organizations, with a particular focus on critical infrastructure owners and operators, access to […]

LevelBlue Strengthens Cyber Resilience for Australian Critical Infrastructure with New Sydney SOC Read More »

Production data in testing is still common, and Tricentis’ CISO wants it gone

Production data in testing is still common, and Tricentis’ CISO wants it gone 2026-08-26 at 08:30 By Mirko Zorz In this Help Net Security interview, Erika Dean, CISO at Tricentis, talks about keeping production data out of test environments and why she thinks the alternatives are good enough now. She explains how her team caught […]

Production data in testing is still common, and Tricentis’ CISO wants it gone Read More »

Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts

Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts 2026-08-24 at 15:42 By Associated Press Dutch Data Protection Authority said it is imposing a fine of 825 million euros because Uber violated the EU’s General Data Protection Regulation. The post Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated […]

Uber Fined Nearly $1 Billion by Dutch Regulators Over Automated Suspensions of Driver Accounts Read More »

AWS makes it easier to spot firewall rules that have gone quiet

AWS makes it easier to spot firewall rules that have gone quiet 2026-08-24 at 07:00 By Anamarija Pogorelec AWS Network Firewall’s rule hit count capability gives security teams visibility into which stateful firewall rules are matching traffic, helping them identify unused or redundant rules and validate whether security controls are working as intended. The capability […]

AWS makes it easier to spot firewall rules that have gone quiet Read More »

Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind

Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind 2026-08-21 at 11:41 By Eduard Kovacs Two industry surveys released this week by Kiteworks and CyberSheath paint a consistent picture of the defense industrial base. The post Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind appeared first on SecurityWeek. This article […]

Contractors’ CMMC Confidence Rises as Ability to Prove It Falls Behind Read More »

17 draft Cyber Resilience Act standards are open for comment

17 draft Cyber Resilience Act standards are open for comment 2026-08-14 at 07:30 By Anamarija Pogorelec A company selling a connected toy in Europe must show by the end of 2027 that the product meets the Cyber Resilience Act. The law states what manufacturers have to achieve and stops there, which leaves the toymaker to […]

17 draft Cyber Resilience Act standards are open for comment Read More »

What the first year of EU AI Act transparency enforcement could look like

What the first year of EU AI Act transparency enforcement could look like 2026-08-07 at 08:30 By Mirko Zorz In this Help Net Security interview, Edwin Weijdema, Field CTO at Veeam, answers questions on Article 50 of the EU AI Act and what the first year of enforcement might bring. He explains why corrective orders […]

What the first year of EU AI Act transparency enforcement could look like Read More »

Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway

Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway 2026-08-06 at 15:00 By SecurityWeek News (Video) In this podcast, we share insights from Edna Conway, a recognized leader in cybersecurity and supply chain resilience with over 40 years of experience in the field. The post Podcast: Compliance Won’t Save You: The […]

Podcast: Compliance Won’t Save You: The Future of Cyber Risk with Edna Conway Read More »

EU begins enforcing AI Act, putting AI models under the microscope

EU begins enforcing AI Act, putting AI models under the microscope 2026-08-04 at 09:49 By Sinisa Markovic Europe’s fight to regulate AI models moved from paper to practice on 2 August 2026, when the European Commission’s AI Office and national authorities began enforcing the AI Act. On the same date, new transparency rules took effect, […]

EU begins enforcing AI Act, putting AI models under the microscope Read More »

Companies push AI, sysadmins keep it on a short leash

Companies push AI, sysadmins keep it on a short leash 2026-07-31 at 08:00 By Anamarija Pogorelec In 2024, sysadmins expected AI to automate patch management optimization, vulnerability prioritization, infrastructure monitoring, and incident response within two years. Action1’s 2026 Survey Report: AI Impact on Sysadmins found that those expectations proved overly optimistic. The largest shortfalls appeared […]

Companies push AI, sysadmins keep it on a short leash Read More »

