The Digital Omnibus postponed high-risk rules, not training. What the AI Act requires on AI literacy for staff, and since when it is supervised.
The Digital Omnibus postponed high-risk rules, not training. What the AI Act requires on AI literacy for staff, and since when it is supervised.
What defines human risk management, why a single tool falls short, and how a platform gets built one layer at a time, with the dates attached.
DORA has applied since January 2025 and there is no official register of covered entities. Who DORA applies to, who falls outside, and what it asks of people.
The business continuity plan gets approved and filed. ISO 22301 asks for competence and awareness, and those are the clauses that rarely get implemented.
Spain’s National Security Framework (ENS) treats staff awareness and training as auditable security measures. What mp.per.3 and mp.per.4 require and how to evidence them.
Compliance Center gives you real-time compliance for your awareness program against ISO 27001, NIST, PCI-DSS and GDPR, with an agent that closes the gaps.
Phishing simulations measure only part of human risk. How to enrich the per-person score with real signals from your SIEM and security stack.
On audit day your spreadsheet shows all green, but the auditor asks four questions a percentage can’t answer. What they are and why the Excel falls short.