<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="/rss-style.xsl"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:media="http://search.yahoo.com/mrss/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/">
<channel>
<title><![CDATA[tsecurity.de - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=career%25252525252520accelerator%25252525252520program%25252525252520help%2F]]></link>
<description><![CDATA[Das Gesamte Cyber Threat Intelligence Feed-Archiv von TSecurity.de. Alle Nachrichten, Sicherheitsmeldungen, Videos, Downloads und Analysen in einer zentralen Übersicht.]]></description>
<language>de-DE</language>
<lastBuildDate>Sat, 08 Aug 2026 11:34:06 +0200</lastBuildDate>
<pubDate>Sat, 08 Aug 2026 11:34:06 +0200</pubDate>
<ttl>15</ttl>
<copyright>2026 tsecurity.de - 📰 Alle Kategorien</copyright>
<managingEditor>tsecurity.de (tsecurity.de)</managingEditor>
<webMaster>tsecurity.de (tsecurity.de)</webMaster>
<image>
<url>https://tsecurity.de/templates/mydraft-basis-isharestuff-com/media/logo.png</url>
<title><![CDATA[tsecurity.de - 📰 Alle Kategorien]]></title>
<link><![CDATA[https://tsecurity.de/export/rss/alle-kategorien.xml?q=career%25252525252520accelerator%25252525252520program%25252525252520help%2F]]></link>
</image>
<atom:link href="https://tsecurity.de/export/rss/alle-kategorien.xml?q=career%25252525252520accelerator%25252525252520program%25252525252520help%2F" rel="self" type="application/rss+xml" />
<item>
<title><![CDATA[What we lose when every engineer can do everything]]></title>
<description><![CDATA[Four months ago, a front-end engineer on my team looking to make upgrades to a product or feature would have filed a ticket and waited for the infrastructure group to unblock them. They might have lost a day, sometimes a week. Today, that same engineer makes changes themselves. The code is occasi...]]></description>
<link>https://tsecurity.de/de/3710954/ai-nachrichten/what-we-lose-when-every-engineer-can-do-everything/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3710954/ai-nachrichten/what-we-lose-when-every-engineer-can-do-everything/</guid>
<pubDate>Sat, 08 Aug 2026 00:42:50 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Four months ago, a front-end engineer on my team looking to make upgrades to a product or feature would have filed a ticket and waited for the infrastructure group to unblock them. They might have lost a day, sometimes a week. Today, that same engineer makes changes themselves. The code is occasionally brittle, but it works, and the end result ships in a fraction of the time it used to take.</p>



<p class="wp-block-paragraph">That small story is unfolding inside nearly every engineering organization right now. While some celebrate the sudden fact that one person can do the work of five, others are focused entirely on tech industry layoffs. Both perspectives skip the question I find more interesting: What happens to mastery when every engineer can suddenly do everything?</p>



<p class="wp-block-paragraph">For two decades, we have described strong engineers as T-shaped. The horizontal bar represents breadth, which is a working familiarity across many areas. The vertical bar represents depth, the real command of one domain earned over years. Agent tooling has stretched that horizontal bar wider than ever before. My concern is the vertical bar, which is quietly getting shorter.</p>



<p class="wp-block-paragraph">Consider what is now possible in a single quarter. With the right agent harness, one engineer can stand up a billing system, a data connector framework, regional and organizational tenancy infrastructure, or a consumption-based pricing implementation. The pull requests pass review. The tests are green. All looks good. But green tests cannot tell you if the person who shipped that work understood why the system needs redundancy in one specific place, where its failure modes are hiding, or which trade-offs the model made silently on their behalf. The pattern recognition that comes from watching systems fail over many years is suddenly weighted differently than it was even 12 months ago. Our industry has not caught up to that shift.</p>



<h2 class="wp-block-heading">When the interview stops measuring judgment</h2>



<p class="wp-block-paragraph">The first place this surfaces is hiring, a trend that should concern anyone who has built a team. Traditional coding interviews were always an imperfect proxy for engineering judgment, but agent tooling completely obliterates them. If a candidate can produce a working solution in 20 minutes that would have taken two hours a year ago, the exercise no longer measures technical competence. It just measures how well a coder can prompt an agent.</p>



<p class="wp-block-paragraph">At Thread AI, we have responded by widening what we look at when we interview job candidates. Our process moves across coding exercises, problem decomposition, system architecture, and behavioral components, with the weighting shifting by role. We allow AI assistance only in specific sections because our engineers still need to be able to operate without it. Some of our work happens in secure environments where you cannot lean on an agent to debug for you. What we’re really testing for now is judgment under ambiguity — the ability to notice when an agent’s output is confidently wrong — and the depth to predict where a system will break before it breaks.</p>



<p class="wp-block-paragraph">Hiring teams that fail to make this shift will fill their rosters with false positives. They will hire people who interview like experts but struggle the first time a system behaves in a way the model did not anticipate. Ultimately, these companies will miss out on top-tier talent, and they won’t discover the misstep until it’s too late.</p>



<h2 class="wp-block-heading">Confusing velocity with understanding</h2>



<p class="wp-block-paragraph">That brings me to a larger risk: the rise of false expertise as a category of its own. Historically, the reasoning has gone, “I built a proof of concept, therefore I am an expert.” I have watched versions of this appear in technical leadership, in investment decisions, and in policy conversations about AI. It travels well because the artifact looks real. A working demo is highly persuasive, even when the person behind it only half-understands how it functions.</p>



<p class="wp-block-paragraph">The problem is bigger than one false expert shipping one bad product; an organization can absorb that. The real risk is a generation of consequential decisions being made by people who have confused velocity with understanding. You can already see the cultural scaffolding being built around this with the celebration of the “idea guy,” and the sudden fashion for invoking “taste” as a substitute for knowing how a system actually works. Those of us shaping tooling, hiring norms, and regulations have a narrow window to set better defaults before this pattern hardens into the way the industry operates.</p>



<h2 class="wp-block-heading">Depth and breadth, held together</h2>



<p class="wp-block-paragraph">This is the path we’ve been walking at Thread AI since before the latest wave of tooling arrived.</p>



<p class="wp-block-paragraph">To ground this in a specific example: I have spent 15 years building complex systems. I worked at Goldman Sachs through the financial crisis and the early Dodd-Frank infrastructure, moved critical payment systems into the cloud at <em>The New York Times</em> when that ground was still new, and built the system of record for model training and evaluation at Palantir across highly regulated environments in defense, health, and finance. This experience is the superpower that lets me course-correct an agent when it produces confident-but-wrong output.</p>



<p class="wp-block-paragraph">I felt this sharply not long ago while scoping consumption-based pricing in a single quarter. The agents did an enormous amount of the heavy lifting, and at some point, I realized that my largest contributions to the effort were knowing where the system would fail and steering around it before we got there. I have also seen how organizations have built large teams around efforts like these in the past. Someone earlier in their career or relying purely on AI guidance would not have had that instinct to draw on. That is the part the public conversation keeps missing.</p>



<p class="wp-block-paragraph">Every engineer at Thread AI, regardless of seniority, is expected to be a builder at heart. Our people own outcomes across compute, data, and the organizational and identity primitives that hold the product together, all without the traditional product-manager and project-manager scaffolding around them. Our model works only because the people in those seats have the depth to know what they do not know, and the breadth to fill the gaps with agents. They use the tooling instead of being used by it.</p>



<h2 class="wp-block-heading">AI doesn’t replace deep understanding</h2>



<p class="wp-block-paragraph">The core issue facing organizations today is not whether AI will replace engineers. That question has been answered dozens of times this year with varying degrees of nuance, and it has stopped being interesting. The more useful question for anyone running a company is whether we are protecting the people who understand our systems deeply enough to recognize when the machines are wrong.</p>



<p class="wp-block-paragraph">In our company, the answers have been to move toward explicit end-to-end ownership, and to hire for depth and breadth together rather than treating them as a trade-off. Layoffs dominate the headlines because they are an easy narrative, but they describe a symptom rather than the actual choice in front of us. The real choice is whether we let breadth quietly stand in for mastery, or whether we build organizations that keep human judgment in the loop on purpose. </p>



<p class="wp-block-paragraph">In an era when software can be generated faster than it can be understood, the companies that hold onto what is human, verifiable, and deeply understood will be the ones still standing when the brittle parts give way.</p>



<p class="wp-block-paragraph"><em>—</em></p>



<p class="wp-block-paragraph"><a href="https://www.infoworld.com/blogs/new-tech-forum"><strong><em>New Tech Forum</em></strong></a><em><strong> provides a venue for technology leaders—including vendors and other outside contributors—to explore and discuss emerging enterprise technology in unprecedented depth and breadth. The selection is subjective, based on our pick of the technologies we believe to be important and of greatest interest to InfoWorld readers. InfoWorld does not accept marketing collateral for publication and reserves the right to edit all contributed content. Send all </strong></em><em><strong>inquiries to </strong></em><a href="mailto:doug_dineley@foundryco.com"><strong><em>doug_dineley@foundryco.com</em></strong></a><em><strong>.</strong></em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[DeepMind founder ascends to singular AI role at Google]]></title>
<description><![CDATA[Demis Hassabis, the driving force behind Google DeepMind, is ascending to the role of chief scientist at Alphabet, Google’s parent company, replacing Jeff Dean who is leaving to work at a start-up.



The role will enable Hassabis to “put his full attention on actively shaping the future of AGI,”...]]></description>
<link>https://tsecurity.de/de/3710958/ai-nachrichten/deepmind-founder-ascends-to-singular-ai-role-at-google/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3710958/ai-nachrichten/deepmind-founder-ascends-to-singular-ai-role-at-google/</guid>
<pubDate>Sat, 08 Aug 2026 00:42:50 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Demis Hassabis, the driving force behind Google DeepMind, is ascending to the role of chief scientist at Alphabet, Google’s parent company, replacing Jeff Dean who is leaving to work at a start-up.</p>



<p class="wp-block-paragraph">The role will enable Hassabis to “put his full attention on actively shaping the future of AGI,” or artificial general intelligence, Alphabet CEO Sundar Pichai wrote on the company’s <a href="https://blog.google/company-news/inside-google/message-ceo/next-chapter-ai-momentum/" target="_blank" rel="noreferrer noopener">Inside Google blog</a>.</p>



<p class="wp-block-paragraph">Hassabis’ attention will still be divided, however: He will continue to lead research at Google spin-off Isomorphic Labs, which works on drug discovery, and although he will no longer be CEO of DeepMind, he will be its chair. Koray Kavukcuoglu will take over DeepMind, reporting directly to Pichai. He is currently its CTO.</p>



<p class="wp-block-paragraph">Hassabis has been a strong promoter of AGI, defined by Google as the “hypothetical intelligence of a machine that possesses the ability to understand or learn any intellectual task that a human being can.”</p>



<p class="wp-block-paragraph">He has a long career in AI, having helped found DeepMind in 2010. He has been a prominent figure in the AGI field, prophesying in May that it will be <a href="https://www.computerworld.com/article/4178398/deepmind-ceo-agi-could-be-here-in-three-years.html">a viable technology within three years</a>. He has been keen to tackle any barriers in the way of developing the technology; just last month, <a href="https://www.cio.com/article/4197497/deepmind-ceo-pushes-for-ai-industry-self-regulation.html">he called for greater self-regulation</a> in the market, arguing that it would help drive the technology forward.</p>



<p class="wp-block-paragraph">Hassabis welcomed the chance to focus on AGI development. “We have arrived at a pivotal moment in human history. I’ve been working towards AGI my whole life, and now, I feel it is close at hand. It’s critical that we collectively get the next steps right to ensure this all goes well for humanity and we usher in an incredible new age of discovery and wonder” he wrote in the Inside Google blog post.</p>



<p class="wp-block-paragraph"><em>This article first appeared on <a href="https://www.computerworld.com/article/4206724/deepmind-founder-ascends-to-singular-ai-role-at-google.html">Computerworld</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Jon Prosser Slows Down Apple Lawsuit Due To Newborn Baby]]></title>
<description><![CDATA[The ongoing legal fight between Apple and YouTube personality Jon Prosser hit another roadblock this week. Following a lawsuit filed in July 2025 accusing Prosser and Michael Ramacciotti of stealing pre-release data from an employee's test device, the case faced multiple delays. Prosser missed ea...]]></description>
<link>https://tsecurity.de/de/3710743/ios-mac-os/jon-prosser-slows-down-apple-lawsuit-due-to-newborn-baby/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3710743/ios-mac-os/jon-prosser-slows-down-apple-lawsuit-due-to-newborn-baby/</guid>
<pubDate>Sat, 08 Aug 2026 00:40:44 +0200</pubDate>
<content:encoded><![CDATA[The ongoing legal fight between Apple and YouTube personality Jon Prosser hit another roadblock this week. Following a lawsuit filed in July 2025 accusing Prosser and Michael Ramacciotti of stealing pre-release data from an employee's test device, the case faced multiple delays. Prosser missed early deadlines, which caused a default ruling that he later managed to get overturned. Now, the discovery process has stalled again.



A new baby pauses the legal discovery process



Since rejoining the case in June 2026, Prosser stopped responding to requests for legal materials. His legal team last communicated with Apple on July 6. According to court filings, Prosser recently welcomed his second child, leaving him without the time needed to provide the required documents. In his filing, Prosser promised to find dates to share the remaining discovery details with Apple's legal team.



Apple seems understanding of the family situation and agreed to the requested delays. The joint court filing outlines approved extensions and new dates to move the process forward. A deposition is now scheduled for September 2026, and the next formal court filing should arrive on October 7.



While Apple agreed to the extension, it remains to be seen if the company will take a softer approach when it comes to a final settlement or punishment. Prosser maintains he is not guilty, but if Apple wins the case, the court could prevent him from reporting on the tech giant's unreleased products entirely. 



Because leaking hardware and software details makes up a large part of his business, losing the ability to cover Apple news would strike a heavy blow to his career.]]></content:encoded>
</item>
<item>
<title><![CDATA[DeepMind founder ascends to singular AI role at Google]]></title>
<description><![CDATA[Demis Hassabis, the driving force behind Google DeepMind, is ascending to the role of chief scientist at Alphabet, Google’s parent company, replacing Jeff Dean who is leaving to work at a start-up.



The role will enable Hassabis to “put his full attention on actively shaping the future of AGI,”...]]></description>
<link>https://tsecurity.de/de/3710153/it-nachrichten/deepmind-founder-ascends-to-singular-ai-role-at-google/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3710153/it-nachrichten/deepmind-founder-ascends-to-singular-ai-role-at-google/</guid>
<pubDate>Fri, 07 Aug 2026 23:46:40 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Demis Hassabis, the driving force behind Google DeepMind, is ascending to the role of chief scientist at Alphabet, Google’s parent company, replacing Jeff Dean who is leaving to work at a start-up.</p>



<p class="wp-block-paragraph">The role will enable Hassabis to “put his full attention on actively shaping the future of AGI,” or artificial general intelligence, Alphabet CEO Sundar Pichai wrote on the company’s <a href="https://blog.google/company-news/inside-google/message-ceo/next-chapter-ai-momentum/" target="_blank" rel="noreferrer noopener">Inside Google blog</a>.</p>



<p class="wp-block-paragraph">Hassabis’ attention will still be divided, however: He will continue to lead research at Google spin-off Isomorphic Labs, which works on drug discovery, and although he will no longer be CEO of DeepMind, he will be its chair. Koray Kavukcuoglu will take over DeepMind, reporting directly to Pichai. He is currently its CTO.</p>



<p class="wp-block-paragraph">Hassabis has been a strong promoter of AGI, defined by Google as the “hypothetical intelligence of a machine that possesses the ability to understand or learn any intellectual task that a human being can.”</p>



<p class="wp-block-paragraph">He has a long career in AI, having helped found DeepMind in 2010. He has been a prominent figure in the AGI field, prophesying in May that it will be <a href="https://www.computerworld.com/article/4178398/deepmind-ceo-agi-could-be-here-in-three-years.html">a viable technology within three years</a>. He has been keen to tackle any barriers in the way of developing the technology; just last month, <a href="https://www.cio.com/article/4197497/deepmind-ceo-pushes-for-ai-industry-self-regulation.html">he called for greater self-regulation</a> in the market, arguing that it would help drive the technology forward.</p>



<p class="wp-block-paragraph">Hassabis welcomed the chance to focus on AGI development. “We have arrived at a pivotal moment in human history. I’ve been working towards AGI my whole life, and now, I feel it is close at hand. It’s critical that we collectively get the next steps right to ensure this all goes well for humanity and we usher in an incredible new age of discovery and wonder” he wrote in the Inside Google blog post.</p>



<p class="wp-block-paragraph"></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Furious’ Season 1, Episode 3 Recap: Catherine’s Revenge Plan Becomes Clear]]></title>
<description><![CDATA[Furious Season 1, Episode 3 reveals the painful experiences driving Catherine’s killing spree while forcing Alice to confront the abusive relationship that continues to affect her work.



The episode, titled “Memory Distortion,” connects the recent murders to a disturbing photograph involving Ca...]]></description>
<link>https://tsecurity.de/de/3703685/ios-mac-os/furious-season-1-episode-3-recap-catherines-revenge-plan-becomes-clear/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3703685/ios-mac-os/furious-season-1-episode-3-recap-catherines-revenge-plan-becomes-clear/</guid>
<pubDate>Tue, 04 Aug 2026 17:41:24 +0200</pubDate>
<content:encoded><![CDATA[Furious Season 1, Episode 3 reveals the painful experiences driving Catherine’s killing spree while forcing Alice to confront the abusive relationship that continues to affect her work.



The episode, titled “Memory Distortion,” connects the recent murders to a disturbing photograph involving Catherine’s late friend Isabel. It also gives Alice an important clue that could help investigators identify Catherine and understand how she selects her victims.




Episode title: Memory Distortion



Release date: July 27, 2026



Streaming service: Hulu in the US and Disney+ internationally



Runtime: 53 minutes



Genre: Crime, drama and psychological thriller



Season length: Eight episodes



Main cast: Emmy Rossum, Lola Petticrew, Scoot McNairy, Quincy Tyler Bernstine and Jake Lacy




The first three episodes premiered together, with the remaining episodes releasing weekly. Episode 3 continues the investigation that began after Alice connected Catherine to the suspicious deaths of wealthy men.



Spoilers ahead for ‘Furious’ Season 1, Episode 3



The episode opens after Oliver Charles’ murder, with his daughter Mira holding a pair of bloodied scissors. Alice carefully convinces Mira to surrender them before attempting to learn what happened inside the house.



Meanwhile, Catherine kills Becky in Central Park after using her to obtain a new phone and disguise. She then returns to her job as a home-health aide for Alden, a disabled man who appears to trust her completely.



Catherine also reconnects with Elena, the younger sister of her dead friend Isabel. Elena lives under the control of a dangerous man known as Big Man, and Catherine becomes determined to protect her.



A flashback shows Catherine hiding beneath a bed beside a badly injured woman, strongly suggesting that she witnessed Isabel’s death. This scene explains why Catherine has targeted Caleb Easton, Oliver Charles and other men connected to Isabel.



Alice faces Marshall again



Alice struggles when Marshall, her abusive former partner, joins the murder investigation. He claims that he has changed and pressures Alice through his dying mother, who blames her for damaging his career.



However, Marshall soon becomes aggressive again. Alice responds by pulling a gun on him, showing that she no longer plans to remain silent when he threatens her.



Back at work, Alice gets a major breakthrough from Mira. She receives a photograph showing Isabel with Jay Easton, Caleb and Oliver. Catherine also appears in the background, placing her near the group around the time Isabel died.



Who is Catherine targeting next?



The ending shows Catherine creating another identity and contacting a man named Blanchard. She listens to calming affirmations while promising Elena that she will avenge Isabel’s death.



The photograph now gives Alice a clearer view of Catherine’s motive, although the investigation remains several steps behind her. Catherine appears ready to continue killing every man connected to Isabel’s abuse and death.



What did you think about Catherine’s revenge mission and Alice’s confrontation with Marshall? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Surviving AI: Navigating workload creep, AI slop, and the new tech career playbook]]></title>
<description><![CDATA[After more than 30 years the cybersecurity field, Keith Jones recently realized that his role had changed, from being a single contributor to manager of a fairly large team. And this team was getting a lot accomplished — tasks that used to take up a huge chunk of his workday.



No, his company h...]]></description>
<link>https://tsecurity.de/de/3703041/ai-nachrichten/surviving-ai-navigating-workload-creep-ai-slop-and-the-new-tech-career-playbook/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3703041/ai-nachrichten/surviving-ai-navigating-workload-creep-ai-slop-and-the-new-tech-career-playbook/</guid>
<pubDate>Tue, 04 Aug 2026 13:36:00 +0200</pubDate>
<content:encoded><![CDATA[<div><div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">After more than 30 years the cybersecurity field, Keith Jones recently realized that his role had changed, from being a single contributor to manager of a fairly large team. And this team was getting a lot accomplished — tasks that used to take up a huge chunk of his workday.</p>



<p class="wp-block-paragraph">No, his company hadn’t hired a group of new employees to work under him. He simply accelerated his use of artificial intelligence tools. Now, instead of grinding through a lot of basic tasks, that work is done for him while he focuses on bigger-picture work.</p>



<p class="wp-block-paragraph">“It really feels like I have a team behind the scenes, but what I have is Claude [Anthropic’s AI tool],” says Jones, who currently works as a cybersecurity researcher. “I’ve been thinking for the last several months about how much differently I work now than I did a year ago, when I would sit and write all the low-level stuff before I could get to the 10% of the good stuff I really wanted to focus on. Now I can sit back and say, ‘Give me three different ways to solve this problem.’”</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="678" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Keith Jones, cybersecurity researcher</p>
</figcaption></figure><p class="imageCredit">Keith Jones</p></div>



<p class="wp-block-paragraph">Most people working in the technology field, like Jones, have had to figure out how best to work with AI. The technology has come on strong, with many companies making its use mandatory and actively evaluating whether employees are faster and more efficient because of it. And while it is boosting productivity and taking over the burden of repetitive, manual tasks, it’s also creating a new level of stress and a dizzying kind of mental exhaustion.</p>



<p class="wp-block-paragraph">So what can tech workers do about the <a href="https://www.computerworld.com/article/4047909/burned-out-by-bots-prompt-fatigue-in-workplace.html">heavier mental load</a> that comes with using AI, on top of <a href="https://www.computerworld.com/article/4175956/the-ai-tech-job-slaughter-gets-real.html">escalating worries</a> about the safety of their own jobs? AI users and industry analysts say there are specific ways to ease some of those burdens and prepare for a changing job market.</p>



<h2 class="wp-block-heading">Combating the slop factor</h2>



<p class="wp-block-paragraph">When it comes to working with <a href="https://www.computerworld.com/article/1627101/what-are-large-language-models-and-how-are-they-used-in-generative-ai.html">LLM</a> tools, a well-known issue is dealing with <a href="https://www.cio.com/article/4077448/ai-workslop-the-new-productivity-killer-only-training-can-stop.html" target="_blank">AI workslop</a> and <a href="https://www.computerworld.com/article/4059383/openai-admits-ai-hallucinations-are-mathematically-inevitable-not-just-engineering-flaws.html">hallucinations</a>. The slop is AI-generated output that is low-quality, buzzword-heavy, and generic. It also can refer to bloated, boilerplate code. Hallucinations are inaccurate or completely made-up results. AI routinely offers this messy or incorrect information with total confidence, giving users a false sense of security.</p>



<p class="wp-block-paragraph">Using this bad data can lead to anything from minor software bugs to severe liabilities. “Don’t believe the machine is infallible,” says <a href="https://www.wpi.edu/people/faculty/cshue" target="_blank" rel="noreferrer noopener">Craig Shue</a>, computer science professor and department head at Worcester Polytechnic Institute (WPI). “That’s when bugs will start working in. There’s a lot of misinformation on the internet, and that could be what the LLM is grabbing and using.”</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="674" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Craig Shue, computer science professor and department head at Worcester Polytechnic Institute </p>
</figcaption></figure><p class="imageCredit">WPI</p></div>



<p class="wp-block-paragraph">Here are ways to combat the problem:</p>



<ul class="wp-block-list">
<li><strong>Make AI show its work:</strong> Ask it to cite its sources or explain its reasoning. Example prompt: <em>Explain the logic and show the steps before writing the code.</em></li>



<li><strong>Give the AI a source of truth:</strong> Instead of letting the AI search the internet for information, give it the exact source material (reports, transcripts, data sheets) to base its output on, telling it to use <em>only</em> the information provided.</li>



<li><strong>Validate. Validate. Validate:</strong> Never let AI publish code directly to the main project without first reviewing and running it locally. Similarly, never take AI output and simply move it on to the next person in the project. Every single AI output needs review.</li>



<li><strong>Don’t be fooled by confidence:</strong> As with managing a human, question the output. When you’re busy or tired, it’s easy to just go with the results it gives you. Don’t. Always analyze and question it.</li>
</ul>



<h2 class="wp-block-heading">Taking on AI-driven workload creep</h2>



<p class="wp-block-paragraph">Let’s face it: The great promise of AI is that it will take over repetitive, manual tasks, which will save you an incredible amount of time. What isn’t talked about as much is that it also can create a new workload — one that can be exhausting in a whole new way.</p>



<p class="wp-block-paragraph">“Is AI saving people time? The short answer is yes,” says <a href="https://www.forrester.com/analyst-bio/j-p-gownder/BIO1728" target="_blank" rel="noreferrer noopener">J.P. Gownder</a>, vice president and principal analyst with Forrester Research. “But people also are being overwhelmed with overproduced things. Everyone wants to look busy and they’re producing more, but not necessarily better. Managers have to push back on that or it’s not really saving you time.”</p>



<p class="wp-block-paragraph">In a <a href="https://investors.upwork.com/news-releases/news-release-details/upwork-research-reveals-new-insights-ai-human-work-dynamic" target="_blank" rel="noreferrer noopener">multi-year study by Upwork</a>, the largest online freelance marketplace, 77% of employees reported that AI had increased their workload. The report noted that a boost in productivity comes with a “significant emotional and relational cost,” with 88% of workers who saw the highest productivity gains also feeling burned out. And IDC’s <a href="https://my.idc.com/getdoc.jsp?containerId=US54338426" target="_blank" rel="noreferrer noopener">Future of Work 2026</a> survey reported that 24% of IT workers report increased workload as a top AI concern.</p>



<p class="wp-block-paragraph">Here are ways to combat the problem:</p>



<ul class="wp-block-list">
<li><strong>Keep it short: </strong>Part of the prompt — always — should be to tell any AI tool to be concise.</li>



<li><strong>Build an anti-slop culture:</strong> Don’t simply accept and pass on workslop. It’s insulting for a co-worker to have to deal with pages of largely useless information.</li>



<li><strong>Filter the noise:</strong> When everyone on a team starts using AI, the volume of Slack messages, long-form memos, and data reports skyrockets. Don’t treat it all with equal importance. Practice radical prioritization.</li>



<li><strong>Manage the transcript deluge:</strong> Stop wading through 40-page meeting transcripts that bury action items. Instead, prompt the system to produce a concise summary focused strictly on deliverables or status updates.</li>



<li><strong>Reduce the AI blast radius: </strong>When asked to fix a bug, AI tools often rewrite hundreds of lines of unrelated code, multiplying your code review time. Prevent this by instructing the tool to isolate its changes <em>only</em> to the specific function or file in question.</li>
</ul>



<h2 class="wp-block-heading">Managing the AI mental tax</h2>



<p class="wp-block-paragraph">Using AI often necessitates a different kind of mental processing, changing what had been the natural pacing of your day and dramatically increasing context switching. Instead of simply building and testing, someone might be jumping back and forth between auditing, fact-checking, prompting, and re-prompting. To manage strain and protect your focus, new strategies are needed.</p>



<p class="wp-block-paragraph">Published this past March in the Harvard Business Review, a study by Boston Consulting Group and the University of California, Riverside, surveyed 1,500 workers and <a href="https://www.cbsnews.com/news/is-ai-productivity-prompting-burnout-study-finds-new-pattern-of-ai-brain-fry/" target="_blank" rel="noreferrer noopener">coined the term “AI brain fry.”</a> The researchers found that juggling multiple AI tools causes decision fatigue and increases errors.</p>



<p class="wp-block-paragraph">How to combat the problem:</p>



<ul class="wp-block-list">
<li><strong>Work in batches:</strong> Continuously reviewing AI output as it comes in can quickly lead to mental burnout. Dedicate blocks of time throughout your day to interact with your AI tools.</li>



<li><strong>Create analog islands:</strong> Your brain needs time to decompress, and that means taking a break from digital processing… and from screen time in general. Make time in your day to step away from screens, such as taking a 15-minute walk or reading a book instead of watching a video online.</li>



<li><strong>Know when to step in:</strong> Instead of endlessly tweaking prompts to get a perfect result, it is often faster and less mentally taxing to manually write or refactor the final 20% yourself.</li>



<li><strong>Create base prompts:</strong> Writing custom prompts that include everything from guardrails to tone instructions for every new project quickly drains your mental energy. Instead, build two or three reusable system prompts, such as one for refactoring legacy code and another for drafting API docs, and use them as templates.</li>
</ul>



<h2 class="wp-block-heading">Proving your human value in a new job market</h2>



<p class="wp-block-paragraph">With companies regularly using AI-based applicant tracking systems to filter resumes, and AI actively shifting job responsibilities and skills requirements, the strategy for how you apply for roles and handle interviews is changing.</p>



<p class="wp-block-paragraph"><a href="https://my.idc.com/getdoc.jsp?containerId=PRF005683" target="_blank" rel="noreferrer noopener">Leo Freitas</a>, an analyst and research manager at IDC Research, says it’s critical for job applicants to show potential employers what they can do that machines cannot. “You need demonstrable achievements,” he adds. “It’s good to show highly human skills.”</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Leo Freitas, analyst and research manager at IDC</p>
</figcaption></figure><p class="imageCredit">IDC</p></div>



<p class="wp-block-paragraph">How to combat the problem:</p>



<h4 class="wp-block-heading">For your resume:</h4>



<ul class="wp-block-list">
<li><strong>Mirror their language: </strong>Use the exact language from the job description. Traditional applicant tracking systems rely heavily on structured information and keyword matching, says <a href="https://www.linkedin.com/in/teresaehill/" target="_blank" rel="noreferrer noopener">Teresa Hill</a>, founder and leader of Anchor GTM, a growth marketing consultancy. That means if a posting says “product marketing manager,” don’t just write “PMM.” Write both.</li>



<li><strong>Keep it simple: </strong>Use standard section headers, like “Experience” and “Education.” Creative alternatives and formatting can confuse parsers.</li>



<li><strong>Avoid AI writing:</strong> Use AI to help structure your thinking, then edit until the copy sounds natural and authentically human.</li>



<li><strong>Swap responsibilities for metrics:</strong> To stand out, especially with AI scanners, tie as many bullet points as possible from your work to business outcomes.</li>
</ul>



<h4 class="wp-block-heading">For the interview:</h4>



<ul class="wp-block-list">
<li><strong>So, how do you use AI?</strong> Every interviewer eventually asks some version of this question. The best answers focus on judgment vs. simply name-dropping tools. Explain what you automate, what you never automate, and why.</li>



<li><strong>Show that you’re a gatekeeper: </strong>AI tools can generate code or copy instantly, but they also introduce errors. To stand out, show that you know how to audit, verify, and safeguard quality.</li>



<li><strong>Focus on learning:</strong> Don’t emphasize your expertise with a specific AI tool. Focus on being someone who is adaptable and learns quickly, Hill says. </li>



<li><strong>What sets you apart from a machine:</strong> Show, don’t tell. Give work examples that demonstrate that you know how to be creative, collaborative, and problem solve. Show metrics whenever possible.</li>



<li><strong>Demonstrate that you know the limits: </strong>Make it clear that you know when to use AI and what not to let it touch without heavy review. </li>
</ul>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="576" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Teresa Hill, founder and leader of Anchor GTM</p>
</figcaption></figure><p class="imageCredit">Teresa Hill</p></div>



<h2 class="wp-block-heading">Future-proofing your career in a shifting tech market</h2>



<p class="wp-block-paragraph">The anxiety echoing through the tech industry is tangible as companies reallocate corporate capital toward automation. While both Gownder and Freitas emphasize that there is far more fear than actual AI-driven layoffs, the shift in corporate spending is undeniably stoking job insecurity.</p>



<p class="wp-block-paragraph">“There’s this apocalyptical view that AI will take everyone’s job in a few years,” says Freitas. “I don’t see that happening, but many things will change in the nature of how we work. I don’t think the world is going to end tomorrow. But it’s always good to do a self-assessment and look at whether AI can do what you’re doing now.”</p>



<p class="wp-block-paragraph">How to combat the problem:</p>



<ul class="wp-block-list">
<li><strong>Use this technology to your advantage: </strong>Approach AI as a new tool, not a replacement. Use it to make yourself better and faster at your job. “I look at AI like it’s another new tool, and I’m going to learn it like I’ve learned any other tool,” says Jones.</li>



<li><strong>Don’t bury your head in the sand: </strong>Take a look at what you do and consider if it could be done by AI.If your role is highly automatable, think about switching to a more advanced position or to a role, like security, that more clearly needs a human in the loop.</li>



<li><strong>Take ownership of your career:</strong> Expand your knowledge and skills. Find courses and <a href="https://www.computerworld.com/article/4049928/top-ai-certifications-that-will-get-you-hired-and-promoted.html">certifications</a> (many are free online) and take advantage of employers’ training programs.</li>



<li><strong>Work with the business side:</strong> Make sure you understand the business — its long-term goals, competitive market, and jargon. Be the bridge between the technical and business sides of the company, giving presentations and solving business problems with technology.</li>



<li><strong>Highlight your in-house expertise:</strong> When you have institutional knowledge, make sure you are openly using it to benefit the business. Your knowledge can be your key differentiator.</li>



<li><strong>Push the business forward:</strong> Think about the next app or customer-facing system that will propel the business forward. Be the one who is advancing the company with tech.</li>



<li><strong>Continue to adapt:</strong> Don’t get stuck in your anxiety. Keep being curious and working your learning muscles. </li>
</ul>



<h4 class="wp-block-heading">More on AI in the workplace:</h4>



<ul class="wp-block-list">
<li><a href="https://www.computerworld.com/article/4047909/burned-out-by-bots-prompt-fatigue-in-workplace.html">Burned out by bots: The rise of prompt fatigue in the workplace</a></li>



<li><a href="https://www.computerworld.com/article/4175956/the-ai-tech-job-slaughter-gets-real.html">The AI tech job slaughter gets real</a></li>



<li><a href="https://www.cio.com/article/4159631/increased-ai-expectations-without-guidance-leads-to-employee-burnout.html" target="_blank">Increased AI expectations without guidance leads to employee burnout</a></li>



<li><a href="https://www.cio.com/article/4188575/botsitting-the-ai-time-savings-killer-only-governance-can-stop.html" target="_blank">‘Botsitting’: The AI time-savings killer only governance can stop</a></li>



<li><a href="https://www.computerworld.com/article/4049928/top-ai-certifications-that-will-get-you-hired-and-promoted.html">Here are the top AI certifications that will get you hired and promoted</a></li>



<li><a href="https://www.computerworld.com/article/4067372/how-to-curb-hallucinations-in-copilot-and-other-genai-tools.html">How to curb hallucinations in Copilot (and other genAI tools)</a></li>
</ul>



<p class="wp-block-paragraph"></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Surviving AI: Navigating workload creep, AI slop, and the new tech career playbook]]></title>
<description><![CDATA[After more than 30 years the cybersecurity field, Keith Jones recently realized that his role had changed, from being a single contributor to manager of a fairly large team. And this team was getting a lot accomplished — tasks that used to take up a huge chunk of his workday.



No, his company h...]]></description>
<link>https://tsecurity.de/de/3702950/it-nachrichten/surviving-ai-navigating-workload-creep-ai-slop-and-the-new-tech-career-playbook/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3702950/it-nachrichten/surviving-ai-navigating-workload-creep-ai-slop-and-the-new-tech-career-playbook/</guid>
<pubDate>Tue, 04 Aug 2026 13:15:59 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">After more than 30 years the cybersecurity field, Keith Jones recently realized that his role had changed, from being a single contributor to manager of a fairly large team. And this team was getting a lot accomplished — tasks that used to take up a huge chunk of his workday.</p>



<p class="wp-block-paragraph">No, his company hadn’t hired a group of new employees to work under him. He simply accelerated his use of artificial intelligence tools. Now, instead of grinding through a lot of basic tasks, that work is done for him while he focuses on bigger-picture work.</p>



<p class="wp-block-paragraph">“It really feels like I have a team behind the scenes, but what I have is Claude [Anthropic’s AI tool],” says Jones, who currently works as a cybersecurity researcher. “I’ve been thinking for the last several months about how much differently I work now than I did a year ago, when I would sit and write all the low-level stuff before I could get to the 10% of the good stuff I really wanted to focus on. Now I can sit back and say, ‘Give me three different ways to solve this problem.’”</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="678" sizes="(max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Keith Jones, cybersecurity researcher</p>
</figcaption></figure><p class="imageCredit">Keith Jones</p></div>



<p class="wp-block-paragraph">Most people working in the technology field, like Jones, have had to figure out how best to work with AI. The technology has come on strong, with many companies making its use mandatory and actively evaluating whether employees are faster and more efficient because of it. And while it is boosting productivity and taking over the burden of repetitive, manual tasks, it’s also creating a new level of stress and a dizzying kind of mental exhaustion.</p>



<p class="wp-block-paragraph">So what can tech workers do about the <a href="https://www.computerworld.com/article/4047909/burned-out-by-bots-prompt-fatigue-in-workplace.html">heavier mental load</a> that comes with using AI, on top of <a href="https://www.computerworld.com/article/4175956/the-ai-tech-job-slaughter-gets-real.html">escalating worries</a> about the safety of their own jobs? AI users and industry analysts say there are specific ways to ease some of those burdens and prepare for a changing job market.</p>



<h2 class="wp-block-heading">Combating the slop factor</h2>



<p class="wp-block-paragraph">When it comes to working with <a href="https://www.computerworld.com/article/1627101/what-are-large-language-models-and-how-are-they-used-in-generative-ai.html">LLM</a> tools, a well-known issue is dealing with <a href="https://www.cio.com/article/4077448/ai-workslop-the-new-productivity-killer-only-training-can-stop.html" target="_blank">AI workslop</a> and <a href="https://www.computerworld.com/article/4059383/openai-admits-ai-hallucinations-are-mathematically-inevitable-not-just-engineering-flaws.html">hallucinations</a>. The slop is AI-generated output that is low-quality, buzzword-heavy, and generic. It also can refer to bloated, boilerplate code. Hallucinations are inaccurate or completely made-up results. AI routinely offers this messy or incorrect information with total confidence, giving users a false sense of security.</p>



<p class="wp-block-paragraph">Using this bad data can lead to anything from minor software bugs to severe liabilities. “Don’t believe the machine is infallible,” says <a href="https://www.wpi.edu/people/faculty/cshue" target="_blank" rel="noreferrer noopener">Craig Shue</a>, computer science professor and department head at Worcester Polytechnic Institute (WPI). “That’s when bugs will start working in. There’s a lot of misinformation on the internet, and that could be what the LLM is grabbing and using.”</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="674" sizes="(max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Craig Shue, computer science professor and department head at Worcester Polytechnic Institute </p>
</figcaption></figure><p class="imageCredit">WPI</p></div>



<p class="wp-block-paragraph">Here are ways to combat the problem:</p>



<ul class="wp-block-list">
<li><strong>Make AI show its work:</strong> Ask it to cite its sources or explain its reasoning. Example prompt: <em>Explain the logic and show the steps before writing the code.</em></li>



<li><strong>Give the AI a source of truth:</strong> Instead of letting the AI search the internet for information, give it the exact source material (reports, transcripts, data sheets) to base its output on, telling it to use <em>only</em> the information provided.</li>



<li><strong>Validate. Validate. Validate:</strong> Never let AI publish code directly to the main project without first reviewing and running it locally. Similarly, never take AI output and simply move it on to the next person in the project. Every single AI output needs review.</li>



<li><strong>Don’t be fooled by confidence:</strong> As with managing a human, question the output. When you’re busy or tired, it’s easy to just go with the results it gives you. Don’t. Always analyze and question it.</li>
</ul>



<h2 class="wp-block-heading">Taking on AI-driven workload creep</h2>



<p class="wp-block-paragraph">Let’s face it: The great promise of AI is that it will take over repetitive, manual tasks, which will save you an incredible amount of time. What isn’t talked about as much is that it also can create a new workload — one that can be exhausting in a whole new way.</p>



<p class="wp-block-paragraph">“Is AI saving people time? The short answer is yes,” says <a href="https://www.forrester.com/analyst-bio/j-p-gownder/BIO1728" target="_blank" rel="noreferrer noopener">J.P. Gownder</a>, vice president and principal analyst with Forrester Research. “But people also are being overwhelmed with overproduced things. Everyone wants to look busy and they’re producing more, but not necessarily better. Managers have to push back on that or it’s not really saving you time.”</p>



<p class="wp-block-paragraph">In a <a href="https://investors.upwork.com/news-releases/news-release-details/upwork-research-reveals-new-insights-ai-human-work-dynamic" target="_blank" rel="noreferrer noopener">multi-year study by Upwork</a>, the largest online freelance marketplace, 77% of employees reported that AI had increased their workload. The report noted that a boost in productivity comes with a “significant emotional and relational cost,” with 88% of workers who saw the highest productivity gains also feeling burned out. And IDC’s <a href="https://my.idc.com/getdoc.jsp?containerId=US54338426" target="_blank" rel="noreferrer noopener">Future of Work 2026</a> survey reported that 24% of IT workers report increased workload as a top AI concern.</p>



<p class="wp-block-paragraph">Here are ways to combat the problem:</p>



<ul class="wp-block-list">
<li><strong>Keep it short: </strong>Part of the prompt — always — should be to tell any AI tool to be concise.</li>



<li><strong>Build an anti-slop culture:</strong> Don’t simply accept and pass on workslop. It’s insulting for a co-worker to have to deal with pages of largely useless information.</li>



<li><strong>Filter the noise:</strong> When everyone on a team starts using AI, the volume of Slack messages, long-form memos, and data reports skyrockets. Don’t treat it all with equal importance. Practice radical prioritization.</li>



<li><strong>Manage the transcript deluge:</strong> Stop wading through 40-page meeting transcripts that bury action items. Instead, prompt the system to produce a concise summary focused strictly on deliverables or status updates.</li>



<li><strong>Reduce the AI blast radius: </strong>When asked to fix a bug, AI tools often rewrite hundreds of lines of unrelated code, multiplying your code review time. Prevent this by instructing the tool to isolate its changes <em>only</em> to the specific function or file in question.</li>
</ul>



<h2 class="wp-block-heading">Managing the AI mental tax</h2>



<p class="wp-block-paragraph">Using AI often necessitates a different kind of mental processing, changing what had been the natural pacing of your day and dramatically increasing context switching. Instead of simply building and testing, someone might be jumping back and forth between auditing, fact-checking, prompting, and re-prompting. To manage strain and protect your focus, new strategies are needed.</p>



<p class="wp-block-paragraph">Published this past March in the Harvard Business Review, a study by Boston Consulting Group and the University of California, Riverside, surveyed 1,500 workers and <a href="https://www.cbsnews.com/news/is-ai-productivity-prompting-burnout-study-finds-new-pattern-of-ai-brain-fry/" target="_blank" rel="noreferrer noopener">coined the term “AI brain fry.”</a> The researchers found that juggling multiple AI tools causes decision fatigue and increases errors.</p>



<p class="wp-block-paragraph">How to combat the problem:</p>



<ul class="wp-block-list">
<li><strong>Work in batches:</strong> Continuously reviewing AI output as it comes in can quickly lead to mental burnout. Dedicate blocks of time throughout your day to interact with your AI tools.</li>



<li><strong>Create analog islands:</strong> Your brain needs time to decompress, and that means taking a break from digital processing… and from screen time in general. Make time in your day to step away from screens, such as taking a 15-minute walk or reading a book instead of watching a video online.</li>



<li><strong>Know when to step in:</strong> Instead of endlessly tweaking prompts to get a perfect result, it is often faster and less mentally taxing to manually write or refactor the final 20% yourself.</li>



<li><strong>Create base prompts:</strong> Writing custom prompts that include everything from guardrails to tone instructions for every new project quickly drains your mental energy. Instead, build two or three reusable system prompts, such as one for refactoring legacy code and another for drafting API docs, and use them as templates.</li>
</ul>



<h2 class="wp-block-heading">Proving your human value in a new job market</h2>



<p class="wp-block-paragraph">With companies regularly using AI-based applicant tracking systems to filter resumes, and AI actively shifting job responsibilities and skills requirements, the strategy for how you apply for roles and handle interviews is changing.</p>



<p class="wp-block-paragraph"><a href="https://my.idc.com/getdoc.jsp?containerId=PRF005683" target="_blank" rel="noreferrer noopener">Leo Freitas</a>, an analyst and research manager at IDC Research, says it’s critical for job applicants to show potential employers what they can do that machines cannot. “You need demonstrable achievements,” he adds. “It’s good to show highly human skills.”</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="683" sizes="(max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Leo Freitas, analyst and research manager at IDC</p>
</figcaption></figure><p class="imageCredit">IDC</p></div>



<p class="wp-block-paragraph">How to combat the problem:</p>



<h4 class="wp-block-heading">For your resume:</h4>



<ul class="wp-block-list">
<li><strong>Mirror their language: </strong>Use the exact language from the job description. Traditional applicant tracking systems rely heavily on structured information and keyword matching, says <a href="https://www.linkedin.com/in/teresaehill/" target="_blank" rel="noreferrer noopener">Teresa Hill</a>, founder and leader of Anchor GTM, a growth marketing consultancy. That means if a posting says “product marketing manager,” don’t just write “PMM.” Write both.</li>



<li><strong>Keep it simple: </strong>Use standard section headers, like “Experience” and “Education.” Creative alternatives and formatting can confuse parsers.</li>



<li><strong>Avoid AI writing:</strong> Use AI to help structure your thinking, then edit until the copy sounds natural and authentically human.</li>



<li><strong>Swap responsibilities for metrics:</strong> To stand out, especially with AI scanners, tie as many bullet points as possible from your work to business outcomes.</li>
</ul>



<h4 class="wp-block-heading">For the interview:</h4>



<ul class="wp-block-list">
<li><strong>So, how do you use AI?</strong> Every interviewer eventually asks some version of this question. The best answers focus on judgment vs. simply name-dropping tools. Explain what you automate, what you never automate, and why.</li>



<li><strong>Show that you’re a gatekeeper: </strong>AI tools can generate code or copy instantly, but they also introduce errors. To stand out, show that you know how to audit, verify, and safeguard quality.</li>



<li><strong>Focus on learning:</strong> Don’t emphasize your expertise with a specific AI tool. Focus on being someone who is adaptable and learns quickly, Hill says. </li>



<li><strong>What sets you apart from a machine:</strong> Show, don’t tell. Give work examples that demonstrate that you know how to be creative, collaborative, and problem solve. Show metrics whenever possible.</li>



<li><strong>Demonstrate that you know the limits: </strong>Make it clear that you know when to use AI and what not to let it touch without heavy review. </li>
</ul>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="576" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Teresa Hill, founder and leader of Anchor GTM</p>
</figcaption></figure><p class="imageCredit">Teresa Hill</p></div>



<h2 class="wp-block-heading">Future-proofing your career in a shifting tech market</h2>



<p class="wp-block-paragraph">The anxiety echoing through the tech industry is tangible as companies reallocate corporate capital toward automation. While both Gownder and Freitas emphasize that there is far more fear than actual AI-driven layoffs, the shift in corporate spending is undeniably stoking job insecurity.</p>



<p class="wp-block-paragraph">“There’s this apocalyptical view that AI will take everyone’s job in a few years,” says Freitas. “I don’t see that happening, but many things will change in the nature of how we work. I don’t think the world is going to end tomorrow. But it’s always good to do a self-assessment and look at whether AI can do what you’re doing now.”</p>



<p class="wp-block-paragraph">How to combat the problem:</p>



<ul class="wp-block-list">
<li><strong>Use this technology to your advantage: </strong>Approach AI as a new tool, not a replacement. Use it to make yourself better and faster at your job. “I look at AI like it’s another new tool, and I’m going to learn it like I’ve learned any other tool,” says Jones.</li>



<li><strong>Don’t bury your head in the sand: </strong>Take a look at what you do and consider if it could be done by AI.If your role is highly automatable, think about switching to a more advanced position or to a role, like security, that more clearly needs a human in the loop.</li>



<li><strong>Take ownership of your career:</strong> Expand your knowledge and skills. Find courses and <a href="https://www.computerworld.com/article/4049928/top-ai-certifications-that-will-get-you-hired-and-promoted.html">certifications</a> (many are free online) and take advantage of employers’ training programs.</li>



<li><strong>Work with the business side:</strong> Make sure you understand the business — its long-term goals, competitive market, and jargon. Be the bridge between the technical and business sides of the company, giving presentations and solving business problems with technology.</li>



<li><strong>Highlight your in-house expertise:</strong> When you have institutional knowledge, make sure you are openly using it to benefit the business. Your knowledge can be your key differentiator.</li>



<li><strong>Push the business forward:</strong> Think about the next app or customer-facing system that will propel the business forward. Be the one who is advancing the company with tech.</li>



<li><strong>Continue to adapt:</strong> Don’t get stuck in your anxiety. Keep being curious and working your learning muscles. </li>
</ul>



<h4 class="wp-block-heading">More on AI in the workplace:</h4>



<ul class="wp-block-list">
<li><a href="https://www.computerworld.com/article/4047909/burned-out-by-bots-prompt-fatigue-in-workplace.html">Burned out by bots: The rise of prompt fatigue in the workplace</a></li>



<li><a href="https://www.computerworld.com/article/4175956/the-ai-tech-job-slaughter-gets-real.html">The AI tech job slaughter gets real</a></li>



<li><a href="https://www.cio.com/article/4159631/increased-ai-expectations-without-guidance-leads-to-employee-burnout.html" target="_blank">Increased AI expectations without guidance leads to employee burnout</a></li>



<li><a href="https://www.cio.com/article/4188575/botsitting-the-ai-time-savings-killer-only-governance-can-stop.html" target="_blank">‘Botsitting’: The AI time-savings killer only governance can stop</a></li>



<li><a href="https://www.computerworld.com/article/4049928/top-ai-certifications-that-will-get-you-hired-and-promoted.html">Here are the top AI certifications that will get you hired and promoted</a></li>



<li><a href="https://www.computerworld.com/article/4067372/how-to-curb-hallucinations-in-copilot-and-other-genai-tools.html">How to curb hallucinations in Copilot (and other genAI tools)</a></li>
</ul>



<p class="wp-block-paragraph"></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[When you should use AI, and when you shouldn’t]]></title>
<description><![CDATA[Most folks seem happy to let AI write their LinkedIn posts for them. Others, myself included, have AI draft their work memos or slide decks. And some, according to recent survey data highlighted by AI Secret, are happy to let AI do their grocery shopping for them (28%), but not handle luxury good...]]></description>
<link>https://tsecurity.de/de/3702690/ai-nachrichten/when-you-should-use-ai-and-when-you-shouldnt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3702690/ai-nachrichten/when-you-should-use-ai-and-when-you-shouldnt/</guid>
<pubDate>Tue, 04 Aug 2026 11:15:24 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Most folks seem happy to let AI write their LinkedIn posts for them. Others, myself included, have AI draft their work memos or slide decks. And some, according to <a href="https://aisecret.us/deepmind-fired-its-nobel-team/">recent survey data highlighted by AI Secret</a>, are happy to let AI do their grocery shopping for them (28%), but not handle luxury goods or banking (6%). In trying to uncover a guiding principle for when mere mortals are willing to cede control to robots, AI Secret’s authors offered a cutting interpretation of our willingness to buy food but not financial products through AI: “That ranking isn’t trust, it’s a map of what people have stopped caring about.”</p>



<p class="wp-block-paragraph">While this feels true-ish, the “ish” is important. For example, based on the garbage we regularly wade through on LinkedIn, AI slop feels like an attempt to care about something we’re told we <em>should</em> care about, but don’t. If we did, we’d take the time to write it. Or maybe it’s simply an acknowledgment that many people don’t have the skill to write well, so they entrust AI to do it better than they could. (It doesn’t.)</p>



<p class="wp-block-paragraph">Maybe it’s both. As for the willingness to shop for groceries, it’s not that we don’t care about the milk in our fridge—we clearly do—but perhaps we don’t care about <em>how</em> it gets there. We care about the outcome, in other words, but not the process.</p>



<p class="wp-block-paragraph">That feels like the right way to think about AI, and maybe, just maybe, it offers a clue as to when and how you and I should use AI.</p>



<h2 class="wp-block-heading"><a></a>LinkedIn discovers slop</h2>



<p class="wp-block-paragraph">Last week, <a href="https://www.linkedin.com/posts/hsrinivasan1_ai-slop-is-a-top-priority-for-all-of-us-share-7488612006321889282-Ps8Z/">LinkedIn introduced a button that lets users flag a post as “seems like AI slop.”</a> It also pulled its own “enhance your post” feature, which contributed to the AI slop deluge by using AI to help compose posts, and replaced it with a proofreader designed not to change the author’s voice.</p>



<p class="wp-block-paragraph">It’s a welcome change. I’ve been happily “seems like AI slopping” ever since.</p>



<p class="wp-block-paragraph">Still, you have to ask, why are people producing these posts in the first place? My guess is that many don’t value posting but feel obliged to do it because “thought leadership” and “career.” Or maybe, as I did this past week, they used AI to ask, “What are my top-performing posts over the past 10 years and what’s the best strategy for replicating that success?” In addition to telling me to post three times a week (LinkedIn’s algorithms like that), it also told me something I already knew: “Your best posts were personal and opinionated.” In other words, exactly the sort of thing that AI can’t write for me.</p>



<p class="wp-block-paragraph">Yes, AI can produce 500 words on how coaching your daughter’s soccer team taught you seven lessons about enterprise procurement. (“Let that sink in.”) The post will be polished and may even be popular. It will also sound like everything else in others’ feeds because you and every other person outsourced the one thing readers want most: a personal point of view. Something that makes us human.</p>



<p class="wp-block-paragraph">This doesn’t make all AI-assisted writing bad. Far from it. AI can help a non-native English speaker express an original idea or turn dictated thoughts into a coherent draft. It can also challenge an argument, find missing evidence, or suggest a better structure. I use it for all those things.</p>



<p class="wp-block-paragraph">But if you have nothing to say, AI isn’t going to give you a voice. Not a real one.</p>



<h2 class="wp-block-heading">Just because you can… </h2>



<p class="wp-block-paragraph">A couple of years ago, a friend who ran product marketing at a very large technology company told me he was going to start generating sales collateral with AI. First-call decks, email templates, etc. His logic was sound and, honestly, kind of brutal. The collateral his team produced by hand was pulling a few dozen downloads from a sales force numbering in the thousands. If almost nobody wanted it, why pay a junior product marketer to make it? Let the machine publish into the void.</p>



<p class="wp-block-paragraph">Sure, I said. That seems smart. Except it wasn’t. He hadn’t solved the foundational issue.</p>



<p class="wp-block-paragraph">I didn’t know what that issue was, but then neither did he. After all, those low download numbers could suggest any number of things. Maybe the sellers couldn’t find it. Maybe the material wasn’t useful at scale, but perhaps a few dozen people used it to close enormous deals. Perhaps it was simply the wrong collateral for a pressing need, which the sellers resolved on their own. Or maybe, just maybe, that thing that every product marketing team does… doesn’t need to be done.</p>



<p class="wp-block-paragraph">AI makes it easier not to wrestle with the problem. The deck costs almost nothing, so we keep making the deck, rather than addressing whether it needs to be created at all. Similarly, because the weekly report takes only minutes, we opt to keep publishing it. The knowledge base fills with pages no one reads because stopping a process requires a decision. Automating it merely requires a prompt.</p>



<p class="wp-block-paragraph">We’re letting AI kick the can down the road for us, rather than making the hard, human decisions we’re ostensibly paid to make.</p>



<p class="wp-block-paragraph">I’ve made a version of this argument about software. <a href="https://www.infoworld.com/article/4181971/making-sense-of-too-much-code.html?utm=hybrid_search">App creation is way up, but app adoption isn’t</a>. Building was never the only constraint. Getting anyone to care is the constraint, and AI doesn’t solve that. It just removes our last excuse for not noticing.</p>



<h2 class="wp-block-heading"><a></a>Two kinds of low-value work</h2>



<p class="wp-block-paragraph">This isn’t a case against automating boring things. We should totally do that, and immediately. But “low-value work” hides two very different things, and they deserve opposite treatment.</p>



<p class="wp-block-paragraph">The first is a low-value process attached to a valuable outcome, like my milk example. Take expense reports, backups, etc. These aren’t exciting things to do, but they <em>must</em> get done. AI gives us the chance to hand off as much of the process as we safely can, check the result, and move on.</p>



<p class="wp-block-paragraph">The second is a low-value process attached to no discernible outcome, like the sales collateral or a LinkedIn post with no personality or real point of view. Automating this feels like a win because the cost drops, but cost is not the core problem. The real problem is that the output has no audience. It doesn’t need to exist.</p>



<p class="wp-block-paragraph">If you can’t name a useful outcome that would be lost if the output stopped existing, you don’t have an automation opportunity. You have a cancellation opportunity.</p>



<h2 class="wp-block-heading"><a></a>I use AI where I care most</h2>



<p class="wp-block-paragraph">Now for the part that complicates my own argument, because the inverse is also true. The work where I use AI most aggressively is often the work I care about <em>most</em>.</p>



<p class="wp-block-paragraph">I wrote last week about <a href="https://www.infoworld.com/article/4201445/will-open-weights-make-ai-more-honest.html">asking Claude to read four 18th-century probate wills</a> as part of a 20-year hunt for the parents of a fourth-great-grandfather. It fabricated an entire emigrant ancestor. It was clean, plausible, and completely invented. I only caught it by clicking through to the high-resolution images and reading the documents myself, line by line.</p>



<p class="wp-block-paragraph">I’ve been thinking about that experience differently this week. The model excused its behavior as “hopeful reading.” OK. But the reason I caught it is duller and more important than anything about the model: I caught Claude’s error because I cared. Twenty years of caring made me open the originals. It really, really, <em>really </em>mattered to me that it be right.</p>



<p class="wp-block-paragraph">Nobody wants to proofread the deck they never wanted to make in the first place.</p>



<p class="wp-block-paragraph">The same pattern holds at work. I use AI constantly for executive memos, compressing a sprawling pile of data and argument into context, recommendation, and ask. This is high-stakes work with a real reader, a real decision, and my name on it. So I read every line. I challenge the output. I edit (a lot). The AI doesn’t replace my investment in the work, but it does do 90% of the early legwork for me so that I can focus on the critically important last 10%.</p>



<p class="wp-block-paragraph">I’ve called this <a href="https://www.infoworld.com/article/4111829/ais-trust-tax-for-developers.html">AI’s trust tax</a>: You pay the verification cost up-front, or someone else pays it later when the answer causes damage. The tax gets paid most reliably when somebody cares about the outcome. When nobody cares, AI can make bad work look finished enough to ship and presentable enough to glance at without reviewing carefully.</p>



<p class="wp-block-paragraph">AI slop, then, really isn’t a model problem; it’s a question of caring, which manifests in how we choose to use it.</p>



<h2 class="wp-block-heading"><a></a>Maybe just stop</h2>



<p class="wp-block-paragraph">I wish I had a clear, guiding principle to offer here, but I don’t. Here are two questions that help, though.</p>



<ol class="wp-block-list">
<li>What useful outcome disappears if this work stops?</li>



<li>If that outcome matters, where is human judgment still needed?</li>
</ol>



<p class="wp-block-paragraph">If there’s no meaningful outcome, stop doing the work, whether AI-powered or human-powered. If the outcome matters but much of the process doesn’t, hand the process to AI. Let AI buy the groceries, search the archive, assemble the first draft, or build the sales deck that sellers have said they actually need. Then keep a person accountable for the result.</p>



<p class="wp-block-paragraph">AI is extremely good at making more things. We don’t need more things, and making them cheaper won’t make them useful. Humans, by contrast, are extremely good (or need to be) at determining which things need to be made. That’s your job, and mine, and no prompt can take it away from us.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Fightland’ Season 1, Episode 1 Recap: Duke Begins His Revenge Mission]]></title>
<description><![CDATA[Fightland Season 1, Episode 1 introduces Duke Kilroy, a former heavyweight champion who returns to London after spending nearly eight years in prison. However, Duke has no interest in quietly rebuilding his life because he believes the powerful Marshall family destroyed his career and caused his ...]]></description>
<link>https://tsecurity.de/de/3702352/ios-mac-os/fightland-season-1-episode-1-recap-duke-begins-his-revenge-mission/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3702352/ios-mac-os/fightland-season-1-episode-1-recap-duke-begins-his-revenge-mission/</guid>
<pubDate>Tue, 04 Aug 2026 08:26:14 +0200</pubDate>
<content:encoded><![CDATA[Fightland Season 1, Episode 1 introduces Duke Kilroy, a former heavyweight champion who returns to London after spending nearly eight years in prison. However, Duke has no interest in quietly rebuilding his life because he believes the powerful Marshall family destroyed his career and caused his brother’s death.



