We Are All AI Philosophers Now

The article emphasizes that AI systems inherently carry the biases and values of their creators through design choices, data, and policy decisions, meaning AI is never truly neutral. It calls on IT leaders to recognize that adopting AI is a governance decision that requires disciplined oversight, transparency, and accountability to manage risks and ensure AI-driven decisions align with organizational and societal values.

https://www.cio.com/article/4145026/we-are-all-ai-philosophers-now.html

Security and Generative AI Are Learning to Get Along

IT professionals are navigating the challenge of integrating generative AI into cybersecurity without compromising safety, as the technology’s reliance on large volumes of raw data can expand threat surfaces. Experts emphasize the need for strong security architecture and domain expertise to ensure AI tools are both effective and secure, a priority underscored by the recent White House cyber strategy calling for AI-enabled cyber defense and innovation stewardship.

https://www.itbrew.com/stories/2026/03/12/security-and-generative-ai-are-learning-to-get-along

AI Is Everywhere, But CISOs Are Still Securing It With Yesterday’s Skills and Tools, Study Finds

A 2026 study by Pentera reveals that most Chief Information Security Officers (CISOs) are struggling to secure AI systems using outdated skills and legacy security tools, with 67% reporting limited visibility into AI usage within their organizations. The primary challenges are not budget-related but stem from a lack of specialized expertise and insufficient AI-tailored security controls, leading many to rely on traditional defenses unsuited for the complexities of AI infrastructure.

https://thehackernews.com/2026/03/ai-is-everywhere-but-cisos-are-still.html

Top 5 Things CISOs Need to Do Today to Secure AI Agents

The article emphasizes the critical need for Chief Information Security Officers (CISOs) to secure autonomous AI agents by treating them as first-class digital identities and shifting focus from traditional AI guardrails to strict identity-based access controls. It outlines five key actions: managing AI agents as distinct identities with clear ownership and permissions, eliminating shadow AI through continuous identity visibility, securing agents based on their intent, and implementing full lifecycle governance to prevent risk accumulation, highlighting that identity is the foundational and scalable control plane essential for safe AI deployment.

https://www.bleepingcomputer.com/news/security/top-5-things-cisos-need-to-do-today-to-secure-ai-agents/

SailPoint Launches Shadow AI Remediation to Empower Enterprises With Real-time Visibility and Control Over AI Usage

SailPoint Technologies has launched Shadow AI Remediation, a new solution that provides enterprises with real-time visibility and control over employees' use of unauthorized generative AI tools like ChatGPT and Gemini. This platform-centric tool enables organizations to monitor AI usage, prevent unauthorized data uploads, and enforce compliance by integrating AI governance into SailPoint's unified identity security framework.

https://www.globenewswire.com/news-release/2026/03/17/3257245/0/en/sailpoint-launches-shadow-ai-remediation-to-empower-enterprises-with-real-time-visibility-and-control-over-ai-usage.html

How Agentic AI Will Self-assemble the Enterprise Stack

The article discusses how agentic AI is transforming enterprise application modernization by enabling autonomous, continuous, and dynamic self-assembly and optimization of technology stacks, moving beyond traditional human-led, project-based approaches. However, the key challenge lies not in technology but in governance, cultural readiness, and trust, as leadership must adapt to distributed accountability and policy-driven control to successfully govern AI-driven autonomous modernization at scale.

https://www.cio.com/article/4145777/how-agentic-ai-will-self-assemble-the-enterprise-stack.html

Bank Built Its Own AI Threat Hunter Because Vendors Can’t

Australia’s Commonwealth Bank developed its own agentic AI threat hunting tools after finding that cybersecurity vendors could not keep pace with the rapidly increasing volume and sophistication of AI-powered threats, which saw their weekly threat signals surge from 80 million to 400 billion. The in-house AI system significantly reduced threat assessment time from two days to 30 minutes and helps frontline analysts focus on problem-solving rather than repetitive tasks, addressing both operational scale challenges and analyst mental health concerns.

https://www.theregister.com/2026/03/17/commonwealth_bank_ai_defense/

The Operational Excellence Playbook for AI Transformation

The article outlines a framework for AI transformation grounded in operational excellence disciplines like maturity modeling, risk management, cost optimization, and change management, emphasizing that organizations must first establish a strong foundational maturity before adopting AI. It highlights that successful AI adoption depends more on building a robust data layer and ontology aligned with business objectives than merely selecting advanced AI models, and asserts that experienced CIOs who have matured their IT organizations are best positioned to lead AI transformations.

https://nationalcioreview.com/articles-insights/the-operational-excellence-playbook-for-ai-transformation/

Beyond the Menu of Options: a Taxonomy for Information Security Strategies

The article proposes a taxonomy for information security strategies, categorizing them into reactive defensive, proactive defensive, and offensive measures. Reactive defensive measures counter ongoing information influence, while proactive defensive measures build long-term resilience. Offensive measures involve a targeted state using information operations to counter malign influence.

https://smallwarsjournal.com/2026/03/16/beyond-the-menu-of-options-a-taxonomy-for-information-security-strategies/

Autonomous AI Agents and the GDPR: First Detailed Spanish Regulatory Guidance Sets the Bar

The Spanish Data Protection Agency (AEPD) has published the first detailed regulatory guidance on autonomous AI agents under the GDPR, addressing challenges posed by AI systems that independently plan, reason, and execute tasks with limited human oversight. This guidance highlights critical compliance issues, including defining controller and processor roles, transparency obligations, data minimization, automated decision-making risks, and the need for thorough risk assessments, setting a precedent that extends beyond Spain and is relevant for all organizations deploying agentic AI in personal data processing.

https://technologyquotient.freshfields.com/post/102mmys/autonomous-ai-agents-and-the-gdpr-first-detailed-spanish-regulatory-guidance-set

Scroll to Top