Tag: cio
-
KI-Governance umsetzen: Wie CIOs Richtlinie, Rechte und Nachweise zusammenbringen
KI-Governance wird für CIOs zur Umsetzungsdisziplin: Richtlinien allein reichen nicht, wenn Identitäten, Rollen, Freigaben und Protokolle technisch unverbunden bleiben. Der Beitrag zeigt, wie Unternehmen rechtliche Vorgaben in kontrollierbare Zugänge übersetzen, Nachweise auditfest organisieren und den Aufbau eines tragfähigen Frameworks realistisch planen. Management Summary Governance wird erst durchsetzbar: Eine KI-Richtlinie entfaltet Wirkung, wenn jede Regel mit……
-
Cyber Defense Alone Can’t Keep Critical Services Running
States Must Map Dependencies and Engineer Safeguards for Water and Hospitals. State CIOs must decide which water systems, hospitals and other essential services need protection first. NASCIO data shows why states should rank infrastructure by consequence, test simultaneous failures and pair cyber defenses with engineering safeguards. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/cyber-defense-alone-cant-keep-critical-services-running-a-32871
-
Advice for CIOs on AI’s ‘existential threat’
Statements by OpenAI chief Sam Altman, following an essay by Anthropic chief Dario Amodei, raise concerns over the safety of frontier models First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366650475/Advice-for-CIOs-on-AIs-existential-threat
-
Defining What Counts as AI Spending
CIOs Build New Budget Models for Agents, Tokens and Failed Experiments. AI spending no longer fits neatly into software or cloud budgets. As model access, agents, data preparation and governance drive costs across the enterprise, CIOs are creating new ways to track experimentation, control consumption and demonstrate long-term business value. First seen on govinfosecurity.com Jump…
-
State authorities warn they lack resources to address cyber threat to critical sectors
A report shows that state CIOs and CISOs need additional funding, personnel and training to protect water, energy and healthcare. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/state-infrastructure-resources-cyberthreats/830178/
-
Former Currys CIO Andy Gamble Joins Core to Cloud as Advisory Board Chair
UK cybersecurity specialist Core to Cloud has appointed former Currys Group CIO Andy Gamble as Chair of its Advisory Board as the company looks to accelerate the growth of its managed security services. Gamble brings nearly 30 years of board-level technology leadership and will work with Core to Cloud on its strategic, advisory and commercial…
-
State CIOs Need an Enterprise Identity Strategy
NASCIO’s Eric Sweden on Balancing Security, Privacy and Citizen Access. Fragmented identity systems make government harder to use and can obscure fraud across agencies. NASCIO’s Eric Sweden explains how states can build shared trust, protect privacy and adapt identity infrastructure for digital wallets, deepfakes and AI agents. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/state-cios-need-enterprise-identity-strategy-a-32782
-
Kryptoagilität macht aus der Umstellung auf Post-Quanten-Kryptografie einen planbaren Dreijahresprozess
Die Umstellung auf Post-Quanten-Kryptografie ist kein spätes Technikprojekt für Spezialisten, sondern eine Managementaufgabe mit festen Fristen. Wer jetzt Krypto-Inventar, Priorisierung und Lieferantensteuerung aufsetzt, macht aus einer schwer kalkulierbaren Bedrohung einen planbaren Transformationsprozess. Der Beitrag zeigt, warum Kryptoagilität für Unternehmen wichtiger wird als die einmalige Wahl eines neuen Algorithmus und wie CIO, CISO und Einkauf die……
-
From Traditional Development to AI-Native Engineering: ISHIR’s AI Software Engineering Maturity Spectrum
Software development is going through a more fundamental change than adding another productivity tool to the developer stack. The question for CEOs, CIOs, CTOs, and…Read More First seen on securityboulevard.com Jump to article: https://securityboulevard.com/2026/08/from-traditional-development-to-ai-native-engineering-ishirs-ai-software-engineering-maturity-spectrum/
-
DoD Regulatory Pause: No Excuse to Weaken Supply Chain Trust
IonQ CIO Katie Arrington on Unclassified Info, CMMC’s Third-Party Supplier Audits. At CIO.inc’s Business Transformation Summit in New Delhi, CXOs from Cars24, Mastercard AI Garage and ISMG argued the real AI model decision isn’t build versus buy, it’s data readiness, evaluation rigor and who owns the outcome. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/dod-regulatory-pause-no-excuse-to-weaken-supply-chain-trust-a-32603