The premiere, titled “The Only Round That Matters Is the Next One,” establishes Duke’s personal history before placing him inside a dangerous battle involving professional boxing, drug trafficking, family rivalries, and revenge.




Episode title: The Only Round That Matters Is the Next One



Release date: July 31, 2026



Streaming platform: Starz



Genre: Boxing, crime and drama



Season length: Eight episodes



New episodes: Fridays



Main cast: Howard Charles, Nicholas Pinnock, Deborah Ayorinde, Anita-Joy Uwajeh and Charles Babalola




Spoilers ahead for Fightland Episode 1



The episode opens several years earlier, when Duke defeats his opponent and becomes the heavyweight champion. During the celebrations, viewers learn that Duke has been having an affair with Joy, the wife of his promoter, Kingsley Marshall.



Kingsley operates a successful boxing promotion while secretly controlling a criminal network. After discovering the affair, he sends two men to break Duke’s hand and end his career. The attack goes wrong when Duke’s brother Calvin intervenes and dies. An enraged Duke kills one of the attackers and eventually receives a prison sentence.



Duke returns to London



Years later, Duke meets influential cartel boss Amado while serving his sentence in Nevada. Amado arranges a meeting between Duke and Calvin’s surviving attacker, who confirms that Kingsley ordered the original assault.



Amado offers Duke a chance to return home and destroy Kingsley’s drug operation. Duke accepts, although Kingsley has disappeared by the time he reaches London.



Duke reconnects with his friend Jay and returns to his father’s boxing gym, where old tensions remain unresolved. He then walks into Marshall Promotions during a public event and pressures Kingsley’s son Zeek into announcing his boxing comeback.



Zeek believes Duke has returned because he needs money and another chance in the ring. Duke allows the Marshall family to underestimate him because working inside their promotion gives him access to their business.



Duke attacks the Marshall operation



Duke and Amado’s associate Lazaro later steal drugs worth around £3.5 million from the Marshall organization. They make the robbery look like an attack carried out by the Russians, hoping the conflict will force Kingsley to leave hiding.



Meanwhile, Duke meets Joy and tries to repair their relationship, but she remains angry because he ignored her letters and calls during his imprisonment. Their conversation ends when Joy’s son Aiden arrives, creating another mystery around the family.



The episode closes after one of Zeek’s men follows Duke and discovers his connection to Lazaro. Duke kills the man during a fight, but Jay suddenly enters the room. Lazaro then pulls out a gun and demands answers, leaving Duke’s revenge plan in immediate danger.



Fightland Episode 1 gives Duke a clear mission, but his anger and growing list of secrets could expose him before Kingsley returns. What do you think Duke will do after Jay discovers the truth? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Furious’ Season 1, Episode 2 Recap: Catherine Completes Her Revenge Against Oliver]]></title>
<description><![CDATA[Furious Season 1, Episode 2 gives Catherine control of the story as she targets Oliver Charles, a wealthy lawyer connected to the abuse she suffered as a teenager.



The episode, titled “My Life Had Stood: A Loaded Gun,” also moves Alice Black’s investigation forward. Alice and Nora begin connec...]]></description>
<link>https://tsecurity.de/de/3702078/ios-mac-os/furious-season-1-episode-2-recap-catherine-completes-her-revenge-against-oliver/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3702078/ios-mac-os/furious-season-1-episode-2-recap-catherine-completes-her-revenge-against-oliver/</guid>
<pubDate>Tue, 04 Aug 2026 04:06:33 +0200</pubDate>
<content:encoded><![CDATA[Furious Season 1, Episode 2 gives Catherine control of the story as she targets Oliver Charles, a wealthy lawyer connected to the abuse she suffered as a teenager.



The episode, titled “My Life Had Stood: A Loaded Gun,” also moves Alice Black’s investigation forward. Alice and Nora begin connecting the recent deaths to the Candlelight Lounge trafficking case, while Catherine prepares to kill another man who escaped punishment.



Furious Season 1, Episode 2 release details




Episode title: My Life Had Stood: A Loaded Gun



Release date: July 27, 2026



Streaming platform: Hulu and Hulu on Disney+ in the US



International platform: Disney+



Genre: Crime drama and psychological thriller



Season length: Eight episodes



New episodes: Every Monday



Season finale: August 31, 2026




The first three episodes arrived together on July 27, followed by weekly releases through the end of August. Emmy Rossum stars as FBI agent Alice Black, while Lola Petticrew plays Catherine, the woman responsible for killing several wealthy men.



Spoiler warning



The following section contains major spoilers for Furious Season 1, Episode 2.



Catherine traps Oliver inside his own home



After entering Oliver’s apartment in the previous episode, Catherine continues pretending to be a vulnerable young woman who depends on him. Oliver enjoys controlling her, which allows Catherine to remain close while secretly drugging him.



Her plan becomes more complicated when Oliver’s teenage daughter, Mira, unexpectedly arrives for a debate tournament. Catherine initially sees Mira as another obstacle, but she soon notices how little interest Oliver shows in his daughter’s life.



Mira wants to cut her hair short, although Oliver refuses to let her do it. His reaction reminds Catherine of comments he made about her hair when she was 15. The memory confirms that Catherine did not choose Oliver randomly. He paid to have sex with her when she was underage and later avoided any serious consequences.



Alice struggles with her own trauma



Meanwhile, Alice continues investigating the suspicious overdose deaths. Her determination begins affecting her health and behaviour, especially as the case brings back memories of her abusive former partner, Marshall.



Alice has avoided taking showers because Marshall used to attack her in the bathroom. Her former police partner, Danny, notices that she is struggling and offers to sit outside while she showers so she can feel safe.



Their conversation shows that Danny believed Alice when she reported the abuse, although his continued professional connection with Marshall makes their relationship difficult. Alice also remains angry that speaking out damaged her career while Marshall continued working without facing meaningful punishment.



Why does Catherine kill Oliver?



Catherine eventually reveals her real reason for entering Oliver’s home. She reminds him that he paid for sex with her when she was only 15.



Oliver claims that Catherine never told him her age. Catherine rejects the excuse because he never tried to find out. She also asks whether he remembers another girl who was present that night, suggesting that Catherine’s campaign involves finding or avenging someone from her past.



Catherine kills Oliver while Mira remains inside the apartment. After discovering her father’s body, Mira asks Catherine why she murdered him.



Catherine tells her the truth about Oliver’s crimes. The scene leaves Mira traumatised, even though she appears to understand that her father had hidden a much darker life.



Before leaving, Catherine helps Mira cut her hair, giving the teenager the freedom Oliver had denied her.



Alice finds the connection to Oliver



Alice and Nora discover that Caleb Easton’s car appeared in surveillance footage connected to the Candlelight Lounge investigation. Oliver, who worked as Caleb’s lawyer, later reported that vehicle missing.



The clue gives investigators a direct link between the suspected victims, but they reach Oliver’s apartment too late to save him. Alice now knows that someone is targeting men connected to the trafficking case.



Episode 2 pushes Alice closer to Catherine while showing how similar experiences shaped both women. Catherine seeks revenge through murder, while Alice continues searching for justice inside a system that previously failed her.



What did you think about Catherine’s decision to tell Mira the truth about her father? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Companies winning with AI operate differently. Here’s how.]]></title>
<description><![CDATA[The first phase of the AI race was largely about access. Companies rushed to adopt tools, launch pilots, and demonstrate that they were moving quickly enough to keep pace with the market. In many organizations, simply showing momentum became the strategy.



Leadership teams wanted to signal inno...]]></description>
<link>https://tsecurity.de/de/3701256/it-security-nachrichten/companies-winning-with-ai-operate-differently-heres-how/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3701256/it-security-nachrichten/companies-winning-with-ai-operate-differently-heres-how/</guid>
<pubDate>Mon, 03 Aug 2026 20:16:54 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">The first phase of the AI race was largely about access. Companies rushed to adopt tools, launch pilots, and demonstrate that they were moving quickly enough to keep pace with the market. In many organizations, simply showing momentum became the strategy.</p>



<p class="wp-block-paragraph">Leadership teams wanted to signal innovation, employees were encouraged to experiment, and new technologies were layered into existing workflows with the assumption that adoption itself would create advantage over time.</p>



<p class="wp-block-paragraph">It has become clear: access was never going to be the differentiator for very long. The next phase of this shift will favor companies that are able to operate differently because of AI, not simply companies that use AI more often. </p>



<p class="wp-block-paragraph">That distinction matters because it moves the conversation away from tools and toward operating models, leadership discipline, decision-making structures, and organizational adaptability, which is where the real competitive separation is beginning to happen.</p>



<h3 class="wp-block-heading"><strong>Speed becomes structural</strong></h3>



<p class="wp-block-paragraph">One of the most significant changes AI creates within organizations is the compression of time across nearly every part of the business. It is easy to frame this conversation around productivity gains alone, but the more meaningful shift is happening around how quickly organizations are expected to respond, execute, prioritize, and make decisions while customers, competitors, and markets all begin moving faster simultaneously. What once felt like manageable friction inside a company can quickly become a competitive liability when the surrounding market is operating at a different speed.</p>



<p class="wp-block-paragraph">That reality is creating pressure on operating structures that were originally designed for a slower business environment. Approval chains, heavily layered decision-making models, fragmented ownership structures, and manual dependencies become harder to sustain when speed itself starts shaping competitiveness.</p>



<p class="wp-block-paragraph">AI is reducing the cost of execution at the same time that it is increasing the competitive cost of operating slowly, and many organizations are still underestimating how meaningful that shift will become over the next several years.</p>



<p class="wp-block-paragraph">What makes this different from prior technology shifts is that speed is starting to become structural. Organizations that can absorb information, make decisions, and execute quickly without creating internal chaos are going to operate very differently from companies still built around slower, heavily layered processes.</p>



<h3 class="wp-block-heading"><strong>AI exposes operational inefficiency</strong></h3>



<p class="wp-block-paragraph">What complicates this further is that AI often exposes operational weaknesses faster than it resolves them. There is still a tendency to think about AI primarily as a technology deployment exercise when, in practice, many companies discover that it quickly becomes a broader execution and organizational discipline challenge instead. As <a href="https://reputation.com/resources/articles/single-platform-reputation-management-how-consolidation-delivers-maximum-value" target="_blank" rel="noreferrer noopener">companies attempt to accelerate, disconnected systems</a>, inconsistent data, siloed teams, and outdated processes become more visible because they begin interfering directly with execution speed, customer responsiveness, and organizational adaptability. In many ways, AI amplifies the operational maturity a company already has.</p>



<p class="wp-block-paragraph">Organizations with strong systems, disciplined information management, clear accountability structures, and healthy decision-making processes can often accelerate effectively because the underlying foundation already supports speed and adaptability. Organizations operating with fragmented workflows and unclear ownership structures tend to experience the opposite effect, where acceleration exposes friction that previously existed quietly in the background but becomes much harder to ignore once the pace of the business changes.</p>



<p class="wp-block-paragraph">Many leadership teams still assume AI will compensate for inefficiency when, in reality, it often exposes those weaknesses faster. AI does not eliminate friction inside the business – it exposes where that friction already exists.</p>



<h3 class="wp-block-heading"><strong>Judgment becomes more valuable</strong></h3>



<p class="wp-block-paragraph">The conversation around talent is evolving in a similar way, and many organizations are still framing this transition too narrowly. Much of the public discussion continues to focus on workforce reduction, but the more important shift is actually about how organizations direct human attention, judgment, and expertise toward the areas where those capabilities create the most value. As routine work becomes easier to automate, qualities like judgment, adaptability, prioritization, and the ability to operate effectively in ambiguity become increasingly important rather than less.</p>



<p class="wp-block-paragraph">The organizations gaining the greatest advantage in this environment are not simply becoming faster or more efficient. They are becoming better at creating leverage from the expertise they already have by reducing the amount of time capable people spend navigating processes, chasing information, or managing friction that no longer needs to exist. That changes the role of leadership as well. Managers become increasingly important not as controllers of process, but as providers of context, prioritization, direction, and decision clarity in environments where speed and ambiguity increasingly coexist.</p>



<p class="wp-block-paragraph">The companies winning in this next phase of the market will not necessarily have fewer people. They will deploy talent differently, make decisions faster, and create organizations where capable teams are able to focus more energy on solving meaningful problems instead of managing complexity.</p>



<h3 class="wp-block-heading"><strong>Customer expectations are changing faster than companies are</strong></h3>



<p class="wp-block-paragraph">At the same time, customer expectations are evolving faster than many organizations are adapting internally. AI is reshaping how customers think about responsiveness, personalization, consistency, and speed, and experiences that once felt differentiated are quickly becoming baseline expectations. That creates a growing tension for companies still operating through slower internal systems while customers continue recalibrating what “good” looks like in real time based on the experiences they are having elsewhere.</p>



<p class="wp-block-paragraph">This shift also has important implications for trust and visibility. As <a href="https://reputation.com/resources/reports-guides/ai-is-rewriting-the-rules-of-reputation" target="_blank" rel="noreferrer noopener">AI increasingly influences how companies are discovered, compared, evaluated, and discussed</a>, reputation becomes much more deeply connected to how organizations are surfaced and interpreted at scale. In an AI-driven environment, reputation is no longer simply a brand asset that exists adjacent to the business. It increasingly becomes part of the infrastructure through which trust is established in the first place, particularly as AI increasingly shapes how customers discover and evaluate companies.</p>



<p class="wp-block-paragraph">Companies that continue operating through slower internal systems will increasingly struggle to meet the expectations AI is teaching customers to have.</p>



<h3 class="wp-block-heading"><strong>Leadership teams must redesign before they feel ready</strong></h3>



<p class="wp-block-paragraph">One of the biggest leadership challenges in this environment is that many executive teams are still waiting for a level of certainty that no longer really exists. Most organizations naturally want stable playbooks, lower-risk transitions, and more complete information before making significant structural changes, but markets moving at this pace rarely provide that level of clarity in advance.</p>



<p class="wp-block-paragraph">The companies moving first are not waiting for perfect certainty before redesigning how they operate. They understand that adaptability itself is becoming a competitive advantage. That does not mean acting recklessly or abandoning discipline; it means recognizing that operating models originally designed for stability and predictability can struggle in environments defined by acceleration, constant iteration, and rapidly changing customer expectations.</p>



<p class="wp-block-paragraph">The leadership challenge is no longer simply deciding whether AI matters. The more difficult question is how quickly organizations are willing and able to evolve around what AI makes possible.</p>



<h3 class="wp-block-heading"><strong>Most companies are measuring the wrong signals</strong></h3>



<p class="wp-block-paragraph">Many companies are still measuring the wrong signals when evaluating whether their AI strategy is working. Leadership teams focus on adoption metrics such as the number of tools deployed, pilot programs launched, employee usage statistics, or isolated productivity gains. But those measurements often signal experimentation rather than transformation.</p>



<p class="wp-block-paragraph">The more meaningful indicators are behavioral and organizational.</p>



<ul class="wp-block-list">
<li>Is the organization making decisions faster without creating confusion?</li>



<li>Has unnecessary complexity been removed from critical workflows?</li>



<li>Are customers experiencing less friction and greater responsiveness?</li>



<li>Is information moving more effectively across the business?</li>



<li>Are capable employees spending more time solving meaningful problems instead of managing process and coordination overhead?</li>



<li>Can the organization adapt quickly when conditions change without becoming unstable internally?</li>
</ul>



<p class="wp-block-paragraph">Over time, the separation between companies experimenting with AI and companies truly built to operate in an AI-first environment will become difficult to ignore. The organizations leading in the next phase of the market will not simply adopt new technologies faster. They will build companies designed to adapt, decide, and operate differently because of them, while competitors still operating through legacy structures will struggle to keep pace.</p>



<h3 class="wp-block-heading"><strong>About the author</strong></h3>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="946" height="1024" sizes="auto, (max-width: 946px) 100vw, 946px"&gt;</figure><p class="imageCredit">Reputation</p></div>



<p class="wp-block-paragraph">Joe Burton is an accomplished executive who has led public and private billion-dollar organizations in driving new product portfolios, go-to-market strategies, and innovative business models. Having spent the earlier parts of his career in information technology, Joe is passionate about fostering more transparency and trust in the digital world, while championing high performing cultures aligned to mission, vision and social responsibility.</p>



<p class="wp-block-paragraph">A recognized global transformational change executive, Joe has held the CEO role at Telesign and Poly, as well as serving as the Chief Technology Officer of Unified Communications at Cisco. Having started his career as an engineer, Joe brings both product and development expertise as well as a wealth of knowledge on big data, analytics, machine learning, SaaS, networking, unified communications, consumer electronics, and IoT.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Companies winning with AI operate differently. Here’s how.]]></title>
<description><![CDATA[The first phase of the AI race was largely about access. Companies rushed to adopt tools, launch pilots, and demonstrate that they were moving quickly enough to keep pace with the market. In many organizations, simply showing momentum became the strategy.



Leadership teams wanted to signal inno...]]></description>
<link>https://tsecurity.de/de/3701145/it-nachrichten/companies-winning-with-ai-operate-differently-heres-how/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3701145/it-nachrichten/companies-winning-with-ai-operate-differently-heres-how/</guid>
<pubDate>Mon, 03 Aug 2026 20:15:54 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">The first phase of the AI race was largely about access. Companies rushed to adopt tools, launch pilots, and demonstrate that they were moving quickly enough to keep pace with the market. In many organizations, simply showing momentum became the strategy.</p>



<p class="wp-block-paragraph">Leadership teams wanted to signal innovation, employees were encouraged to experiment, and new technologies were layered into existing workflows with the assumption that adoption itself would create advantage over time.</p>



<p class="wp-block-paragraph">It has become clear: access was never going to be the differentiator for very long. The next phase of this shift will favor companies that are able to operate differently because of AI, not simply companies that use AI more often. </p>



<p class="wp-block-paragraph">That distinction matters because it moves the conversation away from tools and toward operating models, leadership discipline, decision-making structures, and organizational adaptability, which is where the real competitive separation is beginning to happen.</p>



<h3 class="wp-block-heading"><strong>Speed becomes structural</strong></h3>



<p class="wp-block-paragraph">One of the most significant changes AI creates within organizations is the compression of time across nearly every part of the business. It is easy to frame this conversation around productivity gains alone, but the more meaningful shift is happening around how quickly organizations are expected to respond, execute, prioritize, and make decisions while customers, competitors, and markets all begin moving faster simultaneously. What once felt like manageable friction inside a company can quickly become a competitive liability when the surrounding market is operating at a different speed.</p>



<p class="wp-block-paragraph">That reality is creating pressure on operating structures that were originally designed for a slower business environment. Approval chains, heavily layered decision-making models, fragmented ownership structures, and manual dependencies become harder to sustain when speed itself starts shaping competitiveness.</p>



<p class="wp-block-paragraph">AI is reducing the cost of execution at the same time that it is increasing the competitive cost of operating slowly, and many organizations are still underestimating how meaningful that shift will become over the next several years.</p>



<p class="wp-block-paragraph">What makes this different from prior technology shifts is that speed is starting to become structural. Organizations that can absorb information, make decisions, and execute quickly without creating internal chaos are going to operate very differently from companies still built around slower, heavily layered processes.</p>



<h3 class="wp-block-heading"><strong>AI exposes operational inefficiency</strong></h3>



<p class="wp-block-paragraph">What complicates this further is that AI often exposes operational weaknesses faster than it resolves them. There is still a tendency to think about AI primarily as a technology deployment exercise when, in practice, many companies discover that it quickly becomes a broader execution and organizational discipline challenge instead. As <a href="https://reputation.com/resources/articles/single-platform-reputation-management-how-consolidation-delivers-maximum-value" target="_blank" rel="noreferrer noopener">companies attempt to accelerate, disconnected systems</a>, inconsistent data, siloed teams, and outdated processes become more visible because they begin interfering directly with execution speed, customer responsiveness, and organizational adaptability. In many ways, AI amplifies the operational maturity a company already has.</p>



<p class="wp-block-paragraph">Organizations with strong systems, disciplined information management, clear accountability structures, and healthy decision-making processes can often accelerate effectively because the underlying foundation already supports speed and adaptability. Organizations operating with fragmented workflows and unclear ownership structures tend to experience the opposite effect, where acceleration exposes friction that previously existed quietly in the background but becomes much harder to ignore once the pace of the business changes.</p>



<p class="wp-block-paragraph">Many leadership teams still assume AI will compensate for inefficiency when, in reality, it often exposes those weaknesses faster. AI does not eliminate friction inside the business – it exposes where that friction already exists.</p>



<h3 class="wp-block-heading"><strong>Judgment becomes more valuable</strong></h3>



<p class="wp-block-paragraph">The conversation around talent is evolving in a similar way, and many organizations are still framing this transition too narrowly. Much of the public discussion continues to focus on workforce reduction, but the more important shift is actually about how organizations direct human attention, judgment, and expertise toward the areas where those capabilities create the most value. As routine work becomes easier to automate, qualities like judgment, adaptability, prioritization, and the ability to operate effectively in ambiguity become increasingly important rather than less.</p>



<p class="wp-block-paragraph">The organizations gaining the greatest advantage in this environment are not simply becoming faster or more efficient. They are becoming better at creating leverage from the expertise they already have by reducing the amount of time capable people spend navigating processes, chasing information, or managing friction that no longer needs to exist. That changes the role of leadership as well. Managers become increasingly important not as controllers of process, but as providers of context, prioritization, direction, and decision clarity in environments where speed and ambiguity increasingly coexist.</p>



<p class="wp-block-paragraph">The companies winning in this next phase of the market will not necessarily have fewer people. They will deploy talent differently, make decisions faster, and create organizations where capable teams are able to focus more energy on solving meaningful problems instead of managing complexity.</p>



<h3 class="wp-block-heading"><strong>Customer expectations are changing faster than companies are</strong></h3>



<p class="wp-block-paragraph">At the same time, customer expectations are evolving faster than many organizations are adapting internally. AI is reshaping how customers think about responsiveness, personalization, consistency, and speed, and experiences that once felt differentiated are quickly becoming baseline expectations. That creates a growing tension for companies still operating through slower internal systems while customers continue recalibrating what “good” looks like in real time based on the experiences they are having elsewhere.</p>



<p class="wp-block-paragraph">This shift also has important implications for trust and visibility. As <a href="https://reputation.com/resources/reports-guides/ai-is-rewriting-the-rules-of-reputation" target="_blank" rel="noreferrer noopener">AI increasingly influences how companies are discovered, compared, evaluated, and discussed</a>, reputation becomes much more deeply connected to how organizations are surfaced and interpreted at scale. In an AI-driven environment, reputation is no longer simply a brand asset that exists adjacent to the business. It increasingly becomes part of the infrastructure through which trust is established in the first place, particularly as AI increasingly shapes how customers discover and evaluate companies.</p>



<p class="wp-block-paragraph">Companies that continue operating through slower internal systems will increasingly struggle to meet the expectations AI is teaching customers to have.</p>



<h3 class="wp-block-heading"><strong>Leadership teams must redesign before they feel ready</strong></h3>



<p class="wp-block-paragraph">One of the biggest leadership challenges in this environment is that many executive teams are still waiting for a level of certainty that no longer really exists. Most organizations naturally want stable playbooks, lower-risk transitions, and more complete information before making significant structural changes, but markets moving at this pace rarely provide that level of clarity in advance.</p>



<p class="wp-block-paragraph">The companies moving first are not waiting for perfect certainty before redesigning how they operate. They understand that adaptability itself is becoming a competitive advantage. That does not mean acting recklessly or abandoning discipline; it means recognizing that operating models originally designed for stability and predictability can struggle in environments defined by acceleration, constant iteration, and rapidly changing customer expectations.</p>



<p class="wp-block-paragraph">The leadership challenge is no longer simply deciding whether AI matters. The more difficult question is how quickly organizations are willing and able to evolve around what AI makes possible.</p>



<h3 class="wp-block-heading"><strong>Most companies are measuring the wrong signals</strong></h3>



<p class="wp-block-paragraph">Many companies are still measuring the wrong signals when evaluating whether their AI strategy is working. Leadership teams focus on adoption metrics such as the number of tools deployed, pilot programs launched, employee usage statistics, or isolated productivity gains. But those measurements often signal experimentation rather than transformation.</p>



<p class="wp-block-paragraph">The more meaningful indicators are behavioral and organizational.</p>



<ul class="wp-block-list">
<li>Is the organization making decisions faster without creating confusion?</li>



<li>Has unnecessary complexity been removed from critical workflows?</li>



<li>Are customers experiencing less friction and greater responsiveness?</li>



<li>Is information moving more effectively across the business?</li>



<li>Are capable employees spending more time solving meaningful problems instead of managing process and coordination overhead?</li>



<li>Can the organization adapt quickly when conditions change without becoming unstable internally?</li>
</ul>



<p class="wp-block-paragraph">Over time, the separation between companies experimenting with AI and companies truly built to operate in an AI-first environment will become difficult to ignore. The organizations leading in the next phase of the market will not simply adopt new technologies faster. They will build companies designed to adapt, decide, and operate differently because of them, while competitors still operating through legacy structures will struggle to keep pace.</p>



<h3 class="wp-block-heading"><strong>About the author</strong></h3>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="946" height="1024" sizes="auto, (max-width: 946px) 100vw, 946px"&gt;</figure><p class="imageCredit">Reputation</p></div>



<p class="wp-block-paragraph">Joe Burton is an accomplished executive who has led public and private billion-dollar organizations in driving new product portfolios, go-to-market strategies, and innovative business models. Having spent the earlier parts of his career in information technology, Joe is passionate about fostering more transparency and trust in the digital world, while championing high performing cultures aligned to mission, vision and social responsibility.</p>



<p class="wp-block-paragraph">A recognized global transformational change executive, Joe has held the CEO role at Telesign and Poly, as well as serving as the Chief Technology Officer of Unified Communications at Cisco. Having started his career as an engineer, Joe brings both product and development expertise as well as a wealth of knowledge on big data, analytics, machine learning, SaaS, networking, unified communications, consumer electronics, and IoT.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Stop depending on heroics and start operationalizing third-party risk]]></title>
<description><![CDATA[In cybersecurity, third-party risk management normally looks simple on paper: evaluate your vendor, learn the risk, report out on the gaps and weaknesses, transfer to the contract, and continue. Unfortunately, it seldom works that way in practice.



In my roles as a CISO, I find my teams in an i...]]></description>
<link>https://tsecurity.de/de/3700542/it-security-nachrichten/stop-depending-on-heroics-and-start-operationalizing-third-party-risk/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3700542/it-security-nachrichten/stop-depending-on-heroics-and-start-operationalizing-third-party-risk/</guid>
<pubDate>Mon, 03 Aug 2026 12:06:35 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">In cybersecurity, third-party risk management normally looks simple on paper: evaluate your vendor, learn the risk, report out on the gaps and weaknesses, transfer to the contract, and continue. Unfortunately, it seldom works that way in practice.</p>



<p class="wp-block-paragraph">In my roles as a CISO, I find my teams in an intermediary position as the compliance and cybersecurity expert between the end-user purchaser and the vendors they want to work with: A typically high-pressure position when you’re perceived as a roadblock to a business goal.</p>



<p class="wp-block-paragraph">As a consultant, we are helping clients establish a formal <a href="https://www.csoonline.com/article/567861/third-party-risk-management-a-getting-started-guide.html">third-party risk management</a> program often for the very first time. Alternatively, you are providing <a href="https://www.csoonline.com/article/3977845/the-rise-of-vciso-as-a-viable-cybersecurity-career-path.html">vCISO</a> or trusted adviser services to perhaps evaluate a specific product or service that lies fairly deep down in the purchasing timeline. That distinction is important, because how quickly security gets involved often determines how much friction everyone experiences.</p>



<p class="wp-block-paragraph">The number one problem I see? Security is always last to know.</p>



<h2 class="wp-block-heading">When security enters too late</h2>



<p class="wp-block-paragraph">A business team determines what kind of tool it needs. Operations want efficiency. Finance is ready to fund it. Momentum builds. Then someone says, “Wait a minute… What about cybersecurity and compliance? At that point, our role is to ask the questions that should have been asked earlier: What data will this vendor touch? Where will it reside? What controls exist and are needed? Does the vendor’s security posture (and its product) match the client’s obligations and risk tolerance?</p>



<p class="wp-block-paragraph">Being the one applying the brakes at the 11th hour is not a role anyone relishes. But that often becomes what third-party cyber risk management turns into when there is no formal intake and review process.</p>



<p class="wp-block-paragraph">This is something that I have witnessed time and again with clients. The team is excited about a new platform and reasonably anticipates a quick go/no-go. Instead, the review process turns into weeks of ping-ponging with the vendor: Responses to questionnaires, security documentation, clarifying calls, proof or non-provision of compliance, legalese and data flow discussions. That delay can feel painful to all involved if the end user organization does not have a mature process already in place. The business sees friction. The vendor sees hurdles. Security sees unresolved risk.</p>



<p class="wp-block-paragraph">The key to getting in early is working with your legal and finance, or procurement teams to bring you in as early as possible. These will be your partners in making sure the assessment is done before anything is signed. In my experience, once the ink is dry on the contract, you have lost all leverage in being able to get action from the third-party. A mature assessment will build in contract language to address gaps or weaknesses. This is the only thing that works in getting the outcomes you are looking for.</p>



<h2 class="wp-block-heading">Building a repeatable review process</h2>



<p class="wp-block-paragraph">At root, we’re trying to help end-user organizations build structures around vendor evaluations to ensure a repeatable process; something that is defensible and aligned to their business operations. This is not a simple product review. We are helping them translate security, compliance and operational requirements into a workable framework for making a deployment decision.</p>



<p class="wp-block-paragraph">A lot of end-user organizations lack the internal time, expertise or leverage to push solution providers on technical controls, audit evidence, shared responsibility or gaps in documentation. As the intermediary between them and the vendor, we do that legwork for them. Because we can ask the questions that need to be asked and how those answers should be interpreted. When one listens to a polished sales narrative, it is not the same thing as sustainable assurance for compliance.</p>



<p class="wp-block-paragraph">The most important part here is making sure the assessment timelines are clear and consistent, and the purchaser is aware of them. It is also critical that the end user is aware of where the assessment is and if it is sitting with the internal team or the customer. The internal budget holder is always the key to getting action from the vendor, as they typically see the security team as an impediment to the sale.</p>



<p class="wp-block-paragraph">Done well, third-party cyber risk management is not about blocking business. It’s really about getting clients onto their projects faster and with fewer surprises and less business risk.</p>



<h2 class="wp-block-heading">Expanding beyond security to add business value</h2>



<p class="wp-block-paragraph">Today, any employee with a budget expects to bring in new technology on a very tight timeline. But I’ve seen this lead to many problems: the biggest of which is failing to solve the business problem. Purchasers fall in love with the interface, one specific feature, the price, the salesperson — you name it, I’ve seen it. Often not even defining what they are trying to solve prior to a purchase.</p>



<p class="wp-block-paragraph">The business problem and success criteria should be defined before any purchase is made, and security can be one of the criteria for scoring, provided the vendor meets a qualifying security score.</p>



<h2 class="wp-block-heading">AI makes the challenge more urgent</h2>



<p class="wp-block-paragraph">AI is shaking up the world of third-party risk in two ways at once. One is that vendors have been speed-dialing AI into their respective solutions. Secondly, AI tools are being brought into the workplace without IT authorization [<a href="https://www.csoonline.com/article/4143096/a-5-step-approach-to-taming-shadow-ai.html">shadow AI</a>], often happening before security or compliance teams are made aware. Essentially, the age-old third-party risk problem of security teams learning last is moving more quickly and on a larger scale.</p>



<p class="wp-block-paragraph">It’s not only because AI tools are new that causes organizations to worry. It is that people can start using them at once, usually entering sensitive business data into systems that have not been vetted for privacy, retention period and whether models trained on this data will be available for other users to access. Proactive vendor governance is therefore all the more crucial. With no front-end process for intake and assessment, the organization will always be reacting after the fact.</p>



<p class="wp-block-paragraph">This is where a lot of companies need to reset their expectations. Third-party cyber risk management is an ongoing process that does not work as a side task of procurement, nor can it live entirely in security. It needs to be operationalized across the business. The organizations that do this best set up workflows for bringing in new vendors, identify data exposure early, assign review responsibilities and earmark exceptions before signing a contract.</p>



<p class="wp-block-paragraph">Companies that fall behind depend on heroics. Somebody sees a risk late, hustles to gather documentation from two parties in different time zones and then fights the vendor for answers while trying to make a sound judgment on limited information. It can work once or twice, but it’s not a program.</p>



<p class="wp-block-paragraph">What you can do is simple: build up the process before urgency hits. Know who owns intake. Know when security gets involved. Know what evidence is required. Understand how the AI tools will be assessed before they start entering the workspace.</p>



<p class="wp-block-paragraph">Balancing the needs for compliance, operational realities and the pace of technology adoption enables the business to make decisions about the vendors they depend on with confidence.</p>



<p class="wp-block-paragraph">The reality is that there are vendors that are good at securing your data, and there are vendors that haven’t even thought about it and all kinds in between. The goal of a good process is to identify which kind of vendor you are dealing with and hold them accountable for any risk.</p>



<p class="wp-block-paragraph">One of the most important features of a mature third-party risk program that is most often ignored is using the contract to hold vendors accountable. A third-party program without this step rarely produces the expected outcomes because there are no financial teeth to the requirements.</p>



<p class="wp-block-paragraph">Third-party risk management is not about eliminating friction but shifting it to the right place where it can make an actual difference and organizing it in a way where one can manage it.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI can do your tasks. That doesn’t mean it will do your job]]></title>
<description><![CDATA[Much of the conversation around AI and work has centered on a single question: Will AI take my job?



It’s an understandable concern. Every week AI becomes increasingly more capable. We see AI summarizing meetings, generating content, analyzing data, writing software and automating workflows tha...]]></description>
<link>https://tsecurity.de/de/3700521/it-security-nachrichten/ai-can-do-your-tasks-that-doesnt-mean-it-will-do-your-job/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3700521/it-security-nachrichten/ai-can-do-your-tasks-that-doesnt-mean-it-will-do-your-job/</guid>
<pubDate>Mon, 03 Aug 2026 12:03:12 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph">Much of the conversation around AI and work has centered on a single question: Will AI take my job?</p>



<p class="wp-block-paragraph">It’s an understandable concern. Every week AI becomes increasingly more capable. We see AI summarizing meetings, generating content, analyzing data, writing software and automating workflows that once required significant human effort. Agentic AI is also becoming more established in the workplace, with virtual agents that can reason, plan and act across workflows. As those capabilities continue to improve, many employees are looking at the tasks they perform every day and wondering how much longer they will belong to them.</p>



<p class="wp-block-paragraph">I believe that question reveals a bigger issue that has little to do with the technology itself.</p>



<p class="wp-block-paragraph">Too many people have become defined by the tasks they perform rather than the value they create. Over time, the administrative work surrounding a role can overshadow the purpose behind it. According to Asana’s <a href="https://asana.com/resources/why-work-about-work-is-bad?utm_source=chatgpt.com">Anatomy of Work Index</a>, knowledge workers spend 60% of their time on “work about work” — coordinating, tracking and managing tasks rather than driving meaningful outcomes. As AI automates more of this work, it can feel less like a productivity breakthrough and more like a threat because many employees equate their value with the activities that consume most of their day.</p>



<p class="wp-block-paragraph">But most people were not hired to perform a task. They were hired to fulfill a purpose.</p>



<h2 class="wp-block-heading">Tasks are not the job</h2>



<p class="wp-block-paragraph">A customer service representative isn’t successful because they spend their day summarizing conversations, looking up account information or navigating multiple systems to find answers. Those activities may have become part of the job, but they aren’t the reason the role exists. Great service professionals build trust, solve problems and create moments that strengthen customer relationships. AI can, and should, take on this administrative work, but the human value has never been in completing those tasks. It has always been in helping customers through moments that matter.</p>



<p class="wp-block-paragraph">The industry increasingly recognizes this distinction. In fact, 91% of CX leaders believe human agents will remain a critical part of delivering customer experience, according to my company’s <a href="https://www.genesys.com/resources/state-of-cx">State of Customer Experience</a> 2026 report. As AI takes on more routine work, the role of the employee doesn’t disappear. It becomes even more focused on the judgment, empathy and relationship-building that customers value most.</p>



<p class="wp-block-paragraph">The same principle applies across every profession. A marketer isn’t measured by the number of presentations they build or approvals they coordinate; they’re hired to shape customer perception and drive growth; an HR professional isn’t successful because they schedule interviews or process paperwork; they’re there to identify, develop and retain talent. The examples go on, but the principle remains the same: Organizations create roles because outcomes need to be achieved, not because tasks need to be completed.<strong></strong></p>



<p class="wp-block-paragraph">I’ve helped lead four major AI transformations, spanning everything from machine learning and big data to conversational AI, generative AI and now agentic AI. While the technology has evolved dramatically, one pattern has remained remarkably consistent.</p>



<p class="wp-block-paragraph">The employees who embrace AI tend to focus on outcomes, while those who fear it often focus on tasks. The more someone defines their contribution through a list of activities, the easier it becomes to imagine AI replacing them. The more someone understands the purpose they serve, the easier it becomes to see AI as a tool that helps them deliver greater value.</p>



<p class="wp-block-paragraph">As part of AI transformations, CIO organizations are often responsible for mapping jobs and core workflows. Inevitably, employees think we’re mapping their jobs to figure out what AI can replace. But once we start identifying repetitive work they’d gladly hand off, perspectives change. Someone says, “If AI handled that, I’d finally have time to work directly with customers.” Another realizes they could spend more time creating. People start thinking less about what AI might replace and more about what they’d finally have time to do. They’re reconnecting with the reason they wanted the role in the first place.</p>



<p class="wp-block-paragraph">I’ve seen this play out as AI adoption expands. Our team responsible for responding to customer RFPs began using AI to analyze requirements, surface relevant information and accelerate response development. Their purpose is to help the organization communicate our value to customers and win new business. By reducing the time spent on low-value activities, AI created more capacity for strategic thinking, collaboration and customer-focused work, which directly influences the revenue and growth of our company.</p>



<p class="wp-block-paragraph">I’ve even had to confront this myself. I used to spend hours coaching leaders before operational reviews: reviewing KPIs, challenging assumptions and helping them prepare for difficult questions. I used to think this was part of what made me valuable as a CIO, but I realized that I didn’t need to spend my time repeating the same coaching session. That’s why I built a virtual coach that helps my team prepare for operational reviews using many of the frameworks and lessons I’ve accumulated throughout my career. Now I have more time to spend strategizing on how to lead through the breakneck speed of AI evolution and helping the business think differently.</p>



<h2 class="wp-block-heading">Rediscovering purpose</h2>



<p class="wp-block-paragraph">What employees are really confronting is a different question: What was my purpose in being hired in the first place?</p>



<p class="wp-block-paragraph">As organizations move from AI experimentation to AI-first operating models, this question becomes harder to avoid. The tension is already visible across the workforce. A recent <a href="https://www.ey.com/en_us/newsroom/2025/10/new-ey-survey-reveals-majority-of-workers-are-enthusiastic-about-agentic-ai-but-leadership-gaps-in-communication-and-lack-of-training-threaten-impact">EY survey</a> found that 84% of employees are eager to embrace agentic AI because they expect it to improve productivity, efficiency and the overall work experience. Yet 56% also worry about their job security working alongside AI systems. Employees aren’t rejecting AI; they’re trying to understand which parts of their contributions remain uniquely theirs as technology takes on more of the tasks they perform today.</p>



<p class="wp-block-paragraph">Success will depend greatly on helping employees reconnect with the value they were hired to create. For leaders looking for practical guidance on how organizations are actually approaching AI-first transformation, the World Economic Forum’s <a href="https://www.weforum.org/publications/the-ai-first-operating-system-a-blueprint-for-operating-and-business-model-innovation/">AI-First Operating System</a> offers a useful framework. Rather than treating AI as another technological tool, this approach encourages organizations to redesign work around value creation. As AI increasingly takes on routine tasks, employees must become clearer about where human judgment, creativity and relationships can create the greatest impact. You cannot redesign work around value if people no longer understand the purpose behind the work that they do.</p>



<p class="wp-block-paragraph">In my experience, the organizations seeing the strongest results are helping employees reconnect with the outcomes they were hired to create. The conversation shifts from “What tasks can AI do?” to “What is the purpose of this role?” Once people answer that question, it becomes much easier to decide what should remain human, what can be delegated to AI and where the combination creates the most value.</p>



<p class="wp-block-paragraph">None of this means change won’t happen. Some responsibilities will disappear. Some jobs will evolve significantly. New roles will emerge that we cannot fully predict today. Every major technology shift creates that kind of change.</p>



<p class="wp-block-paragraph">But I believe many people are looking at this transformation through the wrong lens.</p>



<p class="wp-block-paragraph">The question is not whether AI can do your tasks. The question is whether you understand the purpose behind them. Because while AI may increasingly perform the work, humans will continue to provide the judgment, creativity, accountability and value that give that work meaning.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[12 business analyst certifications to level up your career]]></title>
<description><![CDATA[Business analysts help organizations make the most of the data they collect by finding trends, patterns, and errors that might otherwise go unnoticed. Successful business analysts have the skills to work with data, the acumen to understand the business side of the organization, and the ability to...]]></description>
<link>https://tsecurity.de/de/3700503/it-nachrichten/12-business-analyst-certifications-to-level-up-your-career/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3700503/it-nachrichten/12-business-analyst-certifications-to-level-up-your-career/</guid>
<pubDate>Mon, 03 Aug 2026 12:02:07 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"><a href="https://www.cio.com/article/276798/what-is-a-business-analyst-a-key-role-for-business-it-efficiencywhat-is-a-business-analyst-a-key-role-for-business-it-efficiency.html">Business analysts</a> help organizations make the most of the data they collect by finding trends, patterns, and errors that might otherwise go unnoticed. <a href="https://www.cio.com/article/189108/essential-traits-of-elite-business-analysts.html">Successful business analysts</a> have the skills to work with data, the acumen to understand the business side of the organization, and the ability to communicate that information to people outside of IT. Certifications provide a great way to prove your business analyst bona fides or get started in the field.</p>



<p class="wp-block-paragraph">Business analytics is a lucrative role in IT, with an average entry-level salary of $80,692 per year. Throughout their careers, <a href="https://www.cio.com/article/276798/project-management-what-do-business-analysts-actually-do-for-software-implementation-projects.html">business analysts</a> report average salaries ranging from $58,000 to $114,000 per year, <a href="https://www.payscale.com/research/US/Job=Business_Analyst%2C_IT/Salary">according to PayScale</a>. If you want to advance your business analyst career, or change career paths, here are 12 certifications that will help prove your mettle. Not finding what you’re looking for? Check out our list of <a href="https://www.cio.com/article/230388/big-data-certifications-that-will-pay-off.html">big data and data analytics certifications</a>.</p>



<h2 class="wp-block-heading">Top 12 business analyst certifications</h2>



<ul class="wp-block-list">
<li>Certified Analytics Professional (CAP)</li>



<li>IIBA Entry Certificate in Business Analysis (ECBA)</li>



<li>IIBA Certification of Competency in Business Analysis (CCBA)</li>



<li>IIBA Certified Business Analysis Professional (CBAP)</li>



<li>IIBA Agile Analysis Certification (AAC)</li>



<li>IIBA Certification in Business Data Analytics (CBDA)</li>



<li>IQBBA Certified Foundation Level Business Analyst (CFLBA)</li>



<li>IQBBA Certified Advanced Level Business Analyst (CALBA)</li>



<li>IQBBA Certified Agile Business Analyst (CABA)</li>



<li>IREB Certified Professional for Requirements Engineering (CPRE)</li>



<li>PMI Professional in Business Analysis (PBA)</li>



<li>Salesforce Certified Business Analyst</li>
</ul>



<h3 class="wp-block-heading">Certified Analytics Professional (CAP)</h3>



<p class="wp-block-paragraph">The <a href="https://www.certifiedanalytics.org/">Certified Analytics Professional (CAP)</a> is a vendor-neutral certification that certifies your skills and ability to draw valuable insights from complex data sets to help guide strategic businesses decisions. There are three levels of the exam — the essentials, pro, and expert certifications. Essentials is for entry-level analytics professionals, Pro is for mid-career analytics practitioners, and Expert is aimed at senior analytics leaders and directors. Depending on the level of certification, each has different requirements ranging from no-prerequisites at the Essentials level to advanced degrees to qualify for the Expert certification.</p>



<ul class="wp-block-list">
<li><em>Essentials exam fee:</em> $195 for INFORMS members, $275 for non-members</li>



<li><em>Professional exam fee:</em> $325 for INFORMS members, $460 for non-members</li>



<li><em>Expert exam fee:</em> $440 for INFORMS members, $640 for non-members</li>
</ul>



<h3 class="wp-block-heading">IIBA Entry Certificate in Business Analysis (ECBA)</h3>



<p class="wp-block-paragraph">The <a href="https://www.cio.com/article/189169/ecba-certification-an-entry-level-credential-for-business-analysts.html">Entry Certificate in Business Analysis (ECBA)</a> is the first level of certification with the International Institute of Business Analysis (IIBA), it’s designed for less experienced and entry-level business analysts. You will need to complete at least 21 hours of professional training credits, within the past four years, before you will be eligible for the exam. You don’t have to renew your ECBA certification, but it’s assumed you’ll move on to the second or third levels of certification.</p>



<ul class="wp-block-list">
<li><em>Exam fee: </em>$395</li>
</ul>



<p class="wp-block-paragraph">For more, <a href="https://www.cio.com/article/189169/ecba-certification-an-entry-level-credential-for-business-analysts.html">see our guide on the ECBA</a>.</p>



<h3 class="wp-block-heading">IIBA Certification of Competency in Business Analysis (CCBA)</h3>



<p class="wp-block-paragraph">Level 2 of the IIBA certification, the <a href="https://www.iiba.org/business-analysis-certifications/ccba/">Certification of Competency in Business Analysis (CCBA)</a> requires a minimum 3,750 hours of business analytics work aligned with the IIBA’s BABOK guide in the past 7 years, 900 hours in two of six BABOK knowledge areas, or 500 hours in four of six BABOK knowledge areas. The certification also requires a minimum of 21 hours of professional development training in the past four years and two professional references. The CCBA exam consists of 130 multiple-choice questions that are scenario-based and require some analysis. It covers fundamentals, underlying competencies, key concepts, techniques, and all six knowledge areas covered in the BABOK.</p>



<ul class="wp-block-list">
<li><em>Application fee:</em> $145</li>



<li><em>Exam fee:</em> $240 for members, $405 for non-members</li>
</ul>



<h3 class="wp-block-heading">IIBA Certified Business Analysis Professional (CBAP)</h3>



<p class="wp-block-paragraph">The <a href="https://www.cio.com/article/189143/cbap-certification-a-high-profile-credential-for-business-analysts.html">Certified Business Analysis Professional (CBAP) certification</a> is the third level of certification with IIBA and is designed for “individuals with extensive business analysis experience.” To qualify for this certification, you’ll need a minimum of 7,500 hours of business analyst work experience in the past 10 years, 900 hours of work experience hours within four of the six BABOK knowledge areas, at least 35 hours of professional development in the past four years and professional references. The exam is 3.5 hours long and includes 120 multiple-choice questions based on case studies. After you pass, you’ll need to report at least 60 hours of continuing development units every three years.</p>



<ul class="wp-block-list">
<li><em>Application fee:</em> $145</li>



<li><em>Exam fee:</em> $350 for members, $505 for non-members</li>
</ul>



<p class="wp-block-paragraph">For more, <a href="https://www.cio.com/article/189143/cbap-certification-a-high-profile-credential-for-business-analysts.html">see our guide on the CBAP</a>.</p>



<h3 class="wp-block-heading">IIBA Agile Analysis Certification (AAC)</h3>



<p class="wp-block-paragraph">The agile methodology has been rising in importance for business analysts over the past several years, according to the IIBA. The association’s competency-based <a href="https://www.iiba.org/business-analysis-certifications/agile-analysis/">Agile Analysis Certification (AAC)</a> exam was designed to address this skillset and to certify business analyst professionals working in agile environments, which require fast adaption and rapid change. The exam was developed using the Agile Extension to the Business Analysis Book of Knowledge (BABOK) guide and released in May 2018 as a standalone certification and is separate from the other IIBA business analyst certifications, which stack on top of one another. The exam’s four main topics include agile mindset (30%), strategy horizon (10%), initiative horizon (25%) and delivery horizon (35%). There aren’t any eligibility requirements to take the exam, but the IIBA recommends at least two to five years of agile-related experience.</p>



<ul class="wp-block-list">
<li><em>Exam fee:</em> $250 for members, $405 for non-members</li>
</ul>



<h3 class="wp-block-heading">IIBA Certification in Business Data Analytics (CBDA)</h3>



<p class="wp-block-paragraph">The <a href="https://www.iiba.org/certification/iiba-certifications/specialized-business-analysis-certifications/business-data-analytics-certification/">Certification Business Data Analytics (IIBA-CBDA)</a> from the IIBA is a certification that “recognizes your ability to effectively execute analysis-related work in support of business analytics initiatives.” To pass the exam, you will need to examine a real-world business problem, identify the data sources and how to obtain data, analyze the data, interpret and report results from the data. You’ll then need demonstrate how those results can influence business decision-making and guide company-level strategies for business analytics.</p>



<ul class="wp-block-list">
<li><em>Exam fee:</em> $250 for members, $405 for non-members</li>
</ul>



<h3 class="wp-block-heading">IQBBA Certified Foundation Level Business Analyst (CFLBA)</h3>



<p class="wp-block-paragraph">The International Qualifications Board for Business Analysts (IQBBA) offers the <a href="https://www.iqbba.org/en/scheme/foundation-level.html">Certified Foundation Level Business Analysis (CFLBA)</a> as an entry-level certification, which will qualify you to earn higher levels of certification. It’s a globally recognized certification with accredited exam and training centers across the world. It’s designed for “people involved in analyzing business processes within an organization, modeling businesses and process improvement.” The foundation level covers enterprise analysis, business analysis process planning, requirements elicitation, requirements analysis, solution validation, tools and techniques, innovation, and design.</p>



<ul class="wp-block-list">
<li><em>Exam fee:</em> $215</li>
</ul>



<h3 class="wp-block-heading">IQBBA Certified Advanced Level Business Analyst (CALBA)</h3>



<p class="wp-block-paragraph">The <a href="https://iqbba.org/iqbba/certifications/calba-certified-advanced-level-business-analysis-course/">IQBBA Certified Advanced Level Business Analysis</a> certification offers an advanced-level qualification for those who have passed the entry-level CFLBA exam. At this level, you’ll gain skills in business analysis process management, strategic analysis and optimization, and requirements management. Learning modules focus on enhancing the skills gained at the foundational level, deepening your knowledge of more advanced skills that will be necessary in your career.</p>



<ul class="wp-block-list">
<li><em>Exam fee: $215</em></li>
</ul>



<h3 class="wp-block-heading">IQBBA Certified Agile Business Analysis (CABA)</h3>



<p class="wp-block-paragraph">The <a href="https://iqbba.org/iqbba/certifications/caba-certified-agile-business-analysis/">IQBBA Certified Agile Business Analyst </a>certification is another foundational-level qualification designed for anyone who wants to strengthen their business analysis skills with a focus on the Agile framework. The course covers how to recognize the role of a BA in agile software development projects, contribute to agile software teams, understand the principles of agile business analysis, and employ BA techniques in an enterprise setting. In addition to BA principles, the course and certification cover agile skills as well, including the 12 principles of the Agile Manifesto and how they intertwine with BA methods.</p>



<ul class="wp-block-list">
<li><em>Exam fee: $215</em></li>
</ul>



<h3 class="wp-block-heading">IREB Certified Professional for Requirements Engineering (CPRE)</h3>



<p class="wp-block-paragraph">The International Requirements Engineering Board (IREB) offers the <a href="https://cpre.ireb.org/en">Certified Professional for Requirements Engineering (CPRE)</a> certification is designed for those working in requirements engineering (RE), and it’s offered at three levels. The Foundation Level is first, where you’ll be certified in the basics of RE. The Practitioner Level is next, where you can choose between four paths, including management, modeling, elicitation, and RE@Agile followed by Specialist level in the same four pathways. Finally, the Expert Level certifies you at the “highest level of expert knowledge,” which includes both your hands-on experience as well as your knowledge and skills gained through previous certifications.</p>



<p class="wp-block-paragraph">Your certification will not expire, and you will not need to renew it. The IREB states that the CPRE is “based on the fundamental methods and approaches of Requirements Engineering, and these alter only slowly,” so at this time, they don’t see a need for renewal.</p>



<ul class="wp-block-list">
<li><em>Exam fee:</em> Varies by testing center</li>
</ul>



<h3 class="wp-block-heading">PMI Professional in Business Analysis (PBA) Certification</h3>



<p class="wp-block-paragraph">The <a href="https://www.pmi.org/certifications/business-analysis-pba">PMI Professional in Business Analysis (PBA)</a> certification is designed for business analysts who work with projects or programs, or project and program managers who work with analytics. It’s offered through the Project Management Institute, which specializes in widely recognized project management certifications, such as the PMP. The certification focuses on business analysis training through hands-on projects and testing on business analysis principles, tools and fundamentals.</p>



<p class="wp-block-paragraph">If you’ve already earned a bachelor’s degree, you’ll need at least three years’ experience, or 4,500 hours, in business analysis consecutively within the past eight years to earn this certification. Without a bachelor’s degree, you’ll need five years or 7,500 hours experience.</p>



<p class="wp-block-paragraph">You’ll be required to earn 60 professional development units within three years after completing the certification to maintain your renewal status. If you let your renewal lapse, your credentials will be suspended for one year until you fulfill the requirements — after that, it will be terminated and you’ll need to reapply.</p>



<ul class="wp-block-list">
<li><em>Exam fee:</em> $405 for PMI members, $555 for non-members</li>
</ul>



<h3 class="wp-block-heading">Salesforce Certified Business Analyst</h3>



<p class="wp-block-paragraph">The Salesforce Certified Business Analyst certification is a vendor-specific certification for business analysts — or similar roles — who work directly with Salesforce technology. The exam covers customer discovery, collaboration with stakeholders, business process mapping, requirements, user stories, and development support and user acceptance. You will need to pass a 60-question multiple choice question test and up to five additional unscored questions. While it’s not required, candidates should have around 2 years of business analyst experience and Salesforce Platform experience.</p>



<ul class="wp-block-list">
<li><em>Exam fee:</em> $200</li>
</ul>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI can do your tasks. That doesn’t mean it will do your job]]></title>
<description><![CDATA[Much of the conversation around AI and work has centered on a single question: Will AI take my job?



