Author name: CIO

CISOs Must Rethink the Tabletop, as 57% of Incidents Have Never Been Rehearsed

CSOonline introduces a hybrid search to enhance content exploration. Key features include security spotlights, newsletters, resources, and buyer's guides, along with extensive topics on cybersecurity and IT management. An article emphasizes that 57% of cyber incidents are unexpected, prompting CISOs to rethink tabletop exercises to focus on realistic, smaller attacks rather than rehearsing for known threats.

https://www.csoonline.com/article/4071102/cisos-must-rethink-the-tabletop-as-57-of-incidents-have-never-been-rehearsed.html

Digital Transformation Works Best When Co-owned — but Only if You Do It Right

CIOs and CxOs must collaborate on digital projects for successful transformation, sharing leadership and costs. Active participation from both sides ensures value creation and accountability, preventing project failures attributed solely to IT. CIOs need CxO budget commitments and defined responsibilities for projects, promoting a united front in digital initiatives.

https://www.cio.com/article/4069904/digital-transformation-works-best-when-co-owned-but-only-if-you-do-it-right.html

AI Is Not a Special Budget Category

CIOs should evaluate AI investments using standard business principles, focusing on value creation rather than treating AI as a special budget category. Moving beyond pilot projects, organizations need to measure AI’s impact on revenue, cost efficiency, asset utilization, and risk management, applying consistent metrics across all technology. The budget should categorize AI initiatives as embedded, differentiating, or foundational, based on their role and potential return. The goal is to integrate AI into broader financial planning, reinforcing that technologie investments should align with business objectives and deliver measurable returns.

https://www.cio.com/article/4071641/ai-is-not-a-special-budget-category.html

How to Mitigate Supply Chain Attacks

TLDR: Supply chain attacks exploit trusted vendors, causing major cybersecurity threats like breaches in companies such as SolarWinds and MOVEit. Traditional risk management with checklists is outdated, leaving organizations vulnerable to fast-evolving attacks. Intelligence-led monitoring provides real-time visibility, early warning signals, and proactive defense, enhancing security against emerging threats. Best practices include continuous monitoring, integrating external intelligence, and fostering cross-team collaboration to build resilience against supply chain risks. Recorded Future offers tools to shift from reactive to proactive vendor risk management.

https://www.recordedfuture.com/blog/supply-chain-attacks

Research: Improved CEO-CIO Alignment Will Catalyze Strategic Decisions on AI Adoption

Netskope's research highlights that improved alignment between CEOs and CIOs is crucial for effective AI adoption. While many CIOs are taking on strategic roles, 39% feel misaligned with CEOs on key decisions, impacting their empowerment in IT strategy. CIOs are increasingly involved in broader business priorities, with 41% advocating for more IT infrastructure investment. The role of CIO is evolving, requiring stronger stakeholder engagement and a focus on business outcomes rather than just technical expertise.

https://www.globenewswire.com/news-release/2025/10/13/3165559/0/en/Research-Improved-CEO-CIO-Alignment-Will-Catalyze-Strategic-Decisions-on-AI-Adoption.html

How to Futureproof Your IT Team in the AI Era

The article emphasis on redefining IT roles as AI impacts jobs, requiring modern skills and adaptability. CIOs must focus on training, mentoring, and restructuring to prepare teams for future demands in AI, analytics, cloud management, and cybersecurity. New entry-level roles should prioritize problem-solving skills over repetitive tasks, fostering collaboration and innovation within IT organizations.

https://www.cio.com/article/4062363/how-to-futureproof-your-it-team-in-the-ai-era.html

Embedding Threat Intelligence and Practical Training in ICS Cybersecurity Awareness for Frontline Resilience

Rethinking ICS cybersecurity focuses on embedding threat intelligence and practical training into awareness programs for frontline resilience. Traditional IT-centric views are inadequate due to rising state-sponsored threats. Organizations are shifting from mere compliance to a culture of cybersecurity, emphasizing safety, operational continuity, and employee empowerment. Dynamic role-based training, powered by AI, helps counter misinformation and improve real-time threat detection. Engagement, tailored training, and continuous assessment enhance security posture. ICS environments face unique challenges, necessitating specialized knowledge on risks tied to safety and engineering. As cybersecurity threats evolve, fostering a psychologically resilient workforce becomes essential, prioritizing verification and critical thinking to combat AI-driven deception and elevate operational safety.

https://industrialcyber.co/features/embedding-threat-intelligence-and-practical-training-in-ics-cybersecurity-awareness-for-frontline-resilience/

Goldman’s Chief Information Officer Has 4 Tips on How to AI-proof Your Career, Including ‘posing Provocative, Non-obvious Questions’

Goldman Sachs CIO Marco Argenti offers 4 tips to enhance careers in an AI-driven world:

  1. Conductor Role: Shift focus from just doing tasks to managing human-AI collaborations.
  2. Provocative Questions: Emphasize creativity by asking unconventional questions to unlock AI's potential.
  3. Personalized Toolkits: Curate a mix of AI tools tailored for specific tasks.
  4. Skeptical Verification: Always validate AI outputs to catch errors.

The key is blending tech fluency with creativity and discernment.

https://fortune.com/2025/10/10/ai-entry-level-career-how-to-succeed-work-with-technology-skills/

Interaction of the GDPR and the EU Data Act

Summary: The GDPR and the EU Data Act are laws impacting data sharing and privacy. The GDPR focuses on personal data protection, while the Data Act aims to enhance data accessibility and sharing. Their overlapping scopes create compliance challenges, especially when determining lawful bases for processing personal data within generated data. Cloud service providers and data holders must navigate these complexities to align their practices and documentation with both laws, ensuring accountability and legal compliance.

https://www.taylorwessing.com/en/global-data-hub/2025/eu-digital-laws-and-gdpr/gdh—interaction-of-the-gdpr-and-the-eu-data-act

AI First: The EU’s New AI Strategy

The EU's new AI strategy emphasizes applying AI in various industries, backed by significant investment to boost technological sovereignty and scientific innovation. Upcoming initiatives include transforming Digital Innovation Hubs and establishing the Apply AI Alliance to promote collaboration. The strategy emphasizes an “AI first” mindset to enhance Europe's global competitiveness.

https://www.cio.com/article/4070543/ai-first-the-eus-new-ai-strategy.html

Scroll to Top