The Digital Omnibus postponed high-risk rules, not training. What the AI Act requires on AI literacy for staff, and since when it is supervised.
The Digital Omnibus postponed high-risk rules, not training. What the AI Act requires on AI literacy for staff, and since when it is supervised.
DORA has applied since January 2025 and there is no official register of covered entities. Who DORA applies to, who falls outside, and what it asks of people.
Training expiry and new hires move your compliance all year round. How a plan absorbs both on its own, without you rebuilding the spreadsheet.
What a vendor security questionnaire measures, why certifications answer less than they seem to, and the five questions that tell vendors apart.
The business continuity plan gets approved and filed. ISO 22301 asks for competence and awareness, and those are the clauses that rarely get implemented.
A compliance plan comes down to judgement calls, not technical ones. How to set the audience, the monthly training budget and the start date.
Spain’s National Security Framework (ENS) treats staff awareness and training as auditable security measures. What mp.per.3 and mp.per.4 require and how to evidence them.
Compliance Center gives you real-time compliance for your awareness program against ISO 27001, NIST, PCI-DSS and GDPR, with an agent that closes the gaps.