It’s an understandable concern. Every week AI becomes increasingly more capable. We see AI summarizing meetings, generating content, analyzing data, writing software and automating workflows tha...]]></description>
<link>https://tsecurity.de/de/3700504/it-nachrichten/ai-can-do-your-tasks-that-doesnt-mean-it-will-do-your-job/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3700504/it-nachrichten/ai-can-do-your-tasks-that-doesnt-mean-it-will-do-your-job/</guid>
<pubDate>Mon, 03 Aug 2026 12:02:07 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph">Much of the conversation around AI and work has centered on a single question: Will AI take my job?</p>



<p class="wp-block-paragraph">It’s an understandable concern. Every week AI becomes increasingly more capable. We see AI summarizing meetings, generating content, analyzing data, writing software and automating workflows that once required significant human effort. Agentic AI is also becoming more established in the workplace, with virtual agents that can reason, plan and act across workflows. As those capabilities continue to improve, many employees are looking at the tasks they perform every day and wondering how much longer they will belong to them.</p>



<p class="wp-block-paragraph">I believe that question reveals a bigger issue that has little to do with the technology itself.</p>



<p class="wp-block-paragraph">Too many people have become defined by the tasks they perform rather than the value they create. Over time, the administrative work surrounding a role can overshadow the purpose behind it. According to Asana’s <a href="https://asana.com/resources/why-work-about-work-is-bad?utm_source=chatgpt.com">Anatomy of Work Index</a>, knowledge workers spend 60% of their time on “work about work” — coordinating, tracking and managing tasks rather than driving meaningful outcomes. As AI automates more of this work, it can feel less like a productivity breakthrough and more like a threat because many employees equate their value with the activities that consume most of their day.</p>



<p class="wp-block-paragraph">But most people were not hired to perform a task. They were hired to fulfill a purpose.</p>



<h2 class="wp-block-heading">Tasks are not the job</h2>



<p class="wp-block-paragraph">A customer service representative isn’t successful because they spend their day summarizing conversations, looking up account information or navigating multiple systems to find answers. Those activities may have become part of the job, but they aren’t the reason the role exists. Great service professionals build trust, solve problems and create moments that strengthen customer relationships. AI can, and should, take on this administrative work, but the human value has never been in completing those tasks. It has always been in helping customers through moments that matter.</p>



<p class="wp-block-paragraph">The industry increasingly recognizes this distinction. In fact, 91% of CX leaders believe human agents will remain a critical part of delivering customer experience, according to my company’s <a href="https://www.genesys.com/resources/state-of-cx">State of Customer Experience</a> 2026 report. As AI takes on more routine work, the role of the employee doesn’t disappear. It becomes even more focused on the judgment, empathy and relationship-building that customers value most.</p>



<p class="wp-block-paragraph">The same principle applies across every profession. A marketer isn’t measured by the number of presentations they build or approvals they coordinate; they’re hired to shape customer perception and drive growth; an HR professional isn’t successful because they schedule interviews or process paperwork; they’re there to identify, develop and retain talent. The examples go on, but the principle remains the same: Organizations create roles because outcomes need to be achieved, not because tasks need to be completed.<strong></strong></p>



<p class="wp-block-paragraph">I’ve helped lead four major AI transformations, spanning everything from machine learning and big data to conversational AI, generative AI and now agentic AI. While the technology has evolved dramatically, one pattern has remained remarkably consistent.</p>



<p class="wp-block-paragraph">The employees who embrace AI tend to focus on outcomes, while those who fear it often focus on tasks. The more someone defines their contribution through a list of activities, the easier it becomes to imagine AI replacing them. The more someone understands the purpose they serve, the easier it becomes to see AI as a tool that helps them deliver greater value.</p>



<p class="wp-block-paragraph">As part of AI transformations, CIO organizations are often responsible for mapping jobs and core workflows. Inevitably, employees think we’re mapping their jobs to figure out what AI can replace. But once we start identifying repetitive work they’d gladly hand off, perspectives change. Someone says, “If AI handled that, I’d finally have time to work directly with customers.” Another realizes they could spend more time creating. People start thinking less about what AI might replace and more about what they’d finally have time to do. They’re reconnecting with the reason they wanted the role in the first place.</p>



<p class="wp-block-paragraph">I’ve seen this play out as AI adoption expands. Our team responsible for responding to customer RFPs began using AI to analyze requirements, surface relevant information and accelerate response development. Their purpose is to help the organization communicate our value to customers and win new business. By reducing the time spent on low-value activities, AI created more capacity for strategic thinking, collaboration and customer-focused work, which directly influences the revenue and growth of our company.</p>



<p class="wp-block-paragraph">I’ve even had to confront this myself. I used to spend hours coaching leaders before operational reviews: reviewing KPIs, challenging assumptions and helping them prepare for difficult questions. I used to think this was part of what made me valuable as a CIO, but I realized that I didn’t need to spend my time repeating the same coaching session. That’s why I built a virtual coach that helps my team prepare for operational reviews using many of the frameworks and lessons I’ve accumulated throughout my career. Now I have more time to spend strategizing on how to lead through the breakneck speed of AI evolution and helping the business think differently.</p>



<h2 class="wp-block-heading">Rediscovering purpose</h2>



<p class="wp-block-paragraph">What employees are really confronting is a different question: What was my purpose in being hired in the first place?</p>



<p class="wp-block-paragraph">As organizations move from AI experimentation to AI-first operating models, this question becomes harder to avoid. The tension is already visible across the workforce. A recent <a href="https://www.ey.com/en_us/newsroom/2025/10/new-ey-survey-reveals-majority-of-workers-are-enthusiastic-about-agentic-ai-but-leadership-gaps-in-communication-and-lack-of-training-threaten-impact">EY survey</a> found that 84% of employees are eager to embrace agentic AI because they expect it to improve productivity, efficiency and the overall work experience. Yet 56% also worry about their job security working alongside AI systems. Employees aren’t rejecting AI; they’re trying to understand which parts of their contributions remain uniquely theirs as technology takes on more of the tasks they perform today.</p>



<p class="wp-block-paragraph">Success will depend greatly on helping employees reconnect with the value they were hired to create. For leaders looking for practical guidance on how organizations are actually approaching AI-first transformation, the World Economic Forum’s <a href="https://www.weforum.org/publications/the-ai-first-operating-system-a-blueprint-for-operating-and-business-model-innovation/">AI-First Operating System</a> offers a useful framework. Rather than treating AI as another technological tool, this approach encourages organizations to redesign work around value creation. As AI increasingly takes on routine tasks, employees must become clearer about where human judgment, creativity and relationships can create the greatest impact. You cannot redesign work around value if people no longer understand the purpose behind the work that they do.</p>



<p class="wp-block-paragraph">In my experience, the organizations seeing the strongest results are helping employees reconnect with the outcomes they were hired to create. The conversation shifts from “What tasks can AI do?” to “What is the purpose of this role?” Once people answer that question, it becomes much easier to decide what should remain human, what can be delegated to AI and where the combination creates the most value.</p>



<p class="wp-block-paragraph">None of this means change won’t happen. Some responsibilities will disappear. Some jobs will evolve significantly. New roles will emerge that we cannot fully predict today. Every major technology shift creates that kind of change.</p>



<p class="wp-block-paragraph">But I believe many people are looking at this transformation through the wrong lens.</p>



<p class="wp-block-paragraph">The question is not whether AI can do your tasks. The question is whether you understand the purpose behind them. Because while AI may increasingly perform the work, humans will continue to provide the judgment, creativity, accountability and value that give that work meaning.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Is this book worth reading for a developer?]]></title>
<description><![CDATA[I'm a software developer, not planning to become a system administrator, but I'd like to get a much deeper understanding of Linux. I noticed that the latest edition covers modern topics like systemd, containers, and cloud infrastructure, so it doesn't seem completely outdated.Would this book stil...]]></description>
<link>https://tsecurity.de/de/3700373/linux-tipps/is-this-book-worth-reading-for-a-developer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3700373/linux-tipps/is-this-book-worth-reading-for-a-developer/</guid>
<pubDate>Mon, 03 Aug 2026 10:26:04 +0200</pubDate>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I'm a software developer, not planning to become a system administrator, but I'd like to get a much deeper understanding of Linux. I noticed that the latest edition covers modern topics like systemd, containers, and cloud infrastructure, so it doesn't seem completely outdated.Would this book still be a good investment for a developer who wants to better understand how Linux systems work, or is it more useful for people working as full-time sysadmins? I'm looking for knowledge that will make me a better developer rather than preparing for a system administration career.</p> <p><a href="https://preview.redd.it/cstt2h1s7zgh1.png?width=367&amp;format=png&amp;auto=webp&amp;s=16345dfec5aa74bb4baea1e4a4f8ff246b7a8445">https://preview.redd.it/cstt2h1s7zgh1.png?width=367&amp;format=png&amp;auto=webp&amp;s=16345dfec5aa74bb4baea1e4a4f8ff246b7a8445</a></p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/Minimum-Ad7352"> /u/Minimum-Ad7352 </a> <br> <span><a href="https://www.reddit.com/r/linux/comments/1vdka8e/is_this_book_worth_reading_for_a_developer/">[link]</a></span>   <span><a href="https://www.reddit.com/r/linux/comments/1vdka8e/is_this_book_worth_reading_for_a_developer/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Need Help with Courses & Certs]]></title>
<description><![CDATA[I just started learning malware analysis for career development. The first issue I ran into is that, while there aren’t many resources on the topic, there are still enough to make choosing between them a bit overwhelming - which is a problem I tend to have whenever I self-study something new. Aft...]]></description>
<link>https://tsecurity.de/de/3700241/malware-trojaner-viren/need-help-with-courses-certs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3700241/malware-trojaner-viren/need-help-with-courses-certs/</guid>
<pubDate>Mon, 03 Aug 2026 10:23:24 +0200</pubDate>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I just started learning malware analysis for career development.</p> <p>The first issue I ran into is that, while there aren’t many resources on the topic, there are still enough to make choosing between them a bit overwhelming - which is a problem I tend to have whenever I self-study something new.</p> <p>After doing some research, these are the courses I have so far, ordered by what I think is the right progression (although I’m not entirely sure, which is why I’m here):<br> 1. Mandiant FLARE Malware Analysis Crash Course (my starting point - I’m currently on page 60, but honestly, it’s been pretty boring so far).<br> 2. Malware Analysis for Hedgehogs bundle.<br> 3. 0ffset.net Zero2Automated Advanced course.<br> I also have a few books that I can use as references whenever I need to dive deeper into a topic:<br> • Windows Internals Part 1 &amp; 2<br> • Windows Kernel Programming by Pavel Yosifovich</p> <p>What do you think about this roadmap? I’m fine with the prices unless there are better alternatives that genuinely offer stronger content rather than just being cheaper.</p> <p>As for certifications, I have no idea what’s worth pursuing. The only ones I’ve come across are GREM from SANS and PMAT from TCM.</p> <p>I’m mainly asking whether there are better options for both courses and certifications. I’d especially prefer something with plenty of hands-on labs and practical work. I tend to struggle with self-paced learning, and I get bored pretty quickly with courses that don’t involve much interaction, even when I’m genuinely interested in the subject.</p> <p>Thanks in advance - I really appreciate any advice.</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/everythingisinlimbo"> /u/everythingisinlimbo </a> <br> <span><a href="https://www.reddit.com/r/MalwareAnalysis/comments/1v7ed2b/need_help_with_courses_certs/">[link]</a></span>   <span><a href="https://www.reddit.com/r/MalwareAnalysis/comments/1v7ed2b/need_help_with_courses_certs/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Should You Use AI for a Task? Here’s a Simple Way to Decide]]></title>
<description><![CDATA[This essay originally appeared in The Guardian.
I teach public policy at the Harvard Kennedy School and the Munk School at the University of Toronto. And it will come as no surprise to you that my students regularly use AI to complete their writing assignments. Doing so is a waste of their tuitio...]]></description>
<link>https://tsecurity.de/de/3698218/reverse-engineering/should-you-use-ai-for-a-task-heres-a-simple-way-to-decide/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3698218/reverse-engineering/should-you-use-ai-for-a-task-heres-a-simple-way-to-decide/</guid>
<pubDate>Mon, 03 Aug 2026 00:09:48 +0200</pubDate>
<content:encoded><![CDATA[<p><em>This essay originally appeared in <a href="https://www.theguardian.com/commentisfree/2026/jul/24/should-you-use-ai">The Guardian</a>.</em></p>
<p>I teach public policy at the Harvard Kennedy School and the Munk School at the University of Toronto. And it will come as no surprise to you that my students regularly <a href="https://www.insidehighered.com/news/faculty/learning-assessment/2026/07/08/brown-professor-suspects-most-his-class-used-ai-cheat">use AI</a> to complete their writing assignments. Doing so is a waste of their tuition money. But if their entire career is going to include AI writing assistants, why shouldn’t they embrace their future?</p>
<p>The best way I’ve found to explain the dilemma <a href="https://danielmiessler.com/blog/keep-the-robots-out-of-the-gym">comes from</a> the AI researcher Daniel Meissler: it’s the difference between work and the gym...</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Philippines seeks coders, hackers for military – will it be ‘a career killer’?]]></title>
<description><![CDATA[The Philippines is targeting to recruit more coders, engineers and cybersecurity specialists into the military, as Manila confronts a battlefield increasingly shaped by software, networks and artificial intelligence.
Defence Secretary Gilberto Teodoro Jnr on Saturday ordered the Armed Forces of t...]]></description>
<link>https://tsecurity.de/de/3697909/it-security-nachrichten/philippines-seeks-coders-hackers-for-military-will-it-be-a-career-killer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3697909/it-security-nachrichten/philippines-seeks-coders-hackers-for-military-will-it-be-a-career-killer/</guid>
<pubDate>Mon, 03 Aug 2026 00:08:12 +0200</pubDate>
<content:encoded><![CDATA[The Philippines is targeting to recruit more coders, engineers and cybersecurity specialists into the military, as Manila confronts a battlefield increasingly shaped by software, networks and artificial intelligence.
Defence Secretary Gilberto Teodoro Jnr on Saturday ordered the Armed Forces of the Philippines (AFP) to expand a programme that allows civilian professionals with specialised skills, such as scientists, engineers, doctors and lawyers, to join the military as commissioned officers...]]></content:encoded>
</item>
<item>
<title><![CDATA[Convergence as a Security Career Edge]]></title>
<description><![CDATA[Convergence is no longer just an organizational idea; it can be a personal career strategy.]]></description>
<link>https://tsecurity.de/de/3697712/it-security-nachrichten/convergence-as-a-security-career-edge/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3697712/it-security-nachrichten/convergence-as-a-security-career-edge/</guid>
<pubDate>Mon, 03 Aug 2026 00:07:40 +0200</pubDate>
<content:encoded><![CDATA[Convergence is no longer just an organizational idea; it can be a personal career strategy.]]></content:encoded>
</item>
<item>
<title><![CDATA[The blueprint for innovation: 3 ways regulatory readiness is a competitive advantage]]></title>
<description><![CDATA[Too often, brands treat compliance as a downstream exercise. Teams build products, launch new capabilities and then tack on controls afterward.



The pace of technology evolution and adoption has never been faster, and regulatory bodies are doing their best to keep up. For brands, that means the...]]></description>
<link>https://tsecurity.de/de/3697423/it-security-nachrichten/the-blueprint-for-innovation-3-ways-regulatory-readiness-is-a-competitive-advantage/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3697423/it-security-nachrichten/the-blueprint-for-innovation-3-ways-regulatory-readiness-is-a-competitive-advantage/</guid>
<pubDate>Mon, 03 Aug 2026 00:03:34 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph">Too often, brands treat compliance as a downstream exercise. Teams build products, launch new capabilities and then tack on controls afterward.</p>



<p class="wp-block-paragraph"><a></a>The pace of technology evolution and adoption has <a href="https://hai.stanford.edu/ai-index/2026-ai-index-report">never been faster</a>, and regulatory bodies are doing their best to keep up. For brands, that means they’re standing on shifting ground. They need  to modernize legacy infrastructure, adopt AI responsibly, deliver better customer experiences, maintain trust and navigate increasingly complex regulatory requirements – all at once.</p>



<p class="wp-block-paragraph"><a></a>I’ve witnessed this shift firsthand in payments. Fraudsters adapt faster than regulatory cycles, and customer expectations continue to rise regardless of where legislation stands. In one of the most highly regulated sectors, waiting for new mandates to arrive is a losing strategy.</p>



<p class="wp-block-paragraph"><a></a>The brands that lead have embraced regulatory readiness as an advantage to better inform technology architecture, operating models and partner strategy.</p>



<p class="wp-block-paragraph"><a></a>If I had one piece of advice for CIOs, it would be to treat compliance as part of the blueprint instead of the punch list at the end of a build. With a controls-by-design approach, a collaborative culture, and the right partnerships, any brand can embrace change with confidence and resilience.</p>



<h2 class="wp-block-heading">3 ways regulatory readiness is a competitive advantage</h2>



<h3 class="wp-block-heading">1. Build a solid foundation</h3>



<p class="wp-block-paragraph">One of the most impactful strategies I’ve seen is the shift from compliance-after-the-fact to controls-by-design.</p>



<p class="wp-block-paragraph">Forward-thinking financial institutions increasingly treat regulatory frameworks like <a href="https://kpmg.com/be/en/insights/risk/digital-operational-resilience-act-DORA/prepare-for-dora-today-and-secure-your-digital-operational-resilience-tomorrow.html">DORA</a> and <a href="https://www.ey.com/en_ch/insights/forensic-integrity-services/the-eu-ai-act-what-it-means-for-your-business">the EU AI Act</a> as design principles rather than external requirements. Instead of asking how to retrofit compliance into modern systems, they are asking how thoughtful governance can shape modernization from day one.</p>



<p class="wp-block-paragraph">For example, the EU AI Act mandates transparency for high-risk AI systems like automated credit scoring. Instead of burying disclosures in the fine print, a smart bank builds an interactive feature directly into its digital banking app, which allows customers to simulate how adjustments will improve their approval odds. By doing so, they transform a regulatory obligation into innovation that builds trust.</p>



<p class="wp-block-paragraph">After all, when an AI-driven decision fails, customers do not blame the algorithm. They blame the brand. The controls-by-design approach helps ensure those risks are anticipated and managed before they reach the customer.</p>



<p class="wp-block-paragraph">This feels particularly urgent in the payments industry, where FedNow and stablecoins allow funds to move instantly – and irrevocably. As settlement windows shrink from days to seconds, brands need to embed capabilities like behavioral monitoring, AI-driven fraud detection, account verification and orchestration functionality directly into the transaction architecture itself – as part of the initial design – to identify and mitigate fraudulent activity as it evolves. Regulation, like <a href="https://www.paymentsdive.com/news/nachas-fraud-rules-land/823378/">Nacha’s new rules</a> around ACH fraud, reinforces that direction, but for trust-focused brands, the work begins long before the rules change.</p>



<p class="wp-block-paragraph">Each of these examples points to the same trend. Brands that embrace a controls-by-design philosophy are constructing technology architectures that are ready to adapt long before the inspectors arrive on site.</p>



<h3 class="wp-block-heading">2. Align your crew</h3>



<p class="wp-block-paragraph">Technology architecture is only half of the story. The other half is how well your crew works together to bring that architecture to life.</p>



<p class="wp-block-paragraph">For years, compliance lived in its own lane. Governance acted like a checkpoint. When technology evolved in predictable cycles, that made sense. But today, the brands making the greatest progress build shared accountability into their operating models so they can adapt to regulation in a more coordinated, consistent way.</p>



<p class="wp-block-paragraph">After all, a construction project is only successful when electricians, plumbers, framers and masons coordinate every step and trust the work happening around them.</p>



<p class="wp-block-paragraph">The same is true in the enterprise. Instead of focusing on separate priorities, product, engineering, operations, risk and compliance must align around shared outcomes, with greater transparency into how decisions are made, ongoing oversight and continuous feedback loops between teams. As a result, regulatory readiness becomes part of how the business works every day, change becomes easier and the broader benefits across the organization become clear.</p>



<p class="wp-block-paragraph">In many organizations, I’ve observed how harmony between teams not only increases compliance but also fosters greater <a href="https://www.cio.com/article/4129625/3-myths-to-debunk-in-customer-centric-innovation.html">customer-centric innovation</a>. When teams operate from a shared, real-time view of the customer, every interaction becomes more connected. Customers experience one brand, not a collection of disconnected teams.</p>



<p class="wp-block-paragraph">That spirit of collaboration becomes even more important as AI moves deeper into customer-facing and operational workflows. <a href="https://www.techradar.com/pro/how-ai-innovation-is-outpacing-regulation">AI innovation has outpaced AI regulation</a>, which makes it even more important for brands to take the initiative to ensure proper controls are in place.</p>



<p class="wp-block-paragraph">We are already seeing this play out with <a href="https://www.federalreserve.gov/supervisionreg/srletters/SR2602.htm">SR 26-2</a>, the Federal Reserve’s latest guidance on AI for banks. While it establishes important expectations around model risk management, it leaves room for institutions to determine how agentic AI and generative AI should be governed. Instead of treating this as carte blanche, banking leaders should see this as an opportunity to build trust. By leading the way with governed, responsible GenAI and agentic AI operating models, banks can win customers’ trust long before regulation requires it.</p>



<p class="wp-block-paragraph">No single department should shoulder that responsibility alone. Product teams understand how AI shapes the customer experience. Engineering teams understand how models are built, deployed and monitored. Risk and compliance teams understand governance expectations, while operations teams see how those decisions play out every day. Effective AI governance and innovation emerge when those perspectives come together around a shared view of accountability.</p>



<h3 class="wp-block-heading">3. Expand your toolkit</h3>



<p class="wp-block-paragraph">Innovation in today’s regulatory environment requires more tools than you may have in your own toolkit.</p>



<p class="wp-block-paragraph">Technology is more complex, fraud threats evolve faster and AI capabilities require significant investment and ongoing tuning. At the same time, brands have to stay ahead of customer expectations, market dynamics and evolving risk requirements.</p>



<p class="wp-block-paragraph">It just doesn’t make sense to build every capability yourself when trust, resilience, compliance and speed-to-value are such integral parts of the equation. </p>



<p class="wp-block-paragraph">Throughout my career, I’ve seen success with a build-buy-partner approach that brings together the right tools for the right project.</p>



<p class="wp-block-paragraph">This is particularly important in highly regulated environments, where implementation risk can be as significant as technical risk. That’s where proven results – especially through partnership – might take precedence over experimentation.</p>



<p class="wp-block-paragraph">I went through this consideration just recently. CSG Forte partnered with IBM to launch PaymentsProtection.ai.</p>



<p class="wp-block-paragraph">We set out to provide customers with AI-powered fraud detection and financial risk management without spending years recreating capabilities that already existed. By partnering with IBM, we were able to access additional specialty tools: AI capabilities, real-time monitoring, financial risk management expertise and external validation in one of the most sensitive areas of payments. The collaboration reduced fraud losses by 50-70%, lowered false positives and offered customers a smoother, safer experience.</p>



<p class="wp-block-paragraph">In a market that never stands still, the right tools give brands the freedom to build with greater precision, adaptability and purpose.</p>



<h2 class="wp-block-heading">Raise the standard</h2>



<p class="wp-block-paragraph">Successful brands are changing how they think about regulation. Instead of looking at it as a burden or a constraint on innovation, they are treating it like a key factor in architectural decisions, crew alignment and partner strategy.</p>



<p class="wp-block-paragraph">That approach increasingly separates the brands raising the standard from those struggling to keep up. It changes the role regulation plays within the business. It infuses trust, governance and adaptability into a brand’s foundation.</p>



<p class="wp-block-paragraph">Those capabilities make it easier to scale new builds, navigate future change and innovate with confidence as markets, customer expectations and regulatory requirements continue to charge ahead.</p>



<p class="wp-block-paragraph">The brands shaping the future won’t be scrambling to reinforce the structure after the cracks appear. They’ll be the ones that construct resilience from the very beginning.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Your AI model isn’t the problem. Your data was never ready for it]]></title>
<description><![CDATA[The meeting that changed my perspective



I remember sitting there and realizing I wasn’t thinking about the model at all. I was thinking about the data feeding it.



One discussion stands out in particular. We were evaluating how predictive analytics could improve sales forecasting for a natio...]]></description>
<link>https://tsecurity.de/de/3697426/it-security-nachrichten/your-ai-model-isnt-the-problem-your-data-was-never-ready-for-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3697426/it-security-nachrichten/your-ai-model-isnt-the-problem-your-data-was-never-ready-for-it/</guid>
<pubDate>Mon, 03 Aug 2026 00:03:34 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<h2 class="wp-block-heading">The meeting that changed my perspective</h2>



<p class="wp-block-paragraph">I remember sitting there and realizing I wasn’t thinking about the model at all. I was thinking about the data feeding it.</p>



<p class="wp-block-paragraph">One discussion stands out in particular. We were evaluating how predictive analytics could improve sales forecasting for a national portfolio of opportunities. Leadership wanted greater confidence in projected outcomes so resources could be prioritized earlier in the sales cycle. As conversations turned toward model accuracy, we discovered something more important. Different teams weren’t consistently recording opportunity stages, probability scores and client attributes. The model wasn’t struggling because it lacked sophistication. It was learning from business processes that had never been standardized in the first place. That meeting changed how I approached every AI initiative that followed.</p>



<p class="wp-block-paragraph">Throughout my career leading enterprise business intelligence initiatives, I’ve repeatedly watched organizations blame the algorithm when the real issue was inconsistent data, fragmented ownership across departments and business definitions that meant different things to different teams. AI doesn’t distinguish between disciplined and inconsistent business processes. It learns from both with equal confidence.</p>



<p class="wp-block-paragraph">I’d built and defended executive dashboards for years before that meeting, and dashboards had trained me to believe imperfect data was a manageable, even routine problem. Experienced leaders read a dashboard with context. They know which numbers to trust, which ones need a caveat and which gaps to mentally fill in based on what they already know about the business. Predictive AI doesn’t have that judgment. Machine learning assumes the historical data it’s trained on represents reality as it actually is. If two departments define “active customer” differently, or if a critical field has been silently incomplete for two fiscal years, the model doesn’t notice or compensate. It learns the inconsistency as ground truth, and it repeats that mistake at scale, with confidence, every single time it runs.</p>



<p class="wp-block-paragraph">That moment fundamentally changed how I approach every AI initiative. I stopped starting with technology and started with data integrity instead.</p>



<h2 class="wp-block-heading">5 questions I ask before any AI platform conversation</h2>



<p class="wp-block-paragraph">Today, I rarely begin AI discussions by talking about technology. Before any conversation about platforms or vendors, I ask five questions of the leadership team. Can we explain, in plain language, where this data actually comes from? Do the business leaders in the room agree on what our core definitions mean, or does “revenue” or “active account” shift depending on who’s presenting? Would we rely on this data to make a multimillion-dollar decision without a human manually double-checking it first? Is there a specific, named person accountable for every critical dataset, or does ownership dissolve the moment something goes wrong? And underneath all of it, are we actually solving a business problem, or are we chasing a technology because it’s the thing everyone else is talking about this quarter?</p>



<p class="wp-block-paragraph">I remember one initiative where these questions prevented us from moving too quickly. During an early assessment, we discovered that two operational systems treated the same customer differently because each had evolved around separate business processes. Executive reports appeared consistent because manual reconciliation had become part of the monthly reporting routine. Once we identified the inconsistency, the project paused while business stakeholders agreed on common definitions and ownership. That decision delayed the AI initiative by only a few weeks, but it likely prevented months of troubleshooting after deployment. More importantly, it strengthened confidence in every analytics initiative that followed.</p>



<p class="wp-block-paragraph">These conversations reveal far more about whether an organization is genuinely ready for AI than any vendor demonstration ever will. A polished proof-of-concept can make almost any dataset look production-ready for the ten minutes it’s on screen. These five questions don’t have that luxury. They tend to surface, quickly and uncomfortably, where an organization’s data confidence actually breaks down, and that’s the information leadership needs before committing budget and reputation to a rollout.</p>



<p class="wp-block-paragraph">This lines up with what the <a href="https://www.nist.gov/itl/ai-risk-management-framework">NIST AI Risk Management Framework</a> has argued for a while now: governance and accountability belong at the foundation of an AI initiative, not layered in after a model is already in production. Governance built in retroactively tends to be theater, built to explain a failure that’s already happened rather than to prevent one.</p>



<h2 class="wp-block-heading">Leadership before technology</h2>



<p class="wp-block-paragraph">The organizations I’ve seen actually succeed with AI invest first in governance, ownership and shared business definitions, and only then in the platform itself. They clean up master data before they scale a model against it. They remove duplication in customer and product records. They assign accountability for datasets the same way they’d assign accountability for a budget line, with a name attached and consequences if it slips. This work rarely shows up in a demo, which is probably why it gets skipped so often in the rush toward deployment.</p>



<p class="wp-block-paragraph">One lesson I’ve seen repeatedly is that assigning ownership changes behavior almost immediately. Once business leaders understood they were accountable for the quality of specific datasets, not just the reports generated from them, conversations shifted. Instead of asking why dashboards looked different, teams began discussing why the underlying business process produced inconsistent information. Governance stopped being viewed as documentation and became part of everyday decision-making. The improvements weren’t dramatic overnight, but they were sustainable, and that consistency ultimately mattered more than any individual technology upgrade.</p>



<p class="wp-block-paragraph">I saw this firsthand during an executive reporting initiative where multiple leadership teams relied on the same performance dashboard but interpreted one KPI differently, because ownership had never been clearly assigned. Once the business designated a single owner for the metric and standardized its definition across reporting systems, disagreements disappeared almost overnight. More importantly, that same governance work later allowed predictive analytics to be introduced with confidence, because everyone was working from the same version of the truth.</p>



<p class="wp-block-paragraph">I’ve learned that AI projects rarely fail in the data science team. They fail months earlier, when leadership assumes the organization already understands its own data.</p>



<p class="wp-block-paragraph"><a href="https://www.mckinsey.com/capabilities/quantumblack/our-insights/the-state-of-ai">McKinsey’s research on scaling AI</a> reinforces this pattern at scale: the organizations that generate lasting value from AI are consistently the ones that pair the technology with real changes to their operating model and governance, rather than simply layering AI on top of how things already worked. That finding matches what I’ve observed leading enterprise analytics initiatives directly. The technology was rarely the constraint. The organization’s relationship with its own data was.</p>



<p class="wp-block-paragraph">It’s tempting to frame AI adoption as an engineering problem with a leadership footnote, when in practice it’s closer to the reverse. CIOs reporting on rebuilding an AI-ready data strategy make a related point: treating data ownership as a purely IT issue stops working once business units, product teams and AI platforms are all generating and transforming data continuously, which is exactly why accountability has to sit with named business leaders, not a technical team working in isolation. <a href="https://www.cio.com/article/4049233/5-actions-to-build-an-ai-ready-data-culture.html">A related piece on building an AI-ready data culture</a> puts it more bluntly: an organization can’t scale AI without first scaling trust in its own data, and that trust starts with culture and ownership, not tooling.</p>



<p class="wp-block-paragraph">I no longer ask whether an organization is AI-ready. I ask whether its leaders would bet on their own data without a human checking behind the model first. If the honest answer is no, the next investment shouldn’t be another AI platform or a more sophisticated model. It should be a stronger data foundation, built deliberately, with clear ownership, before a single additional AI use case gets greenlit.</p>



<p class="wp-block-paragraph">If another executive asked me for one piece of advice before approving a major AI investment, I’d tell them this: spend one day interrogating your data before spending another dollar on your model. What that conversation reveals will tell you more about your organization’s readiness than any vendor demonstration ever could.</p>



<p class="wp-block-paragraph">Organizations rarely fail because their AI isn’t intelligent enough. They struggle because they ask AI to learn from data that was never prepared to support intelligent decisions in the first place. The organizations that lead in this next era won’t be the ones with the most advanced models. They’ll be the ones that got their own house in order first, and knew it.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Should You Use AI for a Task? Here’s a Simple Way to Decide]]></title>
<description><![CDATA[This essay originally appeared in The Guardian.
I teach public policy at the Harvard Kennedy School and the Munk School at the University of Toronto. And it will come as no surprise to you that my students regularly use AI to complete their writing assignments. Doing so is a waste of their tuitio...]]></description>
<link>https://tsecurity.de/de/3697413/it-security-nachrichten/should-you-use-ai-for-a-task-heres-a-simple-way-to-decide/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3697413/it-security-nachrichten/should-you-use-ai-for-a-task-heres-a-simple-way-to-decide/</guid>
<pubDate>Mon, 03 Aug 2026 00:03:27 +0200</pubDate>
<content:encoded><![CDATA[<p><em>This essay originally appeared in <a href="https://www.theguardian.com/commentisfree/2026/jul/24/should-you-use-ai">The Guardian</a>.</em></p>
<p>I teach public policy at the Harvard Kennedy School and the Munk School at the University of Toronto. And it will come as no surprise to you that my students regularly <a href="https://www.insidehighered.com/news/faculty/learning-assessment/2026/07/08/brown-professor-suspects-most-his-class-used-ai-cheat">use AI</a> to complete their writing assignments. Doing so is a waste of their tuition money. But if their entire career is going to include AI writing assistants, why shouldn’t they embrace their future?</p>
<p>The best way I’ve found to explain the dilemma <a href="https://danielmiessler.com/blog/keep-the-robots-out-of-the-gym">comes from</a> the AI researcher Daniel Meissler: it’s the difference between work and the gym...</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Your AI model isn’t the problem. Your data was never ready for it]]></title>
<description><![CDATA[The meeting that changed my perspective



I remember sitting there and realizing I wasn’t thinking about the model at all. I was thinking about the data feeding it.



One discussion stands out in particular. We were evaluating how predictive analytics could improve sales forecasting for a natio...]]></description>
<link>https://tsecurity.de/de/3696828/it-nachrichten/your-ai-model-isnt-the-problem-your-data-was-never-ready-for-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3696828/it-nachrichten/your-ai-model-isnt-the-problem-your-data-was-never-ready-for-it/</guid>
<pubDate>Mon, 03 Aug 2026 00:02:22 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<h2 class="wp-block-heading">The meeting that changed my perspective</h2>



<p class="wp-block-paragraph">I remember sitting there and realizing I wasn’t thinking about the model at all. I was thinking about the data feeding it.</p>



<p class="wp-block-paragraph">One discussion stands out in particular. We were evaluating how predictive analytics could improve sales forecasting for a national portfolio of opportunities. Leadership wanted greater confidence in projected outcomes so resources could be prioritized earlier in the sales cycle. As conversations turned toward model accuracy, we discovered something more important. Different teams weren’t consistently recording opportunity stages, probability scores and client attributes. The model wasn’t struggling because it lacked sophistication. It was learning from business processes that had never been standardized in the first place. That meeting changed how I approached every AI initiative that followed.</p>



<p class="wp-block-paragraph">Throughout my career leading enterprise business intelligence initiatives, I’ve repeatedly watched organizations blame the algorithm when the real issue was inconsistent data, fragmented ownership across departments and business definitions that meant different things to different teams. AI doesn’t distinguish between disciplined and inconsistent business processes. It learns from both with equal confidence.</p>



<p class="wp-block-paragraph">I’d built and defended executive dashboards for years before that meeting, and dashboards had trained me to believe imperfect data was a manageable, even routine problem. Experienced leaders read a dashboard with context. They know which numbers to trust, which ones need a caveat and which gaps to mentally fill in based on what they already know about the business. Predictive AI doesn’t have that judgment. Machine learning assumes the historical data it’s trained on represents reality as it actually is. If two departments define “active customer” differently, or if a critical field has been silently incomplete for two fiscal years, the model doesn’t notice or compensate. It learns the inconsistency as ground truth, and it repeats that mistake at scale, with confidence, every single time it runs.</p>



<p class="wp-block-paragraph">That moment fundamentally changed how I approach every AI initiative. I stopped starting with technology and started with data integrity instead.</p>



<h2 class="wp-block-heading">5 questions I ask before any AI platform conversation</h2>



<p class="wp-block-paragraph">Today, I rarely begin AI discussions by talking about technology. Before any conversation about platforms or vendors, I ask five questions of the leadership team. Can we explain, in plain language, where this data actually comes from? Do the business leaders in the room agree on what our core definitions mean, or does “revenue” or “active account” shift depending on who’s presenting? Would we rely on this data to make a multimillion-dollar decision without a human manually double-checking it first? Is there a specific, named person accountable for every critical dataset, or does ownership dissolve the moment something goes wrong? And underneath all of it, are we actually solving a business problem, or are we chasing a technology because it’s the thing everyone else is talking about this quarter?</p>



<p class="wp-block-paragraph">I remember one initiative where these questions prevented us from moving too quickly. During an early assessment, we discovered that two operational systems treated the same customer differently because each had evolved around separate business processes. Executive reports appeared consistent because manual reconciliation had become part of the monthly reporting routine. Once we identified the inconsistency, the project paused while business stakeholders agreed on common definitions and ownership. That decision delayed the AI initiative by only a few weeks, but it likely prevented months of troubleshooting after deployment. More importantly, it strengthened confidence in every analytics initiative that followed.</p>



<p class="wp-block-paragraph">These conversations reveal far more about whether an organization is genuinely ready for AI than any vendor demonstration ever will. A polished proof-of-concept can make almost any dataset look production-ready for the ten minutes it’s on screen. These five questions don’t have that luxury. They tend to surface, quickly and uncomfortably, where an organization’s data confidence actually breaks down, and that’s the information leadership needs before committing budget and reputation to a rollout.</p>



<p class="wp-block-paragraph">This lines up with what the <a href="https://www.nist.gov/itl/ai-risk-management-framework">NIST AI Risk Management Framework</a> has argued for a while now: governance and accountability belong at the foundation of an AI initiative, not layered in after a model is already in production. Governance built in retroactively tends to be theater, built to explain a failure that’s already happened rather than to prevent one.</p>



<h2 class="wp-block-heading">Leadership before technology</h2>



<p class="wp-block-paragraph">The organizations I’ve seen actually succeed with AI invest first in governance, ownership and shared business definitions, and only then in the platform itself. They clean up master data before they scale a model against it. They remove duplication in customer and product records. They assign accountability for datasets the same way they’d assign accountability for a budget line, with a name attached and consequences if it slips. This work rarely shows up in a demo, which is probably why it gets skipped so often in the rush toward deployment.</p>



<p class="wp-block-paragraph">One lesson I’ve seen repeatedly is that assigning ownership changes behavior almost immediately. Once business leaders understood they were accountable for the quality of specific datasets, not just the reports generated from them, conversations shifted. Instead of asking why dashboards looked different, teams began discussing why the underlying business process produced inconsistent information. Governance stopped being viewed as documentation and became part of everyday decision-making. The improvements weren’t dramatic overnight, but they were sustainable, and that consistency ultimately mattered more than any individual technology upgrade.</p>



<p class="wp-block-paragraph">I saw this firsthand during an executive reporting initiative where multiple leadership teams relied on the same performance dashboard but interpreted one KPI differently, because ownership had never been clearly assigned. Once the business designated a single owner for the metric and standardized its definition across reporting systems, disagreements disappeared almost overnight. More importantly, that same governance work later allowed predictive analytics to be introduced with confidence, because everyone was working from the same version of the truth.</p>



<p class="wp-block-paragraph">I’ve learned that AI projects rarely fail in the data science team. They fail months earlier, when leadership assumes the organization already understands its own data.</p>



<p class="wp-block-paragraph"><a href="https://www.mckinsey.com/capabilities/quantumblack/our-insights/the-state-of-ai">McKinsey’s research on scaling AI</a> reinforces this pattern at scale: the organizations that generate lasting value from AI are consistently the ones that pair the technology with real changes to their operating model and governance, rather than simply layering AI on top of how things already worked. That finding matches what I’ve observed leading enterprise analytics initiatives directly. The technology was rarely the constraint. The organization’s relationship with its own data was.</p>



<p class="wp-block-paragraph">It’s tempting to frame AI adoption as an engineering problem with a leadership footnote, when in practice it’s closer to the reverse. CIOs reporting on rebuilding an AI-ready data strategy make a related point: treating data ownership as a purely IT issue stops working once business units, product teams and AI platforms are all generating and transforming data continuously, which is exactly why accountability has to sit with named business leaders, not a technical team working in isolation. <a href="https://www.cio.com/article/4049233/5-actions-to-build-an-ai-ready-data-culture.html">A related piece on building an AI-ready data culture</a> puts it more bluntly: an organization can’t scale AI without first scaling trust in its own data, and that trust starts with culture and ownership, not tooling.</p>



<p class="wp-block-paragraph">I no longer ask whether an organization is AI-ready. I ask whether its leaders would bet on their own data without a human checking behind the model first. If the honest answer is no, the next investment shouldn’t be another AI platform or a more sophisticated model. It should be a stronger data foundation, built deliberately, with clear ownership, before a single additional AI use case gets greenlit.</p>



<p class="wp-block-paragraph">If another executive asked me for one piece of advice before approving a major AI investment, I’d tell them this: spend one day interrogating your data before spending another dollar on your model. What that conversation reveals will tell you more about your organization’s readiness than any vendor demonstration ever could.</p>



<p class="wp-block-paragraph">Organizations rarely fail because their AI isn’t intelligent enough. They struggle because they ask AI to learn from data that was never prepared to support intelligent decisions in the first place. The organizations that lead in this next era won’t be the ones with the most advanced models. They’ll be the ones that got their own house in order first, and knew it.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The blueprint for innovation: 3 ways regulatory readiness is a competitive advantage]]></title>
<description><![CDATA[Too often, brands treat compliance as a downstream exercise. Teams build products, launch new capabilities and then tack on controls afterward.



The pace of technology evolution and adoption has never been faster, and regulatory bodies are doing their best to keep up. For brands, that means the...]]></description>
<link>https://tsecurity.de/de/3696825/it-nachrichten/the-blueprint-for-innovation-3-ways-regulatory-readiness-is-a-competitive-advantage/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3696825/it-nachrichten/the-blueprint-for-innovation-3-ways-regulatory-readiness-is-a-competitive-advantage/</guid>
<pubDate>Mon, 03 Aug 2026 00:02:21 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"></p>



<p class="wp-block-paragraph">Too often, brands treat compliance as a downstream exercise. Teams build products, launch new capabilities and then tack on controls afterward.</p>



<p class="wp-block-paragraph"><a></a>The pace of technology evolution and adoption has <a href="https://hai.stanford.edu/ai-index/2026-ai-index-report">never been faster</a>, and regulatory bodies are doing their best to keep up. For brands, that means they’re standing on shifting ground. They need  to modernize legacy infrastructure, adopt AI responsibly, deliver better customer experiences, maintain trust and navigate increasingly complex regulatory requirements – all at once.</p>



<p class="wp-block-paragraph"><a></a>I’ve witnessed this shift firsthand in payments. Fraudsters adapt faster than regulatory cycles, and customer expectations continue to rise regardless of where legislation stands. In one of the most highly regulated sectors, waiting for new mandates to arrive is a losing strategy.</p>



<p class="wp-block-paragraph"><a></a>The brands that lead have embraced regulatory readiness as an advantage to better inform technology architecture, operating models and partner strategy.</p>



<p class="wp-block-paragraph"><a></a>If I had one piece of advice for CIOs, it would be to treat compliance as part of the blueprint instead of the punch list at the end of a build. With a controls-by-design approach, a collaborative culture, and the right partnerships, any brand can embrace change with confidence and resilience.</p>



<h2 class="wp-block-heading">3 ways regulatory readiness is a competitive advantage</h2>



<h3 class="wp-block-heading">1. Build a solid foundation</h3>



<p class="wp-block-paragraph">One of the most impactful strategies I’ve seen is the shift from compliance-after-the-fact to controls-by-design.</p>



<p class="wp-block-paragraph">Forward-thinking financial institutions increasingly treat regulatory frameworks like <a href="https://kpmg.com/be/en/insights/risk/digital-operational-resilience-act-DORA/prepare-for-dora-today-and-secure-your-digital-operational-resilience-tomorrow.html">DORA</a> and <a href="https://www.ey.com/en_ch/insights/forensic-integrity-services/the-eu-ai-act-what-it-means-for-your-business">the EU AI Act</a> as design principles rather than external requirements. Instead of asking how to retrofit compliance into modern systems, they are asking how thoughtful governance can shape modernization from day one.</p>



<p class="wp-block-paragraph">For example, the EU AI Act mandates transparency for high-risk AI systems like automated credit scoring. Instead of burying disclosures in the fine print, a smart bank builds an interactive feature directly into its digital banking app, which allows customers to simulate how adjustments will improve their approval odds. By doing so, they transform a regulatory obligation into innovation that builds trust.</p>



<p class="wp-block-paragraph">After all, when an AI-driven decision fails, customers do not blame the algorithm. They blame the brand. The controls-by-design approach helps ensure those risks are anticipated and managed before they reach the customer.</p>



<p class="wp-block-paragraph">This feels particularly urgent in the payments industry, where FedNow and stablecoins allow funds to move instantly – and irrevocably. As settlement windows shrink from days to seconds, brands need to embed capabilities like behavioral monitoring, AI-driven fraud detection, account verification and orchestration functionality directly into the transaction architecture itself – as part of the initial design – to identify and mitigate fraudulent activity as it evolves. Regulation, like <a href="https://www.paymentsdive.com/news/nachas-fraud-rules-land/823378/">Nacha’s new rules</a> around ACH fraud, reinforces that direction, but for trust-focused brands, the work begins long before the rules change.</p>



<p class="wp-block-paragraph">Each of these examples points to the same trend. Brands that embrace a controls-by-design philosophy are constructing technology architectures that are ready to adapt long before the inspectors arrive on site.</p>



<h3 class="wp-block-heading">2. Align your crew</h3>



<p class="wp-block-paragraph">Technology architecture is only half of the story. The other half is how well your crew works together to bring that architecture to life.</p>



<p class="wp-block-paragraph">For years, compliance lived in its own lane. Governance acted like a checkpoint. When technology evolved in predictable cycles, that made sense. But today, the brands making the greatest progress build shared accountability into their operating models so they can adapt to regulation in a more coordinated, consistent way.</p>



<p class="wp-block-paragraph">After all, a construction project is only successful when electricians, plumbers, framers and masons coordinate every step and trust the work happening around them.</p>



<p class="wp-block-paragraph">The same is true in the enterprise. Instead of focusing on separate priorities, product, engineering, operations, risk and compliance must align around shared outcomes, with greater transparency into how decisions are made, ongoing oversight and continuous feedback loops between teams. As a result, regulatory readiness becomes part of how the business works every day, change becomes easier and the broader benefits across the organization become clear.</p>



<p class="wp-block-paragraph">In many organizations, I’ve observed how harmony between teams not only increases compliance but also fosters greater <a href="https://www.cio.com/article/4129625/3-myths-to-debunk-in-customer-centric-innovation.html">customer-centric innovation</a>. When teams operate from a shared, real-time view of the customer, every interaction becomes more connected. Customers experience one brand, not a collection of disconnected teams.</p>



<p class="wp-block-paragraph">That spirit of collaboration becomes even more important as AI moves deeper into customer-facing and operational workflows. <a href="https://www.techradar.com/pro/how-ai-innovation-is-outpacing-regulation">AI innovation has outpaced AI regulation</a>, which makes it even more important for brands to take the initiative to ensure proper controls are in place.</p>



<p class="wp-block-paragraph">We are already seeing this play out with <a href="https://www.federalreserve.gov/supervisionreg/srletters/SR2602.htm">SR 26-2</a>, the Federal Reserve’s latest guidance on AI for banks. While it establishes important expectations around model risk management, it leaves room for institutions to determine how agentic AI and generative AI should be governed. Instead of treating this as carte blanche, banking leaders should see this as an opportunity to build trust. By leading the way with governed, responsible GenAI and agentic AI operating models, banks can win customers’ trust long before regulation requires it.</p>



<p class="wp-block-paragraph">No single department should shoulder that responsibility alone. Product teams understand how AI shapes the customer experience. Engineering teams understand how models are built, deployed and monitored. Risk and compliance teams understand governance expectations, while operations teams see how those decisions play out every day. Effective AI governance and innovation emerge when those perspectives come together around a shared view of accountability.</p>



<h3 class="wp-block-heading">3. Expand your toolkit</h3>



<p class="wp-block-paragraph">Innovation in today’s regulatory environment requires more tools than you may have in your own toolkit.</p>



<p class="wp-block-paragraph">Technology is more complex, fraud threats evolve faster and AI capabilities require significant investment and ongoing tuning. At the same time, brands have to stay ahead of customer expectations, market dynamics and evolving risk requirements.</p>



<p class="wp-block-paragraph">It just doesn’t make sense to build every capability yourself when trust, resilience, compliance and speed-to-value are such integral parts of the equation. </p>



<p class="wp-block-paragraph">Throughout my career, I’ve seen success with a build-buy-partner approach that brings together the right tools for the right project.</p>



<p class="wp-block-paragraph">This is particularly important in highly regulated environments, where implementation risk can be as significant as technical risk. That’s where proven results – especially through partnership – might take precedence over experimentation.</p>



<p class="wp-block-paragraph">I went through this consideration just recently. CSG Forte partnered with IBM to launch PaymentsProtection.ai.</p>



<p class="wp-block-paragraph">We set out to provide customers with AI-powered fraud detection and financial risk management without spending years recreating capabilities that already existed. By partnering with IBM, we were able to access additional specialty tools: AI capabilities, real-time monitoring, financial risk management expertise and external validation in one of the most sensitive areas of payments. The collaboration reduced fraud losses by 50-70%, lowered false positives and offered customers a smoother, safer experience.</p>



<p class="wp-block-paragraph">In a market that never stands still, the right tools give brands the freedom to build with greater precision, adaptability and purpose.</p>



<h2 class="wp-block-heading">Raise the standard</h2>



<p class="wp-block-paragraph">Successful brands are changing how they think about regulation. Instead of looking at it as a burden or a constraint on innovation, they are treating it like a key factor in architectural decisions, crew alignment and partner strategy.</p>



<p class="wp-block-paragraph">That approach increasingly separates the brands raising the standard from those struggling to keep up. It changes the role regulation plays within the business. It infuses trust, governance and adaptability into a brand’s foundation.</p>



<p class="wp-block-paragraph">Those capabilities make it easier to scale new builds, navigate future change and innovate with confidence as markets, customer expectations and regulatory requirements continue to charge ahead.</p>



<p class="wp-block-paragraph">The brands shaping the future won’t be scrambling to reinforce the structure after the cracks appear. They’ll be the ones that construct resilience from the very beginning.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CW@60: From Z Cars to The Capture - how technology has transformed UK policing]]></title>
<description><![CDATA[The progress of technology in policing over 60 years is mirrored in the way TV police dramas have evolved in that time - just like Brian Plastow's career in the force]]></description>
<link>https://tsecurity.de/de/3696776/it-nachrichten/cw60-from-z-cars-to-the-capture-how-technology-has-transformed-uk-policing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3696776/it-nachrichten/cw60-from-z-cars-to-the-capture-how-technology-has-transformed-uk-policing/</guid>
<pubDate>Mon, 03 Aug 2026 00:02:20 +0200</pubDate>
<content:encoded><![CDATA[The progress of technology in policing over 60 years is mirrored in the way TV police dramas have evolved in that time - just like Brian Plastow's career in the force]]></content:encoded>
</item>
<item>
<title><![CDATA[The Security Interviews: Bronwyn Boyle, Cybermindz]]></title>
<description><![CDATA[Cyber security can be a stressful career and this is becoming a growing concern for organisations. So what can be done to alleviate the pressure?]]></description>
<link>https://tsecurity.de/de/3696781/it-nachrichten/the-security-interviews-bronwyn-boyle-cybermindz/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3696781/it-nachrichten/the-security-interviews-bronwyn-boyle-cybermindz/</guid>
<pubDate>Mon, 03 Aug 2026 00:02:20 +0200</pubDate>
<content:encoded><![CDATA[Cyber security can be a stressful career and this is becoming a growing concern for organisations. So what can be done to alleviate the pressure?]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Every role teaches something valuable’, finds senior automation engineer]]></title>
<description><![CDATA[BMS’s Kasia Stusinska discusses the importance of embracing the unknown to further your career.
Read more: ‘Every role teaches something valuable’, finds senior automation engineer]]></description>
<link>https://tsecurity.de/de/3696791/it-nachrichten/every-role-teaches-something-valuable-finds-senior-automation-engineer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3696791/it-nachrichten/every-role-teaches-something-valuable-finds-senior-automation-engineer/</guid>
<pubDate>Mon, 03 Aug 2026 00:02:20 +0200</pubDate>
<content:encoded><![CDATA[<p>BMS’s Kasia Stusinska discusses the importance of embracing the unknown to further your career.</p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/people/every-role-teaches-something-valuable-senior-automation-engineer-bms">‘Every role teaches something valuable’, finds senior automation engineer</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Sullivan’s Crossing Season 5 Release Date: Everything You Need to Know]]></title>
<description><![CDATA[Sullivan’s Crossing Season 5 is officially happening, although Netflix viewers will probably need to wait until 2027 to watch the next chapter of Maggie and Cal’s story.



CTV renewed the romantic drama for a fifth season in June 2026, describing it as the network’s number-one original drama. Pr...]]></description>
<link>https://tsecurity.de/de/3695246/ios-mac-os/sullivans-crossing-season-5-release-date-everything-you-need-to-know/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3695246/ios-mac-os/sullivans-crossing-season-5-release-date-everything-you-need-to-know/</guid>
<pubDate>Sun, 26 Jul 2026 08:54:08 +0200</pubDate>
<content:encoded><![CDATA[Sullivan’s Crossing Season 5 is officially happening, although Netflix viewers will probably need to wait until 2027 to watch the next chapter of Maggie and Cal’s story.



CTV renewed the romantic drama for a fifth season in June 2026, describing it as the network’s number-one original drama. Production is scheduled to begin in Nova Scotia during summer 2026, while an exact premiere date and episode count remain unconfirmed.




Renewal status: Officially renewed by CTV



Expected filming period: Summer 2026



Likely CTV premiere: Spring 2027



Expected episode count: Around 10 episodes



Genre: Romantic drama and medical drama



Filming location: Nova Scotia, Canada



Expected Netflix release: Summer 2027




The spring 2027 estimate follows the show’s recent release pattern. Seasons 3 and 4 arrived during the spring, while the fourth season contained 10 one-hour episodes.



Where the story is heading



Spoilers for the Sullivan’s Crossing Season 4 finale follow.



Season 4 ended with Cal proposing to Maggie, but viewers did not hear her answer. Tracy interrupted the moment by asking Maggie and Cal to take her in, leaving the couple’s engagement and immediate future unresolved.



Season 5 should return to Maggie’s decision and examine whether she and Cal can finally build a stable life together. Their relationship faced another major test during Season 4 after Liam, Maggie’s former husband, arrived and revealed more about their complicated past.



Earlier seasons followed Maggie as she returned to Sullivan’s Crossing after legal trouble disrupted her medical career. Her time at the campground helped her rebuild her relationship with her father, Sully, while her friendship with Cal slowly developed into a romance.



Season 5 will have a new showrunner



The series will also experience a creative change behind the scenes. Creator Roma Roth will remain involved as an executive producer, while Floyd Kane takes over as showrunner for Season 5.



Morgan Kohan and Chad Michael Murray are expected to return as Maggie and Cal. However, the complete cast has not been announced. Scott Patterson, who played Sully during the first three seasons, is also not currently expected to return.



When should Season 5 arrive on Netflix?



Netflix has not announced a Season 5 release date. Season 4 joined Netflix on June 30, 2026, shortly after its television finale aired on June 22.



Based on that schedule, Sullivan’s Crossing Season 5 should reach Netflix a few weeks after its 2027 television finale. A release between June and August 2027 appears most likely, provided the new season premieres during spring.



Season 4 recently reached Netflix’s global Top 10 with 1.3 million views during the week of July 13 to July 19, giving the streaming service another reason to carry the next season.



