Author name: CIO

Goldman’s Marco Argenti on AI, Careers, and the Future of Engineering

Goldman's CIO Marco Argenti discusses AI's impact on Wall Street and careers, emphasizing its role in boosting productivity and redefining developer roles. He believes AI will help accelerate management skills without replacing jobs. Concerns include over-reliance on AI and potential societal divides. Argenti also highlights AI's potential in healthcare, echoing his commitment to charitable work in cancer research.

https://www.businessinsider.com/goldman-sachs-marco-argenti-cio-interview-ai-engineers-careers-2025-9

The 7 Cyber Security Trends Of 2026 That Everyone Must Be Ready For

Cybercrime will become the world’s third-largest economy in 2026, driven by advanced AI, deepfakes, and quantum threats. Businesses face new, growing risks but have opportunities to strengthen defenses.

Main Trends for 2026

  1. AI Agents: Autonomous AI tools escalate both attacks and defensive responses, increasing risk and sophistication on both sides.
  2. Deepfakes: More convincing fake audio and video will make social engineering attacks easier and more common.
  3. Ransomware: Ransomware attacks will grow and evolve, aided by deepfakes, ransomware-as-a-service, and anonymous cryptocurrencies.
  4. Human Factor: Humans remain the weakest link; companies will focus more on employee training and building security awareness.
  5. Quantum Security: Quantum computing threatens current encryption; focus shifts to quantum-resistant encryption methods.
  6. Regulations: Governments introduce stricter reporting and resilience requirements for companies, but effectiveness is unclear.
  7. Cyberwarfare: Nation-state and terrorist cyberattacks grow, targeting infrastructure, sowing chaos, and using disinformation.

Organizations should invest in quantum-safe encryption, AI-driven security, and human training now to prepare for the escalating threat of cybercrime.

https://www.forbes.com/sites/bernardmarr/2025/09/26/the-7-biggest-cyber-security-trends-of-2026-that-everyone-must-be-ready-for/

Instance Metadata Service (IMDS)

IMDS provides instance-specific metadata to cloud instances. Access via HTTP requests from within the instance. Supports configuration data, instance identity, security credentials. Key for automated scripts, secure applications.

5 Questions CISOs Should Ask Vendors

CISOs face a barrage of vendor pitches and rely on targeted questions to identify products that solve real business security problems with clear ROI. They favor vendors who understand specific organizational needs, promote tools that reduce workload, integrate seamlessly, and are transparent about costs and updates. Credibility is built through validated outcomes, real-world examples, and responsiveness to customer input, while vague claims, fear tactics, unnecessary buzzwords, and inflexible pitching are immediate red flags.

https://www.csoonline.com/article/4059801/5-questions-cisos-should-ask-vendors.html

Why More Businesses Turn to Interim CIOs

TechTarget and Informa Tech merge, creating a network of 220+ online properties covering 10,000+ topics, serving over 50 million professionals with trusted, objective content. This collaboration helps businesses gain insights for better decision-making. Interim CIOs are increasingly utilized for strategic IT leadership during transitions, offering cost efficiency and expertise, while providing immediate support and preserving operational continuity. They bridge gaps between IT and executive goals, fostering alignment and organizational stability.

https://www.informationweek.com/it-leadership/why-more-businesses-turn-to-interim-cios

Many ‘material’ Cybersecurity Breaches Go Unreported: VikingCloud

Summary: A VikingCloud survey reveals nearly half of cybersecurity leaders (48%) did not report material breaches to executives in the past year, often due to fears of punitive responses or reputational damage. With rising cyberattacks, particularly those driven by AI, the need for a culture that encourages reporting breaches without fear of job loss is emphasized. The study highlights the lack of clarity on whether surveyed companies breach any laws by not reporting and suggests tailoring incident response plans to legal standards.

https://www.cybersecuritydive.com/news/material-cybersecurity-breaches-unreported/760892/

EDPB Issues First Guidelines on the Interplay Between the Digital Services Act and the GDPR

EDPB released guidelines on the EU Digital Services Act (DSA) and GDPR interplay, emphasizing compliance, data protection, and cooperation between Digital Services Coordinators and data protection authorities. Key points include the need for transparency in automated decision-making, regulation of deceptive design patterns, and specific guidelines for age assurance. The importance of collaboration between regulators is stressed for managing personal data under these overlapping frameworks.

https://www.wsgr.com/en/insights/edpb-issues-first-guidelines-on-the-interplay-between-the-digital-services-act-and-the-gdpr.html

The New Org Chart: Unlocking Value With AI-native Roles in the Agentic Era

The article describes how organizational structures must evolve for the era of autonomous AI agents, introducing new key roles and changes in existing functions to maximize productivity and strategic impact.

New AI-Native Roles:

  • AI Agent Orchestrator: Manages and scales AI agent ecosystems, aligns agents with business goals, and prevents fragmented AI deployment.
  • Human-Agent Collaboration Designer: Designs intuitive workflows for seamless human-agent collaboration, driving productivity and user adoption.
  • AI Ethics & Governance Specialist: Sets and enforces ethical, transparent, and compliant standards for autonomous agent behavior.
  • AgentOps Specialist: Oversees the operational lifecycle of AI agents, ensuring reliability, cost control, and security.
  • GTM (Go-to-Market) Engineer: Automates and optimizes sales and marketing processes using AI, driving growth and hyper-personalization.

Shifts in Existing Roles:

  • IT: From fixer to architect of hybrid human-AI systems.
  • Cybersecurity: From monitor to strategist focused on proactive defense and AI oversight.
  • Data Engineering: From manual data work to data architecture and oversight.
  • Sales/Marketing: From repetitive tasks to creative, relationship-driven work, supervised by AI-enabled automation.

Leadership Mandate:

  • Leaders must shift from managing tech to architecting dynamic human/AI agent teams and adapt to rapidly evolving role ratios for future success.

https://www.cio.com/article/4060162/the-new-org-chart-unlocking-value-with-ai-native-roles-in-the-agentic-era.html

Fifty Years of Open Source Software Supply-Chain Security

Summary: The article discusses the enduring issues of software supply-chain security, highlighting a recent major attack on open source software through the XZ project. It reviews the history of software vulnerabilities, the consequences of supply-chain attacks, and the need for improved security measures such as authentication, vulnerability scanning, and the adoption of safer programming languages. The importance of funding open source projects to prevent security weaknesses is emphasized, drawing parallels to past incidents like Heartbleed. The author advocates for ongoing efforts to bolster defenses against potential attacks, as many fundamental security challenges persist in the industry.

https://cacm.acm.org/practice/fifty-years-of-open-source-software-supply-chain-security/

How to Gain Control of AI Agents and Non-Human Identities

Non-human identities (NHIs), including AI agents and service accounts, are proliferating in enterprises, posing significant security risks due to lack of visibility and oversight. Traditional identity management tools struggle to manage NHIs as they lack ownership, context, and standard protocols, making them vulnerable to exploitation. Security teams must proactively govern these identities, create inventories, and implement strong access controls to mitigate risks. A unified identity security approach is essential to address the increasing complexities of NHIs and to ensure a robust defense against potential threats.

https://thehackernews.com/2025/09/how-to-gain-control-of-ai-agents-and.html

Scroll to Top