-
When AI Risk Becomes a Board Liability
CIOs Can Strengthen Oversight Through Reporting, Records and Insurance Reviews. AI failures can trigger financial, regulatory and reputational exposure that reaches the boardroom. Reed Smith partners Carolyn Rosenberg and Andy Moss explain how CIOs can document oversight, validate corporate claims and test insurance for coverage gaps. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/when-ai-risk-becomes-board-liability-a-32594
-
ISMG Editors: AI Is Supercharging Attackers
Also: CIOs Rethink Data in AI Rollouts, ShinyHunters Hits Biotech. In this week’s panel, four ISMG editors discussed new research showing how AI is making cyberthreat actors more capable, why the technology is forcing CIOs to rethink data platforms they spent years modernizing and a string of attacks in the biotech sector. First seen on…
-
Vibe-codierte Apps sicher und schnell veröffentlichen
CIOs und CISOs können die Schleusen für Vibe-codierte Apps jetzt gefahrlos öffnen. Island, die Enterprise-Agentic-Kontroll-Ebene, hat <> vorgestellt. Damit können Unternehmen nun interne Apps, die ihre Mitarbeiter bauen, schnell veröffentlichen und teilen, inklusive vollständiger Governance. Vibe-Coding-Plattformen wie Claude-Code, Lovable und andere geben Mitarbeitern wie auch Fachkräften die Möglichkeit, Innovationen in bisher unerreichter […] First seen…
-
Why AI Agents Challenge Identity Governance
CIOs Need New Controls for Discovery, Intent and Token Costs. AI agents can operate within legitimate permissions and still take actions their creators never intended. Saviynt Chief Product Officer Vibhuti Sinha explains why CIOs need stronger discovery, runtime oversight, identity data and cost controls to scale agents safely. First seen on govinfosecurity.com Jump to article:…
-
How CIOs can navigate federal, state AI regulation uncertainty
AI laws are evolving across the EU, U.S. states and the U.S. federal government. An effective governance framework helps organizations meet requirements across all jurisdictions. First seen on techtarget.com Jump to article: www.techtarget.com/searchcio/news/366646236/How-CIOs-can-navigate-federal-state-AI-regulation-uncertainty
-
Why CIOs Need an AI Sovereignty Strategy
IBM Finds AI Vendor Disruptions Are Raising Costs and Operational Risk. Most enterprises are more dependent on their AI vendors than they realize, and a new IBM study puts a dollar figure on what that exposure costs. Here’s what CIOs need to know about taking back control before conditions force their hand. First seen on…
-
Shadow AI: Governing What You Can’t See
Why Shadow AI Is Becoming a Security Challenge for Modern Organizations Shadow AI is fast becoming a critical enterprise blind spot, with Gartner predicting 40% of organizations will face security or compliance incidents by 2030. As employees adopt unapproved tools, CIOs must close visibility gaps and align AI governance with innovation before risks escalate. First…
-
Your Board Is Using Shadow AI
Board Members Adopt GenAI Without Policies or Oversight. A new Diligent Institute survey finds 82% of U.S. public company directors are using generative AI for board work, yet 69% of boards have no formal AI policy in place. CIOs are being left out of the governance conversation, and the risks are mounting. First seen on…
-
Gulf CIOs shift focus from recovery to cyber resilience as regional threats intensify
Commvault’s Yahya Kassab says organisations across the Gulf are reassessing recovery strategies, AI risks and cloud investments amid growing cyber threats First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366644877/Gulf-CIOs-shift-focus-from-recovery-to-cyber-resilience-as-regional-threats-intensify
-
The AI Accountability Gap CIOs Can’t Ignore
IBM Research Finds Tech Leaders Struggle With Agent Sprawl. A new IBM Institute for Business Value survey finds two-thirds of CIOs and CTOs are accountable for AI systems they don’t fully control. The survey of 2,000 tech executives details rising AI agent incidents and recommends infrastructure, governance and financial fixes. First seen on govinfosecurity.com Jump…
-
California’s new CIO focuses on modernizing legacy systems and AI
First seen on scworld.com Jump to article: www.scworld.com/brief/californias-new-cio-focuses-on-modernizing-legacy-systems-and-ai
-
Texas A&M CIO emphasizes user experience in cybersecurity strategy