Do you think Maggie will accept Cal’s proposal, or will Tracy’s arrival change their plans? Let us know what you expect from Sullivan’s Crossing Season 5 in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[The March 2026 Security Update Review]]></title>
<description><![CDATA[I am back in the friendly confines of the Mid-South headquarters of TrendAI ZDI (a.k.a. my home office), and am all set for the third patch Tuesday of 2026. Take a break from your regularly scheduled activities and let’s take a look at the latest security patches from Adobe and Microsoft.If you’d...]]></description>
<link>https://tsecurity.de/de/3694472/it-security-nachrichten/the-march-2026-security-update-review/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694472/it-security-nachrichten/the-march-2026-security-update-review/</guid>
<pubDate>Sat, 25 Jul 2026 19:00:43 +0200</pubDate>
<content:encoded><![CDATA[<p class="">I am back in the friendly confines of the Mid-South headquarters of TrendAI ZDI (a.k.a. my home office), and am all set for the third patch Tuesday of 2026. Take a break from your regularly scheduled activities and let’s take a look at the latest security patches from Adobe and Microsoft.If you’d rather watch the full video recap covering the entire release, you can check it out here:</p>





















  
  




  
















  
    
      
    
    
      
        
      
    
    
    



  






  <p class=""><strong>Adobe Patches for March 2026</strong></p><p class="">For March, Adobe released eight bulletins addressing 80 unique CVEs in Adobe Acrobat Reader, Commerce, Illustrator, Substance 3D Painter, Premier Pro, Experience Manager, Substance 3D Stager, and the Adobe DNG Software Development Kit (SDK). Two of these bugs were submitted through the TrendAI ZDI program. If you need to prioritize, the update for <a href="https://helpx.adobe.com/security/products/acrobat/apsb26-26.html">Acrobat</a> likely has the most impact, with the patch fixing two Critical-rated and one Important bugs. The fix for <a href="https://helpx.adobe.com/security/products/experience-manager/apsb26-24.html">Experience Manager</a> is the largest this month with 33 CVEs addressed. However, these are simple cross-site scripting (XSS) bugs, so it’s not too exciting. The fix for <a href="https://helpx.adobe.com/security/products/magento/apsb26-05.html">Commerce</a> is also quite large with 19 CVEs. Most of these are also XSS bugs, but there’s a few security feature bypass bugs in there, too. Adobe actually gives this patch a deployment priority of 2, but it’s not under active attack at the time of release. </p><p class="">The fix for <a href="https://helpx.adobe.com/security/products/illustrator/apsb26-18.html">Illustrator</a> corrects seven bugs, including a few Critical-rated ones. The patch for <a href="https://helpx.adobe.com/security/products/substance3d_painter/apsb26-25.html">Substance 3D Painter</a> fixes nine different CVEs, all rated Important. That’s not the case for <a href="https://helpx.adobe.com/security/products/substance3d_stager/apsb26-29.html">Substance 3D Stager</a>, which fixes six different Critical bugs that could lead to arbitrary code execution. The patch for the <a href="https://helpx.adobe.com/security/products/dng-sdk/apsb26-30.html">Adobe DNG Software Development Kit</a> (SDK) addresses one Critical and one Important bug. Finally, the update for Premiere Pro correct a single, Critical-rated bug that could lead to arbitrary code execution. </p><p class="">None of the bugs fixed by Adobe this month are listed as publicly known or under active attack at the time of release, and beyond the update for Commerce, all of the other updates released by Adobe this month are listed as deployment priority 3.</p><p class=""><strong>Microsoft Patches for March 2026</strong></p><p class="">This month, Microsoft released 84 new CVEs in Windows and Windows components, Office and Office Components, Microsoft Edge (Chromium-based), Azure, SQL Server, Hyper-V Server, and the Windows Resilient File System (ReFS). Counting the third-party and Chromium updates listed in the release, it brings to total number of CVEs to 94. Five of these bugs were reported through the TrendAI ZDI program. Eight of these bugs are rated Critical, and the rest are rated Important in severity.</p><p class="">This volume is relatively typical for a March release, and the lack of bugs under active attack is a nice change from last month. There are two vulnerabilities listed as publicly known at the time of release, but none listed as actively exploited.</p><p class="">Let’s take a closer look at some of the more interesting updates for this month, starting with a bug with an AI slant:</p><p class="">-    <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26144"><strong>CVE-2026-26144</strong></a><strong> - Microsoft Excel Information Disclosure Vulnerability<br></strong>This is a fascinating bug and an attack scenario we’re likely to see more often. The vulnerability is a simple cross-site scripting (XSS) bug in Excel, but an attacker could use it to cause the Copilot Agent to exfiltrate data off the target. This essentially makes it a zero-click information disclosure. Although not stated, the disclosure is likely at the level of the logged-on user, so there isn’t a privilege escalation component. Info disclosures rarely get rated Critical, but it makes sense here.</p><p class="">-    <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26110"><strong>CVE-2026-26110</strong></a><strong>/</strong><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26113"><strong>CVE-2026-26113</strong></a><strong> - Microsoft Office Remote Code Execution Vulnerability <br></strong>Another month and another pair of Office bugs where the Preview Pane is an exploit vector. I’ve lost count of how many of these bugs have been patched over the last year, but it’s just a matter of time until they start appearing in active exploits. The latest versions of Outlook allow you to hide the Preview Pane, but it isn’t clear if this would mitigate these attacks. The best option is still to test and deploy the update, but considering how many of these patches exist, it’s likely further updates will be needed to fully address these issues.</p><p class="">-    <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23669"><strong>CVE-2026-23669</strong></a><strong> - Windows Print Spooler Remote Code Execution Vulnerability<br></strong>Just reading the title makes me twitch with remembrances of <a href="https://en.wikipedia.org/wiki/PrintNightmare">Print Nightmare</a> from a few years ago. This bug works in the same manner as those exploits. An authenticated attacker sends specially crafted messages to an affected system to gain arbitrary code execution. No user interaction is required. Let’s hope we don’t end up in a new nightmare of spooler exploits. Test and deploy this one quickly.</p><p class="">-    <a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23668"><strong>CVE-2026-23668</strong></a><strong> - Windows Graphics Component Elevation of Privilege Vulnerability<br></strong>This vulnerability was submitted to the ZDI program by Marcin Wiązowski as two separate bugs, and it demonstrates the need for variant investigations when creating security patches. Both cases are caused by the lack of proper locking when performing operations on an object. However, in one case, it’s in the cdd.dll driver while the other is in the win32kfull driver. Either way, an attacker could use these to elevate privileges to SYSTEM and execute arbitrary code. Since the fix for both is to add object locking to the GDI object, the cases are combined into a single CVE. That’s not a problem, but it does show how variants can occur, and fixes should be as broad as possible.</p><p class="">Here’s the full list of CVEs released by Microsoft for March 2026:</p>





















  
  




  


  
    





<link rel="File-List" href="2026_PatchTable-March.fld/filelist.xml">













<table border="0" cellpadding="0" cellspacing="0" width="953">
 <col width="151" class="xl65">
 <col width="263" class="xl66">
 <col width="111" class="xl67" span="4">
 <col width="95" class="xl67">
 <col width="645" class="xl65">
 <tr height="47">
  <td width="151" class="xl65" height="47"><span> </span>CVE<span> </span></td>
  <td width="263" class="xl66"><span> </span>Title<span> </span></td>
  <td width="111" class="xl67"><span> </span>Severity<span> </span></td>
  <td width="111" class="xl67"><span> </span>CVSS<span> </span></td>
  <td width="111" class="xl67"><span> </span>Public</td>
  <td width="111" class="xl67"><span> </span>Exploited<span> </span></td>
  <td width="95" class="xl67"><span> </span>Type<span> </span></td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26127"><span><span> </span>CVE-2026-26127<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>.NET Denial of Service Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl68"><span> </span>Yes<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">DoS</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21262"><span><span> </span>CVE-2026-21262<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>SQL Server Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl68"><span> </span>Yes<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23651"><span><span> </span>CVE-2026-23651<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft ACI Confidential Containers
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67">6.7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26124"><span><span> </span>CVE-2026-26124<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft ACI Confidential Containers
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67">6.7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26122"><span><span> </span>CVE-2026-26122<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft ACI Confidential Containers
  Information Disclosure Vulnerability<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67">6.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-21536"><span><span> </span>CVE-2026-21536<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Devices Pricing Program Remote
  Code Execution Vulnerability<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67">9.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26144"><span><span> </span>CVE-2026-26144<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Excel Information Disclosure
  Vulnerability<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26110"><span><span> </span>CVE-2026-26110<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Office Remote Code Execution
  Vulnerability<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67">8.4</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26113"><span><span> </span>CVE-2026-26113<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Office Remote Code Execution
  Vulnerability<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67">8.4</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26125"><span><span> </span>CVE-2026-26125<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Payment Orchestrator Service Elevation of
  Privilege Vulnerability<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67">8.6</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26131"><span><span> </span>CVE-2026-26131<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>.NET Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25177"><span><span> </span>CVE-2026-25177<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Active Directory Domain Services Elevation
  of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26117"><span><span> </span>CVE-2026-26117<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Arc Enabled Servers - Azure Connected
  Machine Agent Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26130"><span><span> </span>CVE-2026-26130<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>ASP.NET Core Denial of Service
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">DoS</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23661"><span><span> </span>CVE-2026-23661<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Azure IoT Explorer Information Disclosure
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23662"><span><span> </span>CVE-2026-23662<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Azure IoT Explorer Information Disclosure
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23664"><span><span> </span>CVE-2026-23664<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Azure IoT Explorer Information Disclosure
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26121"><span><span> </span>CVE-2026-26121<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Azure IOT Explorer Spoofing
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Spoofing</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26118"><span><span> </span>CVE-2026-26118<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Azure MCP Server Tools Elevation of
  Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23667"><span><span> </span>CVE-2026-23667<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Broadcast DVR Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25190"><span><span> </span>CVE-2026-25190<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>GDI Remote Code Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25181"><span><span> </span>CVE-2026-25181<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>GDI+ Information Disclosure
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="97">
  <td class="xl72" height="97"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26030"><span><span> </span>CVE-2026-26030 *</span></a></td>
  <td width="263" class="xl66"><span> </span>GitHub: CVE-2026-26030 Microsoft Semantic
  Kernel InMemoryVectorStore filter functionality vulnerable<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">9.9</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23654"><span><span> </span>CVE-2026-23654 *</span></a></td>
  <td width="263" class="xl66"><span> </span>GitHub: Zero Shot SCFoundation Remote Code
  Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26141"><span><span> </span>CVE-2026-26141<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Hybrid Worker Extension (Arc-enabled Windows
  VMs) Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23665"><span><span> </span>CVE-2026-23665 †</span></a></td>
  <td width="263" class="xl66"><span> </span>Linux Azure Diagnostic extension (LAD)
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23674"><span><span> </span>CVE-2026-23674<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>MapUrlToZone Security Feature Bypass
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">SFB</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26123"><span><span> </span>CVE-2026-26123<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Authenticator Information
  Disclosure Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">5.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26148"><span><span> </span>CVE-2026-26148 †</span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Azure AD SSH Login extension for
  Linux Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.1</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25167"><span><span> </span>CVE-2026-25167<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Brokering File System Elevation of
  Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.4</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26107"><span><span> </span>CVE-2026-26107<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Excel Remote Code Execution
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26108"><span><span> </span>CVE-2026-26108<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Excel Remote Code Execution
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26109"><span><span> </span>CVE-2026-26109<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Excel Remote Code Execution
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.4</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26112"><span><span> </span>CVE-2026-26112<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Excel Remote Code Execution
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26134"><span><span> </span>CVE-2026-26134<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft Office Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26106"><span><span> </span>CVE-2026-26106<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft SharePoint Server Remote Code
  Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26114"><span><span> </span>CVE-2026-26114<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft SharePoint Server Remote Code
  Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26105"><span><span> </span>CVE-2026-26105<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Microsoft SharePoint Server Spoofing
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.1</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Spoofing</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24283"><span><span> </span>CVE-2026-24283<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Multiple UNC Provider Kernel Driver
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25165"><span><span> </span>CVE-2026-25165<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Performance Counters for Windows Elevation
  of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24282"><span><span> </span>CVE-2026-24282<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Push message Routing Service Elevation of
  Privilege Vulnerability</td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">5.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26115"><span><span> </span>CVE-2026-26115<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>SQL Server Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26116"><span><span> </span>CVE-2026-26116<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>SQL Server Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-20967"><span><span> </span>CVE-2026-20967<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>System Center Operations Manager (SCOM)
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24285"><span><span> </span>CVE-2026-24285<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Win32k Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24291"><span><span> </span>CVE-2026-24291<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Accessibility Infrastructure
  (ATBroker.exe) Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25186"><span><span> </span>CVE-2026-25186<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Accessibility Infrastructure
  (ATBroker.exe) Information Disclosure Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">5.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23660"><span><span> </span>CVE-2026-23660 †</span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Admin Center in Azure Portal
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24293"><span><span> </span>CVE-2026-24293<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Ancillary Function Driver for
  WinSock Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25176"><span><span> </span>CVE-2026-25176<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Ancillary Function Driver for
  WinSock Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25178"><span><span> </span>CVE-2026-25178<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Ancillary Function Driver for
  WinSock Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25179"><span><span> </span>CVE-2026-25179<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Ancillary Function Driver for
  WinSock Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23656"><span><span> </span>CVE-2026-23656<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows App Installer Spoofing
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">5.9</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Spoofing</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25171"><span><span> </span>CVE-2026-25171<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Authentication Elevation of
  Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23671"><span><span> </span>CVE-2026-23671<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Bluetooth RFCOM Protocol Driver
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24292"><span><span> </span>CVE-2026-24292<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Connected Devices Platform Service
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24295"><span><span> </span>CVE-2026-24295<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Device Association Service Elevation
  of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24296"><span><span> </span>CVE-2026-24296<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Device Association Service Elevation
  of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25189"><span><span> </span>CVE-2026-25189<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows DWM Core Library Elevation of
  Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25174"><span><span> </span>CVE-2026-25174<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Extensible File Allocation Table
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25168"><span><span> </span>CVE-2026-25168<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Graphics Component Denial of Service
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">6.2</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">DoS</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25169"><span><span> </span>CVE-2026-25169<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Graphics Component Denial of Service
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">6.2</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">DoS</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23668"><span><span> </span>CVE-2026-23668<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Graphics Component Elevation of
  Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25180"><span><span> </span>CVE-2026-25180<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Graphics Component Information
  Disclosure Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">5.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Info</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25170"><span><span> </span>CVE-2026-25170<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Hyper-V Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24297"><span><span> </span>CVE-2026-24297<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Kerberos Security Feature Bypass
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">6.5</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">SFB</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24287"><span><span> </span>CVE-2026-24287<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Kernel Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24289"><span><span> </span>CVE-2026-24289<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Kernel Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26132"><span><span> </span>CVE-2026-26132<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Kernel Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24288"><span><span> </span>CVE-2026-24288<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Mobile Broadband Driver Remote Code
  Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">6.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25175"><span><span> </span>CVE-2026-25175<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows NTFS Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23669"><span><span> </span>CVE-2026-23669<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Print Spooler Remote Code Execution
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24290"><span><span> </span>CVE-2026-24290<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Projected File System Elevation of
  Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23673"><span><span> </span>CVE-2026-23673<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Resilient File System (ReFS)
  Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25172"><span><span> </span>CVE-2026-25172<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Routing and Remote Access Service
  (RRAS) Remote Code Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25173"><span><span> </span>CVE-2026-25173<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Routing and Remote Access Service
  (RRAS) Remote Code Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26111"><span><span> </span>CVE-2026-26111<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Routing and Remote Access Service
  (RRAS) Remote Code Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25185"><span><span> </span>CVE-2026-25185<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Shell Link Processing Spoofing
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">5.3</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">Spoofing</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-24294"><span><span> </span>CVE-2026-24294<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows SMB Server Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-26128"><span><span> </span>CVE-2026-26128<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows SMB Server Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25166"><span><span> </span>CVE-2026-25166<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows System Image Manager Assessment and
  Deployment Kit (ADK) Remote Code Execution Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25188"><span><span> </span>CVE-2026-25188<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Telephony Service Elevation of
  Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">8.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-23672"><span><span> </span>CVE-2026-23672<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Windows Universal Disk Format File System
  Driver (UDFS) Elevation of Privilege Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-25187"><span><span> </span>CVE-2026-25187<span> </span></span></a></td>
  <td width="263" class="xl66"><span> </span>Winlogon Elevation of Privilege
  Vulnerability<span> </span></td>
  <td class="xl70"><span> </span>Important<span> </span></td>
  <td class="xl67">7.8</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">EoP</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3536"><span><span> </span>CVE-2026-3536 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3536 Integer overflow in
  ANGLE<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3538"><span><span> </span>CVE-2026-3538 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3538 Integer overflow in
  Skia<span> </span></td>
  <td class="xl71"><span> </span>Critical<span> </span></td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3539"><span><span> </span>CVE-2026-3539 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3539 Object lifecycle
  issue in DevTools<span> </span></td>
  <td class="xl69"><span> </span>High</td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3540"><span><span> </span>CVE-2026-3540 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3540 Inappropriate
  implementation in WebAudio<span> </span></td>
  <td class="xl69"><span> </span>High</td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3541"><span><span> </span>CVE-2026-3541 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3541 Inappropriate
  implementation in CSS<span> </span></td>
  <td class="xl69"><span> </span>High</td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3542"><span><span> </span>CVE-2026-3542 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3542 Inappropriate
  implementation in WebAssembly<span> </span></td>
  <td class="xl69"><span> </span>High</td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3543"><span><span> </span>CVE-2026-3543 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3543 Inappropriate
  implementation in V8<span> </span></td>
  <td class="xl69"><span> </span>High</td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="47">
  <td class="xl72" height="47"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3544"><span><span> </span>CVE-2026-3544 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3544 Heap buffer overflow
  in WebCodecs<span> </span></td>
  <td class="xl69"><span> </span>High</td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 <tr height="69">
  <td class="xl72" height="69"><a href="https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-3545"><span><span> </span>CVE-2026-3545 *</span></a></td>
  <td width="263" class="xl66"><span> </span>Chromium: CVE-2026-3545 Insufficient data
  validation in Navigation<span> </span></td>
  <td class="xl69"><span> </span>High</td>
  <td class="xl67"><span> </span>N/A</td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67"><span> </span>No<span> </span></td>
  <td class="xl67">RCE</td>
 </tr>
 &lt;![if supportMisalignedColumns]&gt;
 <tr height="0">
  <td width="151"></td>
  <td width="263"></td>
  <td width="111"></td>
  <td width="111"></td>
  <td width="111"></td>
  <td width="111"></td>
  <td width="95"></td>
 </tr>
 &lt;![endif]&gt;
</table>











  
  









  <p class=""><em>* Indicates this CVE had been released by a third party and is now being included in Microsoft releases</em>.</p><p class=""><em>† Indicates further administrative actions are required to fully address the vulnerability.</em></p><p class=""><em> </em></p><p class="">Looking at the other Critical-rated bugs in this month’s release, they are all cloud-native and require no user action. Microsoft has already remediated the vulnerabilities.</p><p class="">Moving on to the other code execution bugs, the vulnerabilities in SharePoint Server pop out first. Both require authentication, but it’s essentially the lowest level of authentication, so these would be ideal cases for lateral movement within an enterprise. There are the standard open-and-own cases within Office components. There an interesting sounding bug in the Windows Mobile Broadband Driver that requires physical access, but Microsoft doesn’t elaborate on the attack scenario beyond that fact. The bug in the System Image Manager Assessment and Deployment Kit (ADK) requires authentication. The bug in GDI requires user interaction. The remaining code execution bugs are in the RRAS protocol. We’ve seen bugs in this component in the past, but never in the wild. I wouldn’t ignore these, but I wouldn’t rush them out either.</p><p class="">Similar to last month, updates for Elevation of Privilege (EoP) bugs make up nearly half of this month’s release. And as we saw last month, but most simply lead to local attackers executing their code at SYSTEM-level privileges or administrative privileges. The bugs in SQL Server allow attackers to elevate to SQL sysadmin privileges. The bug in the Azure MCP Server is more complex. It allows attackers to obtain the permissions associated with the MCP Server’s managed identity, which lets them perform actions that the managed identity is able to reach. The bug in the Azure AD SSH Login extension for Linux leads to root access, and it won’t be easy to patch. You’ll need to run the update instructions from the command line on each affected system. That’s the same case for the bug in the Linux Azure Diagnostic extension (LAD). There’s an odd bug in the Hybrid Worker Extension (Arc‑enabled Windows VMs) that leads to “ELEVATED” privileges, which is something I’ve never seen before. The bug in the Broadcast DVR component allows an attacker to go from low integrity level up to medium. There’s a bug listed as an EoP in the Push message Routing Service, but reading the description, Microsoft notes it could lead to an information disclosure. It’s likely this is an error and should be an Information Disclosure bug. The final EoP is in the Azure Portal Windows Admin Center and leads to SYSTEM. However, there’s no patch to remediate this bug. Instead, you need to install the latest version of the Windows Admin Center extension through the Azure Portal by hand. </p><p class="">There are two security feature bypass patches in the March release. The first is a bypass of the MapURLToZone method, which (as expected) allows attackers to bypass MapURLToZone protections. The third bypass is in Kerberos and could allow an attacker to either view some sensitive information or make changes to “disclosed” information. This is a race condition that occurs while the group policy is being reapplied, so the window to exploit this would be extremely small.</p><p class="">Looking at the remaining info disclosure bugs getting patched this month, only two result in info leaks consisting of unspecified memory contents or memory addresses. Ther others provide more interesting results. There are three bugs in the Azure IoT Explorer have some wide-ranging implications. According to Microsoft, exploitation could result in, “device connection information, authentication tokens, request data, file paths, and other information transmitted between the application and the IoT Hub.” The bug in Authenticator almost reads like a security feature bypass, as exploit results in the disclosure of a one‑time sign‑in code or authentication deep link. The attacker would receive the sign‑in information and could potentially use it to authenticate as the user, allowing access to information or services available to that account. The last info disclosure bug is in the Accessibility Infrastructure and allows an attacker to gain secrets or privileged information belonging to the user of the affected application.</p><p class="">There are only four spoofing bugs in the March release. The first is in SharePoint server and manifests as an XSS. The second bug is a Server-Side Request Forgery (SSRF) in the Azure IoT Explorer. The remaining two are a bit more cryptic. The bug in Windows Shell Link Processing results from the “exposure of sensitive information to an unauthorized actor,” and could lead to spoofing. That sounds like credential exposure, but it’s not explicitly called out. The final spoofing bug results from the insufficient verification of data authenticity in Windows App Installer. Again, this sounds vaguely like credential reflection, but without further information, we can only speculate. </p><p class="">Finally, there are four denial-of-service (DoS) bugs in the release, including one that’s listed as publicly known in the .NET Framework. As usual, Microsoft provides no actionable information about these bugs.</p><p class="">No new advisories are being released this month.</p><p class=""><strong>Looking Ahead</strong></p><p class="">I plan on being at RSA for the first time in my career, so if you’re around, please stop by and say hello. I like it when people say hello. Otherwise, I’ll be back on April 14 with my assessment of that patch Tuesday release. Until then, stay safe, happy patching, and may all your reboots be smooth and clean!</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI success requires a full-stack CIO]]></title>
<description><![CDATA[Every CIO I speak with today is wrestling with some version of the same question: How do we move faster with AI and deliver on our commitments?



It’s an understandable concern. Boards and CEOs are asking about AI. Business leaders are experimenting with use cases. Employees are discovering tool...]]></description>
<link>https://tsecurity.de/de/3694399/it-security-nachrichten/ai-success-requires-a-full-stack-cio/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3694399/it-security-nachrichten/ai-success-requires-a-full-stack-cio/</guid>
<pubDate>Sat, 25 Jul 2026 18:57:42 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Every CIO I speak with today is wrestling with some version of the same question: How do we move faster with AI and deliver on our commitments?</p>



<p class="wp-block-paragraph">It’s an understandable concern. <a href="https://www.cio.com/article/4171959/ceos-top-priorities-for-it-leaders-today-2.html">Boards and CEOs are asking about AI</a>. Business leaders are experimenting with use cases. Employees are discovering tools daily, while technology vendors promise unprecedented gains in productivity, innovation, and competitive advantage.</p>



<p class="wp-block-paragraph">After hundreds of conversations with technology executives over the past year, I’ve become convinced that speed isn’t the real issue. The organizations pulling away from the pack aren’t necessarily adopting AI faster than everyone else. They’re executing more effectively — a subtle distinction that represents one of the defining leadership challenges of the AI era.</p>



<p class="wp-block-paragraph">Technology has never been the hardest part of transformation. People, priorities, culture, and operating models are the biggest challenges. The ability to translate bold boardroom aspirations into thousands of thoughtful decisions made every day by architects, engineers, product managers, analysts, and business leaders is where competitive advantage is created. AI may be accelerating the pace of change, but it hasn’t changed that fundamental truth.</p>



<p class="wp-block-paragraph">I’ve met plenty of executives who are exceptional in the boardroom. They know how to frame a vision, <a href="https://www.cio.com/article/272180/relationship-building-networking-how-to-wow-your-board-of-directors.html">influence a board</a>, and build confidence among investors and business leaders. I’ve also met remarkable technologists who instinctively understand the architectural decisions, engineering tradeoffs, and implementation details that determine how great ideas become reality. Modern CIOs, however, must move comfortably between both worlds. Afshean Talasaz is one who stands out among this rare breed.</p>



<p class="wp-block-paragraph">Long before becoming CIO of Colonial Pipeline, Talasaz built his career from the ground up as a business professional, data scientist, and technologist. He has designed enterprise platforms, built AI capabilities, led technology organizations, and partnered closely with executive leadership teams on business transformation. Today, as an executive in residence with our Practitioners for Practitioners (P4P) community, he helps CIOs and business leaders navigate one of the most significant technology shifts of our generation.</p>



<p class="wp-block-paragraph">While Talasaz brings deep knowledge of data and AI to the table, his greatest strength is his ability to create strategy and connect it with execution. He can spend the morning discussing enterprise reinvention with the board and the afternoon debating architectural principles with the teams responsible for bringing that vision to life.</p>



<p class="wp-block-paragraph">That versatility gives Talasaz a unique lens on how CIOs <a href="https://www.cio.com/article/4178006/state-of-the-cio-2026-cios-set-the-course-for-ai-roi.html">can deliver value with AI</a>.</p>



<p class="wp-block-paragraph">Software companies have a term for engineers who understand every layer of the technology stack: full-stack developers. Listen to Talasaz and it becomes evident that the AI era requires something similar from technology leaders: a full-stack CIO.</p>



<h2 class="wp-block-heading">The full-stack CIO: Leading with clarity</h2>



<p class="wp-block-paragraph">A full-stack CIO understands how every layer of the enterprise influences the next. They recognize that every strategic priority becomes a portfolio investment, every investment shapes an operating model, every operating model influences architecture, every architecture choice informs product decisions, every product decision shapes engineering priorities.</p>



<p class="wp-block-paragraph">The best CIOs understand both ends of that journey. The extraordinary ones understand everything in between.</p>



<p class="wp-block-paragraph">And those who execute best lead with clarity, Talasaz says.</p>



<p class="wp-block-paragraph">“Everyone, from executives to middle managers to the people writing code, should be able to explain what we’re trying to achieve,” he emphasizes. “Clarity isn’t that we’ve handed out the PowerPoint. It’s that people genuinely understand where we’re going and can articulate it in their own language.”</p>



<p class="wp-block-paragraph">One of the unintended consequences of the AI boom is that organizations are beginning to confuse activity with alignment. They have AI councils, AI governance committees, AI innovation labs, AI centers of excellence, AI pilots, and AI roadmaps. Yet if you stop ten people in the hallway and ask a deceptively simple question, What business problem are we actually trying to solve? you’ll often hear ten different answers.</p>



<p class="wp-block-paragraph">As a result, architects optimize for one objective while product teams optimize for another. Business units pursue opportunities that seem perfectly reasonable from their perspective. Engineers make thoughtful technical decisions based on the information available to them. Individually, none of those decisions are necessarily wrong. Collectively, however, they create organizational drift. AI doesn’t create that problem. It simply accelerates the consequences.</p>



<p class="wp-block-paragraph">And while AI can be a force multiplier for the positive when every decision is guided by a shared understanding of where the organization is headed, it can also be a force multiplier for the negative, resulting in an organization simply moving faster in different directions.</p>



<p class="wp-block-paragraph">“When we have the fundamentals right, the tech infrastructure, the operating models, the nuances of how our business actually runs, we get the impacts of AI in a positive way,” Talasaz says. “When we don’t have those in place, AI can amplify the gaps or mute the benefits.”</p>



<p class="wp-block-paragraph">At a time when so much of the conversation surrounding AI is focused on algorithms, agents, and automation, it’s an important reminder that organizations don’t execute strategy; people do.</p>



<h2 class="wp-block-heading">Reducing organizational friction</h2>



<p class="wp-block-paragraph">Most executives are familiar with the concept of VUCA that characterizes today’s business environment. But Talasaz stresses the importance of turning this concern inward: “If the world outside our organizations is becoming more volatile, uncertain, complex, and ambiguous, what are we, as leaders, doing to the inside of our organizations?”</p>



<p class="wp-block-paragraph">Leaders spend enormous amounts of time helping their organizations respond to external disruption but comparatively little time asking whether they are inadvertently re-creating those same conditions internally in response to those external needs. Are we reducing uncertainty or introducing more of it? Are we simplifying work or adding unnecessary complexity? Are we helping people focus on what matters most, or asking them to navigate competing priorities and shifting expectations?</p>



<p class="wp-block-paragraph">Talasaz refers to this phenomenon as double VUCA — something I’ve witnessed repeatedly while working with CIOs over the past decade. Organizations often assume they’re struggling because of technology limitations when the real constraint is organizational friction. Teams wait for decisions. Priorities shift faster than roadmaps. Governance grows heavier. New committees are formed to solve problems created by existing committees. Everyone is working harder, yet the organization somehow feels slower.</p>



<p class="wp-block-paragraph">AI amplifies both outcomes. Organizations with clarity become dramatically more effective because AI accelerates good decisions. Organizations without clarity simply accelerate confusion.</p>



<h1 class="wp-block-heading">Operating model as strategy enabler</h1>



<p class="wp-block-paragraph">AI governance is one way to achieve greater clarity, but as Talasaz says, governance shouldn’t primarily exist inside policy manuals that few people read.</p>



<p class="wp-block-paragraph">Instead, AI governance should be embedded in the daily rhythms of the organization, shaping how teams collaborate, how decisions are made, how products move from ideas into production, and how innovation happens safely without requiring constant escalation. In other words, it’s all about your operating model.</p>



<p class="wp-block-paragraph">“If you had to pick one thing that isn’t technology, your operating model is the most important element for executing data and AI at scale,” he says.</p>



<p class="wp-block-paragraph">The best operating models create enough clarity that capable people can make thousands of decisions independently and confidently, without having to wait for permission. By embedding good governance into the way it works, the organization becomes faster.</p>



<p class="wp-block-paragraph">This advice echoes something I’ve heard repeatedly from some of the world’s most respected CIOs: High-performing organizations aren’t built on tighter control; they’re built on greater trust, supported by clear principles, shared expectations, and operating models that enable responsible decision-making at every level of the enterprise.</p>



<p class="wp-block-paragraph">Talasaz points out that technology leaders tend to speak in terms of <em>transformation</em>. He suggests CIOs consider a different word: <em>reinvention.</em></p>



<p class="wp-block-paragraph">As he explains, transformation implies replacing what exists today with something new. Reinvention starts with a more clear-eyed and practical premise: Some things absolutely must change; others represent years, sometimes decades, of accumulated expertise, customer trust, operational discipline, and competitive advantage.</p>



<p class="wp-block-paragraph">Reinvention is about building on those strengths while also creating new ways to deliver value. The leaders making the greatest progress in their AI journeys seem to recognize that it’s less about abandoning the past than thoughtfully preparing the organization for the future.</p>



<h2 class="wp-block-heading">Closing the gap between strategy and execution</h2>



<p class="wp-block-paragraph">Full-stack CIOs must be able to map out the various layers of execution and planning that need to be done at every level of the organization to be successful. To help with this, Talasaz has developed a data and AI framework that draws on his own experiences “from the keyboard to the boardroom.”</p>



<p class="wp-block-paragraph">As Talasaz sees it, too many organizations have been doing good work in isolation. “They’re doing a lot of the right things,” he says. “They’re just not connected.”</p>



<p class="wp-block-paragraph">Boards may be discussing growth while business leaders redesign customer experiences. Product teams may be prioritizing new capabilities while architects modernize platforms. Data teams may be improving quality while engineers focus on delivery. Every group makes meaningful progress within its own domain, yet somewhere between strategy and execution, the connective tissue begins to disappear. Talasaz’s framework brings those connecting points to the forefront.</p>



<p class="wp-block-paragraph">Crucially, the framework doesn’t begin with technology or AI or even with data. It begins with the experiences the organization hopes to create for its customers, employees, or partners. Many AI initiatives start with the question, “What can this technology do?” And indeed, we need to be inspired by the possibilities and challenged to think differently by what the technology can do. But, Talasaz emphasizes, we also need to ask what experiences we need to deliver for our business and how the technology can make that a reality.</p>



<p class="wp-block-paragraph">The framework challenges CIOs to answer that question first. Only after the experiences are clearly defined does the conversation move to the capabilities required to deliver it, the business activities that support those capabilities, the AI and data products that enable them, and finally the data foundation that makes everything possible.</p>



<p class="wp-block-paragraph">This shift in perspective ensures that, rather than allowing technology investments to search for business value, the business experience defines the technology required to deliver it. For CIOs, that’s more than a planning exercise. It’s a fundamentally different way of leading.</p>



<p class="wp-block-paragraph"><em>Over the coming months, the P4P community will be convening a series of small CxO roundtables to explore these issues and work more deeply with Afshean Talasaz’s 6×6 Data and AI Framework. CIOs and other enterprise leaders interested in participating are welcome to <a href="mailto:droberts@ouellette-online.com?subject=P4P:%206x6%20Framework%20Roundtable">reach out to me directly</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[3 cybersecurity issues that should keep every CEO awake at night]]></title>
<description><![CDATA[For years, I have been saying that cybersecurity is no longer a technology problem. It has become a business leadership challenge.



Yet, despite record levels of spending, ever-growing security teams, increasingly sophisticated technologies and a constant stream of new regulations, organization...]]></description>
<link>https://tsecurity.de/de/3693088/it-nachrichten/3-cybersecurity-issues-that-should-keep-every-ceo-awake-at-night/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693088/it-nachrichten/3-cybersecurity-issues-that-should-keep-every-ceo-awake-at-night/</guid>
<pubDate>Sat, 25 Jul 2026 06:16:50 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">For years, I have been saying that cybersecurity is no longer a technology problem. It has become a business leadership challenge.</p>



<p class="wp-block-paragraph">Yet, despite record levels of spending, ever-growing security teams, increasingly sophisticated technologies and a constant stream of new regulations, organizations continue to suffer major cyber incidents with alarming regularity. Every week seems to bring news of another ransomware attack, supply chain compromise or data breach affecting organizations that many would have assumed were well protected.</p>



<p class="wp-block-paragraph">The obvious conclusion is that we are asking the wrong questions.</p>



<p class="wp-block-paragraph">Too many executive teams remain preoccupied with the latest threat actor, the newest security product the CISO wants to buy or the latest vulnerability making headlines. Those issues matter, but they are not what should be keeping CEOs awake at night.</p>



<p class="wp-block-paragraph">In my view, there are three far more fundamental issues that deserve the attention of every chief executive.</p>



<h2 class="wp-block-heading">1. Corporate complexity, and the widening gap between business leadership and cybersecurity reality</h2>



<p class="wp-block-paragraph">Perhaps the biggest cybersecurity risk facing large organizations today is not technical at all.</p>



<p class="wp-block-paragraph">It is the growing disconnect between executive perception and operational reality.</p>



<p class="wp-block-paragraph">Many boards genuinely believe their organizations are reasonably well protected. They receive regular dashboards showing improving maturity scores, increasing compliance levels, falling vulnerability counts and reassuring traffic-light reports.</p>



<p class="wp-block-paragraph">Unfortunately, cyber attackers do not read dashboards.</p>



<p class="wp-block-paragraph">Behind those executive reports often lies an increasingly complex technology landscape, thousands of unmanaged digital assets, ageing infrastructure, rampant shadow IT, fragmented ownership, inconsistent governance and security teams struggling to keep pace with relentless business change.</p>



<p class="wp-block-paragraph">The problem is rarely a lack of effort.</p>



<p class="wp-block-paragraph">It is that corporate complexity has reached a level where traditional governance mechanisms are no longer capable of providing an accurate picture of organizational resilience.</p>



<p class="wp-block-paragraph">Executives believe they understand the level of cyber risk they face because they receive regular reports. Those reports often measure activity rather than resilience.</p>



<p class="wp-block-paragraph">Governance committees end up debating around another percentage point of phishing awareness or vulnerability remediation, while fundamental issues remain unaddressed in the background.</p>



<h2 class="wp-block-heading">2. Organizational inertia, and the need for executive structure to evolve faster</h2>



<p class="wp-block-paragraph">Cyber criminals continue to evolve rapidly. Large organizations generally do not.</p>



<p class="wp-block-paragraph">This is the second issue that should concern every CEO.</p>



<p class="wp-block-paragraph">Throughout my career, I have observed organizations repeatedly responding to new cyber threats by adding another technology platform, another monitoring capability, another compliance framework or another governance committee.</p>



<p class="wp-block-paragraph">Very rarely do they stop to redesign how cybersecurity operates.</p>



<p class="wp-block-paragraph">The result is what I described several years ago as the “<a href="https://www.amazon.com/Cybersecurity-Spiral-Failure-How-Break/dp/1637353057/">Cybersecurity Spiral of Failure</a>”.</p>



<ul class="wp-block-list">
<li>As complexity and regulation increase, organizations invest in more security products.</li>



<li>More products create more complexity.</li>



<li>More products and greater complexity generate more alerts.</li>



<li>More alerts require more analysts.</li>



<li>More analysts produce more reports.</li>



<li>More reports continue to build up executive confidence.</li>



<li>Meanwhile, the underlying structural weaknesses remain largely unchanged, technical debt piles up and costs escalate.</li>
</ul>



<p class="wp-block-paragraph">And when the inevitable breach eventually happens, reality reveals itself, but distrust also sets in between senior executives and security teams.</p>



<p class="wp-block-paragraph">This is not a funding problem. Nor is it a skills problem. It is fundamentally an operating model problem.</p>



<p class="wp-block-paragraph">Many organizations continue trying to solve twenty-first century challenges using governance, accountability, organizational and reporting structures designed twenty-five years ago.</p>



<p class="wp-block-paragraph">The cybersecurity function itself has evolved dramatically. Many executive structures have not.</p>



<p class="wp-block-paragraph">This organizational inertia extends beyond technology: It affects budgeting cycles, <a href="https://www.cio.com/article/4193990/reallocating-cybersecurity-capital-in-the-mythos-era.html">investment priorities</a>, procurement processes, accountability models and decision-making speed.</p>



<p class="wp-block-paragraph">Cyber attackers innovate every day. Organizational change often takes years.</p>



<p class="wp-block-paragraph">That imbalance should worry every CEO.</p>



<h2 class="wp-block-heading">3. Accelerating technological disruption, and how it challenges organizations in areas where they are intrinsically weak</h2>



<p class="wp-block-paragraph">The third issue is potentially the most significant over the coming decade.</p>



<ul class="wp-block-list">
<li>Artificial intelligence, autonomous agents and machine identities</li>



<li>Software supply chain complexity.</li>



<li>Quantum computing, and post-quantum cryptography</li>
</ul>



<p class="wp-block-paragraph">Each of these developments represents far more than another technical trend.</p>



<p class="wp-block-paragraph">Together, they fundamentally change the dynamics of cybersecurity.</p>



<p class="wp-block-paragraph">Artificial intelligence is transforming countless business processes. At the same time, it is also increasing both the speed and sophistication of cyber-attacks while simultaneously transforming defensive capabilities.</p>



<p class="wp-block-paragraph">Organizations have become increasingly dependent on software ecosystems that extend far beyond their own direct control. Engaging with the supply chain in ways that lead to a genuine appreciation of the risks involved has become a key challenge for most cybersecurity practices.</p>



<p class="wp-block-paragraph">Quantum computing may eventually invalidate much of today’s cryptographic algorithms, forcing organizations into one of the largest technology efforts since Y2K — but without the benefit of a fixed deadline and faced by a problem that is considerably more complex and hyperconnected IT estates that have little to do with those of the late 90s.</p>



<p class="wp-block-paragraph">None of these challenges can be solved overnight: They require clear governance, sustained investment over a few years and cross-functional organizational coordination.</p>



<p class="wp-block-paragraph">Most large organizations are weak on those three fronts: This is precisely why CEOs should be focusing on them now.</p>



<p class="wp-block-paragraph">Waiting until some of those risks become obvious will almost certainly be too late.</p>



<p class="wp-block-paragraph">Businesses naturally prioritise immediate commercial pressures. Cybersecurity often involves preparing for risks whose timing remains uncertain.</p>



<p class="wp-block-paragraph">But one of the greatest leadership failures I keep seeing remains the inability of organizations to act decisively on known unknowns.</p>



<p class="wp-block-paragraph">That tension explains why many organizations delay action until external events force them to respond. Unfortunately, cybersecurity rarely rewards late action.</p>



<h2 class="wp-block-heading">Leadership will determine who succeeds</h2>



<p class="wp-block-paragraph">Cybersecurity discussions still frequently focus on technology. I believe they should focus far more on leadership.</p>



<p class="wp-block-paragraph">Technology will continue evolving. Threat actors will continue adapting. Regulations will continue expanding. Those developments are inevitable.</p>



<p class="wp-block-paragraph">What remains within the control of every CEO is how their organization responds.</p>



<p class="wp-block-paragraph">Does cybersecurity remain an IT issue? Or is it recognised as an integral part of business resilience?</p>



<p class="wp-block-paragraph">How is cybersecurity accountability assigned at executive level? Or does it still rest largely with a CISO hidden in the organization?</p>



<p class="wp-block-paragraph">Does the board spend sufficient time discussing resilience? Or does cybersecurity appear only when approving budgets or reviewing incidents?</p>



<p class="wp-block-paragraph">These questions will increasingly determine organizational success.</p>



<p class="wp-block-paragraph">The companies that navigate the next decade successfully will not necessarily be those spending the most on cybersecurity. Nor will they be those deploying the latest security technologies first.</p>



<p class="wp-block-paragraph">They will be the organizations whose leadership recognises that cybersecurity has become a permanent business capability — embedded into governance, strategy, operational decision-making and organizational culture.</p>



<p class="wp-block-paragraph">That transformation cannot be delegated. It begins with the CEO.</p>



<p class="wp-block-paragraph">And perhaps that is the single biggest issue that should keep every chief executive awake at night: Not when the next cyber-attack will happen, but whether their organization is evolving quickly enough on those matters to meet a threat landscape that is changing much faster than the business itself.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[What is a business analyst? A key role for business-IT efficiency]]></title>
<description><![CDATA[What is a business analyst?



Business analysts (BAs) are responsible for bridging the gap between IT and the business using data analytics to assess processes, determine requirements, and deliver data-driven recommendations and reports to executives and stakeholders.



BAs engage with business...]]></description>
<link>https://tsecurity.de/de/3693087/it-nachrichten/what-is-a-business-analyst-a-key-role-for-business-it-efficiency/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693087/it-nachrichten/what-is-a-business-analyst-a-key-role-for-business-it-efficiency/</guid>
<pubDate>Sat, 25 Jul 2026 06:16:45 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<h2 class="wp-block-heading">What is a business analyst?</h2>



<p class="wp-block-paragraph">Business analysts (BAs) are responsible for bridging the gap between IT and the business using <a href="https://www.cio.com/article/191313/what-is-data-analytics-analyzing-and-managing-data-for-decisions.html">data analytics</a> to assess processes, determine requirements, and deliver data-driven recommendations and reports to executives and stakeholders.</p>



<p class="wp-block-paragraph">BAs engage with business leaders and users to understand how data-driven changes to process, products, services, software, and hardware can improve efficiencies and add value. They must articulate those ideas but also balance them against what’s technologically feasible and financially and functionally reasonable. Depending on the role, a business analyst might work with data sets to improve products, hardware, tools, software, services, or process.</p>



<p class="wp-block-paragraph">The International Institute of Business Analysis (IIBA), a nonprofit professional association, considers the business analyst an agent of change, and says that <a href="https://www.cio.com/article/191157/what-is-business-analytics-using-data-to-predict-business-outcomes.html">business analysis</a> is a disciplined approach to introduce and manage change to organizations, whether they’re for-profit businesses, governments, or nonprofits.</p>



<h2 class="wp-block-heading">Impact of AI on business analyst role</h2>



<p class="wp-block-paragraph">As AI becomes commonplace in the tech industry, business analysts are embracing it as a tool to automate repetitive work in the role. AI tools can be used for workflow and diagramming, process mapping, data analysis, and to automate meeting minutes and transcribe meetings where requirements are established, all designed to speed up the process of analyzing data, creating visuals, and transcribing and writing user stories and acceptance criteria.</p>



<p class="wp-block-paragraph">AI tools can also help identify patterns, insights, and unique data points that might go unnoticed by humans, and allow a faster time to generate insights for organizations.</p>



<p class="wp-block-paragraph">Of course, as with all AI tools, they still require humans to oversee prompts, scripting, and evaluate AI outputs to ensure they’re accurate and valid. While they can’t replace the work of BAs, AI can help them spend more time on thoughtful analysis and decision making, rather than mundane tasks such as gathering and summarizing data, and querying.</p>



<h2 class="wp-block-heading">Business analyst job description</h2>



<p class="wp-block-paragraph">BAs are responsible for creating new models that support business decisions by working closely with finance and IT teams to establish initiatives and strategies aimed at improving revenue and optimizing costs. They need a strong understanding of regulatory and reporting requirements, and have plenty of experience in forecasting, budgeting, and financial analysis combined with knowing KPIs, according to Robert Half Technology.</p>



<p class="wp-block-paragraph">According to Robert Half, a BA’s job description typically includes budgeting and forecasting, planning and monitoring, variance analysis, pricing, reporting, and creating a detailed business analysis in an effort to outline problems, opportunities, and solutions for a business. It also says BAs should be able to define business requirements and report them back to stakeholders.</p>



<p class="wp-block-paragraph">Since BAs are tasked with prioritizing technical and functional requirements, identifying what clients want, and determining what’s feasible to deliver, the role requires a deep understanding of systems, how they function, who’ll need to be involved, and the necessary steps to get everyone on board.  </p>



<p class="wp-block-paragraph">The role is constantly evolving, especially as companies rely more on data to advise business operations. Every company has different issues that a business analyst can address, whether it’s dealing with outdated legacy systems, changing technologies, broken processes, poor client or customer satisfaction, or large, siloed organizations.</p>



<h2 class="wp-block-heading">Business analyst skills</h2>



<p class="wp-block-paragraph">The BA position requires both hard and soft skills, as they need to know how to pull, analyze, and report data trends, share that information with others, and apply it to business goals and needs.</p>



<p class="wp-block-paragraph">Not all BAs need a background in IT if they have a general understanding of how systems, products, and tools work. Alternatively, some have strong IT backgrounds and less experience in business, but are interested in shifting away from IT into this hybrid role, which often acts as a communicator between the business and IT sides of the organization. So having extensive experience in either area can be beneficial for BAs.</p>



<p class="wp-block-paragraph"><a href="https://www.iiba.org/career-resources/new-to-business-analysis/" target="_blank" rel="noreferrer noopener">According to the IIBA</a>, some of the most important skills and experience for a business analyst are:</p>



<ul class="wp-block-list">
<li>Oral and written communication skills</li>



<li>Interpersonal, organizational, facilitation, and consultative skills</li>



<li>Analytical thinking and problem solving</li>



<li>Being detail-oriented and able to deliver a high level of accuracy</li>



<li>Knowledge of business structure</li>



<li>Stakeholder and cost-benefit analysis</li>



<li>Processes modeling</li>



<li>Understanding networks, databases, and other technologies</li>
</ul>



<p class="wp-block-paragraph">For a more in-depth look at what it takes to succeed as a business analyst, click <a href="https://www.cio.com/article/189108/essential-traits-of-elite-business-analysts.html">here</a>.</p>



<h2 class="wp-block-heading">Business analyst salary</h2>



<p class="wp-block-paragraph">The average annual salary for an IT business analyst is $80,692, according to <a href="https://www.payscale.com/research/US/Job=Business_Analyst%2C_IT/Salary" target="_blank" rel="noreferrer noopener">data from PayScale</a>. The highest paid BAs are in New York, where the average salary is 14% higher than the national average. Dallas, Texas, is second, with reported salaries 6.4% higher than the national average, closely followed by Washington, D.C., where salaries are 6.3% higher than the national average.</p>



<p class="wp-block-paragraph">Some skills are in higher demand than others, with the potential to boost salary. According to Payscale, these are associated with higher BA salaries. These skills, and the amount they can boost your salary, include:</p>



<figure class="wp-block-table"><div class="overflow-table-wrapper"><table class="has-fixed-layout"><tbody><tr><td>Skills</td><td>Salary Boost</td></tr><tr><td>ScrumMaster</td><td>44%</td></tr><tr><td>Microsoft Azure</td><td>30%</td></tr><tr><td>Supply Chain</td><td>27%</td></tr><tr><td>Oracle eBusiness Suite</td><td>25%</td></tr><tr><td>Master Data Management (SAP MDM)</td><td>24%</td></tr><tr><td>SAP Sales and Distribution (SAP SD)</td><td>24%</td></tr><tr><td>Product Support</td><td>18%</td></tr><tr><td>Microsoft Dynamics GP</td><td>18%</td></tr><tr><td>SAP Quality Management (SAP QM)</td><td>18%</td></tr><tr><td>Workday Software</td><td>15%</td></tr></tbody></table> </div></figure>



<p class="wp-block-paragraph">For tips on boosting your salary, click <a href="https://www.cio.com/article/189510/7-steps-business-analysts-can-take-to-earn-more.html">here</a>.</p>



<h2 class="wp-block-heading">Business analyst certifications</h2>



<p class="wp-block-paragraph">Although business analysis is a relatively new discipline in IT, a handful of organizations already offer certifications to help boost your résumé and prove your merit as an analyst. Organizations such as the IIBA, IQBBA, IREB, and PMI each offer their own tailored certifications for business analysis. These include:</p>



<ul class="wp-block-list">
<li>IIBA <a href="https://www.cio.com/article/189169/ecba-certification-an-entry-level-credential-for-business-analysts.html">Entry Certificate in Business Analysis (ECBA)</a></li>



<li>IIBA Certification of Competency in Business Analysis (CCBA)</li>



<li>IIBA Certified Business Analysis Professional (CBAP)</li>



<li>IIBA Agile Analysis Certification (AAC)</li>



<li>IQBBA Certified Foundation Level Business Analyst (CFLBA)</li>



<li>IREB Certified Professional for Requirements Engineering (CPRE)</li>



<li>PMI Professional in Business Analysis (PBA)</li>



<li>Certified Analytics Professional (CAP)</li>
</ul>



<p class="wp-block-paragraph">For more information about how to earn one of these certifications — and how much they cost — click <a href="https://www.cio.com/article/228834/6-business-analyst-certifications-to-advance-your-analytics-career.html">here</a>.</p>



<h2 class="wp-block-heading">Business analytics tools and software</h2>



<p class="wp-block-paragraph">BAs typically rely on software such as Microsoft’s Excel, PowerPoint, and Access, as well as SQL, Google Analytics, and Tableau. These tools help BAs collect and sort data, create graphs, write documents, and design visualizations to explain findings. You won’t necessarily need programming or database skills for a BA position, but if you already have these skills, they won’t hurt. The type of software and tools you’ll need to use, however, will depend on your job title and what the organization requires.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Should you use AI for a task? Here’s a simple way to decide | Bruce Schneier]]></title>
<description><![CDATA[Sometimes, what matters isn’t your output but what you put into the process. Think of it like work v the gymI teach public policy at the Harvard Kennedy School and the Munk School at the University of Toronto. And it will come as no surprise to you that my students regularly use AI to complete th...]]></description>
<link>https://tsecurity.de/de/3693080/it-nachrichten/should-you-use-ai-for-a-task-heres-a-simple-way-to-decide-bruce-schneier/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3693080/it-nachrichten/should-you-use-ai-for-a-task-heres-a-simple-way-to-decide-bruce-schneier/</guid>
<pubDate>Sat, 25 Jul 2026 06:11:43 +0200</pubDate>
<content:encoded><![CDATA[<p>Sometimes, what matters isn’t your output but what you put into the process. Think of it like work v the gym</p><p>I teach public policy at the Harvard Kennedy School and the Munk School at the University of Toronto. And it will come as no surprise to you that my students regularly <a href="https://www.insidehighered.com/news/faculty/learning-assessment/2026/07/08/brown-professor-suspects-most-his-class-used-ai-cheat">use AI</a> to complete their writing assignments. Doing so is a waste of their tuition money. But if their entire career is going to include AI writing assistants, why shouldn’t they embrace their future?</p><p>The best way I’ve found to explain the dilemma <a href="https://danielmiessler.com/blog/keep-the-robots-out-of-the-gym">comes from</a> the AI researcher Daniel Meissler: it’s the difference between work and the gym.</p> <a href="https://www.theguardian.com/commentisfree/2026/jul/24/should-you-use-ai">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[John C. Dvorak, an Early and Influential Technology Journalist, Dies At 80]]></title>
<description><![CDATA[Longtime Slashdot reader sandbagger shares the passing of John C. Dvorak, an early and influential technology journalist for PC Magazine. He was 80. Talking Biz News reports: Aric Mackey writes, "Widely recognized for his profound impact on the technology industry, John's career spanned decades o...]]></description>
<link>https://tsecurity.de/de/3692180/it-security-nachrichten/john-c-dvorak-an-early-and-influential-technology-journalist-dies-at-80/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3692180/it-security-nachrichten/john-c-dvorak-an-early-and-influential-technology-journalist-dies-at-80/</guid>
<pubDate>Fri, 24 Jul 2026 19:18:29 +0200</pubDate>
<content:encoded><![CDATA[Longtime Slashdot reader sandbagger shares the passing of John C. Dvorak, an early and influential technology journalist for PC Magazine. He was 80. Talking Biz News reports: Aric Mackey writes, "Widely recognized for his profound impact on the technology industry, John's career spanned decades of rapid digital evolution. He was perhaps best known for his influential, long-running column in PC Magazine and his groundbreaking work on the No Agenda podcast. Through his prolific writing, broadcasting, and distinct public voice, he helped shape critical conversations around both technology and political analysis, guiding generations of readers and listeners with his unique perspective.
 
"To those who knew him personally, John was far more than his public work. He was a beloved husband, devoted father, proud grandfather, and a loyal friend. Those closest to him will remember a man defined by his strong convictions, his exceptionally sharp wit, and an enduring curiosity about the world around him." Dvorak was also part of the startup team at CNET Networks, and appeared on MarketWatch TV.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=+John+C.+Dvorak%2C+an+Early+and+Influential+Technology+Journalist%2C+Dies+At+80%3A+https%3A%2F%2Fnews.slashdot.org%2Fstory%2F26%2F07%2F24%2F1650239%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fnews.slashdot.org%2Fstory%2F26%2F07%2F24%2F1650239%2Fjohn-c-dvorak-an-early-and-influential-technology-journalist-dies-at-80%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://news.slashdot.org/story/26/07/24/1650239/john-c-dvorak-an-early-and-influential-technology-journalist-dies-at-80?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Should you use AI for a task? Here’s a simple way to decide | Bruce Schneier]]></title>
<description><![CDATA[Sometimes, what matters isn’t your output but what you put into the process. Think of it like work v the gymI teach public policy at the Harvard Kennedy School and the Munk School at the University of Toronto. And it will come at no surprise to you that my students regularly use AI to complete th...]]></description>
<link>https://tsecurity.de/de/3691471/ai-nachrichten/should-you-use-ai-for-a-task-heres-a-simple-way-to-decide-bruce-schneier/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691471/ai-nachrichten/should-you-use-ai-for-a-task-heres-a-simple-way-to-decide-bruce-schneier/</guid>
<pubDate>Fri, 24 Jul 2026 14:06:15 +0200</pubDate>
<content:encoded><![CDATA[<p>Sometimes, what matters isn’t your output but what you put into the process. Think of it like work v the gym</p><p>I teach public policy at the Harvard Kennedy School and the Munk School at the University of Toronto. And it will come at no surprise to you that my students regularly <a href="https://www.insidehighered.com/news/faculty/learning-assessment/2026/07/08/brown-professor-suspects-most-his-class-used-ai-cheat">use AI</a> to complete their writing assignments. Doing so is a waste of their tuition money. But if their entire career is going to include AI writing assistants, why shouldn’t they embrace their future?</p><p>The best way I’ve found to explain the dilemma <a href="https://danielmiessler.com/blog/keep-the-robots-out-of-the-gym">comes from</a> the AI researcher Daniel Meissler: it’s the difference between work and the gym.</p> <a href="https://www.theguardian.com/commentisfree/2026/jul/24/should-you-use-ai">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[What is a business analyst? A key role for business-IT efficiency]]></title>
<description><![CDATA[What is a business analyst?



Business analysts (BAs) are responsible for bridging the gap between IT and the business using data analytics to assess processes, determine requirements, and deliver data-driven recommendations and reports to executives and stakeholders.