Timeless Compliance: Why Better Questions Beat Bigger Frameworks

Timeless Compliance: Why Better Questions Beat Bigger Frameworks 2026-07-30 at 18:46 By Matt Honea The best compliance programs aren’t the biggest ones. They’re the ones built on a short list of questions that can actually be answered, and that still hold true when the models change. The post Timeless Compliance: Why Better Questions Beat Bigger […]

Timeless Compliance: Why Better Questions Beat Bigger Frameworks Read More »

Shadow AI incident response begins with logs that may already be gone

Shadow AI incident response begins with logs that may already be gone 2026-07-28 at 09:00 By Mirko Zorz In this Help Net Security interview, Brandy Wityak, VP of Complex Matters at LevelBlue, explains what happens in the hours after a shadow AI incident. She describes how quickly logs roll over, why firewall records of outbound […]

Shadow AI incident response begins with logs that may already be gone Read More »

AI can’t fix cybersecurity’s hiring problem

AI can’t fix cybersecurity’s hiring problem 2026-07-22 at 07:30 By Anamarija Pogorelec Organizations are redefining cybersecurity roles through workforce frameworks and placing greater emphasis on verified skills as AI and new regulatory requirements change hiring. The SANS 2026 Cybersecurity Workforce Survey found demand for specialists in new roles more than doubled over the past year, […]

AI can’t fix cybersecurity’s hiring problem Read More »

The Windows 10 hangover is becoming a security problem

The Windows 10 hangover is becoming a security problem 2026-07-20 at 11:37 By Anamarija Pogorelec Windows 11 now runs on 78.8% of Windows devices after Microsoft ended support for Windows 10 on 14 October 2025, according to Lansweeper. Windows 10 still accounts for 16.9% of devices and no longer receives security updates, leaving newly discovered […]

The Windows 10 hangover is becoming a security problem Read More »

Nearly half of open-source AI projects never reach production

Nearly half of open-source AI projects never reach production 2026-07-20 at 07:00 By Anamarija Pogorelec Open models are moving into production across more organizations, and the work of securing those deployments increasingly extends beyond the model weights. Mozilla’s The State of Open Source AI 2026 identifies deployment, governance and operational tooling as persistent obstacles as […]

Nearly half of open-source AI projects never reach production Read More »

Industry Reactions to Pentagon Suspending CMMC Phase 2: Feedback Friday

Industry Reactions to Pentagon Suspending CMMC Phase 2: Feedback Friday 2026-07-17 at 14:08 By SecurityWeek News Industry professionals broadly agree that the suspension pauses third-party CMMC audits but not the underlying legal obligation to protect CUI. The post Industry Reactions to Pentagon Suspending CMMC Phase 2: Feedback Friday appeared first on SecurityWeek. This article is […]

Industry Reactions to Pentagon Suspending CMMC Phase 2: Feedback Friday Read More »

Pentagon Suspends CMMC Phase 2 as It Rethinks Contractor Cybersecurity Rules

Pentagon Suspends CMMC Phase 2 as It Rethinks Contractor Cybersecurity Rules 2026-07-14 at 09:37 By Eduard Kovacs A new CMMC review and reform task force will conduct a comprehensive review of the program. The post Pentagon Suspends CMMC Phase 2 as It Rethinks Contractor Cybersecurity Rules appeared first on SecurityWeek. This article is an excerpt […]

Pentagon Suspends CMMC Phase 2 as It Rethinks Contractor Cybersecurity Rules Read More »

GitHub’s new tool helps prevent costly open-source license violations

GitHub’s new tool helps prevent costly open-source license violations 2026-07-02 at 07:00 By Anamarija Pogorelec GitHub’s Open Source Program Office (OSPO) uses the new GitHub License Compliance feature, now in public preview, to manage thousands of open-source dependencies and identify dependencies whose licenses require review. The feature is available to GitHub Advanced Security customers and […]

GitHub’s new tool helps prevent costly open-source license violations Read More »

Scroll to Top