#policy
77 stories taggedpolicy · page 4 of 6.

Your Vendors Are a Risk You Cannot Ignore. Here Is How Boards Should Own It.
Most companies review their suppliers and tick the boxes. Far fewer can actually say how much financial damage a vendor failure would cause them. That gap is the problem.

Your AI risk register is a list, not a plan. Here is what organisations are missing.
Documenting AI risks is the easy part. Knowing who can actually shut the system down when something goes wrong is where most programmes fall apart.

The Two-Speed SOC: Why Autonomous AI and Analyst Copilots Need Different Guardrails
A design question inside a Fortune 50 security team points to a bigger governance gap for AI in the security operations centre.

EU Sanctions Russian Intelligence Officers Over Years-Long Cyber Spying and Sabotage Campaign
Brussels has placed travel bans and asset freezes on individuals tied to a Russian-linked network accused of spying on European governments and attacking critical infrastructure.

Nine in Ten Top Adult Sites Now Check Ages in Australia, But VPN Workarounds Are Next on the Regulator's List
Australia's online safety watchdog says most major adult platforms have put age gates in place since March. Now it wants to know whether a simple privacy tool is letting users walk straight around them.

The Security Researcher Who Took On the US Legal System and Won an MBE Doing It
Jen Ellis started out running PR for a cybersecurity firm. She ended up testifying before Congress, brokering a peace deal between hackers and the Justice Department, and picking up a royal honour along the way.

Banning Kids From Social Media Sounds Simple. Actually Doing It Is Not.
Countries across four continents are passing age limits for social media. The hard part, it turns out, is proving how old anyone actually is.

EU Parliament Accidentally Extends Mass Message Scanning Until 2028
Too many MEPs skipped the vote. Now service providers on Discord, Gmail, Instagram and more can read your private messages without a warrant, until 2028.

From Unusual Path to the Top: What Tarah Wheeler's Career Tells Us About Who Gets to Lead in Cybersecurity
Tarah Wheeler is now a chief security officer at a firm that advises some of the highest-stakes organisations in the world. Her route there looked nothing like the standard playbook.

Why Cybersecurity Teams Are Starting to Speak the Language of Business
Security programmes built around technical checklists often fail to show executives what is actually at risk. A growing push asks teams to tie every control directly to business outcomes.

Tasmania Becomes Last Australian State to Outlaw Non-Consensual Sharing of Intimate Images
After years of victims being turned away by police with no clear law to apply, Tasmania's government has announced it will criminalise the sharing — or threatening to share — intimate images without consent, including AI-generated fakes.

Australia Raises Alarm Over AI Scribes Listening In on Doctor Visits
Federal health officials are warning that AI tools recording patient conversations in GP clinics may pose serious privacy risks — and regulators are now weighing whether new rules are needed.

Five Eyes spy chiefs warn AI is shrinking the window to stop cyberattacks — and boards need to act now
The heads of five Western cybersecurity agencies say artificial intelligence is already changing how fast criminals can strike. Waiting is no longer an option, they say — and the warning is aimed squarely at company boards, not IT teams.

American Tech Is Quietly Powering the Global Scam Machine
A joint investigation by AP and FRONTLINE found that tools built by US companies are helping criminals run fraud operations at industrial scale — and most victims never see it coming.

Australians Are Safer Online Than Last Year — Unless They Run a Small Business
A new government survey found cybercrime fell across Australia in 2025, but small business owners are facing more legal and staffing fallout than ever before.