BAs engage with business...]]></description>
<link>https://tsecurity.de/de/3691228/it-security-nachrichten/what-is-a-business-analyst-a-key-role-for-business-it-efficiency/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691228/it-security-nachrichten/what-is-a-business-analyst-a-key-role-for-business-it-efficiency/</guid>
<pubDate>Fri, 24 Jul 2026 12:09:04 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<h2 class="wp-block-heading">What is a business analyst?</h2>



<p class="wp-block-paragraph">Business analysts (BAs) are responsible for bridging the gap between IT and the business using <a href="https://www.cio.com/article/191313/what-is-data-analytics-analyzing-and-managing-data-for-decisions.html">data analytics</a> to assess processes, determine requirements, and deliver data-driven recommendations and reports to executives and stakeholders.</p>



<p class="wp-block-paragraph">BAs engage with business leaders and users to understand how data-driven changes to process, products, services, software, and hardware can improve efficiencies and add value. They must articulate those ideas but also balance them against what’s technologically feasible and financially and functionally reasonable. Depending on the role, a business analyst might work with data sets to improve products, hardware, tools, software, services, or process.</p>



<p class="wp-block-paragraph">The International Institute of Business Analysis (IIBA), a nonprofit professional association, considers the business analyst an agent of change, and says that <a href="https://www.cio.com/article/191157/what-is-business-analytics-using-data-to-predict-business-outcomes.html">business analysis</a> is a disciplined approach to introduce and manage change to organizations, whether they’re for-profit businesses, governments, or nonprofits.</p>



<h2 class="wp-block-heading">Impact of AI on business analyst role</h2>



<p class="wp-block-paragraph">As AI becomes commonplace in the tech industry, business analysts are embracing it as a tool to automate repetitive work in the role. AI tools can be used for workflow and diagramming, process mapping, data analysis, and to automate meeting minutes and transcribe meetings where requirements are established, all designed to speed up the process of analyzing data, creating visuals, and transcribing and writing user stories and acceptance criteria.</p>



<p class="wp-block-paragraph">AI tools can also help identify patterns, insights, and unique data points that might go unnoticed by humans, and allow a faster time to generate insights for organizations.</p>



<p class="wp-block-paragraph">Of course, as with all AI tools, they still require humans to oversee prompts, scripting, and evaluate AI outputs to ensure they’re accurate and valid. While they can’t replace the work of BAs, AI can help them spend more time on thoughtful analysis and decision making, rather than mundane tasks such as gathering and summarizing data, and querying.</p>



<h2 class="wp-block-heading">Business analyst job description</h2>



<p class="wp-block-paragraph">BAs are responsible for creating new models that support business decisions by working closely with finance and IT teams to establish initiatives and strategies aimed at improving revenue and optimizing costs. They need a strong understanding of regulatory and reporting requirements, and have plenty of experience in forecasting, budgeting, and financial analysis combined with knowing KPIs, according to Robert Half Technology.</p>



<p class="wp-block-paragraph">According to Robert Half, a BA’s job description typically includes budgeting and forecasting, planning and monitoring, variance analysis, pricing, reporting, and creating a detailed business analysis in an effort to outline problems, opportunities, and solutions for a business. It also says BAs should be able to define business requirements and report them back to stakeholders.</p>



<p class="wp-block-paragraph">Since BAs are tasked with prioritizing technical and functional requirements, identifying what clients want, and determining what’s feasible to deliver, the role requires a deep understanding of systems, how they function, who’ll need to be involved, and the necessary steps to get everyone on board.  </p>



<p class="wp-block-paragraph">The role is constantly evolving, especially as companies rely more on data to advise business operations. Every company has different issues that a business analyst can address, whether it’s dealing with outdated legacy systems, changing technologies, broken processes, poor client or customer satisfaction, or large, siloed organizations.</p>



<h2 class="wp-block-heading">Business analyst skills</h2>



<p class="wp-block-paragraph">The BA position requires both hard and soft skills, as they need to know how to pull, analyze, and report data trends, share that information with others, and apply it to business goals and needs.</p>



<p class="wp-block-paragraph">Not all BAs need a background in IT if they have a general understanding of how systems, products, and tools work. Alternatively, some have strong IT backgrounds and less experience in business, but are interested in shifting away from IT into this hybrid role, which often acts as a communicator between the business and IT sides of the organization. So having extensive experience in either area can be beneficial for BAs.</p>



<p class="wp-block-paragraph"><a href="https://www.iiba.org/career-resources/new-to-business-analysis/" target="_blank" rel="noreferrer noopener">According to the IIBA</a>, some of the most important skills and experience for a business analyst are:</p>



<ul class="wp-block-list">
<li>Oral and written communication skills</li>



<li>Interpersonal, organizational, facilitation, and consultative skills</li>



<li>Analytical thinking and problem solving</li>



<li>Being detail-oriented and able to deliver a high level of accuracy</li>



<li>Knowledge of business structure</li>



<li>Stakeholder and cost-benefit analysis</li>



<li>Processes modeling</li>



<li>Understanding networks, databases, and other technologies</li>
</ul>



<p class="wp-block-paragraph">For a more in-depth look at what it takes to succeed as a business analyst, click <a href="https://www.cio.com/article/189108/essential-traits-of-elite-business-analysts.html">here</a>.</p>



<h2 class="wp-block-heading">Business analyst salary</h2>



<p class="wp-block-paragraph">The average annual salary for an IT business analyst is $80,692, according to <a href="https://www.payscale.com/research/US/Job=Business_Analyst%2C_IT/Salary" target="_blank" rel="noreferrer noopener">data from PayScale</a>. The highest paid BAs are in New York, where the average salary is 14% higher than the national average. Dallas, Texas, is second, with reported salaries 6.4% higher than the national average, closely followed by Washington, D.C., where salaries are 6.3% higher than the national average.</p>



<p class="wp-block-paragraph">Some skills are in higher demand than others, with the potential to boost salary. According to Payscale, these are associated with higher BA salaries. These skills, and the amount they can boost your salary, include:</p>



<figure class="wp-block-table"><div class="overflow-table-wrapper"><table class="has-fixed-layout"><tbody><tr><td>Skills</td><td>Salary Boost</td></tr><tr><td>ScrumMaster</td><td>44%</td></tr><tr><td>Microsoft Azure</td><td>30%</td></tr><tr><td>Supply Chain</td><td>27%</td></tr><tr><td>Oracle eBusiness Suite</td><td>25%</td></tr><tr><td>Master Data Management (SAP MDM)</td><td>24%</td></tr><tr><td>SAP Sales and Distribution (SAP SD)</td><td>24%</td></tr><tr><td>Product Support</td><td>18%</td></tr><tr><td>Microsoft Dynamics GP</td><td>18%</td></tr><tr><td>SAP Quality Management (SAP QM)</td><td>18%</td></tr><tr><td>Workday Software</td><td>15%</td></tr></tbody></table> </div></figure>



<p class="wp-block-paragraph">For tips on boosting your salary, click <a href="https://www.cio.com/article/189510/7-steps-business-analysts-can-take-to-earn-more.html">here</a>.</p>



<h2 class="wp-block-heading">Business analyst certifications</h2>



<p class="wp-block-paragraph">Although business analysis is a relatively new discipline in IT, a handful of organizations already offer certifications to help boost your résumé and prove your merit as an analyst. Organizations such as the IIBA, IQBBA, IREB, and PMI each offer their own tailored certifications for business analysis. These include:</p>



<ul class="wp-block-list">
<li>IIBA <a href="https://www.cio.com/article/189169/ecba-certification-an-entry-level-credential-for-business-analysts.html">Entry Certificate in Business Analysis (ECBA)</a></li>



<li>IIBA Certification of Competency in Business Analysis (CCBA)</li>



<li>IIBA Certified Business Analysis Professional (CBAP)</li>



<li>IIBA Agile Analysis Certification (AAC)</li>



<li>IQBBA Certified Foundation Level Business Analyst (CFLBA)</li>



<li>IREB Certified Professional for Requirements Engineering (CPRE)</li>



<li>PMI Professional in Business Analysis (PBA)</li>



<li>Certified Analytics Professional (CAP)</li>
</ul>



<p class="wp-block-paragraph">For more information about how to earn one of these certifications — and how much they cost — click <a href="https://www.cio.com/article/228834/6-business-analyst-certifications-to-advance-your-analytics-career.html">here</a>.</p>



<h2 class="wp-block-heading">Business analytics tools and software</h2>



<p class="wp-block-paragraph">BAs typically rely on software such as Microsoft’s Excel, PowerPoint, and Access, as well as SQL, Google Analytics, and Tableau. These tools help BAs collect and sort data, create graphs, write documents, and design visualizations to explain findings. You won’t necessarily need programming or database skills for a BA position, but if you already have these skills, they won’t hurt. The type of software and tools you’ll need to use, however, will depend on your job title and what the organization requires.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[3 cybersecurity issues that should keep every CEO awake at night]]></title>
<description><![CDATA[For years, I have been saying that cybersecurity is no longer a technology problem. It has become a business leadership challenge.



Yet, despite record levels of spending, ever-growing security teams, increasingly sophisticated technologies and a constant stream of new regulations, organization...]]></description>
<link>https://tsecurity.de/de/3691226/it-security-nachrichten/3-cybersecurity-issues-that-should-keep-every-ceo-awake-at-night/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3691226/it-security-nachrichten/3-cybersecurity-issues-that-should-keep-every-ceo-awake-at-night/</guid>
<pubDate>Fri, 24 Jul 2026 12:09:02 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">For years, I have been saying that cybersecurity is no longer a technology problem. It has become a business leadership challenge.</p>



<p class="wp-block-paragraph">Yet, despite record levels of spending, ever-growing security teams, increasingly sophisticated technologies and a constant stream of new regulations, organizations continue to suffer major cyber incidents with alarming regularity. Every week seems to bring news of another ransomware attack, supply chain compromise or data breach affecting organizations that many would have assumed were well protected.</p>



<p class="wp-block-paragraph">The obvious conclusion is that we are asking the wrong questions.</p>



<p class="wp-block-paragraph">Too many executive teams remain preoccupied with the latest threat actor, the newest security product the CISO wants to buy or the latest vulnerability making headlines. Those issues matter, but they are not what should be keeping CEOs awake at night.</p>



<p class="wp-block-paragraph">In my view, there are three far more fundamental issues that deserve the attention of every chief executive.</p>



<h2 class="wp-block-heading">1. Corporate complexity, and the widening gap between business leadership and cybersecurity reality</h2>



<p class="wp-block-paragraph">Perhaps the biggest cybersecurity risk facing large organizations today is not technical at all.</p>



<p class="wp-block-paragraph">It is the growing disconnect between executive perception and operational reality.</p>



<p class="wp-block-paragraph">Many boards genuinely believe their organizations are reasonably well protected. They receive regular dashboards showing improving maturity scores, increasing compliance levels, falling vulnerability counts and reassuring traffic-light reports.</p>



<p class="wp-block-paragraph">Unfortunately, cyber attackers do not read dashboards.</p>



<p class="wp-block-paragraph">Behind those executive reports often lies an increasingly complex technology landscape, thousands of unmanaged digital assets, ageing infrastructure, rampant shadow IT, fragmented ownership, inconsistent governance and security teams struggling to keep pace with relentless business change.</p>



<p class="wp-block-paragraph">The problem is rarely a lack of effort.</p>



<p class="wp-block-paragraph">It is that corporate complexity has reached a level where traditional governance mechanisms are no longer capable of providing an accurate picture of organizational resilience.</p>



<p class="wp-block-paragraph">Executives believe they understand the level of cyber risk they face because they receive regular reports. Those reports often measure activity rather than resilience.</p>



<p class="wp-block-paragraph">Governance committees end up debating around another percentage point of phishing awareness or vulnerability remediation, while fundamental issues remain unaddressed in the background.</p>



<h2 class="wp-block-heading">2. Organizational inertia, and the need for executive structure to evolve faster</h2>



<p class="wp-block-paragraph">Cyber criminals continue to evolve rapidly. Large organizations generally do not.</p>



<p class="wp-block-paragraph">This is the second issue that should concern every CEO.</p>



<p class="wp-block-paragraph">Throughout my career, I have observed organizations repeatedly responding to new cyber threats by adding another technology platform, another monitoring capability, another compliance framework or another governance committee.</p>



<p class="wp-block-paragraph">Very rarely do they stop to redesign how cybersecurity operates.</p>



<p class="wp-block-paragraph">The result is what I described several years ago as the “<a href="https://www.amazon.com/Cybersecurity-Spiral-Failure-How-Break/dp/1637353057/">Cybersecurity Spiral of Failure</a>”.</p>



<ul class="wp-block-list">
<li>As complexity and regulation increase, organizations invest in more security products.</li>



<li>More products create more complexity.</li>



<li>More products and greater complexity generate more alerts.</li>



<li>More alerts require more analysts.</li>



<li>More analysts produce more reports.</li>



<li>More reports continue to build up executive confidence.</li>



<li>Meanwhile, the underlying structural weaknesses remain largely unchanged, technical debt piles up and costs escalate.</li>
</ul>



<p class="wp-block-paragraph">And when the inevitable breach eventually happens, reality reveals itself, but distrust also sets in between senior executives and security teams.</p>



<p class="wp-block-paragraph">This is not a funding problem. Nor is it a skills problem. It is fundamentally an operating model problem.</p>



<p class="wp-block-paragraph">Many organizations continue trying to solve twenty-first century challenges using governance, accountability, organizational and reporting structures designed twenty-five years ago.</p>



<p class="wp-block-paragraph">The cybersecurity function itself has evolved dramatically. Many executive structures have not.</p>



<p class="wp-block-paragraph">This organizational inertia extends beyond technology: It affects budgeting cycles, <a href="https://www.cio.com/article/4193990/reallocating-cybersecurity-capital-in-the-mythos-era.html">investment priorities</a>, procurement processes, accountability models and decision-making speed.</p>



<p class="wp-block-paragraph">Cyber attackers innovate every day. Organizational change often takes years.</p>



<p class="wp-block-paragraph">That imbalance should worry every CEO.</p>



<h2 class="wp-block-heading">3. Accelerating technological disruption, and how it challenges organizations in areas where they are intrinsically weak</h2>



<p class="wp-block-paragraph">The third issue is potentially the most significant over the coming decade.</p>



<ul class="wp-block-list">
<li>Artificial intelligence, autonomous agents and machine identities</li>



<li>Software supply chain complexity.</li>



<li>Quantum computing, and post-quantum cryptography</li>
</ul>



<p class="wp-block-paragraph">Each of these developments represents far more than another technical trend.</p>



<p class="wp-block-paragraph">Together, they fundamentally change the dynamics of cybersecurity.</p>



<p class="wp-block-paragraph">Artificial intelligence is transforming countless business processes. At the same time, it is also increasing both the speed and sophistication of cyber-attacks while simultaneously transforming defensive capabilities.</p>



<p class="wp-block-paragraph">Organizations have become increasingly dependent on software ecosystems that extend far beyond their own direct control. Engaging with the supply chain in ways that lead to a genuine appreciation of the risks involved has become a key challenge for most cybersecurity practices.</p>



<p class="wp-block-paragraph">Quantum computing may eventually invalidate much of today’s cryptographic algorithms, forcing organizations into one of the largest technology efforts since Y2K — but without the benefit of a fixed deadline and faced by a problem that is considerably more complex and hyperconnected IT estates that have little to do with those of the late 90s.</p>



<p class="wp-block-paragraph">None of these challenges can be solved overnight: They require clear governance, sustained investment over a few years and cross-functional organizational coordination.</p>



<p class="wp-block-paragraph">Most large organizations are weak on those three fronts: This is precisely why CEOs should be focusing on them now.</p>



<p class="wp-block-paragraph">Waiting until some of those risks become obvious will almost certainly be too late.</p>



<p class="wp-block-paragraph">Businesses naturally prioritise immediate commercial pressures. Cybersecurity often involves preparing for risks whose timing remains uncertain.</p>



<p class="wp-block-paragraph">But one of the greatest leadership failures I keep seeing remains the inability of organizations to act decisively on known unknowns.</p>



<p class="wp-block-paragraph">That tension explains why many organizations delay action until external events force them to respond. Unfortunately, cybersecurity rarely rewards late action.</p>



<h2 class="wp-block-heading">Leadership will determine who succeeds</h2>



<p class="wp-block-paragraph">Cybersecurity discussions still frequently focus on technology. I believe they should focus far more on leadership.</p>



<p class="wp-block-paragraph">Technology will continue evolving. Threat actors will continue adapting. Regulations will continue expanding. Those developments are inevitable.</p>



<p class="wp-block-paragraph">What remains within the control of every CEO is how their organization responds.</p>



<p class="wp-block-paragraph">Does cybersecurity remain an IT issue? Or is it recognised as an integral part of business resilience?</p>



<p class="wp-block-paragraph">How is cybersecurity accountability assigned at executive level? Or does it still rest largely with a CISO hidden in the organization?</p>



<p class="wp-block-paragraph">Does the board spend sufficient time discussing resilience? Or does cybersecurity appear only when approving budgets or reviewing incidents?</p>



<p class="wp-block-paragraph">These questions will increasingly determine organizational success.</p>



<p class="wp-block-paragraph">The companies that navigate the next decade successfully will not necessarily be those spending the most on cybersecurity. Nor will they be those deploying the latest security technologies first.</p>



<p class="wp-block-paragraph">They will be the organizations whose leadership recognises that cybersecurity has become a permanent business capability — embedded into governance, strategy, operational decision-making and organizational culture.</p>



<p class="wp-block-paragraph">That transformation cannot be delegated. It begins with the CEO.</p>



<p class="wp-block-paragraph">And perhaps that is the single biggest issue that should keep every chief executive awake at night: Not when the next cyber-attack will happen, but whether their organization is evolving quickly enough on those matters to meet a threat landscape that is changing much faster than the business itself.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI success requires a full-stack CIO]]></title>
<description><![CDATA[Every CIO I speak with today is wrestling with some version of the same question: How do we move faster with AI and deliver on our commitments?



It’s an understandable concern. Boards and CEOs are asking about AI. Business leaders are experimenting with use cases. Employees are discovering tool...]]></description>
<link>https://tsecurity.de/de/3688546/it-nachrichten/ai-success-requires-a-full-stack-cio/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3688546/it-nachrichten/ai-success-requires-a-full-stack-cio/</guid>
<pubDate>Thu, 23 Jul 2026 11:43:10 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Every CIO I speak with today is wrestling with some version of the same question: How do we move faster with AI and deliver on our commitments?</p>



<p class="wp-block-paragraph">It’s an understandable concern. <a href="https://www.cio.com/article/4171959/ceos-top-priorities-for-it-leaders-today-2.html">Boards and CEOs are asking about AI</a>. Business leaders are experimenting with use cases. Employees are discovering tools daily, while technology vendors promise unprecedented gains in productivity, innovation, and competitive advantage.</p>



<p class="wp-block-paragraph">After hundreds of conversations with technology executives over the past year, I’ve become convinced that speed isn’t the real issue. The organizations pulling away from the pack aren’t necessarily adopting AI faster than everyone else. They’re executing more effectively — a subtle distinction that represents one of the defining leadership challenges of the AI era.</p>



<p class="wp-block-paragraph">Technology has never been the hardest part of transformation. People, priorities, culture, and operating models are the biggest challenges. The ability to translate bold boardroom aspirations into thousands of thoughtful decisions made every day by architects, engineers, product managers, analysts, and business leaders is where competitive advantage is created. AI may be accelerating the pace of change, but it hasn’t changed that fundamental truth.</p>



<p class="wp-block-paragraph">I’ve met plenty of executives who are exceptional in the boardroom. They know how to frame a vision, <a href="https://www.cio.com/article/272180/relationship-building-networking-how-to-wow-your-board-of-directors.html">influence a board</a>, and build confidence among investors and business leaders. I’ve also met remarkable technologists who instinctively understand the architectural decisions, engineering tradeoffs, and implementation details that determine how great ideas become reality. Modern CIOs, however, must move comfortably between both worlds. Afshean Talasaz is one who stands out among this rare breed.</p>



<p class="wp-block-paragraph">Long before becoming CIO of Colonial Pipeline, Talasaz built his career from the ground up as a business professional, data scientist, and technologist. He has designed enterprise platforms, built AI capabilities, led technology organizations, and partnered closely with executive leadership teams on business transformation. Today, as an executive in residence with our Practitioners for Practitioners (P4P) community, he helps CIOs and business leaders navigate one of the most significant technology shifts of our generation.</p>



<p class="wp-block-paragraph">While Talasaz brings deep knowledge of data and AI to the table, his greatest strength is his ability to create strategy and connect it with execution. He can spend the morning discussing enterprise reinvention with the board and the afternoon debating architectural principles with the teams responsible for bringing that vision to life.</p>



<p class="wp-block-paragraph">That versatility gives Talasaz a unique lens on how CIOs <a href="https://www.cio.com/article/4178006/state-of-the-cio-2026-cios-set-the-course-for-ai-roi.html">can deliver value with AI</a>.</p>



<p class="wp-block-paragraph">Software companies have a term for engineers who understand every layer of the technology stack: full-stack developers. Listen to Talasaz and it becomes evident that the AI era requires something similar from technology leaders: a full-stack CIO.</p>



<h2 class="wp-block-heading">The full-stack CIO: Leading with clarity</h2>



<p class="wp-block-paragraph">A full-stack CIO understands how every layer of the enterprise influences the next. They recognize that every strategic priority becomes a portfolio investment, every investment shapes an operating model, every operating model influences architecture, every architecture choice informs product decisions, every product decision shapes engineering priorities.</p>



<p class="wp-block-paragraph">The best CIOs understand both ends of that journey. The extraordinary ones understand everything in between.</p>



<p class="wp-block-paragraph">And those who execute best lead with clarity, Talasaz says.</p>



<p class="wp-block-paragraph">“Everyone, from executives to middle managers to the people writing code, should be able to explain what we’re trying to achieve,” he emphasizes. “Clarity isn’t that we’ve handed out the PowerPoint. It’s that people genuinely understand where we’re going and can articulate it in their own language.”</p>



<p class="wp-block-paragraph">One of the unintended consequences of the AI boom is that organizations are beginning to confuse activity with alignment. They have AI councils, AI governance committees, AI innovation labs, AI centers of excellence, AI pilots, and AI roadmaps. Yet if you stop ten people in the hallway and ask a deceptively simple question, What business problem are we actually trying to solve? you’ll often hear ten different answers.</p>



<p class="wp-block-paragraph">As a result, architects optimize for one objective while product teams optimize for another. Business units pursue opportunities that seem perfectly reasonable from their perspective. Engineers make thoughtful technical decisions based on the information available to them. Individually, none of those decisions are necessarily wrong. Collectively, however, they create organizational drift. AI doesn’t create that problem. It simply accelerates the consequences.</p>



<p class="wp-block-paragraph">And while AI can be a force multiplier for the positive when every decision is guided by a shared understanding of where the organization is headed, it can also be a force multiplier for the negative, resulting in an organization simply moving faster in different directions.</p>



<p class="wp-block-paragraph">“When we have the fundamentals right, the tech infrastructure, the operating models, the nuances of how our business actually runs, we get the impacts of AI in a positive way,” Talasaz says. “When we don’t have those in place, AI can amplify the gaps or mute the benefits.”</p>



<p class="wp-block-paragraph">At a time when so much of the conversation surrounding AI is focused on algorithms, agents, and automation, it’s an important reminder that organizations don’t execute strategy; people do.</p>



<h2 class="wp-block-heading">Reducing organizational friction</h2>



<p class="wp-block-paragraph">Most executives are familiar with the concept of VUCA that characterizes today’s business environment. But Talasaz stresses the importance of turning this concern inward: “If the world outside our organizations is becoming more volatile, uncertain, complex, and ambiguous, what are we, as leaders, doing to the inside of our organizations?”</p>



<p class="wp-block-paragraph">Leaders spend enormous amounts of time helping their organizations respond to external disruption but comparatively little time asking whether they are inadvertently re-creating those same conditions internally in response to those external needs. Are we reducing uncertainty or introducing more of it? Are we simplifying work or adding unnecessary complexity? Are we helping people focus on what matters most, or asking them to navigate competing priorities and shifting expectations?</p>



<p class="wp-block-paragraph">Talasaz refers to this phenomenon as double VUCA — something I’ve witnessed repeatedly while working with CIOs over the past decade. Organizations often assume they’re struggling because of technology limitations when the real constraint is organizational friction. Teams wait for decisions. Priorities shift faster than roadmaps. Governance grows heavier. New committees are formed to solve problems created by existing committees. Everyone is working harder, yet the organization somehow feels slower.</p>



<p class="wp-block-paragraph">AI amplifies both outcomes. Organizations with clarity become dramatically more effective because AI accelerates good decisions. Organizations without clarity simply accelerate confusion.</p>



<h1 class="wp-block-heading">Operating model as strategy enabler</h1>



<p class="wp-block-paragraph">AI governance is one way to achieve greater clarity, but as Talasaz says, governance shouldn’t primarily exist inside policy manuals that few people read.</p>



<p class="wp-block-paragraph">Instead, AI governance should be embedded in the daily rhythms of the organization, shaping how teams collaborate, how decisions are made, how products move from ideas into production, and how innovation happens safely without requiring constant escalation. In other words, it’s all about your operating model.</p>



<p class="wp-block-paragraph">“If you had to pick one thing that isn’t technology, your operating model is the most important element for executing data and AI at scale,” he says.</p>



<p class="wp-block-paragraph">The best operating models create enough clarity that capable people can make thousands of decisions independently and confidently, without having to wait for permission. By embedding good governance into the way it works, the organization becomes faster.</p>



<p class="wp-block-paragraph">This advice echoes something I’ve heard repeatedly from some of the world’s most respected CIOs: High-performing organizations aren’t built on tighter control; they’re built on greater trust, supported by clear principles, shared expectations, and operating models that enable responsible decision-making at every level of the enterprise.</p>



<p class="wp-block-paragraph">Talasaz points out that technology leaders tend to speak in terms of <em>transformation</em>. He suggests CIOs consider a different word: <em>reinvention.</em></p>



<p class="wp-block-paragraph">As he explains, transformation implies replacing what exists today with something new. Reinvention starts with a more clear-eyed and practical premise: Some things absolutely must change; others represent years, sometimes decades, of accumulated expertise, customer trust, operational discipline, and competitive advantage.</p>



<p class="wp-block-paragraph">Reinvention is about building on those strengths while also creating new ways to deliver value. The leaders making the greatest progress in their AI journeys seem to recognize that it’s less about abandoning the past than thoughtfully preparing the organization for the future.</p>



<h2 class="wp-block-heading">Closing the gap between strategy and execution</h2>



<p class="wp-block-paragraph">Full-stack CIOs must be able to map out the various layers of execution and planning that need to be done at every level of the organization to be successful. To help with this, Talasaz has developed a data and AI framework that draws on his own experiences “from the keyboard to the boardroom.”</p>



<p class="wp-block-paragraph">As Talasaz sees it, too many organizations have been doing good work in isolation. “They’re doing a lot of the right things,” he says. “They’re just not connected.”</p>



<p class="wp-block-paragraph">Boards may be discussing growth while business leaders redesign customer experiences. Product teams may be prioritizing new capabilities while architects modernize platforms. Data teams may be improving quality while engineers focus on delivery. Every group makes meaningful progress within its own domain, yet somewhere between strategy and execution, the connective tissue begins to disappear. Talasaz’s framework brings those connecting points to the forefront.</p>



<p class="wp-block-paragraph">Crucially, the framework doesn’t begin with technology or AI or even with data. It begins with the experiences the organization hopes to create for its customers, employees, or partners. Many AI initiatives start with the question, “What can this technology do?” And indeed, we need to be inspired by the possibilities and challenged to think differently by what the technology can do. But, Talasaz emphasizes, we also need to ask what experiences we need to deliver for our business and how the technology can make that a reality.</p>



<p class="wp-block-paragraph">The framework challenges CIOs to answer that question first. Only after the experiences are clearly defined does the conversation move to the capabilities required to deliver it, the business activities that support those capabilities, the AI and data products that enable them, and finally the data foundation that makes everything possible.</p>



<p class="wp-block-paragraph">This shift in perspective ensures that, rather than allowing technology investments to search for business value, the business experience defines the technology required to deliver it. For CIOs, that’s more than a planning exercise. It’s a fundamentally different way of leading.</p>



<p class="wp-block-paragraph"><em>Over the coming months, the P4P community will be convening a series of small CxO roundtables to explore these issues and work more deeply with Afshean Talasaz’s 6×6 Data and AI Framework. CIOs and other enterprise leaders interested in participating are welcome to <a href="mailto:droberts@ouellette-online.com?subject=P4P:%206x6%20Framework%20Roundtable">reach out to me directly</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[How AI certification can help employees to climb the career ladder]]></title>
<description><![CDATA[Research shows that validating AI knowledge and skills can help to boost job mobility and salaries]]></description>
<link>https://tsecurity.de/de/3685493/it-security-nachrichten/how-ai-certification-can-help-employees-to-climb-the-career-ladder/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3685493/it-security-nachrichten/how-ai-certification-can-help-employees-to-climb-the-career-ladder/</guid>
<pubDate>Wed, 22 Jul 2026 09:16:34 +0200</pubDate>
<content:encoded><![CDATA[Research shows that validating AI knowledge and skills can help to boost job mobility and salaries]]></content:encoded>
</item>
<item>
<title><![CDATA[CW@60: How tech escaped the machine room - and why it never really did]]></title>
<description><![CDATA[Julian David, CEO of the influential tech trade association TechUK, looks at what’s changed in tech across his career – and perhaps more importantly, what hasn’t]]></description>
<link>https://tsecurity.de/de/3685484/it-nachrichten/cw60-how-tech-escaped-the-machine-room-and-why-it-never-really-did/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3685484/it-nachrichten/cw60-how-tech-escaped-the-machine-room-and-why-it-never-really-did/</guid>
<pubDate>Wed, 22 Jul 2026 09:06:18 +0200</pubDate>
<content:encoded><![CDATA[Julian David, CEO of the influential tech trade association TechUK, looks at what’s changed in tech across his career – and perhaps more importantly, what hasn’t]]></content:encoded>
</item>
<item>
<title><![CDATA[HireQuotient Extends AI Recruiting Capabilities to Paylocity Customers in Frontline Industries]]></title>
<description><![CDATA[HireQuotient, an AI-native recruiting platform, today announced its integration with Paylocity (Nasdaq: PCTY), bringing AI-powered candidate sourcing and screening capabilities to Paylocity customers in manufacturing, building services, construction, healthcare and insurance, which are industries...]]></description>
<link>https://tsecurity.de/de/3684468/it-nachrichten/hirequotient-extends-ai-recruiting-capabilities-to-paylocity-customers-in-frontline-industries/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3684468/it-nachrichten/hirequotient-extends-ai-recruiting-capabilities-to-paylocity-customers-in-frontline-industries/</guid>
<pubDate>Tue, 21 Jul 2026 19:34:25 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">HireQuotient, an AI-native recruiting platform, today announced its integration with Paylocity (Nasdaq: PCTY), bringing AI-powered candidate sourcing and screening capabilities to Paylocity customers in manufacturing, building services, construction, healthcare and insurance, which are industries where deskless and frontline hiring has historically been underserved by AI recruiting tools.</p>



<p class="wp-block-paragraph">Employers in these sectors who already use HireQuotient are seeing the impact firsthand.</p>



<p class="wp-block-paragraph">“By simply putting in vetting criteria, I was able to get a very specific talent pool within a day,” said Niki Simoneaux, COO of Arc Health. “With EasySource, we can reach a huge database or filter for specific licenses and areas.”</p>



<p class="wp-block-paragraph">“With technology and the ability to work remotely, we’re able to recruit nationwide outside of our footprint. This expands the pool of prospective candidates and gives us access to candidates who might not have ever applied for a position on our website’s career page,” said Jeff McGee, vice president at W3 Insurance.</p>



<p class="wp-block-paragraph">“HireQuotient’s AI-native product helped my team at Alliance Building Services to cut down time to close position by more than 60%, and their team works very closely with the client to ensure adoption at scale,” said Willow Marcon, senior vice president at Alliance Building Services.</p>



<p class="wp-block-paragraph">Recruiters in manufacturing, building services, construction, healthcare and insurance often spend more than two-thirds of their time on manual work and using over 10 platforms to just close a hire: sourcing a wide range of profiles, skimming resumes, finding contact information, reaching out and doing hundreds of calls and constant follow-ups. That fragmented process leads to recruiter burnout and leaves gaps in candidate data. Because most HR platforms don’t offer built-in AI native agents that work in tandem to do all it takes to close the hire, employers in these industries have faced hiring delays and platform churn.</p>



<p class="wp-block-paragraph">The partnership addresses this gap by integrating HireQuotient’s EasySource platform directly into the Paylocity ecosystem. Instead of relying on rigid keyword searches, EasySource identifies strong talent pools, screens for role-specific credentials and licenses and personalizes outreach by phone and email. For mid-market companies with 500 to 1,000 employees, that translates to a 70% faster time-to-hire and an estimated $100,000 in annual savings.</p>



<p class="wp-block-paragraph">The integration also closes the feedback loop for employers. By feeding post-hire data back into the recruiting system, EasySource learns from successful hires to build smarter talent pools over time, while keeping recruiters engaged longer by freeing them to focus on the human side of hiring.</p>



<p class="wp-block-paragraph">Gokul Rajaram, board member at Coinbase and former board member of The Trade Desk (Nasdaq: TTD), and also known as the godfather of Google AdSense, said, “Smarthveer is one of those rare founders who picks an unglamorous, deeply underserved market and refuses to leave until it’s fixed. Frontline hiring is exactly that market. Being named to Paylocity’s elite partner network is a testament to his relentlessness and to the team he’s built. Excited for what’s ahead.”</p>



<p class="wp-block-paragraph">“Paylocity maintains an elite partner network, so being named one of them is a testament to the strength of our product,” said Smarthveer Sidana, founder and CEO of HireQuotient. “By keeping that recruiting activity inside the Paylocity ecosystem, we’re helping them close a critical gap for their employers, capture revenue that previously sat outside their platform, and prevent the client churn that comes with a fragmented hiring process.”</p>



<p class="wp-block-paragraph">Jim Moffatt, former global CEO of Deloitte Consulting and board partner at Greycroft VC, said, </p>



<p class="wp-block-paragraph">“This is a big milestone for Smarthveer and his team. I congratulate them on this big win. Paylocity’s large client base acts as a strong distribution, and HireQuotient’s EasySource acts as a strong product to cater to the needs of Paylocity’s clients. Paylocity is known for its highly selective approach, and I’m glad to see that after months of evaluation and extensive due diligence, they’re going live with HireQuotient’s EasySource. I feel confident in the value this partnership will create for frontline industries. I remember when Smarthveer spoke to me about it in December, and it felt very ambitious. I’m glad to see it turn to reality.”</p>



<p class="wp-block-paragraph">For employers with a traditionally deskless workforce in industries where AI adoption has lagged, the integration bridges a major capability gap by allowing them to source, screen, onboard and manage payroll all in one place.</p>



<p class="wp-block-paragraph">For more information, visit <a href="http://www.hirequotient.com/" target="_blank" rel="noreferrer noopener">www.hirequotient.com</a>.</p>



<p class="wp-block-paragraph">A media kit with additional partner quotes, executive headshots and logos can be found <a href="https://drive.google.com/drive/folders/1XZQE4etoLPgzNO94Y8I1-YX7ODyj8AnA?usp=sharing" target="_blank" rel="noreferrer noopener">here</a>.</p>



<p class="wp-block-paragraph"><strong>About HireQuotient</strong></p>



<p class="wp-block-paragraph">HireQuotient is an AI-native recruiting platform that automates candidate sourcing and screening for employers in manufacturing, building services, construction, healthcare, insurance and other frontline-heavy industries. Its flagship platform, EasySource, is one of a select number of recruiting technologies integrated with Paylocity’s HR and payroll ecosystem. Founded by Smarthveer Sidana, HireQuotient is headquartered in San Francisco. For more information, visit <a href="https://www.hirequotient.com/" target="_blank" rel="noreferrer noopener">https://www.hirequotient.com/</a>.</p>



<p class="wp-block-paragraph"><strong>Media Contact</strong></p>



<p class="wp-block-paragraph">Bethany Rhodes</p>



<p class="wp-block-paragraph">Uproar by Moburst for HireQuotient</p>



<p class="wp-block-paragraph">bethany@moburst.com</p>



<h5 class="wp-block-heading"><strong>Contact</strong></h5>



<p class="wp-block-paragraph"><strong>Bethany Rhodes</strong></p>



<p class="wp-block-paragraph"><strong>bethany@moburst.com</strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Netflix Reveals First Look at My Brilliant Career, Confirms August Premiere]]></title>
<description><![CDATA[Netflix has released the first trailer and new images from My Brilliant Career, confirming that the Australian period drama will premiere worldwide on August 13, 2026.



My Brilliant Career Brings an Australian Classic to Netflix




https://www.youtube.com/watch?v=WoPbcfUmMYw




The six-part s...]]></description>
<link>https://tsecurity.de/de/3684385/ios-mac-os/netflix-reveals-first-look-at-my-brilliant-career-confirms-august-premiere/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3684385/ios-mac-os/netflix-reveals-first-look-at-my-brilliant-career-confirms-august-premiere/</guid>
<pubDate>Tue, 21 Jul 2026 18:42:13 +0200</pubDate>
<content:encoded><![CDATA[Netflix has released the first trailer and new images from My Brilliant Career, confirming that the Australian period drama will premiere worldwide on August 13, 2026.



My Brilliant Career Brings an Australian Classic to Netflix




https://www.youtube.com/watch?v=WoPbcfUmMYw




The six-part series adapts Miles Franklin’s influential 1901 novel of the same name. Philippa Northeast leads the cast as Sybylla Melvyn, an ambitious young woman living in rural Australia who dreams of becoming a successful writer.



Sybylla wants to build an independent and exciting life, although her family expects her to follow a more traditional path. Her plans become more complicated after she meets Harry Beecham, a wealthy neighbour who develops strong feelings for her.



Christopher Chung plays Harry, while Anna Chancellor appears as Sybylla’s grandmother, Mrs Bossier. The cast also includes Genevieve O’Reilly as Aunt Helen, Kate Mulvany as Gussie Beecham and Jake Dunn as Frank Hawden. Alexander England, Sherry-Lee Watson and Miah Madden also have supporting roles.



First Look Shows Sybylla’s Fight for Freedom



The first footage introduces Sybylla as outspoken, determined and unwilling to let marriage decide her future. She wants to write stories and experience a larger world, even when the people around her question her choices.



The images also highlight the series’ Australian countryside, grand family homes and detailed period costumes. Production took place across South Australia, including locations near Penola and Adelaide Studios. Around 400 local cast and crew members reportedly worked on the project.



Liz Doran developed and co-wrote the adaptation, with Alyssa McClelland and Anne Renton directing the episodes. The series presents Franklin’s coming-of-age story for a new audience while keeping its focus on ambition, romance and personal freedom.



The novel previously inspired the acclaimed 1979 film starring Judy Davis and Sam Neill. Netflix’s version expands the story across six episodes, giving more time to Sybylla’s family relationships, romantic struggles and determination to choose her own career.



My Brilliant Career premieres August 13, 2026, exclusively on Netflix.]]></content:encoded>
</item>
<item>
<title><![CDATA[How AI impacts site reliability engineering]]></title>
<description><![CDATA[Site reliability engineers (SREs) have the tough assignment of resolving thorny performance and reliability issues. But their primary mission is to provide devops teams with operational insights and to suggest implementation improvements on business system performance, security, and overall robus...]]></description>
<link>https://tsecurity.de/de/3683121/ai-nachrichten/how-ai-impacts-site-reliability-engineering/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3683121/ai-nachrichten/how-ai-impacts-site-reliability-engineering/</guid>
<pubDate>Tue, 21 Jul 2026 11:05:12 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Site reliability engineers (SREs) have the tough assignment of resolving thorny performance and reliability issues. But their primary mission is to provide devops teams with operational insights and to suggest implementation improvements on business system performance, security, and overall robustness.</p>



<p class="wp-block-paragraph">Google introduced its <a href="https://sre.google/sre-book/part-I-introduction/">SRE playbook</a> in 2003, but it took some time for the role’s definition, tools, and techniques to become mainstream. Startups were the first to adopt observability for cloud-native applications and create dedicated SRE positions. As tools matured and SRE responsibilities became more clearly defined, larger enterprises assigned SREs to work as a bridge between devops and IT ops teams to improve resilience across a wider range of applications, APIs, and <a href="https://www.infoworld.com/article/3487711/the-definitive-guide-to-data-pipelines.html">data pipelines</a>.</p>



<p class="wp-block-paragraph"><a href="https://www.infoworld.com/article/3689881/career-paths-for-devops-engineers-and-sres.html">SRE is a career path</a> for multidisciplinary engineers with strong investigative instincts, sharp data analytics skills, and the temperament to perform under pressure. It has become a critical responsibility as tech became mission-critical for enterprises, and it is <a href="https://drive.starcio.com/2025/02/emerging-genai-roles-hr-tech-security/">a growing role in the genAI era</a> as more businesses <a href="https://drive.starcio.com/2025/10/ai-agents-definitive-guide-saas-security-titans/">deploy AI agents</a>.</p>



<p class="wp-block-paragraph">But the critical need for resiliency and greater technological complexity brings new challenges for SREs. According to the <a href="https://neubird.ai/resources/state-of-production-reliability-and-ai-adoption/">2026 State of Production Reliability and AI Adoption report</a>, 44% of respondents experienced an outage linked to ignored or suppressed alerts in the past year, and 35% report their engineers occasionally ignore or dismiss alerts due to alert fatigue. More than 70% of alerts received are not actionable, according to 57% of organizations.</p>



<p class="wp-block-paragraph">So, is AI making the SRE’s role easier and helping businesses run more reliable technology operations? On the other hand, AI is also driving complexity, as companies deploy genAI tools and AI agents across more business functions and seek to automate more decision-making across operations.</p>



<h2 class="wp-block-heading">AIops and agentic ops aid SREs</h2>



<p class="wp-block-paragraph">Over the past decade, SRE responsibilities have become somewhat easier through improvements in <a href="https://www.infoworld.com/article/2263821/5-devops-practices-to-improve-application-reliability.html">monitoring platforms</a>, <a href="https://www.infoworld.com/article/3686056/best-practices-for-devops-observability.html">observability practices</a>, <a href="https://www.infoworld.com/article/2261769/what-is-the-ai-in-aiops.html">tools for centralizing operational data</a>, and <a href="https://drive.starcio.com/2022/01/aiops-cio/">AI applied in IT operations</a> (AIops). But during the heat of resolving an outage or performance issue, it’s not easy to correctly identify what system triggered the issue versus other downstream systems impacted by it.</p>



<p class="wp-block-paragraph">According to the <a href="https://komodor.com/resources/komodor-2025-enterprise-kubernetes-report/">Komodore 2025 Enterprise Kubernetes Report</a>, 79% of production incidents originate from recent system changes, including deployments and changes to compute environments. But the other 21% of incidents stem from issues outside of the business’s control, including network failures, third-party changes, and cloud provider failures.</p>



<p class="wp-block-paragraph">“SREs using AI capabilities succeed or fail in the moment an incident unfolds, when engineers are deciding what to investigate next,” says Itiel Shwartz, CTO at <a href="https://komodor.com/">Komodor</a>. “If the system streamlines root cause detection, connects signals to recent changes, and explains its reasoning in a way engineers recognize, it earns trust. If it adds uncertainty or demands extra validation, it gets sidelined, regardless of how bespoke the model behind it may be. What’s less obvious is what it takes to make AI for SREs work in production, and how different that reality is from prototypes, demos, or early internal builds.”</p>



<p class="wp-block-paragraph"><a href="https://drive.starcio.com/2022/05/aiops-ml-multicloud/">AIops</a> is not a new capability, especially in using machine learning to correlate logs, metrics, and traces across monitoring and alerting systems. IT service management and SREs have been using AIops to <a href="https://drive.starcio.com/2021/11/p1-incidents-long-resolution-times/">reduce the mean time to resolve incidents</a> and to perform accurate <a href="https://drive.starcio.com/2021/12/kpi-agile-devops-itops/">root cause analysis</a> (RCA) efficiently. <a href="https://www.infoworld.com/article/4100507/5-key-agenticops-practices-to-start-building-now.html">Agentic ops</a> is the next wave of genAI operational capabilities, including tools for monitoring AI agents, managing their access rights, and detecting AI model accuracy drift.</p>



<p class="wp-block-paragraph"> “AI is useful during major incidents because it can pull together a lot of context into a few clear sentences, which is exactly what an SRE needs in the moment,” suggests Shani Shoham, chief revenue officer at <a href="https://openobserve.ai/">OpenObserve</a>. “The complexity of architecture and the different tooling make it easier for AI than for a human, but autonomous resolution is still a way off.”</p>



<h2 class="wp-block-heading">AI’s impact on people and burnout</h2>



<p class="wp-block-paragraph">The business pressure to keep systems up, secure, and performing well is a 24/7 stressful responsibility. According to <a href="https://www.catchpoint.com/learn/sre-report-2025">The SRE Report 2025</a> from Catchpoint, 36% of SREs often or always experience elevated stress during an incident, and 28% said the stress persists even after the incident is resolved. AI capabilities may prove to be a game-changer in helping SREs avoid burnout and reduce stress.</p>



<p class="wp-block-paragraph">“AI can improve RCA by taking in a much larger incident context than any engineer can hold at 3am, reasoning across traces, logs, metrics, deploys, config changes, alerts, ownership, and recent production behavior,” says Noam Levy, founding engineer and field CTO at <a href="https://www.groundcover.com/">Groundcover</a>. “Beyond attempting a full RCA, its immediate value is distilling the signals that actually matter, reconstructing a clear timeline of cause and effect, and helping engineers separate correlation from likely causality. Once a fix is deployed, agents can also verify remediation by comparing pre- and post-fix behavior, but this depends on broad access to rich, correlated production signals and a cost model that does not discourage adoption or experimentation.”</p>



<p class="wp-block-paragraph">Not only are incidents resolved faster and with less stress, but AI can also free up SRE time to focus on proactive work and create a career path for junior developers into SRE roles. Quais Taraki, CTO at <a href="https://www.enterprisedb.com/">EDB Postgres AI</a>, adds, “AI reduces toil by automating repetitive tasks while accelerating incident resolution through copilots that correlate signals across distributed systems, allowing SREs to focus more on resilience strategies like chaos engineering and failure analysis.”</p>



<p class="wp-block-paragraph">AI can have long-lasting operational impacts, especially for organizations looking to deploy more mission-critical technology and AI capabilities. Two longer-term benefits of AI for SREs are reducing the number of bridge calls needed for incident response and the number of engineers required in “<a href="https://drive.starcio.com/2021/04/it-digital-operations-aiops/">war rooms</a>” to coordinate root cause analyses.</p>



<p class="wp-block-paragraph">“When something goes wrong, AI that guides SREs can do the full analysis, get to the root cause, and perform the remediation,” says Spiros Xanthos, founder and CEO of <a href="https://resolve.ai/">Resolve AI</a>. “AI also helps avoid many escalations, and when escalations are needed, it targets the right people from the network, infrastructure, and the application teams. AI for SREs centralizes operational intelligence, exposes tribal knowledge, and can guide more junior developers.” </p>



<h2 class="wp-block-heading">AI agent reliability</h2>



<p class="wp-block-paragraph">While AI capabilities have been a net positive in helping SREs improve system reliability, the growth of <a href="https://www.infoworld.com/article/4032989/a-developers-guide-to-code-generation.html">AI code generators</a>, <a href="https://www.infoworld.com/article/4058076/vibe-coding-and-the-future-of-software-development.html">vibe coding</a>, and <a href="https://www.infoworld.com/article/4166817/vibe-coding-or-spec-driven-development.html">spec-driven development</a> is adding to their workloads. <a href="https://www.braiviq.com/blog/vibe-coding-ai-development-2026-cursor-copilot-claude-code">According to one study</a>, 41% of all global code is now AI-generated, and <a href="https://www.hostinger.com/blog/vibe-coding-statistics">Gartner predicts</a> that 40% of new enterprise production software will be created using vibe coding techniques by 2028.</p>



<p class="wp-block-paragraph">But coding velocity is creating new issues for SREs as AI pull requests have 1.4 times more critical issues and 1.7 times more major issues, <a href="https://www.coderabbit.ai/blog/state-of-ai-vs-human-code-generation-report">according to CodeRabbit</a>. “AI-assisted development has created an unprecedented velocity of code reaching production, expanding surface area, edge cases, and failure rates faster than traditional SRE practices can absorb,” says Vinod Jayaraman, cofounder and CTO at <a href="https://neubird.ai/">NeuBird AI</a>. “The speed of shipping has far outpaced the speed of understanding what breaks in production. To close this loop, SREs need enterprise agents that can capture precise diagnostic context, including correlated traces, service dependencies, and anomaly timelines, and structure it as actionable input for the engineers and AI coding tools responsible for the fix.”</p>



<p class="wp-block-paragraph">The growing number of AI agents deployed to production creates new challenges. AI agents are not just code; they have multiple failure points. They are built using language models, connect to proprietary sources for context, and integrate with <a href="https://www.infoworld.com/article/4124612/5-requirements-for-using-mcp-servers-to-connect-ai-agents.html">Model Context Protocol servers</a> to support more complex workflows. Changes are ongoing and not deployment events, so the SRE’s job of identifying the source of performance and accuracy drifts isn’t trivial. </p>



<p class="wp-block-paragraph">“Traditional SRE was built for systems that fail in reproducible ways, but agents fail differently and drift when a model provider pushes an update, and behavior shifts silently with no baseline for comparison,” says Mohammed Aboul-Magd, vice president of product at <a href="https://www.sandboxaq.com/">SandboxAQ</a>. “Most organizations can’t even answer the basics: how many agents are running, what they have access to, and whether they’re still doing what they were built to do.”</p>



<p class="wp-block-paragraph">“Every time a senior engineer leaves, they take years of learned failure patterns with them, and the next outage starts from square one,” adds Ronak Desai, cofounder and CEO at <a href="https://ciroos.ai/">Ciroos</a>. “Using AI for compounding operational memory changes that, and every incident your system resolves, the AI learns it.”</p>



<p class="wp-block-paragraph">SREs should take a leadership role in emerging best practices, including defining their standards for AI agent <a href="https://www.infoworld.com/article/4061123/how-to-write-nonfunctional-requirements-for-ai-agents.html">non-functional acceptance criteria</a>, <a href="https://www.infoworld.com/article/4140832/7-safeguards-for-observable-ai-agents.html">observability practices</a>, and <a href="https://www.infoworld.com/article/4105884/10-essential-release-criteria-for-launching-ai-agents.html">release-readiness criteria</a>. SREs should update their <a href="https://www.infoworld.com/article/3684268/tools-to-manage-slos-and-error-budgets.html">service-level objectives</a> (SLOs) and define error budgets for AI agents in production.</p>



<p class="wp-block-paragraph">Ryan Downing, vice president and CIO of enterprise business solutions at <a href="https://www.principal.com/">Principal Financial Group</a>, says, “Standard SLOs and error budgets give teams the guardrails, and AI helps interpret the telemetry against those targets, reducing noise so engineers can get to the real issue faster and automate parts of remediation before customers are impacted.”</p>



<h2 class="wp-block-heading">AI raises the SRE’s business impact</h2>



<p class="wp-block-paragraph">The more dramatic shift in site reliability engineering is an evolution of its business scope. IT leaders focus on uptime, performance, and issue resolution, as well as understanding their impacts. Business leaders will look to IT and SREs to identify, determine root cause, and remediate a broader class of issues, including <a href="https://drive.starcio.com/2025/07/rogue-ai-agents-cios-govern-agentic-ecosystem/">rogue AI agents</a> and the impacts of <a href="https://www.infoworld.com/article/4040513/how-to-avoid-the-risks-of-rapidly-deploying-ai-agents.html">rapidly deploying new agentic capabilities</a>. </p>



<p class="wp-block-paragraph">“AI agents are handing SREs categories of problems they’ve never had to solve before, specifically failures defined in business terms, not technical ones,” says Blake Sherwood, distinguished technologist for AI and platform strategy at <a href="https://www.smarsh.com/">Smarsh</a>. “Traditional reliability engineering is built around latency, errors, and crashes, but agents now fail due to skipped compliance steps or outcomes that looked fine technically but were wrong contextually. Most SRE teams aren’t wired for that yet.”</p>



<p class="wp-block-paragraph">The question is whether SREs with AI-augmented tools can keep up with the velocity, complexity, and business urgency of deploying new AI business capabilities.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Dina Atwell — Women in Security 2026]]></title>
<description><![CDATA[A career in the security industry isn’t something that Dina Atwell planned for, but as with many things with life, the profession found her.]]></description>
<link>https://tsecurity.de/de/3681304/it-security-nachrichten/dina-atwell-women-in-security-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3681304/it-security-nachrichten/dina-atwell-women-in-security-2026/</guid>
<pubDate>Mon, 20 Jul 2026 15:53:14 +0200</pubDate>
<content:encoded><![CDATA[A career in the security industry isn’t something that Dina Atwell planned for, but as with many things with life, the profession found her.]]></content:encoded>
</item>
<item>
<title><![CDATA[Q&A: Why boutique consultancies might be better for AI rollouts than the bigwigs]]></title>
<description><![CDATA[Major AI labs are unleashing forward-deployed engineers (FDEs) to try and grab enterprise customers. Large consultancies are dishing out tokens and assembling armies of consultants — both human and agent — to do the same.



But smaller firms are in the mix now, as well. AI is helping 28Stone Con...]]></description>
<link>https://tsecurity.de/de/3680996/it-nachrichten/qa-why-boutique-consultancies-might-be-better-for-ai-rollouts-than-the-bigwigs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680996/it-nachrichten/qa-why-boutique-consultancies-might-be-better-for-ai-rollouts-than-the-bigwigs/</guid>
<pubDate>Mon, 20 Jul 2026 13:33:13 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Major AI labs are <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">unleashing forward-deployed engineers</a> (FDEs) to try and grab enterprise customers. Large consultancies are dishing out tokens and assembling armies of consultants — both human and agent — to do the same.</p>



<p class="wp-block-paragraph">But smaller firms are in the mix now, as well. AI is helping <a href="https://www.28stone.com/" target="_blank" rel="noreferrer noopener">28Stone Consulting</a>, a New York-based, 230-person technology consultancy for capital markets, punch above its weight against larger rivals in the <a href="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html">rush to deliver FDEs</a>.</p>



<p class="wp-block-paragraph">In this Q&amp;A, <a href="https://www.linkedin.com/in/thomas-dolan-4124914" target="_blank" rel="noreferrer noopener">Thomas Dolan</a> and <a href="https://www.linkedin.com/in/frank-erickson-07675a1" target="_blank" rel="noreferrer noopener">Frank Erickson</a>, founders of 28Stone, argue that agentic AI isn’t a one-size-fits-all solution in vertical markets; success takes discipline, deep domain expertise, and human involvement to mitigate risk.</p>



<p class="wp-block-paragraph">Many enterprises continue to struggle with the use of AI agents, which is consultancies are stepping in to get projects off the ground. 28Stone is among those that have published blueprints and methodologies on the development and delivery of agentic AI workflows with humans in the loop.</p>



<p class="wp-block-paragraph"><em>Computerworld</em> spoke with both founding partners about why companies are still stumbling with <a href="https://www.computerworld.com/article/4083589/from-chatbots-to-colleagues-how-agentic-ai-is-redefining-enterprise-automation.html">agentic AI rollouts</a>, and what a disciplined delivery process actually looks like.</p>



<p class="wp-block-paragraph"><strong>After 15 years of delivering software for capital markets firms, is ‘AI-first’ a real distinction or just positioning?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’re not shying away from being AI-forward. What needs to shine through is AI done intelligently — not stuff you get by buying some tokens for somebody on the trading desk. We’re an AI-first firm.”</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “And it’s temporary. At some point, AI is going to be synonymous with software development.</p>



<p class="wp-block-paragraph">“The whole idea of an AI SDLC (software development lifecycle) versus an SDLC is going to be one and the same, a lot like cloud computing today. To not include AI in your strategy, you’d look like a COBOL vendor.”</p>



<p class="wp-block-paragraph"><strong>What does agentic AI delivery look like?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’ve got several AI initiatives delivering a pure agentic approach. We’ve doubled down on the human expertise wrapper in the SDLC. That doesn’t mean sacrificing any of the benefits of the AI models — quite the opposite.</p>



<p class="wp-block-paragraph">“You don’t achieve anywhere near the same level of value from applying AI without keeping that expertise — industry, functional and technical — throughout the process.”</p>



<p class="wp-block-paragraph"><strong>Where do humans stay in the loop once agents are doing the work?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “We’re believers in starting with requirements discovery. Someone who knows the analytical nuances of a good business analyst is critically important; shaping a product owner’s business information through a markup file that can be fed into a BA agent, then treating the output as if it came from a very fast junior BA. Only then is the story complete.</p>



<p class="wp-block-paragraph">“The developer takes that story, transforms it into the most efficient input, then owns the output, because they’re accountable for that code. A developer should own the code on both the input and output side.</p>



<p class="wp-block-paragraph">“Your product owner, who knows the business, that’s great. But expecting them to interact with an agent and output enterprise code is ridiculous. It’s not a great plan.“</p>



<p class="wp-block-paragraph"><strong>Why not just put one do-everything person in charge of AI and agents?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “Every analyst, programmer or software engineer isn’t a great requirements analyst. And a great domain analyst with some technical background won’t know if the agent’s code is garbage, maintainable, performant.</p>



<p class="wp-block-paragraph">“It’s unrealistic to expect one individual to have that breadth across domain, software engineering, testing, deployment. Clients ask all the time, and we push back: ‘Great, if you can find that guy, they’re few and far between.’ To deliver at the enterprise level, you need the human expertise, at depth.“</p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “There’s system speed and latency, important in parts of finance. Then there’s speed of delivery, because other areas evolve quickly and time-to-market is critical.</p>



<p class="wp-block-paragraph">“Our human wrapper may at first pass come across as a little slowed down. Maybe it is. But [Erickson] has a good analogy about one of the dangers of AI: you can end up going really fast in the wrong direction. By the time you look up, you’re way off base and have to backtrack.“</p>



<p class="wp-block-paragraph"><strong>What about AI in your sector do you think is overhyped?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “The hype around the ease of use of AI and the democratization of enterprise software delivery — that ‘anybody could do it now, it’s all being done by machines’ — is another idea that could prove costly in the long run.</p>



<p class="wp-block-paragraph">“This do-it-yourself reaction is dangerous for clients, and for trust in the overall AI benefit, which is real. We compare it to the beginning of offshoring 20, 30 years ago: a golden idea that was going to cure everything. A lot of firms did it thoughtlessly, thinking it’s just labor arbitrage, and it almost inevitably failed. That all-or-nothing mentality missed that offshoring is an amazing way of getting better value for your dollar, but it has to be done thoughtfully, so the delivery process — the thing that ties it all together — stays unsevered.</p>



<p class="wp-block-paragraph">“We’re seeing that now. I’ve heard, ‘We’ll just push a button, the machine’s building the system.’ The machine is not building the system. It might be writing the code, the story, running the tests.</p>



<p class="wp-block-paragraph">The system is built by a team of engineers you bring in and trust. My fear is that people will say, ‘We don’t need this vendor or this technology team. I’ve got a product team. They might not be able to code at all, but they know the business,’ and it fails dramatically. </p>



<p class="wp-block-paragraph">“Then people say, ‘We played with AI, it’s not ready yet,’ and throw it all away. One of the best things we can do is ensure clients know the benefit is real.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “The hype can be summed up in a single phrase: <a href="https://www.computerworld.com/article/4022711/when-everything-is-vibing.html">vibe coding</a>. That has done AI a massive disservice, because there’s a huge difference between vibe coding and enterprise software development, and some of the loudest proponents of AI are too latched on to it. In our industry, the only way to succeed would be a stable of unicorns. It just doesn’t scale. I get perturbed when our people internally refer to AI tooling as vibe coding; if they think that’s what they’re doing, they’re misunderstood.“</p>



<p class="wp-block-paragraph"><strong>When you engage clients at different levels of AI maturity, how do you get them to a understand what works?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “95% of our take on an agentic approach is in line with everyone else’s, but that 5% matters, especially in requirements discovery, in who’s giving the requirements and how they’re thought of. It can set you up for dramatic errors, given the speed at which you’re moving.</p>



<p class="wp-block-paragraph">“There’s a dangerous human tendency we’re seeing among clients to try and cut corners at the start of a project and — in lieu of having deep, expert driven discovery sessions — just summarize what they may want using AI.</p>



<p class="wp-block-paragraph">“We would hope our clients are collaborative, everyone understanding it’s early days. If a client insists on doing something we feel strongly against, like a product owner completely owning everything right up to code generation, that’s an issue we have to either push back strongly on or step out of the accountability for.“</p>



<p class="wp-block-paragraph"><strong>AI body shops — LLM providers and giant consultancies — are emerging to help enterprises deploy AI. Does that model work?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “Whether you’re partnering with an LLM or with an AI-first, generic software provider — ‘Hey, we’re not industry guys, but we know AI delivery’ — you end up, if you’re a bank or a broker-dealer, saying: ‘All right, we know our business, these guys know the AI side of it. What could go wrong? Put us together and we’ll have quality engineering.’</p>



<p class="wp-block-paragraph">“The problem is what you miss: the know-how of putting industry and technical expertise together and actually delivering financial services systems. The people working at the generic delivery firms, whether an AI-only firm or a body shop somewhere, don’t have that capability.“</p>



<p class="wp-block-paragraph"><strong>Does AI change the economics for smaller consultancies like yours competing against the big firms, and does it cut both ways?</strong></p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “Over our 15 years pre-AI, there were two recurring reasons we’d lose a project. One: ‘We’d love to work with you guys, given your subject matter expertise, but the costs just aren’t there compared to my budgets. I’m being forced to go to a body shop or an [offshore] delivery center.’ The other side of that coin: ‘We love your capabilities, but you’re a firm of 230 people and I need 300, 400 people.’</p>



<p class="wp-block-paragraph">“AI changes the options for clients. You don’t have to sacrifice the niche vendor who knows your space just because you need a larger team or a cost target. AI levels the playing field and should allow smaller firms to compete with the larger, big-box generic firms, the Accentures of the world.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “It redefines what scale means. You can look at velocity as a measure of your cost to deliver, not a rate card. Scale can’t be defined in terms of headcount anymore. It’s got to be defined in terms of output.</p>



<p class="wp-block-paragraph">“There’s a threat in it, too. If you’re an Accenture with hundreds of thousands of low-cost software engineers, how do you train all those people? I feel for them. But for us, a couple hundred people with a specific domain focus, it’s a huge opportunity.“</p>



<p class="wp-block-paragraph"><strong>How has the profile of the people you and others hire changed with this agentic process?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “You’re still looking for people with strong engineering and design backgrounds, and communication skills, because they interact across the software development lifecycle more than in the past.</p>



<p class="wp-block-paragraph">“Many take too much joy in typing out perfect code. Sorry, I don’t need you writing for-loops and classes anymore. I need you reviewing them, understanding them, operating at a higher level. That’s a different kind of person: an engineer, not a programmer or a coder. On the [business analyst] side it’s similar: people took great pride in detailed user stories covering every path. Now it’s conversations, prompts, reviewing output — less doing, more interacting.</p>



<p class="wp-block-paragraph">“More than ever, they have to be interested in the domain. They can’t just be, ‘I want to learn everything there is to know about Java.’ That’s too narrow. They don’t have to be an expert; they have to be interested. In our case, capital markets is a specific niche. The biggest challenge is getting familiar with the tools — finding time, while delivering for customers, to ramp up and make the mistakes you need to without jeopardizing projects.“</p>



<p class="wp-block-paragraph"><strong>What about governance? Who’s keeping AI delivery and its costs under control?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “This is evolving rapidly. People aren’t sure how to put governance around this. The most obvious is financial governance. People are starting to get hefty bills. One of our clients spent a million dollars on tokens over the last eight weeks alone. Sticker shock. The token-maxing policies are starting to show their flaws. It’s wild west still: learn on the fly, then figure out what needs to be governed.“</p>



<p class="wp-block-paragraph"><strong>Are CIOs actually opening their wallets? And when they do, what’s the smarter way to invest?</strong></p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “There’s still a lot of caution. Forecasts keep going down on how long something should take. So: ‘I could wait three months and maybe still get it delivered by the same date someone’s promising me now, but for half the price. I’m going to wait and see when equilibrium is met.’ We haven’t seen the wallets open up like crazy — it’s slow adoption.“</p>



<p class="wp-block-paragraph"><strong>Dolan:</strong> “One of our clients is looking at it from a productivity-boost perspective: instead of doing the same for less, I can do much more for the same. AI lets clients pull the trigger on things they wouldn’t have in the past — projects that might not have been approved pre-AI, where the costs have come down to a point that’s palatable with the business.“</p>



<p class="wp-block-paragraph"><strong>Erickson:</strong> “And that’s the story we’re hoping to hear more of. There isn’t a huge cost anymore to exploring a business opportunity. The time and money that would have gone to a return-on-investment study could be spent on a proof-of-concept with AI, and the project done a few weeks later. Maybe [there’s] a hint of things to come, where decisions start being made quicker. </p>



<p class="wp-block-paragraph">“There’s a little fear on our side, though: a lot of tiny little projects is tough for a consulting business.“</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Dr. Jazma Mekelle Parker — Women in Security 2026]]></title>
<description><![CDATA[Dr. Jazma Mekelle Parker began her security career as a contract background investigator for the U.S. Office of Personnel Management (OPM).]]></description>
<link>https://tsecurity.de/de/3680677/it-security-nachrichten/dr-jazma-mekelle-parker-women-in-security-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680677/it-security-nachrichten/dr-jazma-mekelle-parker-women-in-security-2026/</guid>
<pubDate>Mon, 20 Jul 2026 11:09:03 +0200</pubDate>
<content:encoded><![CDATA[Dr. Jazma Mekelle Parker began her security career as a contract background investigator for the U.S. Office of Personnel Management (OPM).]]></content:encoded>
</item>
<item>
<title><![CDATA[Netflix’s Desire Ending Explained: Who Killed Matías and What Happens to Lucero?]]></title>
<description><![CDATA[Netflix’s Desire ends by revealing that nearly every member of Lucero’s family played a role in Matías’ death. The final poolside sequence explains how jealousy, betrayal and fear turned a secret affair into a fatal family cover-up.



