Posts Tagged ‘cybersecurity governance’
NIS2 personal liability for German boards is now live
NIS2 personal liability is now a binding reality for German management boards. Section 38 of the amended BSI Act (BSIG) establishes a personal, non-delegable responsibility for cyber risk at board and executive level — a responsibility that came into force without a transition period on 6 December 2025. Insufficient oversight, inadequate governance, or a board…
Read MoreUnsanctioned AI on the Rise: Risks and Mitigation Tips
New tools, copilots, and AI-powered services appear almost weekly, and employees are quick to experiment with them, often unsanctioned AI. Drafting emails in the browser, summarising documents, generating code snippets, analysing data in tools that never touch the company’s AI roadmap Much of this tool use doesn’t happen through formally approved platforms. It happens quietly,…
Read More