First seen on scworld.com Jump to article: www.scworld.com/brief/texas-am-cio-emphasizes-user-experience-in-cybersecurity-strategy
-
Ex-CISA CIO Breaks Down Trump’s New AI Executive Order
Bob Costello on Voluntary Plan’s Impact on Collaboration – and CISA’s Pivotal Role. Former CISA CIO Bob Costello said President Trump’s voluntary AI cybersecurity review order provides a workable foundation for government-industry collaboration, though agencies will need time and resources to meet accelerated 30-day evaluations of advanced AI systems. First seen on govinfosecurity.com Jump to…
-
Turning tension into collaboration: How CIOs and CISOs can lead together
If properly managed and channeled, age-old friction between IT and cybersecurity can create a more resilient organization. First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/turning-tension-into-collaboration-how-cios-cisos-can-lead-together/821610/
-
Why Most Enterprise AI Failures Aren’t Technical
OpenText CIO Shannon Bell on Governance and Operational Maturity. Enterprise AI often fails not because the models are weak, but because organizations lack operational maturity. OpenText’s Shannon Bell explains why governance, data context and accountability determine whether agentic AI succeeds in production. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/most-enterprise-ai-failures-arent-technical-a-31822
-
Mythos-Level AI Is Creating a Tech Debt Crisis
Advanced AI Models Find More Holes Than Enterprise Security Teams Can Plug. Artificial intelligence models such as Anthropic’s Mythos are rapidly exposing decades of hidden software security debt, forcing CIOs and CISOs to rethink vulnerability management, remediation capacity and the trade-offs between availability and breach prevention. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/mythos-level-ai-creating-tech-debt-crisis-a-31750
-
7 tips for accelerating cyber incident recovery
Tags: attack, awareness, backup, breach, business, ceo, cio, ciso, cloud, communications, control, cyber, cybersecurity, data, defense, finance, framework, governance, incident, incident response, infection, insurance, international, lessons-learned, malicious, malware, monitoring, nist, risk, service, technology, threat, updateEmphasize scoping and containment from the outset: Because you can’t recover from what you can’t stop, scoping and containment should be the absolute first priority during incident recovery, says Amit Basu, CIO and CISO at freight shipping firm International Seaway.”Before anything else, you must stop the bleeding,” he says. This means understanding the true scope…
-
GSK: The AI-Driven Science Factory
AI Rebuilds $50B Pharma Giant’s Thinking, Plan Could Help Every Data-Driven Firm GSK is redesigning pharmaceutical research around AI, from data infrastructure to autonomous scientific agents. Its platforms accelerate hypothesis generation, imaging analysis and drug discovery workflows, offering CIOs a blueprint for enterprise-scale AI transformation in regulated industries. First seen on govinfosecurity.com Jump to article:…
-
EU’s Cyber Resiliency Act will put IT leaders to the test
Tags: access, attack, cio, cyber, cybersecurity, data, encryption, exploit, firewall, Hardware, identity, infrastructure, Internet, kubernetes, law, malicious, mitigation, open-source, password, programming, regulation, risk, risk-assessment, router, sbom, software, supply-chain, tool, update, vpn, vulnerabilityProduct safety: The CRA says digital products have to be secure by design and default, and can’t ship with known vulnerabilities like obvious default passwords that can be exploited. They also must be updatable if such vulnerabilities are found later, as well as minimize their impact by limiting the attack surface and protecting confidentiality and…
-
EU’s Cyber Resiliency Act will put IT leaders to the test
Tags: access, attack, cio, cyber, cybersecurity, data, encryption, exploit, firewall, Hardware, identity, infrastructure, Internet, kubernetes, law, malicious, mitigation, open-source, password, programming, regulation, risk, risk-assessment, router, sbom, software, supply-chain, tool, update, vpn, vulnerabilityProduct safety: The CRA says digital products have to be secure by design and default, and can’t ship with known vulnerabilities like obvious default passwords that can be exploited. They also must be updatable if such vulnerabilities are found later, as well as minimize their impact by limiting the attack surface and protecting confidentiality and…