Major spoilers for Desire follow.



Desire Release Date, Cas...]]></description>
<link>https://tsecurity.de/de/3680069/ios-mac-os/netflixs-desire-ending-explained-who-killed-matas-and-what-happens-to-lucero/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3680069/ios-mac-os/netflixs-desire-ending-explained-who-killed-matas-and-what-happens-to-lucero/</guid>
<pubDate>Mon, 20 Jul 2026 00:24:19 +0200</pubDate>
<content:encoded><![CDATA[Netflix’s Desire ends by revealing that nearly every member of Lucero’s family played a role in Matías’ death. The final poolside sequence explains how jealousy, betrayal and fear turned a secret affair into a fatal family cover-up.



Major spoilers for Desire follow.



Desire Release Date, Cast and Other Details




Netflix release date: July 17, 2026



Original title: Deseo



Genre: Erotic thriller, psychological drama



Runtime: Around 98 minutes



Director: Teresa Simone



Language: Spanish



Main cast: Ludwika Paleta, Óscar Casas, José María Yazpik and Pilar Pascual




The Mexican-Spanish movie follows Lucero, a successful 47-year-old lawyer who appears to have a comfortable life with her husband, Fernando, and their two children. However, she feels increasingly dissatisfied with her marriage and begins an affair with Matías, the young swimming coach hired by Fernando.



The situation becomes more dangerous when Lucero’s daughter, Viviana, also develops feelings for Matías. What begins as an affair soon becomes a tense triangle involving secrecy, manipulation and jealousy.



Where Is the Story Heading Before the Final Scene?



The movie opens with blood near the family’s indoor swimming pool, immediately confirming that someone has died. It then moves back through the events that caused the tragedy.



Lucero’s relationship with Matías grows more intense, even as she understands that the affair could destroy her marriage, career and relationship with her children. Matías also becomes involved with Viviana, creating further tension inside the family.



As the truth begins to surface, each character reacts differently. Viviana feels betrayed by both Matías and her mother, while Fernando begins to understand what has been happening inside his home. Lucero, meanwhile, focuses on protecting her family and preventing the affair from becoming public.



Since Desire is a standalone movie, there are no previous seasons to revisit. The entire story builds toward the night at the pool and the mystery surrounding Matías’ death.



Desire Ending Explained: Who Killed Matías?



The ending reveals that Matías’ death was caused by several actions rather than one sudden attack.



Julian secretly drugs Matías earlier in the evening. The drug leaves him physically weakened and less capable of defending himself when the conflict reaches the swimming pool.



Viviana then confronts Matías after discovering the truth about his relationship with Lucero. Feeling humiliated and used, she attacks him and leaves him injured.



Fernando later finds Matías bleeding and struggling in the pool. Instead of rescuing him, Fernando chooses to leave him there. His decision makes him directly responsible for allowing the situation to become fatal.



Lucero arrives for the final confrontation and sees that Matías is still alive. Matías appears to believe that she has come to help him or choose him over her family. However, Lucero pushes him beneath the water and holds him there until he drowns.



Lucero therefore delivers the final killing act, although every member of the family contributes to the chain of events that leads to his death.



Why Does Lucero Kill Matías?



Lucero kills Matías because she sees him as a threat to everything she wants to protect. Their affair once offered excitement and escape, but it eventually endangered her children, marriage and public life.



By the final scene, Lucero no longer views Matías as a romantic partner. She sees him as the person capable of exposing the family’s secrets and destroying their remaining sense of stability.



Her decision also completes her transformation. She begins the movie searching for freedom from her controlled life, yet she ends it committing murder to regain control.



Does Lucero’s Family Escape?



The movie does not show the family facing immediate legal consequences. Since several people contributed to Matías’ death, they share a reason to hide what happened.



The final revelation suggests that their family can remain together only by protecting the same secret. Any one of them could expose the others, creating an uneasy balance based on guilt rather than trust.



The opening bloodstains also take on a clearer meaning. They represent the evidence the family must remove, but they also reflect damage that cannot be completely erased.



What Does the Ending of Desire Mean?



The ending shows how unchecked desire damages every relationship around Lucero. Her affair affects her husband, draws her daughter into a painful rivalry and eventually turns the entire family into participants in Matías’ death.



Lucero technically protects her family from Matías, but their earlier life cannot return. Fernando knows about her betrayal, Viviana knows that her mother was involved with the same man, and everyone understands what happened beside the pool.



Desire ends without offering a clean resolution because the family’s punishment comes from living with the truth. What did you think about Lucero’s final decision, and who carries the most blame for Matías’ death? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[Think you're the ultimate Tom Holland Spider-Man fan? Put your knowledge to the test against our Marvel mastermind in this tricky MCU quiz]]></title>
<description><![CDATA[Spider-Man: Brand New Day swings into theaters very soon — and we want to see how much you know about Tom Holland's MCU career before it does.]]></description>
<link>https://tsecurity.de/de/3679499/it-nachrichten/think-youre-the-ultimate-tom-holland-spider-man-fan-put-your-knowledge-to-the-test-against-our-marvel-mastermind-in-this-tricky-mcu-quiz/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679499/it-nachrichten/think-youre-the-ultimate-tom-holland-spider-man-fan-put-your-knowledge-to-the-test-against-our-marvel-mastermind-in-this-tricky-mcu-quiz/</guid>
<pubDate>Sun, 19 Jul 2026 15:02:33 +0200</pubDate>
<content:encoded><![CDATA[Spider-Man: Brand New Day swings into theaters very soon — and we want to see how much you know about Tom Holland's MCU career before it does.]]></content:encoded>
</item>
<item>
<title><![CDATA[From zero to engineering superhero (emf2026)]]></title>
<description><![CDATA[Six years ago, I was an artist with no engineering qualifications, no formal technical training, and absolutely no business operating industrial robots worth hundreds of thousands of pounds. Today, I lead robotics projects for companies around the world.

This talk is a light-hearted cautionary t...]]></description>
<link>https://tsecurity.de/de/3679398/it-security-video/from-zero-to-engineering-superhero-emf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679398/it-security-video/from-zero-to-engineering-superhero-emf2026/</guid>
<pubDate>Sun, 19 Jul 2026 13:33:29 +0200</pubDate>
<content:encoded><![CDATA[Six years ago, I was an artist with no engineering qualifications, no formal technical training, and absolutely no business operating industrial robots worth hundreds of thousands of pounds. Today, I lead robotics projects for companies around the world.

This talk is a light-hearted cautionary tale of how curiosity, persistence, and an unhealthy number of browser tabs completely changed the direction of my life. Through stories of failure, career detours, imposter syndrome, accidental entrepreneurship, and one particularly unconventional job application I want to inspire others to chase their dreams.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://www.emfcamp.org/schedule/2026/226-from-zero-to-engineering-superhero]]></content:encoded>
</item>
<item>
<title><![CDATA[You Are Part Virus: How Biological Viruses Hack Cells (emf2026)]]></title>
<description><![CDATA[Molecular biology is cool,* and often the most interesting way to study a system is to see where it fails or how it gets hacked. Viruses enter, subvert and exploit the finely tuned molecular machinery of cells, rewiring systems to convert them into a virus factory; over a few billion years of a c...]]></description>
<link>https://tsecurity.de/de/3679363/it-security-video/you-are-part-virus-how-biological-viruses-hack-cells-emf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3679363/it-security-video/you-are-part-virus-how-biological-viruses-hack-cells-emf2026/</guid>
<pubDate>Sun, 19 Jul 2026 13:03:38 +0200</pubDate>
<content:encoded><![CDATA[Molecular biology is cool,* and often the most interesting way to study a system is to see where it fails or how it gets hacked. Viruses enter, subvert and exploit the finely tuned molecular machinery of cells, rewiring systems to convert them into a virus factory; over a few billion years of a co-evolutionary arms race, they’ve developed some great exploits. Some are elegant and clever, some are messy but impressively functional, a few are just baffling. A lot like the folks at EMF.

Using a few of my favourite viruses as case studies, we’ll build a simple mental model of how cells work and then break it. We’ll see how viruses cram surprising amounts of information into tiny genomes by overlapping their code, how they hijack the cell’s machinery to take control of its internal processes, and how they defy biology’s “central dogma”. Finally, I’ll describe the viruses that have inserted themselves into the human genome, becoming permanent and functional parts of our own DNA. 

This is a fast, accessible introduction to a few fun corners of molecular biology and virology, from someone who has spent their career studying and working with viruses. No biology background is needed. If you like learning about intricate systems and the strange ways they can be exploited, you’ll find plenty to enjoy in virology.

*For, admittedly, idiosyncratic definitions of “cool”

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://www.emfcamp.org/schedule/2026/149-you-are-part-virus-how-biological-viruses-hack-cells]]></content:encoded>
</item>
<item>
<title><![CDATA[A technician in Antarctica - Working at the end of the world (emf2026)]]></title>
<description><![CDATA[I have spent my career working as an electrically biased technician supporting scientific and engineering research. In 2022/23 a post-COVID malaise led me to put in a speculative application with The British Antarctic Survey. Sometime later I was flying into Rothera Research Station, Antarctica. ...]]></description>
<link>https://tsecurity.de/de/3678654/it-security-video/a-technician-in-antarctica-working-at-the-end-of-the-world-emf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3678654/it-security-video/a-technician-in-antarctica-working-at-the-end-of-the-world-emf2026/</guid>
<pubDate>Sun, 19 Jul 2026 02:16:51 +0200</pubDate>
<content:encoded><![CDATA[I have spent my career working as an electrically biased technician supporting scientific and engineering research. In 2022/23 a post-COVID malaise led me to put in a speculative application with The British Antarctic Survey. Sometime later I was flying into Rothera Research Station, Antarctica. Before arriving, I had dreams of being surrounded by Antarctic wildlife such as penguins, seals and whales. I hoped I would be able to ride a snowmobile and engage in snow-covered adventures. I knew that this was somewhat far-fetched as this is just a job, albeit in the most hostile environment on earth. To my surprise I found that, while there were long days of working hard there were also ample opportunities to be surrounded by wildlife and engage the activities I dreamed of. I was even a co-pilot on a project to one of the UK’s most remote Antarctic outposts, the Sky-Blu Field Station. I saw orcas swimming in unison to create a wave to knock seals from an iceberg – just like in the first episode of Frozen Planet! At the end of my adventure, I left Antarctica on Boaty McBoatface for a 5-day voyage across the most dangerous seas on earth. My talk is reliant on sharing the amazing photos I took while I was there.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://www.emfcamp.org/schedule/2026/34-a-technician-in-antarctica-working-at-the-end-of-the-world]]></content:encoded>
</item>
<item>
<title><![CDATA[A technician in Antarctica - Working at the end of the world (emf2026)]]></title>
<description><![CDATA[I have spent my career working as an electrically biased technician supporting scientific and engineering research. In 2022/23 a post-COVID malaise led me to put in a speculative application with The British Antarctic Survey. Sometime later I was flying into Rothera Research Station, Antarctica. ...]]></description>
<link>https://tsecurity.de/de/3678618/it-security-video/a-technician-in-antarctica-working-at-the-end-of-the-world-emf2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3678618/it-security-video/a-technician-in-antarctica-working-at-the-end-of-the-world-emf2026/</guid>
<pubDate>Sun, 19 Jul 2026 01:31:48 +0200</pubDate>
<content:encoded><![CDATA[I have spent my career working as an electrically biased technician supporting scientific and engineering research. In 2022/23 a post-COVID malaise led me to put in a speculative application with The British Antarctic Survey. Sometime later I was flying into Rothera Research Station, Antarctica. Before arriving, I had dreams of being surrounded by Antarctic wildlife such as penguins, seals and whales. I hoped I would be able to ride a snowmobile and engage in snow-covered adventures. I knew that this was somewhat far-fetched as this is just a job, albeit in the most hostile environment on earth. To my surprise I found that, while there were long days of working hard there were also ample opportunities to be surrounded by wildlife and engage the activities I dreamed of. I was even a co-pilot on a project to one of the UK’s most remote Antarctic outposts, the Sky-Blu Field Station. I saw orcas swimming in unison to create a wave to knock seals from an iceberg – just like in the first episode of Frozen Planet! At the end of my adventure, I left Antarctica on Boaty McBoatface for a 5-day voyage across the most dangerous seas on earth. My talk is reliant on sharing the amazing photos I took while I was there.

Licensed to the public under https://creativecommons.org/licenses/by-sa/4.0/
about this event: https://www.emfcamp.org/schedule/2026/34-a-technician-in-antarctica-working-at-the-end-of-the-world]]></content:encoded>
</item>
<item>
<title><![CDATA[Ageism: the silent but deadly threat to your retirement]]></title>
<description><![CDATA[For Gen X, financial planning needs to involve career planning]]></description>
<link>https://tsecurity.de/de/3677457/ai-nachrichten/ageism-the-silent-but-deadly-threat-to-your-retirement/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3677457/ai-nachrichten/ageism-the-silent-but-deadly-threat-to-your-retirement/</guid>
<pubDate>Sat, 18 Jul 2026 06:47:16 +0200</pubDate>
<content:encoded><![CDATA[For Gen X, financial planning needs to involve career planning]]></content:encoded>
</item>
<item>
<title><![CDATA[Agent Kim Reactivated Episode 7 Ending Explained: Kim Loses Control Again]]></title>
<description><![CDATA[Agent Kim Reactivated Episode 7 turns Kim Do-hyeon’s long-awaited reunion with Min-ji into another dangerous fight for survival. Kim finally reaches his daughter, but getting her home safely proves far more difficult than finding her.



Spoiler warning: This article contains major spoilers for A...]]></description>
<link>https://tsecurity.de/de/3676792/ios-mac-os/agent-kim-reactivated-episode-7-ending-explained-kim-loses-control-again/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3676792/ios-mac-os/agent-kim-reactivated-episode-7-ending-explained-kim-loses-control-again/</guid>
<pubDate>Fri, 17 Jul 2026 20:10:22 +0200</pubDate>
<content:encoded><![CDATA[Agent Kim Reactivated Episode 7 turns Kim Do-hyeon’s long-awaited reunion with Min-ji into another dangerous fight for survival. Kim finally reaches his daughter, but getting her home safely proves far more difficult than finding her.



Spoiler warning: This article contains major spoilers for Agent Kim Reactivated Episode 7 and earlier episodes.




Release date: July 17, 2026



Streaming platform: Netflix



Korean network: SBS



Airtime: Fridays and Saturdays at 9:50 p.m. KST



Genre: Action, crime, thriller and comedy




The Korean action drama premiered on June 26 and will continue until July 25. Episode 7 brings the story into its final stretch, with only three episodes remaining after this chapter.



Kim’s rescue mission falls apart



Episode 6 ended with Kim finding Min-ji after tracking down the people involved in her disappearance. His quiet promise that they would finally go home gave the pair a brief emotional reunion, but the danger surrounding them had not disappeared.



In Episode 7, Kim attempts to move Min-ji away from the area while Seong Han-su and Park Jin-cheol help protect them. Their escape quickly comes under attack, forcing the three fathers to fight through another group of armed men.



Min-ji also shows that she is more resourceful than her captors expect. Instead of waiting helplessly for someone to save her, she watches her surroundings, looks for an opening and tries to escape. Her actions reflect the courage and survival instincts she inherited from her father.



However, Kim’s rescue mission takes a darker turn when the attack separates him from Min-ji again. The brief reunion leaves him even more determined to destroy everyone involved in placing her life at risk.



Kim confronts Joo Kang-chan



Joo Kang-chan remains at the centre of the conflict. His influence helped turn Min-ji’s school dispute into a violent kidnapping case, while his connections allowed those responsible to avoid immediate consequences.



Kim now understands that simply rescuing Min-ji will not end the threat. As long as Kang-chan and his organisation remain active, his daughter will never be safe.



The confrontation pushes Kim closer to the ruthless operative once known as Code 66. He stops reacting like an ordinary father trapped in a dangerous situation and begins approaching the conflict as a former special agent completing a mission.



Kim’s decision to eliminate the threat also raises a difficult question. Even if he saves Min-ji, she has now seen the violent identity he spent years hiding from her.



Kim’s past becomes the next major threat



Earlier episodes revealed that Kim left his dangerous career behind to raise Min-ji and live as an ordinary bank employee. Her disappearance forced him to use the combat skills, contacts and instincts that he had tried to bury.



Episode 7 makes it clear that his past will continue following him. The next chapter appears ready to explore Code 66 more deeply as another figure from Kim’s former life enters the conflict. The Episode 8 preview directly calls him by his old codename, suggesting that rescuing Min-ji has opened the door to an even larger operation.



With the final episodes approaching, Kim must protect his daughter while facing the consequences of becoming Code 66 again. What do you think will happen when Min-ji learns the full truth about her father? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[We’re partnering with the Georgia Public Library Service for no-cost career and AI training.]]></title>
<description><![CDATA[Google partners with the Georgia Public Library Service to provide free Career Certificates and AI training to residents statewide.]]></description>
<link>https://tsecurity.de/de/3674052/it-nachrichten/were-partnering-with-the-georgia-public-library-service-for-no-cost-career-and-ai-training/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3674052/it-nachrichten/were-partnering-with-the-georgia-public-library-service-for-no-cost-career-and-ai-training/</guid>
<pubDate>Thu, 16 Jul 2026 18:18:44 +0200</pubDate>
<content:encoded><![CDATA[<img src="https://storage.googleapis.com/gweb-uniblog-publish-prod/images/Georgia_Grow_with_Google_social.max-600x600.format-webp.webp">Google partners with the Georgia Public Library Service to provide free Career Certificates and AI training to residents statewide.]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic's Claude Corps will pay $85,000 to 1,000 early-career professionals - apply now]]></title>
<description><![CDATA[The Claude Corps fellowship matches professionals with partner nonprofits and pays them with benefits. But the deadline ends soon.]]></description>
<link>https://tsecurity.de/de/3673684/hacking/anthropics-claude-corps-will-pay-85000-to-1000-early-career-professionals-apply-now/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3673684/hacking/anthropics-claude-corps-will-pay-85000-to-1000-early-career-professionals-apply-now/</guid>
<pubDate>Thu, 16 Jul 2026 15:53:18 +0200</pubDate>
<content:encoded><![CDATA[The Claude Corps fellowship matches professionals with partner nonprofits and pays them with benefits. But the deadline ends soon.]]></content:encoded>
</item>
<item>
<title><![CDATA[Anthropic's Claude Corps will pay $85,000 to 1,000 early-career professionals - apply now]]></title>
<description><![CDATA[The Claude Corps fellowship matches professionals with partner nonprofits and pays them with benefits. But the deadline ends soon.]]></description>
<link>https://tsecurity.de/de/3673679/it-security-nachrichten/anthropics-claude-corps-will-pay-85000-to-1000-early-career-professionals-apply-now/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3673679/it-security-nachrichten/anthropics-claude-corps-will-pay-85000-to-1000-early-career-professionals-apply-now/</guid>
<pubDate>Thu, 16 Jul 2026 15:52:50 +0200</pubDate>
<content:encoded><![CDATA[The Claude Corps fellowship matches professionals with partner nonprofits and pays them with benefits. But the deadline ends soon.]]></content:encoded>
</item>
<item>
<title><![CDATA[What next-generation IT leadership looks like]]></title>
<description><![CDATA[Today’s CIOs must master a complex balancing act of maintaining operational excellence while enabling AI experimentation, modernizing legacy environments while accelerating innovation, leading workforce transformation while maintaining culture, and communicating fluently across boards, business u...]]></description>
<link>https://tsecurity.de/de/3672917/it-nachrichten/what-next-generation-it-leadership-looks-like/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3672917/it-nachrichten/what-next-generation-it-leadership-looks-like/</guid>
<pubDate>Thu, 16 Jul 2026 11:18:14 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Today’s CIOs must master a complex balancing act of maintaining operational excellence while enabling AI experimentation, modernizing legacy environments while accelerating innovation, leading workforce transformation while maintaining culture, and communicating fluently across boards, business units, customers, and technical teams alike.</p>



<p class="wp-block-paragraph">Few leaders understand this balancing act better than former Verizon CIO Jane Connell. Over her career, Connell has helped some of the world’s largest enterprises modernize operations, reduce complexity, and transform how technology enables business value at scale. As a <a href="https://www.cio.com/article/236876/cio-hall-of-fame-honorees.html">2026 CIO Hall of Fame inductee</a>, she is widely respected not only for operational excellence and strategic vision but also for her commitment to mentoring, workforce transformation, and preparing the next generation of leaders for a rapidly changing future.</p>



<p class="wp-block-paragraph">On a recent episode of <a href="https://linktr.ee/techwhisperers">the Tech Whisperers podcast</a>, we unpacked Connell’s unconventional leadership story and the playbook that has shaped one of technology’s most impactful leaders. In this exclusive interview after the show, edited for length and clarity, Connell shares more lessons from her Hall of Fame journey and why she believes the future of technology leadership will depend less on org charts and more on curiosity, credibility, and human connection.</p>



<p class="wp-block-paragraph"><strong>Dan Roberts: When you think about preparing the next generation of technology leaders, what capabilities or mindsets do you believe will matter most in this next era?</strong></p>



<p class="wp-block-paragraph"><strong>Jane Connell:</strong> One is curiosity, or what I call the “why” factor: What do we need to do and why do we need to do it? It’s having a mindset of unlocking the art of the possible. You must be comfortable with what you know, what you don’t know, and asking the question why, because in this era of AI and where technology is going, it’s not about automating things you know; it’s about what you don’t already know, and what that unlocks. AI creates patterns and opportunities and re-engineers through its own intelligence, so there has to be a lot of instinct involved, and you’re going to have to understand and learn what it’s telling you.</p>



<p class="wp-block-paragraph">I’m on the board of Rutgers, and one of the conversations we’re in with future leaders in education is that <a href="https://www.cio.com/article/4047844/ai-is-taking-over-junior-positions-in-it.html">you don’t have those entry-level jobs anymore</a>. They’re going to be AI. But those were building blocks for us. <a href="https://www.cio.com/article/4189865/how-ai-automation-is-reshaping-the-it-leadership-pipeline.html">We came up the ranks and did those jobs</a>, and that created the knowledge. [Future leaders are] not going to have that, so how do you create the foundation of knowledge — which is that art of asking why or what — to question if the bots or the patterns are biased or wrong. You’re not going to have the experience to rely on and say, “That’s wrong; I know that’s wrong because I did those. I know how this operates.”</p>



<p class="wp-block-paragraph">Second is having humility and being comfortable in your skin — that you don’t know everything, but you’re going to learn it. You’re going to involve yourself with people. It’s about workforce structure, not organizational structure. Who do you need to talk to, and what do you have to find out?</p>



<p class="wp-block-paragraph">I also believe <a href="https://www.cio.com/article/652317/cio-brett-lansings-five-point-approach-to-building-followership.html">followership</a> is going to be huge, because the way work gets done is not hierarchical. It’s going to be engineered based on the process and AI. You have to create followership of people working together, and they’ve got to want to work with you. This isn’t going be “you work for me, do as I say.” Followership is going to be a key skill for influencing and organically having that kind of impact, versus someone with authority.</p>



<p class="wp-block-paragraph">With that is the accountability to have high integrity, be credible, and be a person someone would trust. Because all this is going to break down the hierarchy of authority, you have to bring that human side and be a really good leader, which means people want to follow you, they trust you, they want to work with you, and they know you’re going to take them to a better place.</p>



<p class="wp-block-paragraph"><strong>One recurring theme throughout your career has been your ability to bridge deep technology expertise with strong business acumen. Why is that combination becoming even more critical in the age of AI and digital transformation?</strong></p>



<p class="wp-block-paragraph">You can’t impact anything tech-alone. It all resides on having business acumen and then having the technical ability to know how to use tech to solve the problem, not the other way around.</p>



<p class="wp-block-paragraph">At the root of all this is every company’s Achilles’ heel: the data. Access to data has been a privilege — those who have it, those who don’t. Now you’re bringing structured and unstructured [data] together for these AI models to work, and that’s a new skill set that requires you to know the business inside and outside.</p>



<p class="wp-block-paragraph">You also have to stay externally relevant and know where innovation is coming from. And you’re going to need to know how to architect that into the way your company goes to market, which requires you to know the business processes, how it runs, and how it could run.</p>



<p class="wp-block-paragraph">That’s the role of leaders moving forward, immersing yourself in the problems the business needs to solve. There’s no boundaries there. It’s not what department you report in and what process you own. It’s seamless. That’s the duality people need to command and grow into.</p>



<p class="wp-block-paragraph"><strong>Looking back on a career that spans multiple industries with different operating models, cultures, and regulatory environments, what were some of the most important calculated risks you took in terms of your growth?</strong></p>



<p class="wp-block-paragraph">There were two pivotal moments in my career that were the biggest risks but probably my biggest gains in growth. One was when I went into a full-time tech role and ran infrastructure. I was a fish out of water, and not the likely successor. Part of the reason I did it goes back to a something we talked about on the podcast: Well, why <em>not</em> me? And I want more. That’s just my tenacity.</p>



<p class="wp-block-paragraph">It was during the dot-com days of the late 90s, early 2000s. It didn’t matter if you were the CEO or a board director, if you didn’t know tech and you didn’t understand how to wield it, you were never going to be successful. I knew that no matter what job I may want in the future, I had to know tech. So it was a calculated decision: I’m going to jump into tech.</p>



<p class="wp-block-paragraph">Some very senior supply chain leaders who controlled my career told me, “You’re going to fail, and I’ll have a safety net for you when you come back.” Well, I didn’t fail and I never went back. That pressure was there, but I knew why I was doing it. This wasn’t just a job for ego’s sake. This was, I have to know tech. The future is tech. It’s kind of like AI now.</p>



<p class="wp-block-paragraph">The other pivotal moment was changing industries. I left Johnson &amp; Johnson at a great time. We had gone through a huge transformation, started our global services organization, and the perfect moment happened for me to retire early there. I didn’t know what I wanted to do. It was the first time I took a break in my career to let the world come to me instead of me planning it. Do I want to open a business? Do I want to consult? Do I want to stay retired? I was fortunate enough that I could, but I got bored.</p>



<p class="wp-block-paragraph">The financial industry wasn’t on my radar. Coming out of healthcare, with the purpose and the connection with saving lives, helping people, it’s easy to connect to. Financial wasn’t, for me. But one of the executive search firms said to me, when you interview, the biggest question hanging over your head is going to be, could you be successful elsewhere because you grew up in J&amp;J. You had advocates, you had influence, you knew the industry. It’s like your deck was stacked for you. Could you do all that when you’re a nobody coming off the street?</p>



<p class="wp-block-paragraph">So when the CIO role opened at State Street, I interviewed — and talk about being your authentic self. I had already done all this transformation, I already knew the outcomes, I knew everything I did was always enterprise and always end-to-end transformation. And because I wasn’t really vying for the job, I was having this conversation with the CFO and saying, “Here’s what your organization is lacking, here’s the noise you’re going to hear, do you really have the appetite for it?” And “I’d like talk to the COO and see if they’re ready to hear this about the value chain. I may not know your problem yet, but I guarantee it’s one of these three things.”</p>



<p class="wp-block-paragraph">I was testing their advocacy of, do you really want to transform? Are you ready? Because you have to own this. I can’t take accountabilities for your organizations. I can help you get there. I’m an enabler for you, but you have to own it. And it was a very different interview. By the end of it, I loved Ron [O’Hanley, State Street Chairman and CEO] and his whole team. I took the job on the leadership and the person more than the industry, and it was very successful.</p>



<p class="wp-block-paragraph">I followed the same recipe when I went to Verizon. Those were big growing moments. They were risky, they were very uncomfortable, but it was the biggest growth that I’ve ever had.</p>



<p class="wp-block-paragraph"><strong>Whether it’s a tough message to the C-suite, a difficult conversation with peers, or helping teams make sense of uncertainty and change, you tell people the truth in a way they can hear it. How can other leaders develop that ability to take people on the journey, especially when the message isn’t easy?</strong></p>



<p class="wp-block-paragraph">Skirting a problem is not the way to solve it. I’ve never been the person to say what you want to hear. I’ll tell you how you get there, and I’ll get you the results you want, but I’m going to be super honest because I want to manage the expectations of what we have to achieve.</p>



<p class="wp-block-paragraph">What I’ve learned as a leader is to take accountability. Say what you’re going to do, then do it, and if you hit a roadblock, be the first to call it. That gets you access, because people see it as a calculated risk. Anybody in the C-suite has resources and budget, but the earlier you signal and don’t waste money and resources, the more access to people and resources you will have.</p>



<p class="wp-block-paragraph">The greatest lesson I learned from one of the leaders in my path was: If you can’t say it in an elevator, and you can’t say it on one slide, you’re talking too much. So, think about it as one slide: What is it you need? What are you going to achieve? What are the risks? What are you taking accountability for? How will you measure it? It doesn’t matter what the message is when you can be that succinct. You’ve got them laser-focused on what it is. You gave them just enough of the periphery to know how you got there, and then it’s their belief in you that you can do it if they give you the money and resources, because that’s what you’re looking for.</p>



<p class="wp-block-paragraph">It sounds so simple but putting things together succinctly is hard work. You have to take all the unnecessary noise out, and keep the conversation focused. You don’t want their mind wandering, wondering where is she going, or what are they doing? Give it to them upfront and tell them what you need.</p>



<p class="wp-block-paragraph"><strong>You’ve spoken about entering corporate environments early in your career feeling intimidated by people with more traditional credentials or educational backgrounds. What advice can you give rising leaders about battling imposter syndrome?</strong></p>



<p class="wp-block-paragraph">Take the time to figure out what makes you uncomfortable, what makes you feel like an imposter, or what in that meeting you dread going in where you’re not acting like yourself. Are you more quiet than usual? Are you not asking the question you’d normally ask? Figure out what those issues are, and then address the things that make you uncomfortable. I went to college later because that bothered me. Those credentials do matter. So I addressed it and got my degrees and certifications.</p>



<p class="wp-block-paragraph">The other thing is to find people you trust, people whose opinion you respect, and bring them on the inside of what you’re working on. Maybe it’s dealing with a difficult business partner. You may not particularly want to be friends with them, but you’re going to have to work with them. Find the people that work effectively with them. You do this with high integrity — this is not about talking about that person — but find the allies that work with them. Nine times out of ten, they feel the way you do, but they found a way to work with the person. Pick their brain. Bring them in the fold and say, “I need this alliance. I can’t get there, and quite frankly, I know I’m resisting because maybe I just don’t like them. How did you get there?”</p>



<p class="wp-block-paragraph">People are generous. Ask their opinion, ask how they’re showing up. “Am I creating the trigger? Is there something I’m doing in that meeting or in that room that I’m not coming out with a decision or whatever I needed?”</p>



<p class="wp-block-paragraph">The greatest gift is feedback. There’s feedback you do something with, and there’s feedback you don’t, but either way, it’s a gift. Somebody’s giving it to you. It’s not personal; it’s business. And those things really help build your confidence and leadership style.</p>



<p class="wp-block-paragraph"><em>In an era increasingly shaped by automation and disruption, Jane Connell believes the most enduring competitive advantage may come from something deeply human: the ability to inspire confidence, curiosity, resilience, and possibility in others. For more advice from this Hall of Fame CIO, tune in to the </em><a href="https://linktr.ee/techwhisperers"><em>Tech Whisperers podcast</em></a><em>.</em></p>



<p class="wp-block-paragraph">See also:</p>



<ul class="wp-block-list">
<li><a href="https://www.cio.com/article/4185905/mastering-the-chess-of-it-leadership-today.html">Mastering the chess of IT leadership today</a></li>



<li><a href="https://www.cio.com/article/4176073/developing-a-customer-first-culture-for-it.html">Developing a customer-first culture for IT</a></li>



<li><a href="https://www.cio.com/article/4166851/coherence-where-leadership-and-ai-success-intersect.html">Coherence: Where leadership and AI success intersect</a></li>
</ul>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The executive profile your security team isn’t defending]]></title>
<description><![CDATA[A few years ago, I was retained to conduct a digital risk review for the chief executive of a mid-sized financial services firm. The brief was standard. Assess what was publicly available about the executive, identify exposure and advise on remediation. The AI tools I used completed the substanti...]]></description>
<link>https://tsecurity.de/de/3672879/it-security-nachrichten/the-executive-profile-your-security-team-isnt-defending/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3672879/it-security-nachrichten/the-executive-profile-your-security-team-isnt-defending/</guid>
<pubDate>Thu, 16 Jul 2026 11:09:26 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">A few years ago, I was retained to conduct a digital risk review for the chief executive of a mid-sized financial services firm. The brief was standard. Assess what was publicly available about the executive, identify exposure and advise on remediation. The AI tools I used completed the substantive reconnaissance in under ten minutes.</p>



<p class="wp-block-paragraph">What came back was a synthesized profile. Board memberships and the dates they started. A pattern of public commentary that revealed which policy positions the executive held strongly and which ones he would likely bend on under pressure. A philanthropic interest that explained which causes he would respond to if someone framed an ask around them. None of this information was sensitive in isolation. But assembled into a single, queryable narrative, it was something an attacker could use immediately.</p>



<p class="wp-block-paragraph">What I was looking at was a publicly accessible query to a general-purpose AI tool. And that is the problem most executive protection programs have not yet confronted. The reconnaissance phase for a targeted social engineering attack now takes minutes, not days, and the inputs required are trivial.</p>



<p class="wp-block-paragraph">AI-aggregated executive data has become an attack surface. Most security programs have not yet adapted to it.</p>



<h2 class="wp-block-heading"><a></a>The reconnaissance phase has effectively collapsed</h2>



<p class="wp-block-paragraph">Traditional <a href="https://www.csoonline.com/article/567859/what-is-osint-top-open-source-intelligence-tools.html">OSINT</a> work against an executive target required skill and patience. A competent analyst could build a useful profile over several days by working through search engines, corporate filings, social platforms and archived media. That work was a meaningful barrier. It took time and it required judgment about which sources to trust. It also left trails if the attacker was careless.</p>



<p class="wp-block-paragraph">AI aggregation removes all three constraints.</p>



<p class="wp-block-paragraph">The speed advantage is obvious but it is not the most important change. The more significant shift is synthesis. A search engine returns documents. An AI tool returns a coherent narrative with inferred relationships and interpreted significance. When I query a major AI platform for a senior executive by name, I get a structured account of their career arc, their professional relationships, their areas of visible influence and frequently their personal interests, relationships and public-facing affiliations.</p>



<p class="wp-block-paragraph">The <a href="https://westoahu.hawaii.edu/cyber/global-weekly-exec-summary/alphv-hackers-reveal-details-of-mgm-cyber-attack/">MGM Resorts incident </a>reported in 2023 illustrated the principle at scale. Attackers reportedly identified an MGM executive on LinkedIn, used that public profile information to impersonate them in a call to the IT help desk and obtained access credentials within minutes. The OSINT required was minimal and the manipulation was straightforward. What AI tools have done since is make that kind of reconnaissance faster, more complete and available to actors who lack the manual tradecraft to run it themselves.</p>



<p class="wp-block-paragraph">As the<a href="https://www.verizon.com/business/resources/reports/dbir/"> Verizon Data Breach Investigations Report </a>consistently documents, the human element is present in the majority of confirmed breaches, and social engineering remains one of the most reliable initial access vectors.</p>



<p class="wp-block-paragraph">The accessible nature of AI tools is also expanding the threat population. Attacks that previously required a skilled analyst to design now require only a motivated actor with internet access. That changes the volume and targeting calculus. Executives who were previously too obscure to justify a sophisticated manual attack are now viable targets for anyone with a grievance and a query box.</p>



<h2 class="wp-block-heading"><a></a>What should CIOs and CISOs do about it?</h2>



<p class="wp-block-paragraph">The instinct in many organizations is to route anything involving an executive’s public profile to the comms or PR function. That instinct made sense when the risk was reputational. It no longer covers the exposure.</p>



<p class="wp-block-paragraph">What follows is how I advise clients to structure this work.</p>



<h3 class="wp-block-heading">Monitor regularly</h3>



<p class="wp-block-paragraph">The starting point is establishing visibility into what AI tools are actually returning about your executive population. Not a one-time audit conducted during a board meeting and forgotten. The profiles shift continuously as new content is indexed, old content is reweighted and the models are updated.</p>



<p class="wp-block-paragraph">Assign ownership to run structured queries across the major platforms, including ChatGPT, Gemini, Perplexity and the Microsoft Copilot stack, on a regular cadence. Document what you find and track changes. Treat the output the same way you would treat a vulnerability scan as something to be prioritized and acted upon.</p>



<h3 class="wp-block-heading">Reduce the available attack surface</h3>



<p class="wp-block-paragraph">Work with each executive to identify content that expands their AI-indexed profile without serving any legitimate business purpose. This includes legacy conference bios that contain personal details, social posts that reveal schedule patterns or family context and board announcements that, in aggregate, map an executive’s full professional network. For some of this content, removal is possible and worth pursuing with a targeted effort.</p>



<p class="wp-block-paragraph">The more important conversation is around future behavior. Executives who habitually overshare on LinkedIn or in conference panels need to understand, concretely, what that sharing enables.</p>



<p class="wp-block-paragraph">Family member exposure is a consistent blind spot. An attacker who cannot pressure an executive directly may look for leverage through a spouse, a sibling or a child. Executives rarely consider their family members’ public digital footprint as part of their own security posture. It is.</p>



<h3 class="wp-block-heading">Shape the narrative where reduction isn’t possible</h3>



<p class="wp-block-paragraph">Public company executives, board members with mandatory disclosure obligations and individuals whose public profiles are central to their organizations’ credibility cannot simply go dark.</p>



<p class="wp-block-paragraph">The objective shifts from reduction to shaping in these cases. The goal is to ensure that what AI tools synthesize from the indexed content is professionally bound and does not inadvertently surface high-value pretext material. This is a joint exercise between security and communications, with security defining risk boundaries and communications executing the strategy.</p>



<h3 class="wp-block-heading">Train executives on what their own profile looks like</h3>



<p class="wp-block-paragraph">The most effective single intervention I have seen in executive briefings is also the simplest. Open a browser and query an AI platform on the executive in the room. Let them see the output. The reaction is consistent. They are surprised by the synthesis, uncomfortable with specific details that surface and immediately more engaged with the rest of the conversation than they were before.</p>



<p class="wp-block-paragraph">Abstract threat briefings about social engineering risks rarely land with senior leaders who feel they understand their own security position. Demonstrated evidence of their AI-mediated profile lands every time. As covered in the context of <a href="https://www.cio.com/article/4076479/from-awareness-to-ai-driven-resilience-protecting-identities-data-and-agents.html">executive-targeted attacks</a>, awareness is a prerequisite for the behavior change that makes protection programs effective.</p>



<h3 class="wp-block-heading">Integrate this into the executive protection program</h3>



<p class="wp-block-paragraph">This work belongs alongside endpoint security, credential management and physical protection in a unified executive protection program. When it remains a communications function, it lacks the reporting structure, budget authority and operational discipline that security work requires.</p>



<p class="wp-block-paragraph">Assign an owner with a security mandate. Include AI exposure in the risk register. Report on it at the same cadence as other executive protection metrics. The organizations that have done this well have not created a separate program for it. They have extended an existing one.</p>



<h2 class="wp-block-heading"><a></a>What effective executive protection programs now include</h2>



<p class="wp-block-paragraph">The organizations that have integrated AI exposure into their executive protection work share a few characteristics that distinguish them from those still treating it as a communications edge case.</p>



<ul class="wp-block-list">
<li>They treat the executive’s public information footprint as a managed attack surface with a named accountable party. Someone is responsible for it, the same way someone is responsible for endpoint patching or identity governance.</li>



<li>They include AI-assisted reconnaissance as a starting condition in red team exercises. Before any social engineering simulation begins, the red team runs the same queries an attacker would run. The pretext they design is based on what those queries return.</li>



<li>Their executive protection briefings include an AI profile review as a standing agenda point. Physical security considerations, credential exposure and public information risk are reviewed together because they are connected. An attacker who knows an executive’s schedule from their public-facing content can time a credential reset attempt or a vishing call with equal precision.</li>
</ul>



<p class="wp-block-paragraph">The executive I reviewed several years ago had no idea what his AI-indexed profile contained or what it enabled. Most of the executives I work with today are in the same position. By the time you finish reading this, it is likely those queries have already been run on someone in your organization. The question is whether your program is positioned to detect it and respond in time.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hazel Cerra — Women in Security 2026]]></title>
<description><![CDATA[Hazel Cerra shares the valuable lessons learned from her decades-long career with the U.S. Secret Service.]]></description>
<link>https://tsecurity.de/de/3672878/it-security-nachrichten/hazel-cerra-women-in-security-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3672878/it-security-nachrichten/hazel-cerra-women-in-security-2026/</guid>
<pubDate>Thu, 16 Jul 2026 11:09:25 +0200</pubDate>
<content:encoded><![CDATA[Hazel Cerra shares the valuable lessons learned from her decades-long career with the U.S. Secret Service.]]></content:encoded>
</item>
<item>
<title><![CDATA[‘My Life With the Walter Boys’ Season 3 Trailer, Poster and First Look Reveal]]></title>
<description><![CDATA[Netflix has released a new poster, official trailer, and fresh first-look images for My Life With the Walter Boys Season 3 ahead of its August 2026 premiere.



The popular teen drama returns to Silver Falls on August 6, 2026. The new season will continue Jackie Howard’s complicated relationship ...]]></description>
<link>https://tsecurity.de/de/3671522/ios-mac-os/my-life-with-the-walter-boys-season-3-trailer-poster-and-first-look-reveal/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671522/ios-mac-os/my-life-with-the-walter-boys-season-3-trailer-poster-and-first-look-reveal/</guid>
<pubDate>Wed, 15 Jul 2026 19:40:11 +0200</pubDate>
<content:encoded><![CDATA[Netflix has released a new poster, official trailer, and fresh first-look images for My Life With the Walter Boys Season 3 ahead of its August 2026 premiere.



The popular teen drama returns to Silver Falls on August 6, 2026. The new season will continue Jackie Howard’s complicated relationship with brothers Cole and Alex while the Walter family deals with the medical emergency that ended Season 2.




Release date: August 6, 2026



Streaming platform: Netflix



Genre: Teen drama and romance



Number of episodes: 10



Main cast: Nikki Rodriguez, Noah LaLonde, Ashby Gentry, Sarah Rafferty, Marc Blucas, Connor Stanhope, and Jaylan Evans



New cast members: Chad Rook, Naveen Paddock, and Erin Karpluk




Netflix has also renewed the show for Season 4, which is expected to arrive sometime in 2027.



The trailer returns to the Season 2 cliffhanger




https://youtu.be/_nneiDtbdbk?si=p3PcR6heHbMZRqb1




Spoilers ahead for the Season 2 finale.



Season 2 ended shortly after Jackie and Cole finally admitted that they loved each other. Alex overheard the confession, creating another painful moment between the brothers.



However, their romantic problems were interrupted when an ambulance arrived for George Walter following a serious health emergency. The Season 3 trailer confirms that George survives, although his condition will continue to affect the family during the new episodes.



The trailer shows Jackie struggling with guilt while trying to support the Walters. George encourages her to stop blaming herself and begin living her life again. Jackie must also decide what she truly wants instead of continuing to move between Alex and Cole.



Jackie, Cole, and Alex face the consequences







The new footage makes it clear that Jackie’s feelings for Cole have not disappeared. They exchange tense looks at school, spend time together at the Walter house, and continue trying to understand what their confession means.



At the same time, Alex appears to be focusing on his growing rodeo career. His success brings more attention, pressure, and confidence, which could change the balance between the three main characters. Cole also finds a new direction when he enters the world of car racing after losing the football future he once expected.



The brothers may begin repairing their damaged relationship as the family comes together around George. First-look images show Cole and Alex speaking to each other, although the situation involving Jackie remains difficult.



New characters arrive in Silver Falls



Chad Rook joins the cast as Mac, a drag racer who notices Cole’s natural ability behind the wheel. Naveen Paddock plays Eliot, Uncle Richard’s charming New York intern, whose arrival could remind Jackie of the life she left behind.



Erin Karpluk will appear as Hannah, George’s free-spirited sister and the mother of Isaac and Lee. Her unexpected return will force the family to revisit old conflicts and unanswered questions.



My Life With the Walter Boys Season 3 arrives on Netflix on August 6. Do you think Jackie will finally choose Cole or try to repair her relationship with Alex? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[M&Ms, solar panels and plain language: Inside the climate strategy of Slalom’s Meagan Breidert]]></title>
<description><![CDATA[Sustainability Spotlight: Four years ago, Meagan Breidert shifted her career into climate work to tackle "big, challenging, complex problems" — landing a role as Slalom's senior director of sustainability and impact. In this profile, Breidert shares her wish to get coffee and talk chocolate with ...]]></description>
<link>https://tsecurity.de/de/3671258/it-nachrichten/mms-solar-panels-and-plain-language-inside-the-climate-strategy-of-slaloms-meagan-breidert/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671258/it-nachrichten/mms-solar-panels-and-plain-language-inside-the-climate-strategy-of-slaloms-meagan-breidert/</guid>
<pubDate>Wed, 15 Jul 2026 18:03:55 +0200</pubDate>
<content:encoded><![CDATA[<img fetchpriority="high" loading="eager" width="1260" height="945" src="https://cdn.geekwire.com/wp-content/uploads/2026/07/Meagan-Briedert_Slalom_41-1260x945.jpg" class="webfeedsFeaturedVisual wp-post-image" alt="" decoding="async" srcset="https://cdn.geekwire.com/wp-content/uploads/2026/07/Meagan-Briedert_Slalom_41-1260x945.jpg 1260w, https://cdn.geekwire.com/wp-content/uploads/2026/07/Meagan-Briedert_Slalom_41-768x576.jpg 768w, https://cdn.geekwire.com/wp-content/uploads/2026/07/Meagan-Briedert_Slalom_41-1536x1152.jpg 1536w, https://cdn.geekwire.com/wp-content/uploads/2026/07/Meagan-Briedert_Slalom_41-2048x1536.jpg 2048w" sizes="(max-width: 1260px) 100vw, 1260px"><br>Sustainability Spotlight: Four years ago, Meagan Breidert shifted her career into climate work to tackle "big, challenging, complex problems" — landing a role as Slalom's senior director of sustainability and impact. In this profile, Breidert shares her wish to get coffee and talk chocolate with the Mars CSO, her dream environmental innovation, and other insights. <a href="https://www.geekwire.com/2026/mms-solar-panels-and-plain-language-inside-the-climate-strategy-of-slaloms-meagan-breidert/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[A cloud deal too good to be true]]></title>
<description><![CDATA[The model of the forward deployed engineer is sweeping through enterprise IT like a gold rush, and I’m concerned that many companies don’t understand what they’re signing up for.



Let’s start with the headline numbers. AWS announced a $1 billion investment in a new Forward Deployed Engineering ...]]></description>
<link>https://tsecurity.de/de/3671160/ai-nachrichten/a-cloud-deal-too-good-to-be-true/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3671160/ai-nachrichten/a-cloud-deal-too-good-to-be-true/</guid>
<pubDate>Wed, 15 Jul 2026 17:19:33 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">The model of the forward deployed engineer is sweeping through enterprise IT like a gold rush, and I’m concerned that many companies don’t understand what they’re signing up for.</p>



<p class="wp-block-paragraph">Let’s start with the headline numbers. <a href="https://www.aboutamazon.com/news/aws/aws-1-billion-forward-deployed-ai-engineers">AWS announced a $1 billion investment</a> in a new Forward Deployed Engineering organization. Google Cloud committed $750 million to expand similar programs. <a href="https://newsroom.accenture.com/news/2026/accenture-launches-microsoft-forward-deployed-engineering-practice-to-help-organizations-scale-ai-across-the-enterprise">Microsoft has been running Azure-focused embedded engineering teams for years</a>, including partnerships with Accenture to scale forward deployed engineering practices. All three are pitching the same story: We’ll send engineers to work directly with your teams, help you deploy AI, and accelerate your <a href="https://www.cio.com/article/230425/what-is-digital-transformation-a-necessary-disruption.html">digital transformation</a>. You get top-tier technical talent for free, and we get to partner with you on your journey.</p>



<p class="wp-block-paragraph">It sounds reasonable on the surface. It sounds collaborative, even generous. But I’ve been in this industry long enough to know that when a multi-billion-dollar company offers you something for free, they’re sure to get much more than they give.</p>



<h2 class="wp-block-heading">What you actually get</h2>



<p class="wp-block-paragraph">The forward deployed engineer model isn’t new. The consulting industry has been doing some version of it for decades. What makes this different is the scale and the direct financial incentive behind it. </p>



<p class="wp-block-paragraph">These engineers work for the cloud provider. They’re not your employees. They’re not independent consultants. They’re technically excellent professionals who are being paid to solve your immediate problems while simultaneously building relationships and architectures that favor their employer’s ecosystem. Think about it from their perspective. Those forward engineers are evaluated on whether customers succeed with their employer’s platform. They’re rewarded when enterprises adopt more services from that platform. Their career advancement depends on making AWS, Google Cloud, or Microsoft Azure the obvious choice for all of your technical decisions.</p>



<p class="wp-block-paragraph">This isn’t a criticism of the individual engineers. Many of them are genuinely talented and genuinely want to help. But they’re operating within a system that rewards specific outcomes, and those outcomes align with the vendor’s financial interests, not necessarily yours.</p>



<h2 class="wp-block-heading">The problem no one talks about</h2>



<p class="wp-block-paragraph">Here’s what I see happening at enterprises right now. A company decides they need help deploying AI. A cloud provider offers to embed engineers at no additional cost. Those engineers work alongside internal teams, make architectural recommendations, and help build out systems. Six months later, the company has a production AI system running on a single cloud platform, built by people with deep expertise in that specific platform.</p>



<p class="wp-block-paragraph">The problem? Nobody evaluated whether that platform was actually the best choice for the business. Nobody looked at alternatives. Nobody asked whether a <a href="https://www.infoworld.com/article/3584433/are-you-ready-for-multicloud-a-checklist.html">multicloud </a>architecture or best-of-breed approach might deliver better results at lower cost.</p>



<p class="wp-block-paragraph">The engineers embedded in these programs are not going to recommend that you split your workloads across providers. They’re not going to suggest you use <a href="https://www.infoworld.com/article/2262355/what-is-open-source-software-open-source-and-foss-explained.html">open source</a> tools where they make sense. They’re not going to point you toward a competitor when their employer’s solution will work well enough. That’s not how these programs are designed to function. What you’re getting is optimized architecture for a single cloud brand, not optimized architecture for your business.</p>



<h2 class="wp-block-heading">The financial reality will hit</h2>



<p class="wp-block-paragraph">The bills are going to come due, and they’re going to be painful. I’ve watched this pattern play out before. When enterprises lock into a single cloud provider through these embedded engineering programs, they often discover two or three years later that they’re paying premiums that their more independent-thinking competitors avoided.</p>



<p class="wp-block-paragraph">The reasons are straightforward. When you’re architecting systems around a single platform, you naturally fall into usage patterns that favor that platform’s pricing structures. You use their managed databases instead of portable alternatives. You adopt their AI services instead of evaluating third-party options. You build workflows that only work within their ecosystem. And when it comes time to renegotiate or benchmark against alternatives, you find that migrating would cost more than accepting whatever pricing they offer.</p>



<p class="wp-block-paragraph">I’ve spent the past decade helping companies untangle from these situations. I’ve seen organizations with cloud bills 15 to 20 times higher than they should be, unable to migrate because their entire AI infrastructure is built on proprietary services that only work on one platform. The forward deployed engineer programs are accelerating this problem. They’re making it easier to get into these situations and harder to get out.</p>



<h2 class="wp-block-heading">Think before you commit</h2>



<p class="wp-block-paragraph">Before you accept one of these programs, consider these three recommendations.</p>



<p class="wp-block-paragraph"><strong>First, require independent architecture oversight</strong> from day one. Hire or engage architects who work for your company, not for your cloud provider. They should evaluate every recommendation made by embedded engineers against business requirements and compare options across providers. This isn’t about being suspicious of the engineers. It’s about ensuring that decisions are made with your interests in mind.</p>



<p class="wp-block-paragraph"><strong>Second, demand a clear exit strategy</strong> before you begin. Ask the cloud provider to document which proprietary services you’re using, what migration paths exist, and what the cost would be to move to an alternative platform. If they can’t provide that information, or if the migration costs seem impossibly high, that’s a sign that you’re building technical debt that will be very expensive to service later.</p>



<p class="wp-block-paragraph"><strong>Third, benchmark your costs</strong> continuously. Set up internal processes to compare your cloud spending against industry benchmarks and against what your competitors might be paying for similar workloads. Don’t wait until your contract renewal to discover that you’re paying premium prices. Monitor expenses from the beginning, and be willing to challenge your cloud provider if you’re not getting value that justifies the cost.</p>



<h2 class="wp-block-heading">The bottom line</h2>



<p class="wp-block-paragraph">The forward deployed engineers are solving real problems. Enterprises genuinely struggle with AI deployment, and having experienced engineers available to help is valuable. I’m not suggesting these programs are fundamentally bad. However, they’re being marketed as neutral partnerships when they’re actually strategic sales programs designed to lock enterprises into specific platforms. The helpful engineers showing up at your office are building dependencies that will be very difficult to break. The “free” technical assistance is being funded by margins on services you’ll be buying for years.</p>



<p class="wp-block-paragraph">Go in with your eyes open. Use these programs but add your own independent oversight. Build architectures that you could leave if you needed to. And don’t let the immediate satisfaction of having problems solved today blind you to the financial consequences that will arrive tomorrow.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ted Lasso Season 4 Release Date, Cast and Story: Everything Confirmed So Far]]></title>
<description><![CDATA[Ted Lasso Season 4 officially arrives on Apple TV on August 5, 2026. Jason Sudeikis returns as Ted, who faces a completely new challenge after leaving AFC Richmond and returning home at the end of Season 3.




