Blog

“There Is No Magic”

Katherine Wastell from Public Digital discusses design's role in reshaping organizations in an interview with Rob Alderson. Public Digital emphasizes user-centered design to tackle complex problems and highlights their new book, Competitive Advantage by Design. Wastell explains the challenges of implementing design thinking in organizations, emphasizing cultural shifts and leadership involvement. She notes the importance of addressing systemic issues rather than just product-focused solutions and encourages designers to engage in higher-level organizational discussions to facilitate change.

https://www.designweek.co.uk/there-is-no-magic-an-hour-with-public-digitals-katherine-wastell/

What CIOs, CSOs and CTOs Need to Know About PCI Scoping and Segmentation Guidance: By David King

CIOs, CSOs, and CTOs must understand PCI DSS scoping and segmentation in modern networks as they face unique challenges from cloud computing and zero-trust architectures. Key points include the need for effective segmentation to protect cardholder data, adapting to multi-cloud and hybrid environments, utilizing advanced tools like Software-Defined Networking for segmentation, and conducting regular penetration testing to ensure compliance. Implementing zero-trust models enhances security and requires comprehensive understanding of data flows, automation, and continuous authentication. Embracing these practices will strengthen payment security and compliance in a complex landscape.

https://www.finextra.com/blogposting/30138/what-cios-csos-and-ctos-need-to-know-about-pci-scoping-and-segmentation-guidance

Europe Is Scaling Back Its Landmark Privacy and AI Laws

Europe is reducing protections in its privacy and AI laws due to pressure from Big Tech and the US government. The EU plans to simplify GDPR regulations, moderate AI rules, and make it easier for companies to use personal data for AI training, aiming to foster innovation and economic growth. This includes reducing cookie pop-ups and centralizing AI oversight while facing criticism for potentially weakening user safeguards. The proposal will undergo scrutiny in the European Parliament and among member states, likely leading to significant debate and modification.

https://www.theverge.com/news/823750/european-union-ai-act-gdpr-changes

CIOs Are Being Lumped With AI Responsibilities

CIOs are increasingly tasked with AI responsibilities, reflecting a shift to large-scale AI deployment, though many struggle with inadequate security processes. While collaboration with the C-suite is improving, integration with data teams remains weak. Despite these challenges, most CIOs feel confident in adapting to their changing roles, seeking better support for AI initiatives and security collaboration.

https://www.techradar.com/pro/cios-are-being-lumped-with-ai-responsibilities-and-many-of-them-arent-happy-with-that

How Docusign CISO Michael Adams Plans to Push Back Against Fraud

Docusign's CISO, Michael Adams, emphasizes security in their products, launching a verification email for forwarded messages to combat fraud as malicious actors exploit the platform. Docusign's new “trust and safety team” and tools like AI risk scoring enhance defenses, addressing user vulnerabilities during phishing attempts. This initiative marks a significant step in improving trust checkpoints within the industry, as other vendors are encouraged to adopt similar measures.

https://www.itbrew.com/stories/2025/11/19/how-docusign-ciso-michael-adams-plans-to-push-back-against-fraud

Deforestation: Council Ready to Start Talks With Parliament on a Targeted Revision of the Regulation

Council adopted a negotiating mandate to revise the EU deforestation regulation, aiming to simplify implementation and postpone deadlines. New application dates are 30 December 2026 for large operators and 30 June 2027 for smaller ones. A review will assess impacts on operators, especially smaller ones, and negotiations with Parliament will proceed for final agreement.

https://www.consilium.europa.eu/en/press/press-releases/2025/11/19/deforestation-council-ready-to-start-talks-with-parliament-on-a-targeted-revision-of-the-regulation/

Countries Use Cyber Targeting to Plan Strikes: Amazon CSO

Amazon's security chief warns hostile nations use cyber operations for scouting targets before physical attacks, endangering companies unaccustomed to being targeted. Organizations must integrate digital and physical security and rethink risk management, as cyber reconnaissance links to military actions. Examples include Iranian and Russian operations using hacked surveillance for military planning. Firms must understand the interplay between their physical and cyber domains to mitigate risks effectively.

https://www.theregister.com/2025/11/19/amazon_cso_warfare_cyber_kinetic/

Our CIO on Why Security Must Be Built Into AI From Day One

The CIO of Palo Alto Networks stresses that security must be built into AI solutions from the start rather than added at the end. AI’s value comes from increased speed, efficiency, and improved user experiences, but rapid adoption introduces new vulnerabilities. At Palo Alto Networks, integrating security into the AI-driven transformation, such as automating IT support and rethinking the development lifecycle, enabled both agility and protection. Critical security measures include scanning models, managing access, and ensuring runtime safety. Ultimately, only organizations that embed security as a design principle will adapt rapidly and securely to the new AI landscape.

https://www.paloaltonetworks.com/blog/2025/11/cio-why-security-must-be-built-into-ai/

The EU Promised to Lead on Regulating Artificial Intelligence. Now It’s Hitting Pause.

EU is delaying AI regulations by at least a year due to pressure from the U.S. and tech companies, abandoning its goal of being a regulatory leader. The decision follows lobbying from tech industry and governments, as concerns about losing competitiveness grow. Proposed changes will exempt some companies from regulations and extend compliance timelines, prompting criticism over potential erosion of fundamental rights.

https://www.politico.eu/article/the-eu-wanted-to-lead-on-regulating-ai-now-its-hitting-pause/

Scroll to Top