57% of employees use AI without formal approval. Learn what to do in this practitioner's guide
August 29, 2026
Transparency obligations became enforceable in August while coverage moved on to 2027. What you would have to produce today.
August 28, 2026
Agents coordinated through a build cache, then worked on their own transcripts. The second finding has the longer reach.
August 27, 2026
Three questions any telemetry must survive before it carries a security decision, and five ways agent telemetry fails.
Most disagreements are not about risk. Security teams rank exploitability and models rank loss.
The ten OWASP agentic categories sit at three levels of the causal chain, so registering each as a scenario double counts.
Notice periods run from weeks to six months, set by provider economics rather than your revalidation cycle.
August 26, 2026
Scenario libraries grow and never shrink. The count follows from the decisions they have to support.
Stopping an agent takes minutes. Classifying it, reconstructing what it did and knowing what can be undone cannot be improvised.
Colorado repealed its AI Act before it took effect. Why building to statutes fails, and the six attributes that survive.
August 25, 2026
Agent telemetry answers four governance questions well today. The positive case for instrumenting your AI agents now.
A board reads exposure as proportionality and an underwriter reads it as pricing. Same model, opposite incentives.
There is no base rate for backdoored models. Price what you can observe, which is the cost of replacing the model.
Prompt injection is architectural, not a defect. How to carry it as a priced condition rather than an open finding.
August 24, 2026
The model assumes the second line can evaluate the first line's work. In cyber the expertise sits in the first line.
An SBOM assumes behavior changes through a build. Editing a prompt changes a model and triggers nothing. The four layers you need.
Human oversight is the only control that fails while producing identical evidence. Six signals that show whether review is genuine.
August 23, 2026
Probability against loss hides most of the range. Loss against percentile shows where routine loss ends and material loss begins.
The same clinical AI tool can sit inside or outside device regulation depending on workflow, not on the algorithm.
Article 26 lists deployer duties. Article 25 converts a deployer into a provider automatically, with no notification step.
August 22, 2026
Every item on a typical GRC calendar was placed there by someone else, which is why analysis never happens.
An abandoned agent is unusual because part of its cost is certain. How to estimate the three streams for your own environment.
August 21, 2026
Industrial environments have almost no cyber loss data and excellent consequence data. Reversing the direction makes modeling tractable.
Improper offboarding is the top non-human identity risk. What retirement tooling must prove, and the architecture question first.
August 20, 2026
Maturity measures process and arrives annually. A leading indicator needs both the right unit and the right cadence.
Two teams inventory the same organization and return different counts. Models, systems and purposes are three layers, not one list.
Frameworks are use-case blind. In financial services the use case carries the obligation, and credit models face a mandate on architecture.
August 19, 2026
Regulators moved from asking whether you did a risk analysis to what you did about it. Eight questions on healthcare exposure and HIPAA.
Browser AI events are behavioral anomaly alerts, the category SOCs already deprioritize. What belongs in a SIEM and what does not.
Change management assumes discrete approved releases. AI retrains and providers revise models silently. How to keep an auditable record.
August 18, 2026
GRC programs rarely fail at design. Six operational failure modes, from registers that never drain to exceptions that never expire.