Thinking
Articles on compliance, business continuity, and information security, written for the people who have to make it work in practice.
New legislation is coming. Organisations that treat this as a compliance exercise will miss the point. Here is what the Bill actually requires and how to get ahead of it.
Read the article →AI is changing what governance means in practice. This is a guide for leaders who need to make decisions now, not wait for the regulatory landscape to settle.
Read the article →Most risk registers are documents that satisfy an auditor, not tools that drive decisions. Here is what the difference looks like in practice and how to close the gap.
Read the article →Most organisations do not struggle with crisis communications because they lack tools. They struggle because the tools are not connected to clear decision-making frameworks.
Read the article →The quantum threat to current encryption standards is not theoretical. The transition window is open now, and organisations that wait will face a harder migration later.
Read the article →The Corporate Sustainability Reporting Directive has implications beyond the EU. If your organisation works with European entities, here is what you need to understand.
Read the article →