Microsoft May Soon Allow IT Admins to Uninstall Copilot

Microsoft testing policy to let IT admins uninstall Copilot from managed devices. This will apply to systems within Windows 11 Insider Preview and targets unlaunched apps. The policy allows once-only uninstallation, with potential for user reinstallation. Other beta fixes included addressing File Explorer crashes and Start menu issues.

https://www.bleepingcomputer.com/news/microsoft/microsoft-may-soon-allow-it-admins-to-uninstall-copilot-on-managed-devices/

Global AI Adoption in 2025

AI Adoption Report 2025 Summary:
Global AI adoption increased to 16.3% by late 2025, with significant disparities: the Global North's adoption (24.7%) surged nearly twice as fast as the Global South (14.1%), highlighting a widening digital divide. Leading countries like the UAE and Singapore invest heavily in AI infrastructure, while emerging players like South Korea showcased remarkable gains. The open-source platform DeepSeek gained traction, especially in underserved regions, emphasizing access as a key factor in AI adoption. The challenge remains to ensure equitable technological progress worldwide.

https://www.microsoft.com/en-us/corporate-responsibility/topics/AI-Economy-Institute/reports/Global-AI-Adoption-2025/

The Next Two Years of Software Engineering

Extreme TLDR: Software engineering faces AI's impact on junior roles and coding skills by 2026. Junior hiring may decline as AI automates tasks or grow with new industries needing devs. Core programming skills may wither or become crucial, shifting focus from coding to oversight. Developer roles may shrink to auditing AI outputs or expand to orchestrating AI systems. Versatile “T-shaped” engineers who adapt are favored over narrow specialists. Education shifts towards practical skills over degrees as companies embrace non-traditional training pathways. Continuous learning and human creativity remain essential amidst change.

https://addyosmani.com/blog/next-two-years/

Why Cybersecurity Cannot Hire Its Way Through the AI Era

Cybersecurity faces a talent shortage; AI can help manage risks effectively. Automation is vital for handling modern threats, and AI enhances productivity despite job displacement. Organizations must focus on prioritizing significant risks and reskilling personnel. AI may create new roles while improving processes. The Risk Operations Center (ROC) framework shifts from reaction to proactive risk management. Continued scrutiny is necessary for AI-generated coding risks. Embracing AI's potential is essential for cybersecurity resilience and growth.

https://cyberscoop.com/cybersecurity-talent-shortage-ai-risk-operations-center-2026-op-ed/

What Makes a Successful CISO?

CISO's role shifts from technical focus to business leadership; their purpose is to align cybersecurity with business objectives. Discussions on defining CISO roles highlight the need for both technical knowledge and strategic vision, emphasizing that organizations must clarify expectations for CISOs. The evolving landscape necessitates CISOs to foster business resilience, communicate in business language, and collaborate across departments, especially as AI transforms security dynamics.

https://cisoseries.com/what-makes-a-successful-ciso-2/

Coder Unveils AI Governance Tools for Developers

Coder.com launched a suite of AI governance tools for developers, enhancing self-hosted workspaces with AI coding agents. The platform includes AI Bridge for centralized model access, Agent Boundaries for security controls, and Coder Tasks for workflow automation. This structure aims to provide enterprises control over AI use, reducing risks associated with fragmented systems. As organizations adopt AI more deeply in development, Coder.com emphasizes the need for a unified governance model.

https://itbrief.co.uk/story/coder-unveils-ai-governance-tools-for-developers

The State of Trusted Open Source

TLDR: Chainguard's report on the open source software supply chain reveals key insights: AI is reshaping the stack, risks mostly lie in lesser-known “longtail” images, and compliance drives software choices. Popular images don't correlate with security risks—98% of vulnerabilities are outside top projects. Chainguard remediated critical CVEs in under 20 hours, emphasizing the need for fast response across all software components, not just popular ones. As open source complexity grows, addressing risks in less visible areas is crucial for security and compliance.

https://thehackernews.com/2026/01/the-state-of-trusted-open-source.html

PCI DSS Compliance Is a Business Essential, Not an IT Task

PCI DSS compliance is essential for businesses, not just IT, to mitigate risks from data breaches, avoid fines, and maintain customer trust. It's vital for any entity handling cardholder data. Compliance should be ongoing, not a yearly task, as failure could halt operations and lead to financial losses. Certification signals commitment to security but must be part of continuous operational discipline to manage threats effectively. PCI DSS standards evolve to address new challenges in payment processing.

https://www.engineeringnews.co.za/article/pci-dss-compliance-is-a-business-essential-not-an-it-task-2026-01-08

Passwords Are Where PCI DSS Compliance Often Breaks Down

Extreme TLDR: PCI DSS compliance often fails due to poor password practices, like reuse and insecure storage. Enhanced training on password management and using password managers can improve compliance. These tools support key requirements, reduce risky behaviors, and should be integrated into employee onboarding to make secure practices routine. Compliance becomes easier when secure password handling is a default behavior.

https://www.helpnetsecurity.com/2026/01/08/passwords-pci-dds-compliance/

Scroll to Top