Blog

Understanding Right to Explanation and Automated Decision-Making in Europe’s GDPR and AI Act

Automated decision-making (ADM) systems aim to enhance decision accuracy and fairness in areas like hiring and healthcare. Europe's GDPR and AI Act seek to ensure fairness in ADM, emphasizing transparency and human oversight, but recent failures highlight risks of bias and lack of accountability. The “right to explanation” is essential for understanding automated decisions, yet complex models often complicate clear explanations. While explainable AI methods exist, they struggle with accuracy. There's a need for ADM protections to limit fully automated decisions, especially in contexts involving human agency, to prevent unjust outcomes and maintain fairness in democratic societies.

https://www.techpolicy.press/understanding-right-to-explanation-and-automated-decisionmaking-in-europes-gdpr-and-ai-act/

No More AI Silos: The CIO Integration Playbook

AI adoption is fragmented, creating silos within organizations and causing inefficiencies. CIOs must unify AI strategy, data, and platforms to enhance enterprise value. Key integration strategies include aligning AI with business goals, ensuring data integration, adopting a platform approach, fostering cross-functional collaboration, managing change, and establishing governance. Successful examples from CIOs illustrate the importance of breaking down silos and creating cohesive AI integration for improved organizational outcomes.

https://www.techtarget.com/searchcio/tip/No-more-AI-silos-The-CIO-integration-playbook

How AI Will Transform the CIO Role by 2030

By 2030, AI will radically transform the CIO role. CIOs will manage hybrid human-AI teams, lead business strategy, and drive revenue through AI-enabled products and services. Their responsibilities will expand to managing enterprise-wide AI portfolios, ensuring ethical, secure use of AI, and enabling new business models. Traditional duties in budgeting, procurement, and infrastructure management will evolve with AI-driven, real-time approaches, modular platform selection, and ethically adaptive systems. Overall, CIOs will focus more on top-line growth, innovation, and embedding ethical values into IT as business units become more autonomous with AI.

https://www.informationweek.com/machine-learning-ai/how-ai-will-transform-the-cio-role-by-2030

Why Shadow AI Is the Next Big Governance Challenge for CISOs

Shadow AI poses significant security and privacy risks as employees use AI tools without IT oversight, including public LLMs and SaaS applications. This use can lead to data breaches and compliance violations, as organizations cannot track sensitive data or protect it adequately. Banning these tools is ineffective and might increase hidden AI use. Instead, organizations should identify and approve AI tools while implementing safeguards, monitoring data flows, and training employees on risks. A proactive strategy is needed to balance security with the competitive advantages that AI provides.

https://www.infosecurity-magazine.com/news-features/shadow-ai-governance-cisos/

Five Takeaways for Tech From Draghi’s Speech

Five takeaways from Draghi's speech include: 1) Major telecom reforms (Digital Networks Act) are expected soon; 2) A call for deeper reforms to GDPR, which has increased data costs for EU firms; 3) A request to pause high-risk AI Act rules; 4) Advocacy for “Buy European” public procurement policies to support local tech; 5) Suggestions for easier merger regulations in Europe to promote industry consolidation. Overall, Draghi emphasized the need for impactful governance and simplification to boost European competitiveness. https://www.euronews.com/next/2025/09/17/five-takeaways-for-tech-from-draghis-speech

How CISOs Make the Business Care About Cybersecurity

CISOs share strategies to engage businesses in cybersecurity without fear tactics. Key points include aligning security with business goals, demonstrating value without breaches, careful insurance documentation, leveraging soft skills, creating effective awareness training, and emphasizing health and delegation. The conversation around security is evolving into a focus on business resilience, encouraging CISOs to build trust and foster strategic partnerships. https://cisoseries.com/how-cisos-make-the-business-care-about-cybersecurity/

10 Red Flags Your CISO Is Just Filling a Seat

Weak CISOs often disguise their ineffectiveness through jargon, focusing on tasks rather than outcomes and tools over strategy. Signs of inadequate leadership include low visibility in strategic discussions, high team turnover, fear-driven management, lack of influence across departments, slow incident responses, and no talent development. Strong CISOs should align security with business goals, actively communicate clarity, and integrate security practices throughout the organization, ensuring risk reduction translates into measurable business outcomes. https://www.forbes.com/councils/forbestechcouncil/2025/09/17/10-red-flags-your-ciso-is-just-filling-a-seat/

When It Comes to Breaches, Boards Can’t Hide Behind CISOs Any Longer

91% of security professionals assert that boards, not CISOs, hold ultimate accountability for cybersecurity breaches. A recent survey indicates 56% believe board members should face sanctions for serious incidents, highlighting a shift in responsibility as cybersecurity increasingly enters C-suite discussions. Regulations like NIS2 and DORA suggest senior managers could be held liable, but accountability remains vague. For effective governance, boards require complete risk information from security professionals to make informed decisions. https://www.tripwire.com/state-of-security/breaches-boards-cant-hide-behind-cisos

CIOs Set Talent Strategies for a Future-ready IT Workforce

CIOs focus on skills training for IT workforce readiness amidst AI advancements. They aim to blend technical fluency with curiosity and adaptability. Emerging roles require collaboration across disciplines, driving a shift from specialization to a focus on holistic competencies. Companies like Vanguard and Harvard Business School emphasize continuous learning and adaptability to prepare for evolving tech landscapes.

https://www.cio.com/article/4051056/cios-set-talent-strategies-for-a-future-ready-it-workforce.html

The Pattern of Early Adoption of Security Tools

CISO Series discusses challenges in selling cybersecurity products, noting that large companies typically adopt new tools first, despite being risk-averse. Startups struggle to bridge the gap to smaller clients. Key points include the importance of defining target markets, understanding product integration, and the need for ease of use and managed services. Insights also highlight the influence of major industry players like Gartner on adoption trends, and the concept of a “security poverty line” affecting SMBs. The episode encourages defining customer needs and adapting product offerings accordingly to foster successful market entry.

https://cisoseries.com/the-pattern-of-early-adoption-of-security-tools/

Scroll to Top