Workday Ruling: How Europe’s Top Courts Raised the Bar for Employee Data Protection

TLDR: The Workday case in Europe established stricter GDPR standards for employee data protection. Key outcomes include: minor data breaches can invoke compensation claims, collective agreements cannot weaken GDPR compliance, intra-group data transfers are heavily regulated, and loss of control over personal data is enough for non-material damage claims. Employers must ensure all data handling aligns with GDPR to mitigate legal risks.

https://www.fisherphillips.com/en/news-insights/workday-ruling-how-europes-top-courts-raised-the-bar-for-employee-data-protection.html

Tech CIO Priorities in 2025: PwC

CIOs in 2025 face the challenge of balancing innovation with cost discipline. They must adopt technologies like AI and cloud for growth while ensuring strategic spending delivers ROI. This includes redefining IT's role from a cost center to a value builder. Successful CIOs invest in innovations that drive efficiencies and enhance collaboration within their organizations. They leverage AI for quick wins in automation and focus on cloud cost optimization to reinvest in innovation. Effective governance and communication of the value of IT investments are crucial to position CIOs as growth partners rather than mere support functions. The ability to navigate this balance is a competitive advantage in the tech landscape.

https://www.pwc.com/us/en/industries/tmt/library/tech-cio-priorities.html

Want to Become a CIO? Here’s What You Need to Know

To become a CIO, focus on both business and technical skills. Understand business operations, expand your perspective, and engage in cross-functional projects. Develop communication, leadership skills, and a grasp of business finance. Network strategically and avoid overemphasizing technical knowledge at the expense of business thinking. Aspire to impact rather than merely a title.

https://www.informationweek.com/it-leadership/want-to-become-a-cio-here-s-what-you-need-to-know

Using Artificial Intelligence? Prepare Now for the EU AI Act

EU AI Act regulates all AI systems used in the EU, imposing strict compliance for high-risk systems, including those affecting employment. Key requirements include AI literacy training, prohibition checks, technical measures, updated policies, data quality management, human oversight, continuous monitoring, recordkeeping, and informing affected individuals. Non-compliance can result in hefty fines. Organizations should assess current AI systems for regulatory adherence and begin the compliance process immediately.

https://www.staffingindustry.com/editorial/cws-30-contingent-workforce-strategies/using-artificial-intelligence-prepare-now-for-the-eu-ai-act

NIS2: Why Are Firms Struggling to Comply?

Many organizations struggle with compliance to the EU's NIS2 Directive due to complex supply chains, outdated infrastructure, and insufficient cybersecurity investment. ENISA warns that several critical sectors, like ICT and healthcare, face significant challenges. In contrast, industries such as electricity and banking show more cybersecurity maturity. Additionally, inconsistent national regulation and capacity issues hinder compliance efforts across EU member states. Recommendations for improving compliance include conducting risk assessments, establishing clear asset visibility, appointing NIS2 leaders, and implementing strong incident response plans.

https://www.itpro.com/business/policy-and-legislation/nis2-why-are-firms-struggling-to-comply

Rethinking and Realigning IT for the AI Era

CIOs are adapting IT structures to leverage AI's transformative potential, akin to past tech revolutions. AI is reshaping operations, prompting IT leaders to enhance efficiencies through innovations like AI-driven tools and cross-functional teams. Training and collaboration are key to navigating AI integration, as organizations strive to create personalized customer experiences while maintaining operational continuity. Continuous learning and adaptation are essential as AI technologies evolve rapidly, compelling IT to rethink workflows and engagement with the business.

https://www.cio.com/article/4022981/rethinking-and-realigning-it-for-the-ai-era.html

Why I’m Betting Against AI Agents in 2025 (Despite Building Them)

Summary: Author Utkarsh Kanwat, with experience in building 12+ AI agent systems, argues against the 2025 hype surrounding autonomous AI agents. He highlights three critical issues: compounded error rates in multi-step workflows, quadratic token costs in long conversations, and challenges in designing effective feedback systems. Successful AI systems rely on discrete operations with human oversight, rather than striving for full autonomy. Predictions indicate that fully autonomous agent startups will face economic challenges, while teams creating bounded, domain-specific tools will succeed. The future of AI will involve leveraging human control alongside AI capabilities, diverging from current hype.

https://utkarshkanwat.com/writing/betting-against-agents/

Revolutionizing IT Management With Generative AI: The Future Is Here

Generative AI (genAI) is transforming IT management, enhancing visibility and decision-making. It enables faster implementation of ideas, improves collaboration, and reveals outdated processes. Organizations should integrate genAI into robust operating models, utilizing graph databases for data management to gain insights and streamline operations. Major vendors are embedding genAI for efficiency across various IT functions. A strategic focus on governance and architecture is essential for success. Embracing “AI plus graph” is crucial for maintaining a competitive edge in IT management.

https://www.forrester.com/blogs/revolutionizing-it-management-with-generative-ai-the-future-is-here/

The 24-Hour Vs. 5-Day Divide: Why CEOs and CISOs Can’t Agree on Recovery Times

CEOs and CISOs disagree on cyberattack recovery times, with 80% of businesses expecting recovery in five days, while 23% aim for 24 hours. CISOs perceive the complexity of IT environments, affecting recovery strategies. A study showed recovery time improved to 28 days in Australasia, but dwell time before attacks averaged 199 days. Despite many organizations having incident plans, only 30% rigorously tested them, impacting recovery efficiency. Well-prepared organizations, fostering CISO-management communication and utilizing AI, perform better in cyber resilience, prioritizing continuous business recovery.

https://www.cdotrends.com/story/4639/24-hour-vs-5-day-divide-why-ceos-and-cisos-cant-agree-recovery-times

Scroll to Top