Release date: August 5, 2026



Streaming platform: Apple TV



Genre: Sports comedy-d...]]></description>
<link>https://tsecurity.de/de/3670810/ios-mac-os/ted-lasso-season-4-release-date-cast-and-story-everything-confirmed-so-far/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670810/ios-mac-os/ted-lasso-season-4-release-date-cast-and-story-everything-confirmed-so-far/</guid>
<pubDate>Wed, 15 Jul 2026 15:24:38 +0200</pubDate>
<content:encoded><![CDATA[Ted Lasso Season 4 officially arrives on Apple TV on August 5, 2026. Jason Sudeikis returns as Ted, who faces a completely new challenge after leaving AFC Richmond and returning home at the end of Season 3.




Release date: August 5, 2026



Streaming platform: Apple TV



Genre: Sports comedy-drama



Number of episodes: 10



Release schedule: One new episode every Wednesday



Season finale date: October 7, 2026



Lead cast: Jason Sudeikis, Hannah Waddingham, Juno Temple, Brett Goldstein, Brendan Hunt and Jeremy Swift



New cast: Tanya Reynolds, Jude Mack, Faye Marsay, Rex Hayes, Aisling Sharkey, Abbie Hern and Grant Feely




The first episode will premiere on August 5, followed by weekly episodes through October 7. This means viewers will once again follow the season over several weeks instead of receiving all 10 episodes at once.




https://www.youtube.com/watch?v=PxZg4SfIURg




What is the story of Ted Lasso Season 4?



Possible spoilers for the first three seasons follow.



Season 4 brings Ted back to Richmond, where he begins coaching a second-division women’s football team. The new position becomes one of the biggest challenges of his career, as Ted must build another team while adjusting to a different side of professional football.



The storyline follows the idea introduced near the end of Season 3, when Keeley presented Rebecca with plans to create an AFC Richmond women’s team. That proposal now appears to form the main foundation of the new season.



Ted’s return also raises several personal questions. Season 3 ended with him leaving England to spend more time with his son, Henry. Season 4 will need to explain why he returns to Richmond, how his family situation has changed, and whether Henry becomes part of his life in England.



The official description says Ted and the new team will learn to take chances before knowing how everything will work out. That theme fits the show’s focus on personal growth, teamwork, and people finding confidence during uncertain moments.



Which cast members are returning?



Jason Sudeikis returns as Ted Lasso and continues to serve as an executive producer. Hannah Waddingham is back as AFC Richmond owner Rebecca Welton, while Juno Temple returns as Keeley Jones.



Brett Goldstein will also appear again as Roy Kent. Brendan Hunt returns as Coach Beard, and Jeremy Swift reprises his role as Leslie Higgins. Their confirmed involvement suggests AFC Richmond’s familiar leadership group will remain closely connected to Ted’s new team.



The season also introduces Tanya Reynolds, Jude Mack, Faye Marsay, Rex Hayes, Aisling Sharkey, Abbie Hern and Grant Feely. Details about most of their characters remain limited, although several of them are expected to be connected to the new women’s football storyline.



Will the original AFC Richmond players return?



Apple has not confirmed every member of the original men’s team for Season 4. The announced returning cast currently includes Ted, Rebecca, Keeley, Roy, Coach Beard, and Higgins.



Characters such as Jamie Tartt, Sam Obisanya, Dani Rojas and Isaac McAdoo could still appear, especially because the story remains centred around Richmond. However, their involvement should remain unconfirmed until further announcements or episodes reveal more.



Ted Lasso Season 4 begins streaming on Apple TV on August 5, 2026. What do you plan to watch when Ted returns to Richmond? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[The Linux Kernel is Falling Apart.]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 146x - Views:1781 Figure out what vulnerabilities in your code ACTUALLY MATTER with Maze at https://go.lowlevel.tv/maze

https://copy.fail
https://github.com/v4bel/dirtyfrag
https://github.com/J-jaeyoung/bad-epoll

🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: ht...]]></description>
<link>https://tsecurity.de/de/3670803/it-security-video/the-linux-kernel-is-falling-apart/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670803/it-security-video/the-linux-kernel-is-falling-apart/</guid>
<pubDate>Wed, 15 Jul 2026 15:18:39 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 146x - Views:1781 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/BxdWlV5LI_4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Figure out what vulnerabilities in your code ACTUALLY MATTER with Maze at https://go.lowlevel.tv/maze<br />
<br />
https://copy.fail<br />
https://github.com/v4bel/dirtyfrag<br />
https://github.com/J-jaeyoung/bad-epoll<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Farm machinery mechanics taught me as much about people as it did engineering’]]></title>
<description><![CDATA[BMS’ Tom Shortt discusses the early factors that influenced his career and led to his role as an engineering director. 
Read more: ‘Farm machinery mechanics taught me as much about people as it did engineering’]]></description>
<link>https://tsecurity.de/de/3670553/it-nachrichten/farm-machinery-mechanics-taught-me-as-much-about-people-as-it-did-engineering/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670553/it-nachrichten/farm-machinery-mechanics-taught-me-as-much-about-people-as-it-did-engineering/</guid>
<pubDate>Wed, 15 Jul 2026 14:02:40 +0200</pubDate>
<content:encoded><![CDATA[<p>BMS’ Tom Shortt discusses the early factors that influenced his career and led to his role as an engineering director. </p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/people/farm-machinery-mechanics-people-engineering-leadership-bms">‘Farm machinery mechanics taught me as much about people as it did engineering’</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ted Lasso Season 4 Release Date, Cast and Story: Everything Confirmed So Far]]></title>
<description><![CDATA[Ted Lasso Season 4 officially arrives on Apple TV on August 5, 2026. Jason Sudeikis returns as Ted, who faces a completely new challenge after leaving AFC Richmond and returning home at the end of Season 3.




Release date: August 5, 2026



Streaming platform: Apple TV



Genre: Sports comedy-d...]]></description>
<link>https://tsecurity.de/de/3670539/ios-mac-os/ted-lasso-season-4-release-date-cast-and-story-everything-confirmed-so-far/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670539/ios-mac-os/ted-lasso-season-4-release-date-cast-and-story-everything-confirmed-so-far/</guid>
<pubDate>Wed, 15 Jul 2026 13:55:32 +0200</pubDate>
<content:encoded><![CDATA[Ted Lasso Season 4 officially arrives on Apple TV on August 5, 2026. Jason Sudeikis returns as Ted, who faces a completely new challenge after leaving AFC Richmond and returning home at the end of Season 3.




Release date: August 5, 2026



Streaming platform: Apple TV



Genre: Sports comedy-drama



Number of episodes: 10



Release schedule: One new episode every Wednesday



Season finale date: October 7, 2026



Lead cast: Jason Sudeikis, Hannah Waddingham, Juno Temple, Brett Goldstein, Brendan Hunt and Jeremy Swift



New cast: Tanya Reynolds, Jude Mack, Faye Marsay, Rex Hayes, Aisling Sharkey, Abbie Hern and Grant Feely




The first episode will premiere on August 5, followed by weekly episodes through October 7. This means viewers will once again follow the season over several weeks instead of receiving all 10 episodes at once.




https://www.youtube.com/watch?v=PxZg4SfIURg




What is the story of Ted Lasso Season 4?



Possible spoilers for the first three seasons follow.



Season 4 brings Ted back to Richmond, where he begins coaching a second-division women’s football team. The new position becomes one of the biggest challenges of his career, as Ted must build another team while adjusting to a different side of professional football.



The storyline follows the idea introduced near the end of Season 3, when Keeley presented Rebecca with plans to create an AFC Richmond women’s team. That proposal now appears to form the main foundation of the new season.



Ted’s return also raises several personal questions. Season 3 ended with him leaving England to spend more time with his son, Henry. Season 4 will need to explain why he returns to Richmond, how his family situation has changed, and whether Henry becomes part of his life in England.



The official description says Ted and the new team will learn to take chances before knowing how everything will work out. That theme fits the show’s focus on personal growth, teamwork, and people finding confidence during uncertain moments.



Which cast members are returning?



Jason Sudeikis returns as Ted Lasso and continues to serve as an executive producer. Hannah Waddingham is back as AFC Richmond owner Rebecca Welton, while Juno Temple returns as Keeley Jones.



Brett Goldstein will also appear again as Roy Kent. Brendan Hunt returns as Coach Beard, and Jeremy Swift reprises his role as Leslie Higgins. Their confirmed involvement suggests AFC Richmond’s familiar leadership group will remain closely connected to Ted’s new team.



The season also introduces Tanya Reynolds, Jude Mack, Faye Marsay, Rex Hayes, Aisling Sharkey, Abbie Hern and Grant Feely. Details about most of their characters remain limited, although several of them are expected to be connected to the new women’s football storyline.



Will the original AFC Richmond players return?



Apple has not confirmed every member of the original men’s team for Season 4. The announced returning cast currently includes Ted, Rebecca, Keeley, Roy, Coach Beard, and Higgins.



Characters such as Jamie Tartt, Sam Obisanya, Dani Rojas and Isaac McAdoo could still appear, especially because the story remains centred around Richmond. However, their involvement should remain unconfirmed until further announcements or episodes reveal more.



Ted Lasso Season 4 begins streaming on Apple TV on August 5, 2026. What do you plan to watch when Ted returns to Richmond? Let us know in the comments.]]></content:encoded>
</item>
<item>
<title><![CDATA[How to unionize your tech workplace]]></title>
<description><![CDATA[This is Part 2 of a series on tech worker unionization. See Part 1: “A brewing battle: More IT workers want unions. The industry doesn’t.”



The best time for tech workers to unionize was 20 years ago, when they had plenty of leverage. The second-best time is now, when they don’t.



Mass layoff...]]></description>
<link>https://tsecurity.de/de/3670454/it-nachrichten/how-to-unionize-your-tech-workplace/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670454/it-nachrichten/how-to-unionize-your-tech-workplace/</guid>
<pubDate>Wed, 15 Jul 2026 13:18:09 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph"><em>This is Part 2 of a series on tech worker unionization. See Part 1: “<a href="https://www.computerworld.com/article/4191760/brewing-battle-more-tech-workers-want-unions-but-the-industry-doesnt.html">A brewing battle: More IT workers want unions. The industry doesn’t</a>.”</em></p>



<p class="wp-block-paragraph">The best time for tech workers to unionize was 20 years ago, when they had plenty of leverage. The second-best time is now, when they don’t.</p>



<p class="wp-block-paragraph">Mass layoffs, AI-driven displacement, corporate surveillance, workplace disillusionment have created conditions that have made organizing compelling for tech professionals. But the federal labor board that has historically protected workers’ right to organize has been weakened, and the companies that once feared it are openly defying it.</p>



<p class="wp-block-paragraph">Here’s how organizers and labor experts describe the pros and cons to organizing — and how you can get started.</p>



<h2 class="wp-block-heading">What unions can — and can’t — do for you</h2>



<p class="wp-block-paragraph">The single biggest benefit of a union contract for most tech workers isn’t pay — it’s protection against arbitrary termination, especially in the wake of recent mass layoffs in tech. In the United States, nonunion “at-will” workers can be fired at any time without a stated reason, while unionized workers negotiate protections written into their contracts.</p>



<p class="wp-block-paragraph">“That fear of the company letting you go for anything at any time…with a union they just can’t do that,” says <a href="https://www.linkedin.com/in/zthompson1/" target="_blank" rel="noreferrer noopener">Zak Thompson</a>, a senior software engineer at Kickstarter and union steward at Kickstarter United. Now that Kickstarter employees are unionized, people are less worried that saying something negative will result in termination.</p>



<p class="wp-block-paragraph">“I’ve been shocked at the willingness of my co-workers to speak up against what they see as poor or controversial business decisions,” Thompson says.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full is-resized"> width="972" height="972" sizes="auto, (max-width: 972px) 100vw, 972px"&gt;<figcaption class="wp-element-caption"><p>Zak Thompson from Kickstarter United</p><br></figcaption></figure><p class="imageCredit">Fee Christoph</p></div>



<p class="wp-block-paragraph"><strong>Beyond job security, unions can deliver concrete material gains.</strong> <a href="https://kickstarterunited.org/about/" target="_blank" rel="noreferrer noopener">Kickstarter United was formed in 2020</a>, although getting there wasn’t easy: two employees were fired during the organizing campaign — which itself became a galvanizing event. And while the union hasn’t been able to prevent layoffs, it did negotiate better terms: four months of severance pay and four to six months of continued health insurance, versus the two to three weeks per year of work that management had initially proposed.</p>



<p class="wp-block-paragraph">Other benefits include a four-day work week; AI protections; a minimum pay floor; and standards for raises, promotions, and time off for the company’s 59 employees.</p>



<p class="wp-block-paragraph"><strong>Unions can give tech workers a voice in decisions that affect their daily work — including how AI tools are deployed.</strong> “Nobody I’ve spoken to is against new technology or getting trained in it,” says <a href="https://www.linkedin.com/in/mbelasco/" target="_blank" rel="noreferrer noopener">Max Belasco</a>, a business systems analyst at the University of California Los Angeles School of Law and co-chair of the UCLA chapter of the University Professional and Technical Employees/Communications Workers of America (UPTE-CWA) Local 9119.</p>



<p class="wp-block-paragraph">“But when new technology is being implemented, we want to know: what’s the five-year vision, the 10-year vision? Are we implementing this in a way that betters staffing, increases efficiency, or eases the lives of people already working? Or are we trying to take away jobs, automate people out of their pension or paycheck?” Belasco says.</p>



<p class="wp-block-paragraph"><strong>The challenges are real.</strong> Tech professionals are less inclined to leave their jobs in the current market because wages haven’t been increasing as fast as they once were, and it can take longer to land another job.</p>



<p class="wp-block-paragraph">“Tech moved from a very tight labor market in 2022 (1.85% unemployment rate) to a noticeably weaker one in 2024–2026 (3.49%),” although that’s still better than the national unemployment rate of 4.36% through May of this year, says <a href="https://www.mercatus.org/scholars/liya-palagashvili" target="_blank" rel="noreferrer noopener">Liya Palagashvili</a>, senior research fellow and director of the Labor Policy Project at the Mercatus Center at George Mason University.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full is-resized"> width="960" height="640" sizes="auto, (max-width: 960px) 100vw, 960px"&gt;<figcaption class="wp-element-caption"><p>Liya Palagashvili of the Mercatus Center at George Mason University</p></figcaption></figure><p class="imageCredit">Mercatus Center at George Mason University</p></div>



<p class="wp-block-paragraph"><strong>Flexibility is a concern.</strong> The more substantive challenge, raised by economists including Palagashvili, is that traditional union contracts impose uniform terms across an entire bargaining unit, limiting the flexibility that many tech workers — and their employers —currently enjoy. Tech firms need to move fast, adjusting teams, products, and roles on the fly.</p>



<p class="wp-block-paragraph">“Collective bargaining agreements can make those adjustments much more difficult, whether by making them slower, costlier, or inconsistent with the contract,” she says.</p>



<p class="wp-block-paragraph">Workers skeptical of unions in a <a href="https://www.teamblind.com/blog/why-are-unions-not-common-tech-industry/" target="_blank" rel="noreferrer noopener">survey of 1,900 tech professionals</a> conducted by the career site Blind cited specific concerns: that unions are “not meritocratic,” “prevent innovation,” and “hold back earnings of top performers.”</p>



<p class="wp-block-paragraph">Thompson from Kickstarter United pushes back: “We have nothing in our contract about ‘you can’t bend down and pick up a piece of trash because that’s someone else’s job.’ The company is free to give bonuses and individual raises as much as they like. This is all just up to the people who are bargaining the contract from the union side.”</p>



<p class="wp-block-paragraph"><strong>Organizing carries potentially serious personal risks.</strong> During negotiations for a second three-year contract in 2025, Kickstarter United went on strike for 42 days. A few months later, the company announced layoffs.</p>



<p class="wp-block-paragraph">“They let go strong union leaders, including a person who had bargained our last contract,” Thompson says. The union appealed, and the issue is now going to arbitration.</p>



<p class="wp-block-paragraph">If you form a union, don’t expect much support from the <a href="https://www.nlrb.gov/" target="_blank" rel="noreferrer noopener">National Labor Relations Board</a>, the agency that certifies US labor unions and protects workers’ right to organize, in terms of prosecuting complaints of unfair labor practices, Thompson warns. “We’re in a political moment in this country with a pretty weakened NLRB. You have to be ready to organize and withhold worker power without any guarantee of safety.”</p>



<p class="wp-block-paragraph"><strong>Organizers are up against an enormous union avoidance industry.</strong> Organizers can expect fierce pushback as soon as the business discovers that organizing is underway.</p>



<p class="wp-block-paragraph">“There’s a multi-billion-dollar industry in union avoidance,” says <a href="https://www.linkedin.com/in/alan-mcavinney-a386b8122/" target="_blank" rel="noreferrer noopener">Alan McAvinney</a>, a Google software engineer and organizing chair, Alphabet Workers Union-CWA, a 1,400-member minority union of Alphabet employees. (Google is a subsidiary of Alphabet.)</p>



<p class="wp-block-paragraph">US employers spend roughly $1.7 billion a year on union avoidance consultants and law firms, according to a <a href="https://www.epi.org/press/u-s-employers-spend-roughly-1-7-billion-annually-on-union-avoidance/" target="_blank" rel="noreferrer noopener">May 2026 report</a> by the Economic Policy Institute and LaborLab.</p>



<p class="wp-block-paragraph"><strong>Expect hardball tactics. </strong>Management may play hardball during the time between when organizers announce their intention to unionize and the actual vote. For example, management can threaten to fire foreign-born workers in the US on H-1B visas if they support the union. Those workers would then have just 60 days to find a new sponsoring employer or lose their H-1B status, according to a recent <a href="https://techworkerscoalition.org/blog/2025/03/14/immigrant-rights-are-labor-rights-tech-workers-and-h-1b-visas/" target="_blank" rel="noreferrer noopener">Tech Workers Coalition blog post</a>.</p>



<p class="wp-block-paragraph">And at venture capital-backed startups, investment agreements sometimes require management to attest there is no union activity — meaning a public organizing drive can trigger funding withdrawal. Or, if a unionized company is acquired, the new management can dissolve the union overnight by reclassifying unionized workers as new hires.</p>



<p class="wp-block-paragraph">With these sobering facts in mind, here is how organizers who have done it describe the process of creating a union.</p>



<h2 class="wp-block-heading">Step 1: Start a conversation with your co-workers</h2>



<p class="wp-block-paragraph">At the University of California, a two-tier system had evolved where some tech workers were unionized and some weren’t, Belasco says. Management created new titles that fell outside the union even though they had similar job descriptions and responsibilities to those in the union. Those nonunion employees received lower pay and benefits than their unionized peers, which created resentment and instability.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Max Belasco from the UCLA chapter of UPTE-CWA</p>
</figcaption></figure><p class="imageCredit">Zac Goldstein</p></div>



<p class="wp-block-paragraph">Belasco and other organizers wanted to eliminate that division by bringing everyone under the same contract. But when they began their unionization drive, “the biggest barrier we faced wasn’t management opposition — it was that people felt this was just the best-case scenario realistically available: ‘We have this job at the university, we have concerns about automation and layoffs, but what can we really do about it?'” he says.</p>



<p class="wp-block-paragraph">The antidote to that fatalism, organizers say, is simple: “Just start talking to your immediate co-workers. Are they experiencing the same challenges you are experiencing?” says McAvinney. “There’s no need to start talking about a union at this point.”</p>



<p class="wp-block-paragraph">Just get a consensus and start building a group of like-minded individuals, Thompson advises. “Always start with one-on-one conversations, and that’s what you should do the whole time. That’s the key to organizing,” he says.</p>



<p class="wp-block-paragraph">Tech workers often think they’re a special case, says Thompson, and therefore that unionization isn’t a good fit. “You’re not special. You are a company of workers, you are organizing, and there is a playbook for that. Trust the process, because it tends to work pretty well,” he says.</p>



<h2 class="wp-block-heading">Step 2: Who’s on board, and who’s not? Map your workplace, but keep it quiet</h2>



<p class="wp-block-paragraph">Once there’s a consensus, continue to grow your network. Keep a list of everyone you’ve spoken with and note their disposition: “Is this person union-friendly or anti-union? Would they be a strong organizer?” Thompson says.</p>



<p class="wp-block-paragraph">Maintaining secrecy early on is essential, because anti-union tactics will start immediately, and that can stop union organizing before it can gain momentum.</p>



<p class="wp-block-paragraph">“Generally, employers do not want to share power with their workforce,” McAvinney says. Employers will deploy every means at their disposal to stop organizing efforts and peel away potential yes votes.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="839" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Alan McAvinney from Alphabet Workers Union-CWA</p><br></figcaption></figure><p class="imageCredit">Aran Per Ink</p></div>



<p class="wp-block-paragraph">“If you look at historical examples, having 70% approval before the employer finds out about you results in a high percentage of wins when you actually cast the vote. Historically, that’s an effective buffer,” he says.</p>



<p class="wp-block-paragraph">There’s a real threat of firing and layoffs<em>.</em> The traditional tech worker belief that job mobility makes collective action unnecessary is now being tested by a tighter job market, McAvinney says, noting that workers who many believe <a href="https://www.newsweek.com/google-fires-thanksgiving-four-workers-crush-dissent-1474102" target="_blank" rel="noreferrer noopener">were fired for speaking out</a> back in 2019 were a galvanizing factor in his union’s formation.</p>



<p class="wp-block-paragraph">“You generally don’t want to be in a situation where the employer feels comfortable firing everyone. Part of that is thinking from a cynical standpoint about what the consequences would be to the employer if they did fire everyone,” he says.</p>



<p class="wp-block-paragraph">One-on-one conversations that include personally asking co-workers to keep conversations confidential are key to keeping things quiet, Belasco says. When <a href="https://upte.org/news/2100-tech-workers-vote-to-join-upte" target="_blank" rel="noreferrer noopener">2,100 UC tech workers voted to unionize</a> in May, 96% voted in favor. To stay out of earshot of managers, avoid employee surveillance tools, and sidestep conference calls that could be recorded, organizers met with workers in their homes.</p>



<p class="wp-block-paragraph">“That tactic is probably what made the difference between winning the election and getting the majority we got,” he says.</p>



<h2 class="wp-block-heading">Step 3: Find the right union affiliation or go it alone</h2>



<p class="wp-block-paragraph">“Running a campaign against major employers requires the resources and expertise of the larger labor movement, even if workers publicly present as independent,” says <a href="https://www.ilr.cornell.edu/people/kate-l-bronfenbrenner">Kate Bronfenbrenner</a>, director of labor education research and senior lecturer emeritus at Cornell University’s School of Industrial and Labor Relations.</p>



<p class="wp-block-paragraph">Options include the <a href="https://cwa-union.org/" target="_blank" rel="noreferrer noopener">Communications Workers of America</a> (CWA), <a href="https://www.seiu.org/" target="_blank" rel="noreferrer noopener">Service Employees International Union</a> (SEIU), and the <a href="https://www.opeiu.org/" target="_blank" rel="noreferrer noopener">Office and Professional Employees International Union</a> (OPEIU), among others. Another resource, the <a href="https://techworkerscoalition.org/">Tech Workers Coalition</a> (TWC), provides training on organizing tactics, AI-in-workplace issues, and contract negotiation, and can match workers to the right unions for their needs.</p>



<p class="wp-block-paragraph">The <a href="https://www.alphabetworkersunion.org/" target="_blank" rel="noreferrer noopener">Alphabet Workers Union</a> decided early on to affiliate with CWA. “They gave us a bunch of support early on in our campaign with no strings attached,” McAvinney says.</p>



<p class="wp-block-paragraph">Kickstarter is organized through OPEIU, Thompson says. “They’ll usually have resources and staff that can help you through the next steps: collecting signatures in support of a union, bringing that to management, holding a vote — the more formalized things that interact with US labor law. They’ll also help with organizing along the way,” he says.</p>



<p class="wp-block-paragraph">For workers at institutions where a union already exists, there may be a faster path. Organizers at UCLA did what’s called a “unit modification,” aligning with UPTE. By organizing under UPTE, the workers didn’t have to negotiate a new contract from scratch — they joined an already-negotiated contract covering existing UPTE tech members, which put them in “a much stronger position” than starting fresh, Belasco says.</p>



<h2 class="wp-block-heading">Step 4: Choose your union model: majority vs. pre-majority or minority</h2>



<p class="wp-block-paragraph">Assess what’s practical for your organizing effort. In a majority union, more than 50% of all workers in a defined bargaining unit must vote to join the union through an NLRB-supervised election in the private sector, or a Public Employment Relations Board (PERB)-supervised election for public sector workers.</p>



<p class="wp-block-paragraph">The NLRB must certify the union, which then operates under its legal protections. This means, for example, that the employer must bargain, negotiated contracts are enforceable, violations must go to the NLRB or arbitration, and workers can’t be dismissed without just cause.</p>



<p class="wp-block-paragraph">A pre-majority or minority union is a minority labor organization operating without NLRB protections or collective bargaining agreements. “Pre-majority means that workers are able to demonstrate majority support — through signed cards, petitions, a walkout, or everyone wearing solidarity T-shirts — without going through a formal election,” Bronfenbrenner says.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Kate Bronfenbrenner from the School of Industrial and Labor Relations, Cornell University</p><br></figcaption></figure><p class="imageCredit">ILR School/Cornell University</p></div>



<p class="wp-block-paragraph">The Alphabet Workers Union-CWA (AWU-CWA) formed as a pre-majority union because achieving majority status across a globally distributed workforce of over 100,000 was not a realistic near-term goal. “An underground model where you try to reach 70% support across a workforce of over 100,000 people isn’t realistic,” McAvinney says.</p>



<p class="wp-block-paragraph">A pre-majority union can still make a difference, he says. For example, the Alphabet Workers Union-CWA convinced management to offer voluntary exit packages — buyouts — prior to announcing layoffs.</p>



<p class="wp-block-paragraph">For smaller organizations, a majority union may be the more practical option — it’s more attainable, McAvinney says. “I don’t think [the pre-majority union model] is the correct thing to do in all situations. I certainly would not recommend it to a 200-person shop.”</p>



<p class="wp-block-paragraph">Kickstarter, which had fewer than 100 employees, was able to form a majority union, with 55% voting to organize.</p>



<p class="wp-block-paragraph">Ultimately, says McAvinney, “there’s no inflection point where you go from being able to win nothing to winning everything, even with a contract and a supermajority. But the more people you have who are willing and able to fight for what they want, the more you’ll be able to get.”</p>



<h2 class="wp-block-heading">Step 5: Who should — and should not — be in your union?</h2>



<p class="wp-block-paragraph">Belasco’s situation at UCLA illustrates a broader strategic choice that every organizing campaign must make. He had been in a union position in educational technology when he was told his role would be reclassified as a non-union position.</p>



<p class="wp-block-paragraph">“I was given a choice: apply to the new non-union position to continue doing the work I’d trained for, or stay in my union position doing service desk work I wasn’t used to,” he says. “Essentially, it was a choice between job security and career progression.”</p>



<p class="wp-block-paragraph">Belasco joined a “wall-to-wall” union, which represents a broad range of university professional and technical employees across the UC system rather than a single job category, such as engineers or tech professionals.</p>



<p class="wp-block-paragraph">Kickstarter United is another example of a wall-to-wall union. “It’s not just the engineers who are unionized, but also customer support, designers — everyone,” Thompson says.</p>



<p class="wp-block-paragraph">Wall-to-wall unions are more powerful, but they’re also more difficult to achieve. <a href="https://www.law.cornell.edu/uscode/text/29/159" target="_blank" rel="noreferrer noopener">Under US labor law</a>, “professionals have to vote separately on whether they want to be combined with other workers,” says Bronfenbrenner. “You can never have a wall-to-wall unit without giving professionals the chance to decide whether they want to be separate.”</p>



<p class="wp-block-paragraph">The law’s “professional employees” category includes roles like software engineers and developers but not necessarily others. For example, customer support specialists and QA analysts would fall into the “non-professional workers” category.</p>



<p class="wp-block-paragraph">“For decades, the pattern was either to organize everybody except the engineers, or manage to organize the engineers and fail to bring in everybody else — neither of which builds real worker power,” says <a href="https://www.linkedin.com/in/simonerobutti/" target="_blank" rel="noreferrer noopener">Simone Robutti</a>, an organizer with Tech Workers Coalition Global, an international branch of TWC based in Berlin.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full is-resized"> width="959" height="713" sizes="auto, (max-width: 959px) 100vw, 959px"&gt;<figcaption class="wp-element-caption"><p>Simone Robutti from Tech Workers Coalition Global</p><br></figcaption></figure><p class="imageCredit">TWC</p></div>



<h2 class="wp-block-heading">Step 6: You won the vote. Get ready for what comes next</h2>



<p class="wp-block-paragraph">Winning a union vote means having a seat at the table, says Thompson. “Once the workers have come together and agreed they want that seat, you bring that to management, and they have a chance to voluntarily recognize a union,” he says.</p>



<p class="wp-block-paragraph">But in most cases employers contest the results, which must be certified by the NLRB or PERB. That process, in which the employer uses various tactics to challenge the legitimacy of the outcome, can take weeks or months.</p>



<p class="wp-block-paragraph">Unfortunately, the legal framework that is supposed to protect workers during this process has been <a href="https://workerorganizing.org/elon-musk-spacex-nlrb-15975/#:~:text=CAN%20THE%20NLRB%20STILL%20ENFORCE%20LAWS%3F" target="_blank" rel="noreferrer noopener">significantly weakened</a> in the last few years. In a potentially more ominous development, <a href="https://apnews.com/article/amazon-nlrb-unconstitutional-spacex-elon-musk-ab42977117d883e97110a7bf8e8b257f" target="_blank" rel="noreferrer noopener">SpaceX</a>, <a href="https://apnews.com/article/amazon-nlrb-50ee06d87d4eaef22386382761335ef8" target="_blank" rel="noreferrer noopener">Amazon</a>, <a href="https://www.huffpost.com/entry/trader-joes-attorney-nlrb-unconstitutional_n_65b41e7ae4b014b873b11cc2" target="_blank" rel="noreferrer noopener">Trader Joe’s</a>, <a href="https://news.bloomberglaw.com/daily-labor-report/starbucks-is-latest-company-to-call-labor-board-unconstitutional" target="_blank" rel="noreferrer noopener">Starbucks</a>, and the <a href="https://capitalandmain.com/usc-follows-amazon-and-musks-spacex-in-calling-labor-board-unconstitutional" target="_blank" rel="noreferrer noopener">University of Southern California</a> have in separate legal actions <a href="https://www.epi.org/blog/whats-behind-the-corporate-effort-to-kneecap-the-national-labor-relations-board-spacex-amazon-trader-joes-and-starbucks-are-trying-to-have-the-nlrb-declared-unconstitutional/" target="_blank" rel="noreferrer noopener">challenged the constitutionality of the NLRB</a>, arguing that the agency’s structure violates the separation of powers. The Fifth Circuit Court of Appeals <a href="https://law.justia.com/cases/federal/appellate-courts/ca5/24-50627/24-50627-2025-08-19.html?__cf_chl_f_tk=do9nl63o6rfY2sxOjPeR5MkVGY4u1OTRYOVYjTQTOG0-1782836265-1.0.1.1-IXqkGFSiOH5hYYOqqrEqH6VFIApNL3MRHW6YNiDwERI" target="_blank" rel="noreferrer noopener">upheld injunctions against the NLRB</a> in SpaceX’s case in August 2025 — a serious challenge to the agency’s authority.</p>



<p class="wp-block-paragraph">In the meantime, some companies may disregard negotiated contracts, which can lead to lengthy legal appeals or extended arbitration.</p>



<p class="wp-block-paragraph">“The NLRB can still force an election, but it can’t force a contract, and companies are saying they simply won’t comply,” Bronfenbrenner says. This is where the expertise and resources of affiliation with a major union can help, she adds.</p>



<p class="wp-block-paragraph">As a result, contract negotiations can take far longer than workers might expect. At Kickstarter, for example, two years and four months elapsed from the time of the union vote to the first contract, and that was at a 59-person company with a relatively cooperative employer. At larger companies with more aggressive legal teams, the timeline will be longer.</p>



<p class="wp-block-paragraph">Forming a union is hard work, Robutti says. “It’s not a service you pay for and they protect you. It doesn’t happen spontaneously, and it doesn’t happen magically. It’s the choice to take responsibility for improving your workplace.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[How Chefs Store Spices So They Stay Fresh]]></title>
<description><![CDATA[Stale spices are useless, and nobody knows that better than culinary pros. Here’s how career chefs keep spices fresh for as long as possible.]]></description>
<link>https://tsecurity.de/de/3670373/it-nachrichten/how-chefs-store-spices-so-they-stay-fresh/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3670373/it-nachrichten/how-chefs-store-spices-so-they-stay-fresh/</guid>
<pubDate>Wed, 15 Jul 2026 12:48:01 +0200</pubDate>
<content:encoded><![CDATA[Stale spices are useless, and nobody knows that better than culinary pros. Here’s how career chefs keep spices fresh for as long as possible.]]></content:encoded>
</item>
<item>
<title><![CDATA[CW@60: An adventure into cyber security]]></title>
<description><![CDATA[Cyber security expert Rik Ferguson charts an unlikely career from The Hobbit through childhood thespianism to the cutting edge of cyber defence]]></description>
<link>https://tsecurity.de/de/3669867/it-nachrichten/cw60-an-adventure-into-cyber-security/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3669867/it-nachrichten/cw60-an-adventure-into-cyber-security/</guid>
<pubDate>Wed, 15 Jul 2026 09:17:52 +0200</pubDate>
<content:encoded><![CDATA[Cyber security expert Rik Ferguson charts an unlikely career from The Hobbit through childhood thespianism to the cutting edge of cyber defence]]></content:encoded>
</item>
<item>
<title><![CDATA[7 skills and traits of elite security engineers]]></title>
<description><![CDATA[Security engineers play a pivotal role in enterprise cybersecurity, because they are the professionals who design, build, and deploy security systems to protect an organization’s data, applications, systems, networks, and other IT components against a variety of cyber threats.



Finding not just...]]></description>
<link>https://tsecurity.de/de/3669835/it-security-nachrichten/7-skills-and-traits-of-elite-security-engineers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3669835/it-security-nachrichten/7-skills-and-traits-of-elite-security-engineers/</guid>
<pubDate>Wed, 15 Jul 2026 09:08:41 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">Security engineers play a pivotal role in enterprise cybersecurity, because they are the professionals who design, build, and deploy security systems to protect an organization’s data, applications, systems, networks, and other IT components against a variety of cyber threats.</p>



<p class="wp-block-paragraph">Finding not just qualified security engineers, but the best and brightest available, needs to be a priority for CISOs and others overseeing security at their organizations. That’s especially true with the rapid rise of AI and the threats that brings to the enterprise.</p>



<p class="wp-block-paragraph">Here are some of the key skills and traits of elite security engineers to look for when hiring — or to acquire in order to uplevel your cybersecurity career.</p>



<h2 class="wp-block-heading">Acumen with AI-powered tools</h2>



<p class="wp-block-paragraph">These days, AI-related skills are in demand regardless of domain, and this certainly applies to security engineers. There’s a wealth of solutions leveraging AI in the market, tools that engineers can add to their defense arsenal.</p>



<p class="wp-block-paragraph">“AI is transforming security engineering from reactive alerting to predictive threat detection,” says Praveen Margabandhu, digital engineering anchor at financial services firm Navy Federal Credit Union. “AI-driven anomaly detection now identifies behavioral patterns that indicate fraud or compromise before traditional threshold-based systems would fire. This shifts the security engineer’s role from incident responder to threat model designer.”</p>



<p class="wp-block-paragraph">AI-powered tools have taken over a large portion of the detection and triage work that used to be the core of a security engineer’s day, says Maruf Ahmed, cofounder and CEO of global tech staffing firm Dexian. “Vulnerability scanning runs on its own now,” he says. “Threat flagging that used to require a team pulling through logs for hours happens in minutes.”</p>



<p class="wp-block-paragraph">This has freed up capacity on most security teams and changed what the day-to-day work looks like, Ahmed says. “With detection increasingly automated, the engineer’s value sits more in interpreting what gets flagged and deciding what to do about it,” he says.</p>



<h2 class="wp-block-heading">Keen understanding of emerging and established AI threats</h2>



<p class="wp-block-paragraph">Engineers must also have a thorough understanding of the risks AI presents, including <strong><a href="https://www.csoonline.com/article/4154222/6-ways-attackers-abuse-ai-services-to-hack-your-business.html">AI-enhanced cyberattacks</a> using</strong><strong> </strong>large language models (LLMs) to automate and scale <a href="https://www.csoonline.com/article/3819176/top-5-ways-attackers-use-generative-ai-to-exploit-your-systems.html">highly personalized social engineering attacks</a>, craft sophisticated malware, and generate deepfakes.</p>



<p class="wp-block-paragraph">Other <a href="https://www.csoonline.com/article/4110008/top-cyber-threats-to-your-ai-systems-and-infrastructure.html">AI threats they need to be aware of</a> include prompt injections, data and model poisoning, disclosure of sensitive information, model theft, supply chain compromises, and excessive agency.</p>



<p class="wp-block-paragraph">“The same generative tools that help security teams work faster are available to adversaries, and it shows,” Ahmed says. “Phishing campaigns read better and land more precisely than they did a year ago. Social engineering is harder to catch when the language is polished and tailored to the target, and security engineers are now defending against threats built with the same class of technology they use on the defensive side.”</p>



<p class="wp-block-paragraph">That has raised the bar for what reliable detection looks like, Ahmed says. “The objective shift I hear most from clients is about trust in their own systems,” he says. “Two years ago, the priority was visibility — making sure you could see across your environment. Most organizations have that now. The harder problem is knowing whether what those tools are telling you holds up under scrutiny and having people on the team who can stand behind those findings in front of a regulator or a board.”</p>



<h2 class="wp-block-heading">Appreciation of performance and business goals</h2>



<p class="wp-block-paragraph">The best security engineers understand how performance and security intersect, says Margabandhu, who leads performance engineering across Navy Federal Credit Union’s digital banking infrastructure, including real-time fraud detection, identity and access management, and cybersecurity infrastructure resilience.</p>



<p class="wp-block-paragraph">“A fraud detection system that is secure but too slow to catch transactions in real-time is not secure at all,” Margabandhu says. “Elite engineers optimize for both simultaneously.”</p>



<p class="wp-block-paragraph">Engineers must be able to put things in business context, Ahmed says. “An engineer who can work across domains, validate AI outputs, and learn new tools fast is valuable. But that value compounds when the person also understands what the organization is trying to protect and why,” he says.</p>



<p class="wp-block-paragraph">Security engineers who understand the business make better risk decisions, write more effective policies, and generate less friction with the teams around them, Ahmed says. “That is the profile employers are hiring toward right now, and it is where the talent shortage is most pronounced,” he says.</p>



<h2 class="wp-block-heading">Systems mindset</h2>



<p class="wp-block-paragraph">“One of the biggest misconceptions in cybersecurity hiring is that elite security engineers are defined purely by technical certifications or tool familiarity,” says Juan Mathews Rebello Santos, an independent cybersecurity researcher and ethical hacker.</p>



<p class="wp-block-paragraph">“Technical skill absolutely matters, but the strongest engineers I’ve worked with consistently share a combination of analytical thinking, operational adaptability, communication ability, and deep systems understanding,” Santos says.</p>



<p class="wp-block-paragraph">Elite security engineers understand how infrastructure, cloud services, identity systems, applications, APIs, networks, users, and business operations connect, Santos says.</p>



<p class="wp-block-paragraph">“Modern attacks rarely target a single isolated component anymore,” he says. “Threat actors chain together weaknesses across environments. Engineers who can understand those relationships holistically are significantly more effective at both prevention and incident response.”</p>



<h2 class="wp-block-heading">Cross-disciplinary fluency and broad stack know-how</h2>



<p class="wp-block-paragraph">Being an elite software engineer today means having a range of technology experience and knowledge. “Organizations want engineers who can work across more of the stack than they used to,” Ahmed says. “A role that might have asked for deep specialization in one area now expects someone who can move between cloud infrastructure, application security, and compliance without needing a handoff at every boundary.”</p>



<p class="wp-block-paragraph">The attack surface has continued to get wider, and the job descriptions for security engineers has followed suit. “That cross-domain fluency matters because security incidents rarely stay contained in one layer,” Ahmed says. “The engineer who can follow a problem from the network through the application to the data governance framework resolves it faster, with fewer people involved.”</p>



<p class="wp-block-paragraph">The strongest security engineers bridge infrastructure, application, and business domains, Margabandhu says. “They can speak to a CISO, a developer, and a cloud architect in the same conversation,” he says. “An engineer who can explain what an authentication problem means for fraud exposure moves faster in a room full of executives than one who can only describe it in infrastructure terms. I’ve watched technically brilliant people lose that race repeatedly.”<br><br></p>



<p class="wp-block-paragraph">Having the ability to communicate technical risk clearly to non-technical leadership can mean the difference between success and failure of attacks.</p>



<p class="wp-block-paragraph">“Many security failures today are not caused by lack of tooling, but by misalignment between technical teams and business decision-makers,” Santos says. “Elite engineers can explain operational risk, prioritization, and security tradeoffs in language executives understand.”</p>



<h2 class="wp-block-heading">Deep understanding of third-party risk and non-human threats</h2>



<p class="wp-block-paragraph">Threats can come from anywhere, including supply chains and non-human combatants. Third-party cybersecurity risks are on the rise. The 2026 Global CISO Leadership Report by executive search firm Hitch Partners, based on a survey of more than 625 information security executives across the US and Canada, says 43% put third-party risks as the No. 1 priority.</p>



<p class="wp-block-paragraph">“Most teams are still better at securing what they own than securing what they depend on,” Margabandhu says. “The mental shift from perimeter thinking to dependency thinking is real and not everyone has made it. The engineers who treat <a href="https://www.csoonline.com/article/4148315/apis-are-the-new-perimeter-heres-how-cisos-are-securing-them.html">every API call</a>, every credentialed vendor, every third-party model as part of their attack surface approach design differently.”</p>



<p class="wp-block-paragraph">Another growing source of potential threats are not human. <a href="https://www.csoonline.com/article/2132294/what-are-non-human-identities-and-why-do-they-matter.html">Machine identities</a> now outnumber human identities by ratios exceeding 100 to 1 in most enterprise environments, with some sectors closer to 500 to 1, according to the ManageEngine Identity Security Outlook 2026 report.</p>



<p class="wp-block-paragraph">This includes service accounts, API keys, automation tokens, and AI agents, any one of which can present data governance and security risks.</p>



<p class="wp-block-paragraph">Many organizations are still managing machine identities through manual processes that weren’t designed for scale, Margabandhu says. “Engineers who understand non-human identity governance are rare and increasingly important. This is not a future problem.”<br><br></p>



<h2 class="wp-block-heading">Willingness to keep learning</h2>



<p class="wp-block-paragraph">Security engineers need to have a desire to never stopped learning.</p>



<p class="wp-block-paragraph">“That sounds obvious until you work with people who’ve been doing this for 15 years and are still operating from the same threat models they built in 2012,” Margabandhu says. “Security changes fast enough that standing still is the same as going backwards.”</p>



<p class="wp-block-paragraph">The security engineers who keep up aren’t reading one report a year. “They’re genuinely curious about what attackers are doing right now, this month, and they adjust how they think accordingly,” Margabandhu says. “That quality is harder to hire for than most technical skills, because it’s not on a resume.”<br><br></p>



<p class="wp-block-paragraph">With AI presenting new and more sophisticated threats, keeping up with the latest developments is perhaps more important than ever. “Strong engineers are naturally investigative,” Santos says. “They actively study attack techniques, test assumptions, reverse engineer failures, and continuously adapt their understanding of risk.”</p>



<p class="wp-block-paragraph">The best security engineers are often the people who remain intellectually uncomfortable because they know the landscape is always evolving, Santos says.</p>



<p class="wp-block-paragraph">Employers have started paying closer attention to how fast someone can learn, Ahmed says. “The threat landscape and the defensive toolkit are both moving faster than any certification program can track, so hiring managers are probing for adaptability in interviews: how candidates have responded to recent shifts, whether they have picked up unfamiliar platforms on their own, how they work through problems they have not seen before,” he says.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Coded cells redefining research and drug discovery]]></title>
<description><![CDATA[Bit.Bio’s Dr Emma Pepperell discusses her career in the biotechnology sector, the advancements occurring around her and the importance of bringing a touch of humanity to an often clinical industry. 
Read more: The Coded cells redefining research and drug discovery]]></description>
<link>https://tsecurity.de/de/3669691/it-nachrichten/the-coded-cells-redefining-research-and-drug-discovery/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3669691/it-nachrichten/the-coded-cells-redefining-research-and-drug-discovery/</guid>
<pubDate>Wed, 15 Jul 2026 08:03:03 +0200</pubDate>
<content:encoded><![CDATA[<p>Bit.Bio’s Dr Emma Pepperell discusses her career in the biotechnology sector, the advancements occurring around her and the importance of bringing a touch of humanity to an often clinical industry. </p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/innovation/coded-cells-redefining-research-drug-discovery-leadership-skills">The Coded cells redefining research and drug discovery</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How I’m Making Sure My Analytics Career Doesn’t Get Eaten by AI]]></title>
<description><![CDATA[The analytics career I signed up for five years ago doesn't exist anymore, and honestly, I am fine with that.
The post How I’m Making Sure My Analytics Career Doesn’t Get Eaten by AI appeared first on Towards Data Science.]]></description>
<link>https://tsecurity.de/de/3668726/ai-nachrichten/how-im-making-sure-my-analytics-career-doesnt-get-eaten-by-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3668726/ai-nachrichten/how-im-making-sure-my-analytics-career-doesnt-get-eaten-by-ai/</guid>
<pubDate>Tue, 14 Jul 2026 19:00:51 +0200</pubDate>
<content:encoded><![CDATA[<p>The analytics career I signed up for five years ago doesn't exist anymore, and honestly, I am fine with that.</p>
<p>The post <a href="https://towardsdatascience.com/how-im-making-sure-my-analytics-career-doesnt-get-eaten-by-ai/">How I’m Making Sure My Analytics Career Doesn’t Get Eaten by AI</a> appeared first on <a href="https://towardsdatascience.com/">Towards Data Science</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How do you go from junior to staff engineer when AI writes the code?]]></title>
<description><![CDATA[A few weeks ago, a new hire at Aviator, fresh out of college, asked me a question I didn’t have a clean answer to. How do I become a senior engineer, or even a staff engineer? What should I learn, and how?



It’s a fair question and a harder one to answer than it was just a year ago.



The path...]]></description>
<link>https://tsecurity.de/de/3667712/it-security-nachrichten/how-do-you-go-from-junior-to-staff-engineer-when-ai-writes-the-code/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667712/it-security-nachrichten/how-do-you-go-from-junior-to-staff-engineer-when-ai-writes-the-code/</guid>
<pubDate>Tue, 14 Jul 2026 13:08:42 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">A few weeks ago, a new hire at Aviator, fresh out of college, asked me a question I didn’t have a clean answer to. How do I become a senior engineer, or even a staff engineer? What should I learn, and how?</p>



<p class="wp-block-paragraph">It’s a fair question and a harder one to answer than it was just a year ago.</p>



<p class="wp-block-paragraph">The path used to be well-known. As a newly hired junior software engineer, you were given an experienced mentor who would assign you simple tasks to learn the ropes. You’d write some code, ask plenty of questions, open a pull request, get feedback in code review, think about it and fix your code. Rinse and repeat that a few hundred times. The tasks became more complex; the feedback got shorter and along the way you’ve been building judgment, the thing that separates a senior engineer from a junior one.</p>



<p class="wp-block-paragraph">Now AI writes most of the code. The loop looks different and the easy assumption is that it’s broken: fewer tasks for juniors to cut their teeth on, an agent fixing the code that another agent wrote, thinner path to judgment.</p>



<h2 class="wp-block-heading"><a></a>Mentoring got easier, not harder</h2>



<p class="wp-block-paragraph">I knew just the person to ask: how do we grow senior and staff engineers in the AI era? Adam Berry is a staff engineer at Netflix, a member of <a href="https://dx.community/">The Hangar</a>, our community of engineering leaders, and someone I have been discussing the evolving role of code review and <a href="https://www.cio.com/article/4179485/ai-killed-the-code-review-what-happens-to-knowledge-sharing.html">knowledge sharing</a> for a while now. He spends his time on getting AI adoption right, rather than just fast, in their engineering organization and has been working out the question of growing new engineers in practice. Mentoring juniors in an agentic world, Adam says, isn’t harder; it’s embarrassingly easy.</p>



<p class="wp-block-paragraph">“You grow juniors and help them become better engineers the same way you always did. AI isn’t changing the methodology. It’s changing the details,” he told me. His point is that the agentic world gives a lot more options for giving juniors bounded tasks to work on and more feedback. The scattered remarks and comments seniors used to give in person now can be put into instructions and guardrails.</p>



<p class="wp-block-paragraph">Adam breaks working with agents into three foundational skills:</p>



<ul class="wp-block-list">
<li>If you don’t know how to do something with the agent, ask the agent.</li>



<li>If the agent does something you don’t like, figure out how to correct it and then codify it so it doesn’t happen again.</li>



<li>Your sense of when the agent has gone off the rails.<br><br></li>
</ul>



<p class="wp-block-paragraph">“Most juniors can pick up the first two on their own. On the third one, they need guidance, he says.<br><br></p>



<p class="wp-block-paragraph">His process for building it is staged. “The stages are about growing scope. First, you give a junior engineer a well-specified task—and these are now bigger than what you’d have given a junior before. You can give them task definitions that are like a prompt and instructions to drive that prompt, make sure they got to a good plan, make sure they understood the plan, and that they thought through the test cases, etc.<br><br>Then gradually you peel off some of that specificity so they have to build the muscle themselves. Once they’ve gotten good at that level of scope, they’re ready to work on larger scoped problems.”<br><br>Starting from more specific problems and going towards ambiguous problems is the definition of growing as an engineer.</p>



<h2 class="wp-block-heading"><a></a>Pair programming with the agent in the room</h2>



<p class="wp-block-paragraph">Seniors can still do pairing sessions with juniors, now with the agent in the room.<br><br>“In the pairing session, the earlier-career engineer should be the one driving. The agent can be set up to interrogate the junior rather than just answer them. None of you is manually writing code, but you’re still doing pair programming and mentoring. Even if it’s just a trivial bug fix, if you guide a junior through it, it forces them to do just that little bit of thinking.”<br><br>Adam says mentoring juniors today does not have to mean forcing them to write code manually. Seniors should teach them the process of agentic engineering, and that’s exactly what they should focus on during the pairing sessions. The habit he wants to be installed early is asking for options instead of answers.<br><br>“I aim to teach juniors to ask for options and think through them, even on small tasks. I ask them to explain what their input to the AI tool was that led to the code they got. But I’d also show them how I would have done the same thing.”<br><br>The pairing produces artifacts as it goes. “That’s where you get into conversations of, ‘This is why that wasn’t quite it for me,’ and if I see that that’s not baked into the repo, I’m going to add this into the ADR, into the design, into the instruction set. I’ll codify that so the junior gets it too, and they know why it exists, because they watched me go through it with the tool myself.”</p>



<p class="wp-block-paragraph">That reshapes the code review instead of removing it. Making that work puts more on senior engineers, not less. “Senior engineers need to ensure that things like ADRs, or whatever system you use, are properly encapsulated in the repo for both the agents and the humans to consume.” His team also attaches the prompts to the pull request and has the agent summarize what it did against what the prompt asked.<br><br></p>



<p class="wp-block-paragraph">Adam also teaches junior engineers how to bring in expert sources from outside into AI tools. He’ll point an agent at a book like Michael Feathers’ <em>Working with Legacy Code</em> as an example of what quality code looks like and have it work from the concepts directly.</p>



<h2 class="wp-block-heading"><a></a>Don’t outsource the thinking</h2>



<p class="wp-block-paragraph">His arguments make sense, but I also recently came across <a href="https://ieeexplore.ieee.org/stamp/stamp.jsp?arnumber=11363384">research</a> examining the influence of AI tools on how and why members of software engineering teams interact. Their finding was not surprising: of the 131 surveyed developers, 51% said they now ask GenAI for technical help they once would have asked a person, and 62% said it was easier to ask GenAI without fear of embarrassment.</p>



<p class="wp-block-paragraph">When a junior gets stuck now, their first move usually isn’t to message a senior on Slack. It’s to ask the agent. This is also the case in code reviews. The purpose of code reviews was always <a href="https://www.cio.com/article/4179485/ai-killed-the-code-review-what-happens-to-knowledge-sharing.html">knowledge sharing </a>as much as it was a quality gate. What I see junior engineers do now is take the feedback and, without reading it closely, hand it straight to the agent to resolve. The part where they would have to understand how their work differed from what the senior expected disappears. It got passed from the reviewer to the agent, and the junior skipped the understanding.</p>



<p class="wp-block-paragraph">This isn’t really the junior’s fault. They need the motivation and the space to do it differently, and the default pattern under delivery pressure is to push the thing out and worry about it later.<br><br>The same research showed that developers turned to colleagues with questions about context (65% to clarify business logic or requirements, 50% for how something had been done before).</p>



<p class="wp-block-paragraph">Respondents were also aware of the trap that Berry’s approach was created to avoid: AI tends to hand back a single answer, compared to multiple perspectives a colleague surfaces and they kept seeking teammates for context-specific expertise, mentorship and plain social connection.</p>



<p class="wp-block-paragraph"><br>The fix is almost mechanical: if you have to make a choice, you have to think about it. I do this in my own product thinking. Most of it happens by bouncing ideas off Claude, but whenever something is complex, I make myself lay out a few options, trade them against each other and decide which direction to take. That’s the same move Berry wants juniors making, and it’s what builds judgment, whether you’re twenty-two or forty.</p>



<h2 class="wp-block-heading"><a></a>Why we should still hire juniors</h2>



<p class="wp-block-paragraph">There’s also a hiring question underneath all of this. We recently hosted Kent Beck, an industry legend, at <a href="https://dx.community/">the Hanga</a>r in a session we called “Juniors FTW,” and his reasoning was that the industry is being remade fast enough that being new is an advantage. Juniors are too new to have absorbed what everyone “knows” is impossible, which leaves them less biased, more creative and carrying fewer preconceived mental barriers.</p>



<p class="wp-block-paragraph">Beck also <a href="https://newsletter.kentbeck.com/p/hey-n00b-we-didnt-hire-you-to-complete">wrote</a> about how important it is to hire juniors without the calculation of how many tasks they can perform.<br><br>“If all we cared about was today’s productivity, we wouldn’t have hired you at all. Instead, we (the seniors) are focused on the future: we know there’s going to be far more work here than we could possibly accomplish. We are paying your salary now as the option premium on the engineer you will become. If we play this game right, we’ll have a kick-ass next generation of engineers. If not, we’ll have to be doing the same engineering jobs ten years from now, and we really don’t want to be doing that.”</p>



<h2 class="wp-block-heading"><a></a>The pipeline is thinning</h2>



<p class="wp-block-paragraph">The trend is running the other way. Entry-level hiring at the 15 biggest tech firms fell 25 percent from 2023 to 2024, according to a <a href="https://www.signalfire.com/blog/signalfire-state-of-talent-report-2025">report from SignalFire</a>. In a recent <a href="https://stackoverflow.blog/2025/12/26/ai-vs-gen-z/">survey of engineering leaders</a>, a majority said they plan to hire fewer juniors, on the logic that AI lets seniors cover more ground.</p>



<p class="wp-block-paragraph">That logic is short-sighted in a specific way. Senior engineers don’t appear from nowhere. They’re the juniors someone hired five or ten years ago and invested in mentoring them. Stop hiring and growing juniors now, and the gap doesn’t show up this year. It shows up later, when the industry needs people with the judgment that only comes from years of making mistakes and recovering from them and finds it stopped producing them.</p>



<p class="wp-block-paragraph">So, here’s the answer to the question that the new hire asked: the path to senior and to staff is the same path it always was. You grow the range of ambiguity you can handle, and you stay honest about the part you can’t handle yet. What changed is the interface. The agent writes the code. Your job is to keep asking questions to your colleagues and the agents and keep doing the thinking until the thinking is good.</p>



<p class="wp-block-paragraph"><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[How AI agents are shaping the future of work]]></title>
<description><![CDATA[I attended several major technology conferences in 2025 where the first AI agents embedded in enterprise SaaS platforms were announced. Some of these agents showed promise and a glimpse into the future of work, while others looked like natural language extensions of a platform’s existing function...]]></description>
<link>https://tsecurity.de/de/3667534/it-security-nachrichten/how-ai-agents-are-shaping-the-future-of-work/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667534/it-security-nachrichten/how-ai-agents-are-shaping-the-future-of-work/</guid>
<pubDate>Tue, 14 Jul 2026 12:07:53 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">I attended several major technology conferences in 2025 where the first AI agents embedded in enterprise SaaS platforms were announced. Some of these agents showed promise and a glimpse into the future of work, while others looked like natural language extensions of a platform’s existing functionality.  </p>



