Tag

#governance

15 stories taggedgovernance.

A security operations center with security analysts working at workstations surrounded by multiple screens showing AI analytics tools, some dashboards appear un
AI Security

Four Gaps That Are Keeping AI Out of Your Security Team's Hands

Security operations centres are spending big on artificial intelligence, but most are not seeing results. The problem is not the technology.

4 min read
A computer screen showing an AI agent's intended actions versus its permitted scope, with visual indicators showing where the agent's behavior deviates from gua
AI Security

Varonis pitches 'intent-based' guardrails for AI agents that stray off task

Agent IBAC watches what an AI agent is trying to do, not just what it is allowed to touch, and pulls the brakes when the two drift apart.

4 min read
A corporate office with computer screens showing financial transaction approvals happening automatically, unobserved analysts walking past without reviewing the
AI Security

AI agents are approving transactions and nobody is watching

A new report finds most companies have handed financial controls to AI systems they cannot audit, trace, or investigate in real time.

4 min read
Security researcher presenting rulebook pages and governance documentation on screen, with highlighted vulnerabilities showing how compliance rules can be weapo
AI Security

The Cheapest Way to Beat an AI Security System Is to Read Its Rulebook

Confidence in autonomous hacking tools has collapsed. A researcher says the real problem runs deeper: the governance rules we write to keep AI security systems safe can become a weapon in an attacker's hands.

4 min read
A darkened office at 4 a
Ransomware

Your ransomware playbook is probably putting the wrong person in charge at 4 a.m.

A growing body of evidence shows that the real damage in ransomware incidents often comes not from the attack itself, but from who gets to decide whether to pull the plug on a business-critical system.

5 min read
Boardroom meeting with executives at a conference table, security documentation and risk assessments visible, tension evident in the disconnect between business
Policy & Regulation

Boards Do Care About Cybersecurity. They Just Don't Understand It.

Security chiefs and company directors want the same thing. A language gap between them is leaving organisations dangerously exposed.

4 min read
A split-screen visual effect showing rapid AI processing and data streams on one side, and a security team's slower monitoring station on the other, emphasizing
AI Security

Your AI Is Moving Faster Than Your Security Team Can Follow

Boards want CISOs to greenlight AI projects at speed. The tools to track what those AI systems actually touch, and whether they're behaving safely, haven't kept up.

3 min read
A dimly lit modern security operations centre viewed from behind an empty analyst chair, multiple large curved monitors glowing with abstract log data and netwo
Policy & Regulation

The Two-Speed SOC: Why Autonomous AI and Analyst Copilots Need Different Guardrails

A design question inside a Fortune 50 security team points to a bigger governance gap for AI in the security operations centre.

4 min read
A dimly lit server room at night, rows of glowing blue and green indicator lights on rack-mounted hardware stretching into the distance, empty operator chairs i
AI Security

Your AI Coding Bots Are Running Unsupervised and Nobody Knows What They Did Last Night

AI agents inside software development teams can write, test, and deploy code on their own, often with no human checking what they did. Most companies have no way to answer a simple question: who authorised that change?

4 min read
Illustration: A modern open-plan office at dusk, rows of glowing monitors showing abstract dashboard interfaces
AI Security

AI Is Making Decisions at Work. Most Companies Have No Rules for That.

Stephen Wilson, field CTO at HashiCorp, says businesses are giving AI tools real operational independence while still applying the loose oversight they used when AI only answered questions.

3 min read
Illustration: A darkened server room with long rows of blinking rack-mounted computers stretching into the background
Opinion

The Cybersecurity Skills Gap Is Real. But We're Measuring the Wrong Thing.

Companies keep buying courses and certifications. Breaches keep happening anyway. The problem is not a shortage of trained people. It is a shortage of people who have actually practised under fire.

3 min read
Illustration: A heavy oak boardroom table
Opinion

RSnake's Case for a CISO Code of Ethics

Robert Hansen argues that kickbacks, no-show jobs, and shelfware deals aren't just embarrassing, they're a national security problem.

3 min read
Illustration: a sleek modern server rack glowing with blue indicator lights
Policy & Regulation

When Legacy Infrastructure Becomes the Soft Underbelly of Your AI Agent Stack

Governance frameworks like NIST AI RMF and the EU AI Act assume the pipes under the model are secure. They often aren't.

3 min read
Illustration: a large corporate boardroom table with scattered financial documents, a risk matrix printout
Opinion

CISOs Are Being Handed the Business Risk Portfolio. Most Aren't Ready.

Security chiefs at Appfire, JumpCloud, and BECU describe how they're learning to own risks that finance and operations used to call their own.

3 min read
Illustration: a server room floor bathed in cool blue and amber light
AI Security

Knowingly Shipping Vulnerable Code Has Become Standard Practice, Survey Finds

A Checkmarx survey of 2,350 security leaders finds nearly half of production code is AI-generated, and enterprises are deploying it despite knowing it carries unresolved flaws.

3 min read
© 2026 Threat Vectr