Remove solutions risk-compliance
article thumbnail

The complex patchwork of US AI regulation has already arrived

CIO

This year, lawmakers in the state are considering Senate Bill 2 , which would require organizations deploying AI for consequential “high-risk” decisions to develop risk management policies. Last year, the Connecticut General Assembly passed Senate Bill 1103 , which regulates state procurement of AI tools.

Commerce 822
article thumbnail

What the Digital Operational Resilience Act means for you

CIO

But while there’s plenty of excitement and change underway, security risks and vulnerabilities have continued to follow right alongside that innovation. Management of ICT third-party risk : Tasks firms with ensuring any third-party vendor is aligned with its security and digital resilience capabilities. So, who needs to adhere to DORA?

Banking 742
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

CIOs eager to scale AI despite difficulty demonstrating ROI, survey finds

CIO

After years of IT expanding into non-traditional responsibilities, we’re now seeing how AI is forcing CIOs back to their core mandate,” Ken Wong, president of Lenovo’s solutions and services group, said in a statement. Adopting AI poses several security challenges, such as data privacy, attack vulnerability, and strict regulation compliance.

article thumbnail

7 steps for turning shadow IT into a competitive edge

CIO

Ask IT leaders about their challenges with shadow IT, and most will cite the kinds of security, operational, and integration risks that give shadow IT its bad rep. That’s not to downplay the inherent risks of shadow IT. Following are seven steps to guide this transformation for competitive advantage.

article thumbnail

Patient data is at greater risk than ever. AI can help

CIO

The risks and opportunities of AI AI is opening a new front in this cyberwar. Sarah Rench, global data, AI & security director & Databricks lead at Avanade, explains it this way : “Whatever your use of generative AI…ensuring it is secure and meets your privacy and compliance regulations is crucial to using it successfully.

Security 751
article thumbnail

Optimizing PCI compliance in financial institutions

CIO

However, managing PCI security compliance across various lines of business within these institutions can be a complex and resource-intensive task. The CCA allows overarching enterprise functions and IT shared services to be assessed separately from the business unit’s products/applications that require PCI security compliance.

Security 654
article thumbnail

PCI compliance: The best defense is a great defense

CIO

Not surprisingly, Payment Card Industry Data Security Standard (PCI DSS) compliance is crucially important. Compliance with PCI DSS v4.0 PCI DSS compliance is a robust defense that significantly mitigates the risks involved with all three. Updating the PCI DSS is likewise critical. expires, the updated PCI DSS version 4.0

Security 795