Topic
Analyst Insights

Trickle-down security: how cyber regulations are rippling through EU and UK economies
Across Europe and the UK, cybersecurity regulations aimed at critical sectors have set off a chain reaction of accountability down the cyber supply chain and throughout the business ecosystem, strengthening the cyber resilience of whole economies.

Vibe coding may be unstoppable—but here’s how to rein in the risks
Like the meteoric rise of ChatGPT, vibe coding is all anybody can talk about this year. In fact, it just became a word in the dictionary. But beware the boom: Here’s what enterprise and security leaders need to know to keep their orgs safe.

The essential CISO playbook for security team turnover
Amid fierce competition for talent in this understaffed and overstressed industry, CISOs must prepare for the eventual turnover of their cybersecurity staff. Follow these six best practices to keep the security team running smoothly—and the enterprise safe.

Cyber hygiene’s new ally: Reinforcement learning promises a stronger defense in real time
Reinforcement learning helps systems learn by trial and error—just like people. For cybersecurity, that means a potential new way to spot attacks, outthink adversaries, and evolve defenses in real time.

Employee security training is way overdue for a shake-up. Here’s the fix
Odds are your employee security training just isn’t cutting it. With staffers still falling for phishing scams and AI amping up attacks, researchers advise replacing or supplementing the usual methods with skills-based approaches that allow workers to practice, get feedback, and retain what they learn on a regular basis. Follow these tips to make training part of your culture.

How AI and automation can boost compliance with Australia’s ‘Essential Eight’
Compliance rates with Australia’s complex Essential Eight cyber guidelines are anemic. The fix? Forget traditional compliance. Opt for “continuous compliance,” a more effective approach made even easier by AI and automation, which can regularly assess and update systems and satisfy auditors—whenever they come calling.

What you need to know about South Korea’s new AI law
South Korea is looking to become an international leader in AI, pouring money and resources into AI projects and adopting the new AI Basic Act. Set to go into effect in January, South Korea’s AI Basic Act is a comprehensive AI legal framework that offers a compelling alternative to legislation launched in the EU and Japan. Some experts think its adaptability could make it a model for other nations.

Lateral Movement Update: 3 Ways to Stop the Sideways Steal of Data Across Your Network
After penetrating the perimeter, hackers can execute lateral movement—and survey network structure, map devices, identify targets, seize data—in just 27 minutes. Old-school defense tactics (and, yes, AI and automation) can stop intruders in their tracks.

Help Desk Hell: The Targeted Attacks That Fool Your IT Workers and Steal Your Data
Social engineering, upgraded: Hackers use AI and advanced tech to exploit kind employees, breach networks, and devastate data—fast.

Spoilage Alert: Cyberattacks Are Disrupting Europe’s Supermarket ‘Cold Chain’
A recent wave of cyberattacks on cold chain companies—most recently in Germany and the UK—have experts worried about the delivery of food, medicine and other perishables. We offer practical cyber strategies for logistics vendors and consider whether these attacks will ramp up in the U.S.

Subtle Sabotage: The Rise of Data Tampering, the Next Cyber Battleground
Data tampering is a stealthy, often underestimated tactic in a hacker’s toolkit that can distort audits, mislead regulators, and erode customer trust. Arm your teams with these five expert-endorsed strategies.

The IT Operations and Security Skills Gap: What if We Don’t Know What We Don’t Know?
A recent survey and report cosponsored by Tanium and conducted by the Enterprise Strategy Group, now part of Omdia, uncovered data that some may find surprising—perhaps even alarming.