article thumbnail

Zero Trust Security for NIS2 compliance: What you need to know

CIO

Over 100,00 organizations are expected to be impacted by Network and Information Security Directive (NIS2) cybersecurity standards that European Union (EU) member states must implement by October 2024. [i] This concept of least-privilege access is fundamental to Zero Trust Security practices.

Security 183
article thumbnail

PCI compliance: The best defense is a great defense

CIO

Sophisticated criminal syndicates, rogue nation states and a global community of nefarious attackers are all eager to pilfer valuable data, including payment card information. Not surprisingly, Payment Card Industry Data Security Standard (PCI DSS) compliance is crucially important. Compliance with PCI DSS v4.0

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

PCI compliance: Is your qualified security assessor up to the task?

CIO

In a volatile payments landscape, enterprises are preparing for the Payment Card Industry Data Security Standard (PCI DSS) version 3.2.1 Understanding the changes in the Standard is paramount for Qualified Security Assessors (QSAs) to do a comprehensive and effective assessment,” adds Stachowicz. to expire on March 31, 2024.

article thumbnail

10 hottest IT jobs for salary growth in 2023

CIO

This demand for skilled IT workers is reflected in the rising average salaries of certain job titles as companies compete for top talent, according to data from the 2023 Dice Tech Salary Report. Here are the 10 IT roles that have earned the biggest bumps in pay for 2023, according to salary data from Dice.

article thumbnail

What is GRC? The rising importance of governance, risk, and compliance

CIO

As a result, managing risks and ensuring compliance to rules and regulations along with the governing mechanisms that guide and guard the organization on its mission have morphed from siloed duties to a collective discipline called GRC. What is GRC? GRC is overarching. Even so, many organizations are still building up their GRC capabilities.

article thumbnail

CISOs are not just the keepers of our data – they must be its custodians

CIO

According to Deep Instinct’s research , 75% of security professionals observed an increase in cyberattacks in 2023, with 85% of them attributing the rise to generative AI. Changes to social expectations surrounding privacy have led to individuals wanting transparency and security from the entities that collect and process our data.

Data 280
article thumbnail

“If organisations are hacked, they should stay calm and act quickly by instantly activating their incident response plan”

CIO

CIO Middle East discuss with Muath AlHomoud, Director of Cybersecurity about how organisations should learn from the hacking activities performed on them so they can implement more effective cyber defences and plan against similar or more sophisticated attacks. From a cybersecurity perspective, how has 2023 been?