<p class="wp-block-paragraph">At the end of 2025, Anthropic and OpenAI launched new AI models and code-generating capabilities. More developers tried <a href="https://www.infoworld.com/article/4058076/vibe-coding-and-the-future-of-software-development.html">vibe coding</a>, and some platforms launched <a href="https://www.infoworld.com/article/4166817/vibe-coding-or-spec-driven-development.html">spec-driven development capabilities</a>. By February 2026, even The New York Times reported that <a href="https://www.nytimes.com/2026/02/18/opinion/ai-software.html">the AI disruption had arrived</a>, noting that code generators were building “apps that may be flawed, but credible.”</p>



<p class="wp-block-paragraph">Wall Street investors took notice of the code-generation improvements and other disruptive factors, driving a selloff in SaaS stocks, now referred to as the “<a href="https://www.bloomberg.com/news/articles/2026-02-03/-get-me-out-traders-dump-software-stocks-as-ai-fears-take-hold">SaaSpocalypse</a>.” Part of their concern stemmed from the belief that CIOs would use AI to <a href="https://www.cio.com/article/4148303/cios-rethink-softwares-future-as-ai-agents-advance.html">write software that would replace SaaS solutions</a>.</p>



<h2 class="wp-block-heading">AI innovations from SaaS and solution providers</h2>



<p class="wp-block-paragraph">But I thought differently and wrote a response in my article asking whether <a href="https://www.cio.com/article/4146669/is-ai-the-end-of-saas-as-we-know-it.html">AI is the end of SaaS as we know it</a>. CIOs might use AI to accelerate application modernization, but I doubt they would replace their ERP, CRM, and even smaller SaaS point solutions by building them.</p>



<p class="wp-block-paragraph">Instead, I believed it would be SaaS companies that would take the most advantage of AI code-generation capabilities.</p>



<p class="wp-block-paragraph">This hypothesis drove me to attend nine conferences this spring to see how SaaS companies were launching AI agents and defining a new future of work. I wrote eight articles on <a href="https://drive.starcio.com/cios-need-to-know">what CIOs need to know</a> about data management, agile organizations, marketing, ERPs, critical process management, and other evolutions to plan for in the AI era.</p>



<p class="wp-block-paragraph">Now, looking across all nine conferences, I can draw some conclusions about how AI agents are shaping the future of work. Here are my learnings and what CIOs need to consider when evaluating and deploying AI agents in the workplace.</p>



<h2 class="wp-block-heading">Agentic, human-in-the-middle, or augmenting human?</h2>



<p class="wp-block-paragraph">SaaS companies have very distinct perspectives on the future of work, including the extent to which humans will play which roles and whether and how quickly we’ll see agentic, fully automated work.</p>



<p class="wp-block-paragraph">For example, Atlassian proclaimed, “<a href="https://www.atlassian.com/company/events">step into the future of human-AI collaboration</a>,” while SAP unveiled “<a href="https://news.sap.com/2026/05/sap-sapphire-sap-unveils-autonomous-enterprise/">the autonomous enterprise</a>.” Snowflake aimed to “<a href="https://www.snowflake.com/en/summit/">make AI real for business</a>,” while Appian targeted “<a href="https://www.appianworld.com/">serious AI built on process</a>.”</p>



<p class="wp-block-paragraph">These vendors’ marketers had to decide whether to lead with AI, people, or business in their messaging, but so must CIOs as they contemplate their AI strategies and how to get employees to fully adopt AI agents.</p>



<p class="wp-block-paragraph">Some CIOs see a fully automated agentic AI as the future, with human-in-the-middle as a transitional phase as departments build trust in AI agents’ decision-making and automation capabilities.</p>



<p class="wp-block-paragraph">Other CIOs see AI more as a tool that delivers productivity improvements by augmenting human decision-making capabilities. Many of these CIOs see human augmentation as essential to supporting critical thinking, innovation, and creativity.</p>



<p class="wp-block-paragraph"><a href="https://www.deloitte.com/us/en/what-we-do/capabilities/applied-artificial-intelligence/content/state-of-ai-in-the-enterprise.html">Deloitte’s State of AI Report</a>, published in January, provides a benchmark. It states that 36% of IT leaders expect at least 10% of their jobs to be fully automated in the next year, and 82% expect to reach that benchmark in three years.</p>



<p class="wp-block-paragraph">Many organizations will have a mix of AI agents, choosing automation where reliability at scale is possible, but opting for human augmentation in operationally critical or customer-facing domains. But how CIOs position AI agents is not only an operational strategy; it’s also a cultural statement that shapes employees’ embrace of AI and whether <a href="https://drive.starcio.com/2026/03/ai-leadership-job-at-risk-or-career-opportunity/">detractors vocalize job-loss fears</a>.</p>



<p class="wp-block-paragraph">In the short term, it will also weigh in on which AI agents to use from different partners and which areas to build in-house.</p>



<h2 class="wp-block-heading">Many options to test and deploy AI agents</h2>



<p class="wp-block-paragraph">Many solution providers are demonstrating significantly more AI agents this year. For example, SAP went from <a href="https://drive.starcio.com/2026/05/autonomous-enterprise-ai-cios/">40 Joule Agents in 2025 to over 200 in 2026.</a> Three technology capabilities are fueling this significant growth:</p>



<ul class="wp-block-list">
<li>Adobe, Appian, Boomi, Cisco, Domo, Salesforce, SAP, Snowflake, and others offer <a href="https://www.infoworld.com/article/3497094/does-your-organization-need-a-data-fabric.html">data fabrics</a> and <a href="https://www.infoworld.com/article/3487711/the-definitive-guide-to-data-pipelines.html">data-pipeline</a> capabilities to connect data sources outside the primary workflows supported by their platforms. Appian, Pega, Quickbase, and SAP also centralize business process automation, an important starting point for developing AI agents.  </li>



<li><a href="https://www.infoworld.com/article/4124612/5-requirements-for-using-mcp-servers-to-connect-ai-agents.html">MCP servers</a> enable integration and communication between AI agents and are used to facilitate multistep agentic workflows. Virtually all the companies announcing major investments in AI agents are also announcing MCP integration capabilities and related partnerships.</li>



<li>Solution providers are not just using AI code-generating capabilities; many are launching their own AI agent development tools. The first beneficiaries of these development tools are the solution providers themselves and their integration partners, who use them to accelerate the development of AI agents and make them available to customers.</li>
</ul>



<p class="wp-block-paragraph">The result is that <a href="https://drive.starcio.com/2025/10/ai-agents-definitive-guide-saas-security-titans/">CIOs will have many options about which agents to test</a>, but will have to dedicate analysts to understand the capability, cost, and compliance trade-offs. Additionally, expect AI agent capabilities to evolve significantly over the next few years, so CIOs should continuously revisit their decisions regarding deployed AI agents, focusing on performance, benefits, and ROI.</p>



<p class="wp-block-paragraph">CIOs should also watch for signs of <a href="https://www.cio.com/article/1247890/7-steps-for-turning-shadow-it-into-a-competitive-edge.html">shadow AI</a> and employee confusion about which AI agents to experiment with on different platforms. The AI strategy should include a transparent, defined process for selecting, reviewing, evaluating, procuring, deploying, driving adoption, monitoring, and collecting end-user feedback around AI agents.</p>



<h2 class="wp-block-heading">AI development capabilities for engineers and citizen builders</h2>



<p class="wp-block-paragraph">The apparent ease-of-use of AI code generators may lead some engineering teams to <a href="https://www.cio.com/article/4097339/your-next-big-ai-decision-isnt-build-vs-buy-its-how-to-combine-the-two.html">build AI agents rather than buy them</a> from SaaS providers. But CIOs should quickly realize that coding is just one step in developing AI agents, and that aggressively pursuing a build strategy can lead to <a href="https://www.cio.com/article/4178324/7-sources-of-ai-debt-and-how-to-avoid-them.html">AI debt</a> and <a href="https://www.cio.com/article/4107377/cios-will-underestimate-ai-infrastructure-costs-by-30.html">increased AI costs</a>.</p>



<p class="wp-block-paragraph">DevOps teams can code AI agents using tools such as Claude, Codex, Lovable, and Replit — a do-it-yourself approach. Some SaaS companies are providing an alternative, with AI agent development tools that leverage the data, infrastructure, and governance baked into their platforms. Many of these development tools offer flexibility, allowing developer teams to select AI models and development environments.</p>



<p class="wp-block-paragraph">Examples of new and enhanced AI development tools I saw at conferences this quarter include:</p>



<ul class="wp-block-list">
<li><a href="https://appian.com/blog/2025/appian-25-4-release-enterprise-ai-agents">Appian Composer and Agent Studio</a></li>



<li><a href="https://www.atlassian.com/software/rovo-dev">Atlassian Rovo Dev</a></li>



<li><a href="https://boomi.com/platform/companion/">Boomi Companion</a></li>



<li><a href="https://www.cisco.com/site/us/en/solutions/artificial-intelligence/agentic-ops/cloud-control-studio/index.html">Cisco Cloud Control Studio</a></li>



<li><a href="https://www.domo.com/app-catalyst">Domo App Catalyst</a></li>



<li><a href="https://www.pega.com/about/news/press-releases/pega-harnesses-best-practices-and-ai-coding-agents-build-apps-mission">Pega Infinity Studio</a></li>



<li><a href="https://www.quickbase.com/pave">Quickbase Pave</a></li>



<li><a href="https://www.snowflake.com/en/product/snowflake-coco/">Snowflake CoCo</a></li>



<li><a href="https://www.sap.com/products/artificial-intelligence/joule-studio.html">SAP Joule Studio</a>.</li>
</ul>



<p class="wp-block-paragraph">I also reviewed <a href="https://www.nutanix.com/solutions/ai">Nutanix Agentic AI</a>, a platform-as-a-service for accelerating the deployment of agentic AI workloads, and <a href="https://www.adobe.com/products/firefly/features/ai-assistant.html">Adobe Firefly AI Assistant</a> for creatives.</p>



<p class="wp-block-paragraph">These development tools can target different audiences. Some look like low-code development tools targeted at software developers, whereas others are <a href="https://drive.starcio.com/2026/05/low-code-in-the-ai-era-cios-need-to-know/">no-code and enable citizen developers</a>, i.e., businesspeople, to <a href="https://www.cio.com/article/4176062/cios-are-enlisting-business-users-to-vibe-code-their-own-apps.html">develop applications and agents</a>. Additionally, some of these tools support spec-driven development and generate artifacts such as product requirement documents (PRDs), data models, and testing capabilities.</p>



<p class="wp-block-paragraph">Before commissioning AI development for apps and agents, CIOs should sponsor proofs of technical, data, modeling, security, and governance capabilities.</p>



<h2 class="wp-block-heading">The context layer powering AI agents</h2>



<p class="wp-block-paragraph">Between AI agents and the enterprise’s intelligence, including structured data sources, defined business processes, and agent interactions (both human-to-agent and agent-to-agent), lies an evolving “context layer.”</p>



<p class="wp-block-paragraph">This layer refers to the enterprise knowledge that AI agents draw on when evaluating signals and recommending or taking actions. Context may include a knowledge graph, a semantic layer, cleansed document repositories, and other knowledge bases.</p>



<p class="wp-block-paragraph">The context layer, skills, tools, out-of-the-box agents, and governance capabilities are some areas to review where solution providers differentiate. Some examples: </p>



<ul class="wp-block-list">
<li>Many support the <a href="https://open-semantic-interchange.org/">Open Semantic Interchange</a>, and some brand their context layers, such as the <a href="https://www.atlassian.com/platform/teamwork-graph">Atlassian Teamwork Graph</a>, <a href="https://boomi.com/knowledge-hub-early-access/">Boomi Knowledge Hub</a>, and the <a href="https://www.sap.com/products/artificial-intelligence/knowledge-graph.html">SAP Knowledge Graph</a>.</li>



<li>Some are branding their guardrails, such as <a href="https://business.adobe.com/products/brand-intelligence.html">Adobe’s AI Brand Intelligence</a>, <a href="https://appian.com/products/platform/artificial-intelligence">Appian’s Private AI</a>, and <a href="https://www.quickbase.com/intelligence-pack/ai-control-center">Quickbase AI Control Center</a>.</li>



<li>To manage AI agents at scale, some are extending the notion of data catalogs and other governance tools to the AI domain with products such as <a href="https://boomi.com/platform/connect/">Boomi Connect</a>, <a href="https://www.sap.com/products/artificial-intelligence/ai-agent-hub.html">SAP AI Agent Hub</a>, and <a href="https://www.snowflake.com/en/product/features/horizon/">Snowflake Horizon Catalog</a>.</li>
</ul>



<p class="wp-block-paragraph">CIOs should recognize that while solution providers will compete on capabilities, the real “secret sauce” of the context layer lies in the company’s trusted data, well-defined business processes, and employee adoption of AI agents.</p>



<h2 class="wp-block-heading">Conversational user experiences and coworkers</h2>



<p class="wp-block-paragraph">AI agents use the context layer, but also tap into skills, which encode the procedures they can follow, and tools, which prescribe the actions they can take. Before AI agents are ready to pilot, their governance, including permissions, approval gates, and other guardrails, must be defined. Other capabilities to look for when defining AI agents include orchestration, testing evals, and observability.</p>



<p class="wp-block-paragraph">In 2025, many solution providers bolted on AI agents to their existing user experiences. This year, many solution providers showcased new conversational user experiences that employees can use instead of traditional ones built with forms, flows, reports, and static dashboards. Conversational user experiences are where AI agents and people come together, whether it’s human-in-the-middle or human augmentation.</p>



<p class="wp-block-paragraph">Solution providers also grouped their AI agents into assistants or coworkers. For example, <a href="https://business.adobe.com/products/cx-enterprise-coworker.html">Adobe CX Coworker</a> illustrates human augmentation, helping marketers manage campaigns with prompts and monitor their performance. SAP launched <a href="https://www.sap.com/products/artificial-intelligence/ai-assistant.html">Joule Assistants</a> across several business functions, including finance, human capital, supply chain, and customer experience. Other assistants, such as <a href="https://docs.appian.com/suite/help/26.5/appian-ai-copilot.html">Appian AI Copilot</a>, <a href="https://www.atlassian.com/software/rovo">Atlassian Rovo</a>, <a href="https://www.cisco.com/site/us/en/solutions/artificial-intelligence/ai-assistant/index.html">Cisco AI Assistant</a>, <a href="https://www.nutanix.com/blog/nutanix-intelligent-virtual-agent">Nutanix NIVA</a>, and <a href="https://www.snowflake.com/en/product/snowflake-cowork/">Snowflake CoWork</a>, offer AI-first user experiences to assist different end-user types.</p>



<p class="wp-block-paragraph">CIOs should demo these <a href="https://www.infoworld.com/article/4178415/what-will-ai-first-ux-look-like.html">AI-first user experiences</a> to glimpse the future of work.</p>



<p class="wp-block-paragraph">Developers are already getting used to these experiences through code generators and vibe coding tools. Now, similar capabilities are being tailored across all business functions. CIOs should ramp up their <a href="https://www.cio.com/article/4082282/preparing-your-workforce-for-ai-agents-a-change-management-guide.html">change management programs</a> to accelerate the adoption of these AI capabilities.</p>



<p class="wp-block-paragraph">Solution providers are showcasing AI capabilities that can help CIOs <a href="https://drive.starcio.com/2026/04/ai-reshaping-business-not-digital-transformation-yet/">reshape their businesses</a>. But in Q2, there were only a few examples of how AI can help CIOs drive growth, evolve business models, or embed AI into customer-facing products. I expect to see a wave of further AI innovations that will go beyond productivity improvements and efficiencies and help CIOs pursue <a href="https://drive.starcio.com/2025/02/cios-drive-genai-digital-transformation/">growth-driving digital transformation strategies</a>.  </p>



<p class="wp-block-paragraph"><em>Sacolick travelled to conferences mentioned in this article as a guest of Adobe, Appian, Atlassian, Domo, Nutanix, SAP, and Snowflake. In addition, he was hired by Quickbase to speak at its conference.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Katelyn Rogers, Digital Forensic Analyst, Mississippi Cyber Initiative]]></title>
<description><![CDATA[Digital forensics analyst Katelyn Rogers discusses bridging academia and law enforcement, developing open-source investigative tools, and encouraging more women and early-career professionals to enter the field.]]></description>
<link>https://tsecurity.de/de/3667393/it-security-nachrichten/katelyn-rogers-digital-forensic-analyst-mississippi-cyber-initiative/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667393/it-security-nachrichten/katelyn-rogers-digital-forensic-analyst-mississippi-cyber-initiative/</guid>
<pubDate>Tue, 14 Jul 2026 11:08:58 +0200</pubDate>
<content:encoded><![CDATA[Digital forensics analyst Katelyn Rogers discusses bridging academia and law enforcement, developing open-source investigative tools, and encouraging more women and early-career professionals to enter the field.]]></content:encoded>
</item>
<item>
<title><![CDATA[Denise Platon — Women in Security 2026]]></title>
<description><![CDATA[Security leader Denise Platon takes a look back at her career and role as Corporate Security Manager at Nestle.]]></description>
<link>https://tsecurity.de/de/3667391/it-security-nachrichten/denise-platon-women-in-security-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3667391/it-security-nachrichten/denise-platon-women-in-security-2026/</guid>
<pubDate>Tue, 14 Jul 2026 11:08:55 +0200</pubDate>
<content:encoded><![CDATA[Security leader Denise Platon takes a look back at her career and role as Corporate Security Manager at Nestle.]]></content:encoded>
</item>
<item>
<title><![CDATA[Score Big on Your Tech Career]]></title>
<description><![CDATA[Save up to 40% on training, certifications, and bundles to build new skills and advance your tech career. SAVE NOW
The post Score Big on Your Tech Career appeared first on Linux.com.]]></description>
<link>https://tsecurity.de/de/3666436/unix-server/score-big-on-your-tech-career/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666436/unix-server/score-big-on-your-tech-career/</guid>
<pubDate>Mon, 13 Jul 2026 23:02:06 +0200</pubDate>
<content:encoded><![CDATA[<p>Save up to 40% on training, certifications, and bundles to build new skills and advance your tech career. SAVE NOW</p>
<p>The post <a rel="nofollow" href="https://www.linux.com/news/july26-training-promo/">Score Big on Your Tech Career</a> appeared first on <a rel="nofollow" href="https://www.linux.com/">Linux.com</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[This Is Why LinkedIn Sucks Now]]></title>
<description><![CDATA[AI-generated slop has ruined the career-focused social media platform, as well as X.]]></description>
<link>https://tsecurity.de/de/3666162/it-nachrichten/this-is-why-linkedin-sucks-now/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3666162/it-nachrichten/this-is-why-linkedin-sucks-now/</guid>
<pubDate>Mon, 13 Jul 2026 20:47:37 +0200</pubDate>
<content:encoded><![CDATA[AI-generated slop has ruined the career-focused social media platform, as well as X.]]></content:encoded>
</item>
<item>
<title><![CDATA[Do programming certifications still matter?]]></title>
<description><![CDATA[If you’re a software developer or architect, you might wonder if programming certifications are still worth the effort, especially in the era of rapid AI-driven evolution. The short answer is, it depends.



“Certifications are shifting from a checkbox to a compass. They’re less about proving you...]]></description>
<link>https://tsecurity.de/de/3665678/ai-nachrichten/do-programming-certifications-still-matter/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3665678/ai-nachrichten/do-programming-certifications-still-matter/</guid>
<pubDate>Mon, 13 Jul 2026 17:04:44 +0200</pubDate>
<content:encoded><![CDATA[<div>
<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p class="wp-block-paragraph">If you’re a software developer or architect, you might wonder if programming certifications are still worth the effort, especially in the era of rapid <a href="https://www.infoworld.com/article/2338115/what-is-generative-ai-artificial-intelligence-that-creates.html" data-type="link" data-id="https://www.infoworld.com/article/2338115/what-is-generative-ai-artificial-intelligence-that-creates.html">AI-driven evolution</a>. The short answer is, it depends.</p>



<p class="wp-block-paragraph">“Certifications are shifting from a checkbox to a compass. They’re less about proving you memorized syntax and more about proving you can architect systems, instruct AI coding assistants, and solve problems end-to-end,” says Faizel Khan, lead AI engineer at <a href="https://landingpoint.com/">Landing Point</a>, an executive search and recruiting firm.</p>



<p class="wp-block-paragraph">“In the AI era, fewer students will get trained on the job, which means they have to train themselves,” Khan says. “Certifications—especially architectural ones like AWS, Kubernetes, Terraform—are still the clearest path to do that.”</p>



<h2 class="wp-block-heading">Pros and cons of programming certifications</h2>



<p class="wp-block-paragraph">It’s not all black and white when it comes to deciding whether to pursue programming certifications. The effort involves both pros and cons.</p>



<p class="wp-block-paragraph">“In terms of pros, certifications concretely demonstrate that you have a skillset at a documented level,” says Chris Riccio, vice president of engineering at <a href="https://uplevelteam.com/">Uplevel</a>, an engineering optimization system provider. “They also show that you’ve put in the time and effort to learn, study, and prepare.”</p>



<p class="wp-block-paragraph">Programming certifications are “a useful way to validate foundational skills and show that someone understands core concepts,” says Greg Fuller, vice president of Skillsoft’s training provider, <a href="https://www.codecademy.com/">Codecademy</a>. “They’re especially helpful for people entering the field or shifting from adjacent roles.”</p>



<p class="wp-block-paragraph">Certifications offer a structured path to demonstrate proficiency, and they can confirm your ability to build and deploy in various environments, Fuller says.</p>



<p class="wp-block-paragraph">These types of certifications often demonstrate baseline proficiency and continuous learning, says Reshmi Ramachandran, head of partnerships and GTM strategy for <a href="https://www.cprime.com/">Cprime</a>, a consultancy. “These are often key indications of proficiency for companies looking to filter large candidate pools,” she says.</p>



<p class="wp-block-paragraph">Certifications really do two things, Khan adds. “First, they force you to learn by doing,” he says. “If you’re taking AWS Solutions Architect or Terraform, you don’t pass by guessing—you plan, build, and test systems. That practice matters. Second, they act as a public signal. Think of it like a micro-degree. You’re not just saying, ‘I know cloud.’ You’re showing you’ve crossed a bar that thousands of other engineers recognize.”</p>



<p class="wp-block-paragraph">But there are cons, too. “In tech, employers don’t just want credentials, they want proof you can deliver,” says Kevin Miller, CTO at <a href="https://www.ifs.com/industries/manufacturing/industrial-manufacturing">IFS</a>, a maker of factory automation software. “Programming certifications can be a valuable indicator of your baseline knowledge and competencies, especially if you’re early in your career or pivoting into tech, but their importance is dwindling.”</p>



<p class="wp-block-paragraph"><a href="https://www.infoworld.com/generative-ai/">AI tools</a> that can generate, debug, and optimize code are <a href="https://www.infoworld.com/article/4077352/85-of-developers-use-ai-regularly-jetbrains-survey.html" data-type="link" data-id="https://www.infoworld.com/article/4077352/85-of-developers-use-ai-regularly-jetbrains-survey.html">already performing tasks once done by entry-level developers</a>, “which means fewer traditional programming roles are available,” Miller says. “As a result, the job market is becoming more competitive, and certifications aren’t seen as the noteworthy achievement they once were.”</p>



<p class="wp-block-paragraph">What’s more, not all certifications carry the same weight, Riccio says. “Some may reflect only familiarity rather than true expertise,” he says. “Certifications also often measure ‘book knowledge’ rather than practical experience, and they don’t always map clearly to the requirements of a specific role.”</p>



<p class="wp-block-paragraph">Programming certifications “can be a helpful signal, especially for confirming baseline knowledge in areas like cloud, security, or devops, but they’re not the full picture,” says Morgan Watts, vice president of IT at <a href="https://developer.8x8.com/">8×8</a>, a contact center platform developer.</p>



<p class="wp-block-paragraph">“I’m more interested in a candidate’s attitude and aptitude: what problems they’ve solved, what they’ve built, and how they’ve approached challenges,” Watts says. “Certifications can show commitment and discipline, and they’re especially useful in highly specialized roles. But I’m cautious when someone presents a laundry list of certifications with little evidence of real-world application.”</p>



<p class="wp-block-paragraph">A certification without experience doesn’t carry much weight, Watts says, and over-certification can sometimes signal the wrong focus. “Ultimately, it’s the ability to apply knowledge, collaborate, and adapt that sets great developers apart,” he says.</p>



<p class="wp-block-paragraph">Finally, certifications can age fast, Khan says. “Tech stacks evolve and a badge from two years ago may already feel dusty,” he says. “And some certifications are paper-thin—multiple-choice exams that don’t prove you can debug production at 2 a.m. So, the risk is you collect badges but still can’t ship.”</p>



<h2 class="wp-block-heading">Which certifications will get you noticed?</h2>



<p class="wp-block-paragraph">Despite the drawbacks, certifications are still very much in demand, and some carry more weight than others.</p>



<p class="wp-block-paragraph">The most in-demand certifications are typically platform-based—Amazon Web Services (AWS), Google Cloud Platform (GCP), Microsoft Azure, and others, Riccio says. “Many of these platforms provide managed services that integrate with existing systems or serve as the glue between them,” he says. “Today’s engineering teams aren’t just building standalone systems in isolation; they’re using other systems to store data, orchestrate business workflows, and connect applications.”</p>



<p class="wp-block-paragraph">A certification that demonstrates the ability to build solutions on these platforms can put a development professional ahead of the competition, Riccio says.</p>



<p class="wp-block-paragraph">“The certifications I see in highest demand tend to reflect the evolving tech landscape,” Watts says. “Cloud certifications from AWS, Azure, and GCP are incredibly valuable, especially as distributed systems become the norm.”</p>



<p class="wp-block-paragraph">Also in demand are certifications for <a href="https://www.infoworld.com/article/3632270/the-devops-certifications-tech-companies-want.html">devops and CI/CD tools</a> including <a href="https://www.infoworld.com/article/3529526/how-to-succeed-with-kubernetes.html">Kubernetes</a>, <a href="https://www.infoworld.com/article/2257241/why-you-should-use-docker-and-oci-containers.html">Docker</a>, and <a href="https://www.infoworld.com/article/2260091/what-is-jenkins-the-ci-server-explained.html">Jenkins</a>, Watts says, “because deployment automation and reliability are critical at scale. Also, with AI reshaping development, we’re seeing growing interest in certifications around machine learning, data science, and AI model integration. These certifications stand out because they align directly with the skills that teams need to move faster and more intelligently.”</p>



<aside class="sidebar large">
<h3>More about developer certifications</h3>
<p>Learn more about developer courses and certifications tech companies want:</p>
<ul>
<li><a href="https://www.infoworld.com/article/4055032/ai-developer-certifications-tech-companies-want.html">AI developer certifications</a></li>
<li><a href="https://www.infoworld.com/article/3583466/the-machine-learning-certifications-tech-companies-want.html">Machine learning certifications</a></li>
<li><a href="https://www.infoworld.com/article/2337635/4-cloud-certifications-that-will-help-you-stand-out.html">Cloud development certifications</a></li>
<li><a href="https://www.infoworld.com/article/3632270/the-devops-certifications-tech-companies-want.html">Devops and CI/CD certifications</a></li>
</ul>
</aside>




<p class="wp-block-paragraph">On the AI front, certifications in <a href="https://www.infoworld.com/article/2255099/what-is-tensorflow-the-machine-learning-library-explained.html">TensorFlow</a> and other <a href="https://www.infoworld.com/article/3583466/the-machine-learning-certifications-tech-companies-want.html">machine learning platforms</a> are gaining traction as organizations look to embed AI across the development process, Watts says. “These are the certifications that align closely with where modern engineering is headed—scalable, secure, and AI-enabled,” he says.</p>



<p class="wp-block-paragraph">And then there are <a href="https://www.csoonline.com/article/3970107/the-14-most-valuable-cybersecurity-certifications.html">cybersecurity credentials</a> that continue to be in high demand. Security certifications, such as CompTIA Security+ or Certified Ethical Hacker, “have become essential as every company faces increasing cyber threats and compliance requirements,” Miller says.</p>



<p class="wp-block-paragraph">“Core programming certifications are still a bit niche, but the adjacent skills, like those that help developers deploy, secure, and scale their code, are driving demand,” Fuller says. “Companies want developers who understand the full lifecycle, not just how to write code.”</p>



<p class="wp-block-paragraph"><strong>Also see: <a href="https://www.infoworld.com/article/3980325/the-java-certifications-tech-companies-want.html">The best Java certifications for software developers</a>.</strong></p>



<h2 class="wp-block-heading">Certifications in the hiring process</h2>



<p class="wp-block-paragraph">Experts are clear that programming certifications alone will not get you the job. But they do play a role in the hiring process.</p>



<p class="wp-block-paragraph">“The information technology world is characterized by rapid and continuous evolution, including the skills and knowledge required to work in the field,” says Diane Rafferty, managing director of the National Technology Group at <a href="https://www.atriumglobal.com/">Atrium</a>, a global talent solutions and extended workforce management firm.</p>



<p class="wp-block-paragraph">“Certifications not only prove that you have the skills and knowledge needed, but they also show employers that you’re invested in your education and career growth,” Rafferty says. “They can give you a competitive edge when looking for a job, as many companies now require candidates to have them.”</p>



<p class="wp-block-paragraph">Certifications are one part of the hiring equation, “but never the only part,” Watts says. “They help validate that a candidate has taken the time to build foundational knowledge, and that’s a good sign. But I put more weight on how a person thinks, solves problems, and contributes to the team. I look for people who are curious and proactive, who are learning because they want to, not just because a course told them to.”</p>



<p class="wp-block-paragraph">Certifications can also play a valuable role in retention, Watts says. “I encourage team members to pursue growth, and when they invest in their own development, the whole organization benefits,” he says. “But again, it’s that balance of knowledge, attitude, and applied experience that really moves the needle.”</p>



<p class="wp-block-paragraph">Certifications “may allow you to breeze through the initial résumé screening process, potentially getting you to the next stage faster,” Riccio says. “At a minimum, they will set your profile apart from the rest of the pack. They also demonstrate that you’ve reached a baseline level of expertise, allowing hiring managers to quickly evaluate whether you have the skills for the role.”</p>



<p class="wp-block-paragraph">Employers today “care far less about whether someone has passed an exam and far more about whether they can apply knowledge effectively in real-world situations, leverage AI tools, and solve complex problems,” Miller says. “A certification might get someone an interview, but being able to demonstrate problem-solving skills, teamwork, and adaptability will really make them stand out.”</p>



<h2 class="wp-block-heading">Popular programming certifications</h2>



<p class="wp-block-paragraph">The following certifications consistently rose to the top in my conversations with tech leaders and hiring managers.</p>



<h3 class="wp-block-heading">AWS Certified Developer—Associate</h3>



<p class="wp-block-paragraph">Showcases skills and knowledge in developing, optimizing, packaging, and deploying applications, using CI/CD workflows, and identifying and resolving application issues, according to AWS. This certification is said to be a good starting point on the AWS certification journey for professionals in IT or cloud developer job roles.</p>



<h3 class="wp-block-heading">Azure Developer Associate</h3>



<p class="wp-block-paragraph">This certificate from Microsoft is intended for developers participating in all phases of cloud development, including design, deployment, maintenance, and monitoring. The course teaches developers how to create end-to-end solutions in Microsoft Azure, using the Microsoft Learn Sandbox environment to access Azure resources and services.</p>



<h3 class="wp-block-heading">Certified Kubernetes Application Developer (CKAD)</h3>



<p class="wp-block-paragraph">This certification was created by the Linux Foundation and Cloud Native Computing Foundation. It demonstrates that candidates can design, build, and deploy cloud-native applications for Kubernetes.</p>



<h3 class="wp-block-heading">Certified Secure Software Lifecycle Professional (CSSLP)</h3>



<p class="wp-block-paragraph">This certification, from ISC2, focuses on secure software development practices. It recognizes leading application security skills and demonstrates advanced technical skills and knowledge needed for authentication, authorization, and auditing throughout the software development lifecycle.</p>



<h3 class="wp-block-heading">Databricks Certified Machine Learning Professional</h3>



<p class="wp-block-paragraph">Professionals learn about the latest data and AI techniques and how they can use the Databricks Data Intelligence Platform to build a variety of solutions across data engineering, data warehousing, data science, and AI.</p>



<h3 class="wp-block-heading">Professional Cloud Architect</h3>



<p class="wp-block-paragraph">This certification from Google assesses the ability to design and plan a cloud solution architecture, manage and provision the cloud solution infrastructure, design for security and compliance, analyze and optimize technical and business processes manage implementations of cloud architecture, and ensure solution and operations reliability.</p>



<h3 class="wp-block-heading">Terraform Associate</h3>



<p class="wp-block-paragraph">This certification from HashiCorp is for cloud engineers specializing in operations, IT, or development who know the basic concepts and skills associated with Terraform. It validates foundational skills in using <a href="https://www.infoworld.com/article/3893387/how-terraform-is-evolving-infrastructure-as-code.html">Terraform</a> for <a href="https://www.infoworld.com/article/2259359/what-is-infrastructure-as-code-automating-your-infrastructure-builds.html">infrastructure as code</a> development.</p>
</div></div></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[What’s next for CIOs? Omnicom’s Leif Maiorini has insights]]></title>
<description><![CDATA[Like many CIOs, Omnicom’s Leif Maiorini has become all too familiar over the past few years with the challenges of ever-shrinking IT roadmaps.“CIOs used to follow a five-year planning cycle, but five years is an eternity,” says the advertising and public relations titan’s CIO for corporate servic...]]></description>
<link>https://tsecurity.de/de/3664789/it-security-nachrichten/whats-next-for-cios-omnicoms-leif-maiorini-has-insights/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664789/it-security-nachrichten/whats-next-for-cios-omnicoms-leif-maiorini-has-insights/</guid>
<pubDate>Mon, 13 Jul 2026 11:38:06 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Like many CIOs, Omnicom’s Leif Maiorini has become all too familiar over the past few years with the challenges of <a href="https://www.cio.com/article/3618308/whatever-happened-to-the-three-year-it-roadmap.html">ever-shrinking IT roadmaps</a>.“CIOs used to follow a five-year planning cycle, but five years is an eternity,” says the advertising and public relations titan’s CIO for corporate services.</p>



<p>Agentic AI, arguably one of the most transformative technologies that technology leaders are grappling with today, only burst onto the public consciousness two years ago, Maiorini notes.</p>



<p>“We’ve only had the iPhone for 10 years,” he says. “How could you predict five years in the future?”</p>



<p>Yet staying on top of emerging and evolving technologies and their potential impact on business strategies is fundamental for IT leaders in support of the business’s missions. Doing so requires staying on the front end with clients to understand what they are doing and how evolving trends affect their businesses, Maiorini contends.</p>



<p>“It might not even be computer technology trends,” he says. “It might be biological technology; it might be life sciences. We [Omnicom] support a large number of different types of businesses, from communications and PR companies to life sciences companies.”</p>



<p>To thread this needle, Maiorini employs a strategic planning group within the IT function that focuses on looking forward. The group engages with Omnicom’s front-end businesses, specifically stakeholders focused on innovation and strategic initiatives.</p>



<p>“We need to understand what they’re seeing so we can use that to craft our IT strategy,” he says.</p>



<p>One of the most important areas of focus today is what agentic AI capabilities mean for Omnicom and its clients and how those capabilities will transform business processes.</p>



<p>“It’s not necessarily about what agentic AI can do for automating personal work, which it does,” Maiorini says. “My focus is on how we fundamentally change business processes as a result of being able to take advantage of this technology.”</p>



<p>Current business processes are based on human organizational systems and tend to be hierarchical, based on command-and-control messaging (top down), status messaging (bottom up), or information delivered from the front end.</p>



<p>“You get these communication lines going through lots of layers within the organization, vertically,” he says. “A lot of these technologies are going to shrink that down and change the organizational structure drastically. You’ll see a compression of the vertical organization into more horizontal, more focused teams on specific applications.”</p>



<p>Maiorini will discuss how CIOs can face the challenges of accelerating disruption at this week’s <a href="https://event.foundryco.com/cio-100-leadership-live-new-york/" rel="nofollow">CIO 100 Leadership Live: New York</a> conference at Convene, One Liberty Plaza. Anchoring the event’s capstone forum, “What’s Next for the CIO: Preparing for the Next 12-24 Months,” Maiorini and CIO Contributing Editor Lane Cooper will discuss what’s coming next for CIOs, from AI economics to organizational redesign.</p>



<p>The <a href="https://event.foundryco.com/cio-100-leadership-live-new-york/" rel="nofollow">CIO 100 Leadership Live: New York</a> conference will kick off on Thursday, offering CIOs and up-and-coming technology leaders peer insights into what is working inside complex organizations today.</p>



<p>The one-day event, <a href="https://register.foundryco.com/RqNoEQ?rt=D6xu4cPNx0-y6xS43PXNPA&amp;RefId=Site" rel="nofollow">complimentary for qualified IT professionals and their teams</a>, will consist of CIOs and other senior technology and data executives discussing strategic initiatives they have led and how they achieved real-world results. The event will include a career development luncheon and a TechCrunch VC briefing offering insights from venture capitalists on emerging technologies that are gaining traction and poised to disrupt the enterprise.</p>



<p>The event will begin at 8:30 a.m. on Thursday, July 16, with an executive roundtable, “Beyond the Pilot — Building the Infrastructure for Real AI Returns.” It will end with a networking reception beginning at 4:30 p.m.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Routine maintenance as a failure vector in modern networks]]></title>
<description><![CDATA[Early in my consulting career, I assumed maintenance windows reduced risk. After all, the purpose of planned maintenance is to improve reliability, apply fixes and prevent future outages. That assumption changed after I participated in what should have been a routine infrastructure change.



Eve...]]></description>
<link>https://tsecurity.de/de/3664719/it-security-nachrichten/routine-maintenance-as-a-failure-vector-in-modern-networks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3664719/it-security-nachrichten/routine-maintenance-as-a-failure-vector-in-modern-networks/</guid>
<pubDate>Mon, 13 Jul 2026 11:08:40 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Early in my consulting career, I assumed maintenance windows reduced risk. After all, the purpose of planned maintenance is to improve reliability, apply fixes and prevent future outages. That assumption changed after I participated in what should have been a routine infrastructure change.</p>



<p>Every pre-check passed. Device health looked normal. High-availability synchronization was complete. Monitoring showed no obvious concerns. Yet shortly after the change, users began reporting application failures.</p>



<p>The root cause was not a failed upgrade, hardware fault or software defect. The maintenance activity exposed a dependency elsewhere in the traffic path that nobody had considered.</p>



<p>Since then, I have seen similar patterns repeatedly across enterprise environments. The change itself was rarely the problem. The problem was the assumption that the change was isolated.</p>



<p>Planned maintenance is intended to reduce risk, but in practice, it often introduces risk into an otherwise stable network.</p>



<p>Many production incidents result from routine tasks such as firewall updates, DNS changes, certificate renewals, routing adjustments, load balancer failovers, WAF updates, switch upgrades or software patches, rather than dramatic failures.</p>



<p>The reality is that “routine” does not equate to “low risk.” It simply means the activity has been performed before, not that the current environment will respond the same way.</p>



<p>Modern networks have become too interconnected for maintenance to be treated as a simple device-level task. A change to one control point can expose a dependency elsewhere in the traffic path. A firewall update can affect asymmetric return traffic. A DNS change can shift users to a data center where persistence is not aligned. A load balancer failover can expose stale ARP or MAC learning issues. A certificate renewal can cause an inspection or TLS negotiation to fail in the backend. A WAF update can block application behavior that was never visible in testing.</p>



<p>Failures rarely stem from the maintenance activity itself, but rather from the assumption that the change is isolated.</p>



<h2 class="wp-block-heading">Why routine changes still cause outages</h2>



<p>In traditional network operations, the unit of change was often a device: upgrade a switch, modify a router, add a firewall rule, renew a certificate or reboot an appliance. That model worked better when application traffic paths were simpler, and dependencies were easier to understand.</p>



<p>Today, a single user transaction may cross DNS, global traffic management, WAN routing, data center switching, firewalls, load balancers, TLS inspection points, WAF policies, API gateways and backend application tiers. Each layer may make an independent decision about availability, security, routing or session handling.</p>



<p>This creates a risky maintenance pattern. Teams often validate only the component they changed, not the complete traffic flow before and after the change. Devices may appear healthy, configurations may load correctly and all checks may pass, yet users can still experience failures due to a changed dependency somewhere in the end-to-end path.</p>



<p>Google’s Site Reliability Engineering (SRE) guidance highlights that changes remain one of the most common sources of service disruption, which is why mature organizations invest heavily in change validation, rollback planning and observability. <a href="https://sre.google/sre-book/">The SRE book</a> provides extensive discussion of change management, reliability engineering and operational risk in large-scale environments.</p>



<p>For this reason, maintenance windows should be evaluated as both operational events and potential failure vectors.</p>



<h2 class="wp-block-heading">Common failure points during maintenance</h2>



<p>One common issue is state mismatch. Firewalls, load balancers, NAT devices and application delivery controllers often maintain connection or session state. During failover, reboot or path change, existing flows may not survive even if the standby device becomes active as designed. New connections may succeed while long-lived sessions fail. In other cases, traffic may enter through one device and return through another, causing stateful inspection to drop packets that appear invalid.</p>



<p>Asymmetric routing is another frequent cause. A routing change may look harmless from a Layer 3 perspective, but if the forward and return paths traverse different firewalls or inspection zones, applications can fail intermittently. The network may still be “up,” but the security policy no longer sees the full conversation.</p>



<p>Layer 2 behavior is also underestimated. In highly available data center designs, MAC learning, ARP cache behavior, VLAN tagging, port channels and first-hop gateway behavior can determine whether traffic moves cleanly after a failover. A device may successfully assume an active role, but upstream switches or firewalls may still forward traffic toward the old path until tables age out or are refreshed.</p>



<p>DNS and GSLB changes introduce a different class of risk. Teams often test name resolution, but resolution is only the first step. The more important question is where users are being sent and whether that destination is ready to handle production traffic.</p>



<p><a href="https://www.internetsociety.org/resources/deploy360/dns/">DNS resilience guidance published by the Internet Society</a> emphasizes that successful name resolution alone does not guarantee application availability, particularly when multiple infrastructure dependencies exist behind the DNS response.</p>



<p>If global traffic management shifts users from one data center to another, the receiving site must have aligned firewall rules, load balancer configuration, health monitors, certificates, persistence behavior, routing advertisements and backend capacity. Otherwise, DNS sends users to a site that is not actually ready.</p>



<p>Certificate maintenance can also break more than the browser-facing endpoint. In many environments, TLS is terminated, re-encrypted, inspected or validated across multiple hops. Renewing a certificate on the external virtual server may not address backend certificates, intermediate chains, SNI behavior, cipher compatibility or trust stores used by inspection devices. The maintenance task may be described as a certificate renewal, but the real dependency is end-to-end TLS negotiation.</p>



<p>Security policy maintenance creates another risk. WAFs, IPSs, DDoS protection systems, bot defense platforms and firewall policies are designed to block abnormal behavior. But during updates, tuning changes or signature refreshes, they can also block legitimate application traffic if policy enforcement is not validated against real transaction patterns.</p>



<p>This is especially true for APIs, where small differences in headers, methods, payload structure or authentication flows can trigger unexpected enforcement.</p>



<h2 class="wp-block-heading">The test environment problem</h2>



<p>Many teams rely on pre-checks and test environments, but these controls are often less effective than they seem.</p>



<p>Pre-checks confirm device reachability, interface status, route existence, pool member availability and HA health. While necessary, these checks do not ensure production traffic will survive a path change because they focus on infrastructure rather than transaction validation.</p>



<p>Test environments rarely mirror production. Production environments involve real user volume, client diversity, DNS caching behavior, firewall states, certificates, backend latency and complex dependencies. A failover that succeeds in a lab may behave very differently in the real world.</p>



<p>This does not render testing useless, but test results should not be considered proof of production safety. They provide evidence, not a guarantee.<br><br>This challenge aligns with broader <a href="https://www.nist.gov/cyberframework">operational resilience guidance from the NIST Cybersecurity Framework</a>, which emphasizes continuous monitoring, validation and recovery planning as critical operational capabilities.</p>



<p>A stronger maintenance process starts with mapping the traffic path before the window. For critical applications, teams should understand the normal ingress path, egress path, firewall zones, NAT points, load balancer virtual servers, DNS or GSLB decision points, TLS termination points, persistence requirements and backend dependencies.</p>



<p>The next step is defining failure expectations. What happens to existing sessions if a firewall is rebooted? Should source MAC, floating IP, ARP or upstream forwarding behavior change during a load balancer failover? How long will cached clients continue to access the old site after a DNS shift? Which clients and inspection devices validate the certificate chain when a certificate is replaced?</p>



<p>These questions should be addressed before the maintenance window, not during an outage.</p>



<p>Pre-checks should include both control-plane and data-plane evidence. Control-plane checks confirm configuration, synchronization, device health, routing tables, interface status and object availability. Data-plane checks validate real traffic movement: TCP handshakes, TLS negotiation, HTTP status codes, API responses, session persistence, source NAT behavior and return-path consistency.</p>



<p>During the change, monitoring should focus on symptoms that expose traffic failure early. Device CPU and interface status are useful, but they are not enough. Teams should also watch connection resets, denied firewall logs, WAF violation spikes, pool member selection failures, DNS answer changes, TCP retransmissions, backend 5xx errors and synthetic transaction results.</p>



<p>Rollback planning must also be precise. Simply rolling back a configuration is often insufficient. If a DNS record changes, cached clients may continue using the previous answer. If a firewall state table is cleared, restoring the rule does not recover active sessions. If failover alters forwarding behavior, upstream devices may require ARP refresh, route reconvergence or manual validation.</p>



<p>An effective rollback plan should identify lost state, persistent caches and the evidence required to confirm recovery.</p>



<h2 class="wp-block-heading">Treating maintenance as a resilience exercise</h2>



<p>The objective is not to make maintenance overly complex or bureaucratic. The objective is to avoid underestimating its risks.</p>



<p>Every maintenance window is a controlled opportunity to test whether the network behaves as specified by the architecture.</p>



<p>If failover is part of the design, maintenance should verify failover behavior. If a secondary data center is expected to handle traffic, maintenance should demonstrate that it can process real transactions. If security policies are updated, maintenance should prove that legitimate traffic is still allowed. If certificates are renewed, maintenance should validate the complete TLS path, not just the public endpoint.</p>



<p><a href="https://uptimeinstitute.com/resources">Industry outage studies published by the Uptime</a> Institute consistently show that human error and process failures remain significant contributors to downtime. Their annual outage research continues to highlight the role of operational processes and maintenance activities in service disruptions.<br><br>Maintenance windows provide an opportunity to identify those weaknesses before they become customer-facing incidents.</p>



<p>This requires closer collaboration between network, security, application and operations teams. Network engineers may own routing or load-balancing changes, but application teams understand transaction flows. Security teams understand inspection and enforcement behavior. Operations teams often see user-impacting symptoms first.</p>



<p>Treating maintenance as a shared traffic event rather than a device event reduces blind spots.</p>



<p>Routine maintenance will always involve some risk. However, the greatest risk is the false confidence that the term ‘routine’ conveys.</p>



<p>Modern networks fail in the spaces between systems: between DNS and load balancing, between firewalls and routing, between TLS inspection and application behavior, between HA design and actual forwarding state. Maintenance exposes those spaces.</p>



<p>For that reason, network teams should view every maintenance window as more than a checklist. It is a live test of architecture, operational discipline and production resilience.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cybersecurity Career Roadmap: From Beginner to Professional in 2026]]></title>
<description><![CDATA[By HOC Team  |  Last updated: July 2026 |  Read time: ~25 min Cybersecurity is one of the highest-demand,… The post Cybersecurity Career Roadmap: From Beginner to Professional in 2026 appeared first on Hackers Online Club. This article has been indexed…
Read more →
The post Cybersecurity Career R...]]></description>
<link>https://tsecurity.de/de/3663381/it-security-nachrichten/cybersecurity-career-roadmap-from-beginner-to-professional-in-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3663381/it-security-nachrichten/cybersecurity-career-roadmap-from-beginner-to-professional-in-2026/</guid>
<pubDate>Sun, 12 Jul 2026 16:07:52 +0200</pubDate>
<content:encoded><![CDATA[<p>By HOC Team  |  Last updated: July 2026 |  Read time: ~25 min Cybersecurity is one of the highest-demand,… The post Cybersecurity Career Roadmap: From Beginner to Professional in 2026 appeared first on Hackers Online Club. This article has been indexed…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/cybersecurity-career-roadmap-from-beginner-to-professional-in-2026/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/cybersecurity-career-roadmap-from-beginner-to-professional-in-2026/">Cybersecurity Career Roadmap: From Beginner to Professional in 2026</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Cybersecurity Career Roadmap: From Beginner to Professional in 2026]]></title>
<description><![CDATA[By HOC Team  |  Last updated: July 2026 |  Read time: ~25 min Cybersecurity is one of the highest-demand,…
The post Cybersecurity Career Roadmap: From Beginner to Professional in 2026 appeared first on Hackers Online Club.]]></description>
<link>https://tsecurity.de/de/3663367/it-security-nachrichten/cybersecurity-career-roadmap-from-beginner-to-professional-in-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3663367/it-security-nachrichten/cybersecurity-career-roadmap-from-beginner-to-professional-in-2026/</guid>
<pubDate>Sun, 12 Jul 2026 15:53:03 +0200</pubDate>
<content:encoded><![CDATA[<p>By HOC Team  |  Last updated: July 2026 |  Read time: ~25 min Cybersecurity is one of the highest-demand,…</p>
<p>The post <a href="https://hackersonlineclub.com/cybersecurity-career-roadmap/">Cybersecurity Career Roadmap: From Beginner to Professional in 2026</a> appeared first on <a href="https://hackersonlineclub.com/">Hackers Online Club</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Learn at no cost how to get insights from your data, regardless of your analytics experience]]></title>
<description><![CDATA[Throughout October and November, Google Cloud is offering no-cost data analytics training. Regardless of whether you’ve just started learning how to get insights from your data or you already have significant data analytics experience, we have learning opportunities to help you take your skills t...]]></description>
<link>https://tsecurity.de/de/3662847/it-security-nachrichten/learn-at-no-cost-how-to-get-insights-from-your-data-regardless-of-your-analytics-experience/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662847/it-security-nachrichten/learn-at-no-cost-how-to-get-insights-from-your-data-regardless-of-your-analytics-experience/</guid>
<pubDate>Sun, 12 Jul 2026 08:07:12 +0200</pubDate>
<content:encoded><![CDATA[<div class="block-paragraph"><p>Throughout October and November, Google Cloud is offering no-cost data analytics training. Regardless of whether you’ve just started learning how to get insights from your data or you already have significant data analytics experience, we have learning opportunities to help you take your skills to the next level. </p><h3>New to data analytics?</h3><p>If you’re new to data analytics, we recommend you join our two-day <a href="https://cloudonair.withgoogle.com/events/cloud-onboard-data-fundamentals?utm_source=google&amp;utm_medium=blog&amp;utm_campaign=-&amp;utm_content=data-analytics-training-cloud-onboard-data-fundamentals&amp;utm_term=-" target="_blank"><b>Cloud OnBoard: Unleash Your Data Potential</b></a> digital event to learn how you can quickly and easily generate powerful data insights. On <b>October 27</b>, you’ll be taught the fundamentals of analytics and data processing. On <b>October 28</b>, you’ll dive into BigQuery to learn how to build a modern data warehouse, speed up queries, process streaming data, use machine learning models to produce predictive analytics, and more. </p><p>At the end of the Cloud OnBoard series, you’ll receive an e-certificate of participation and no-cost Qwiklabs credits to start earning Google Cloud <a href="https://cloud.google.com/training/badges?utm_source=google&amp;utm_medium=blog&amp;utm_campaign=-&amp;utm_content=data-analytics-training-skill-badges&amp;utm_term=-">skill badges</a>. Everyone who attends will also have the opportunity to participate in a digital game during which you can compete with others to see how your skills stack up against those of your peers. </p><p><b>Register for the October 27 and 28 digital events </b><a href="https://cloudonair.withgoogle.com/events/cloud-onboard-data-fundamentals?utm_source=google&amp;utm_medium=blog&amp;utm_campaign=-&amp;utm_content=data-analytics-training-cloud-onboard-data-fundamentals&amp;utm_term=-" target="_blank"><b>here</b></a><b>. </b></p><h3>Looking for more in-depth training?</h3><p>If you’re already familiar with the fundamentals of data analytics, we suggest you attend the <a href="https://cloudonair.withgoogle.com/events/sql-errors-big-query?utm_source=google&amp;utm_medium=blog&amp;utm_content=hands-on-lab-big-query" target="_blank"><b>BigQuery hands-on lab webinar</b></a> on <b>November 6</b> for more in-depth training. </p><p>The lab will teach you the best practices for querying and getting insights from your data warehouse with BigQuery, Google's fully managed, NoOps, low cost analytics database. With BigQuery, you can query terabytes and terabytes of data without infrastructure to manage or a database administrator, letting you focus on what’s really important: generating actionable insights. In this lab, we will show you how to troubleshoot common SQL errors, query the data-to-insights public dataset, use the Query Validator, and troubleshoot syntax and logical SQL errors.</p><p><b>Sign up </b><a href="https://cloudonair.withgoogle.com/events/sql-errors-big-query?utm_source=google&amp;utm_medium=blog&amp;utm_content=hands-on-lab-big-query" target="_blank"><b>here</b></a><b> for the November 6 webinar. </b></p><h3>Ready to validate your expertise? </h3><p>Interested in learning how you can validate your cloud expertise and become an in-demand, high-impact professional? We encourage you to attend the <a href="https://cloudonair.withgoogle.com/events/data-engineer-certification?utm_source=google&amp;utm_medium=blog&amp;utm_campaign=-&amp;utm_content=data-analytics-training-data-engineer-certification&amp;utm_term=-" target="_blank"><b>Certification Prep: Data Engineer Certification</b></a> webinar on <b>October 15</b>.  </p><p>The webinar will walk you through how Google Cloud's <a href="https://cloud.google.com/certification/data-engineer?utm_source=google&amp;utm_medium=blog&amp;utm_campaign=-&amp;utm_content=data-analytics-training-data-engineer-cert&amp;utm_term=-">Professional Data Engineer certification </a>can help you validate your cloud expertise, elevate your career, and transform businesses. During this session, you'll begin your journey towards certification with tips from our certified experts, sample exam questions, and discounts to continue preparing for the certification exam.</p><p><b>Reserve your seat for the October 15 webinar </b><a href="https://cloudonair.withgoogle.com/events/data-engineer-certification?utm_source=google&amp;utm_medium=blog&amp;utm_campaign=-&amp;utm_content=data-analytics-training-data-engineer-certification&amp;utm_term=-" target="_blank"><b>here</b></a>.</p></div>
<div class="block-related_article_tout">





<div class="uni-related-article-tout h-c-page">
  <section class="h-c-grid">
    <a href="https://cloud.google.com/blog/topics/developers-practitioners/bigquery-explained-blog-series/" data-analytics='{
                       "event": "page interaction",
                       "category": "article lead",
                       "action": "related article - inline",
                       "label": "article: {slug}"
                     }' class="uni-related-article-tout__wrapper h-c-grid__col h-c-grid__col--8 h-c-grid__col-m--6 h-c-grid__col-l--6
        h-c-grid__col--offset-2 h-c-grid__col-m--offset-3 h-c-grid__col-l--offset-3 uni-click-tracker">
      <div class="uni-related-article-tout__inner-wrapper">
        <p class="uni-related-article-tout__eyebrow h-c-eyebrow">Related Article</p>

        <div class="uni-related-article-tout__content-wrapper">
          <div class="uni-related-article-tout__image-wrapper">
            <div class="uni-related-article-tout__image"></div>
          </div>
          <div class="uni-related-article-tout__content">
            <h4 class="uni-related-article-tout__header h-has-bottom-margin">BigQuery explained: Blog series recap</h4>
            <p class="uni-related-article-tout__body">Find links to all posts in the BigQuery Explained series.</p>
            <div class="cta module-cta h-c-copy  uni-related-article-tout__cta muted">
              <span class="nowrap">Read Article
                <svg class="icon h-c-icon" role="presentation">
                  <use xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#mi-arrow-forward"></use>
                </svg>
              </span>
            </div>
          </div>
        </div>
      </div>
    </a>
  </section>
</div>

</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[This Factory Was Severely Short On Workers. Then It Offered Flexible Work.]]></title>
<description><![CDATA["Flexible, app-based scheduling lets large pools of part-time workers choose four-hour shifts and even select the type of work they prefer," writes long-time Slashdot reader Tony Isaac. While the system started during the pandemic when factories faced severe labor shortages, the model is now "sup...]]></description>
<link>https://tsecurity.de/de/3662313/it-security-nachrichten/this-factory-was-severely-short-on-workers-then-it-offered-flexible-work/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3662313/it-security-nachrichten/this-factory-was-severely-short-on-workers-then-it-offered-flexible-work/</guid>
<pubDate>Sat, 11 Jul 2026 20:52:45 +0200</pubDate>
<content:encoded><![CDATA["Flexible, app-based scheduling lets large pools of part-time workers choose four-hour shifts and even select the type of work they prefer," writes long-time Slashdot reader Tony Isaac. While the system started during the pandemic when factories faced severe labor shortages, the model is now "supplying hundreds of trained workers each week... while giving people — from retirees to sidejob hustlers to longtime employees — control over their hours." 

NPR says it's attracting "people who may not be seeking a traditional career in the industry or even a 40-hour workweek,"
It's a change that manufacturers including Stanley Black &amp; Decker and Georgia-Pacific are embracing... Today, in any given week, about 450 flexible workers — roughly half the pool — pick up shifts at the [GE Appliances] plant, with workers putting in an average of 24 hours a week. Their contributions have been key to GE Appliances' $180 million expansion of the Georgia plant, completed last year, which added 600 new jobs... [Darcy Duvall, the plant's director of human resources operations] has also come to see that many workers prize flexibility despite the significant trade-offs — like lower pay and almost no benefits. MyWorkChoice employees can opt into their own group healthcare plan, but few do... The flexible work option has also helped GE Appliances keep longtime employees with decades of experience on the job.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=This+Factory+Was+Severely+Short+On+Workers.+Then+It+Offered+Flexible+Work.%3A+https%3A%2F%2Fit.slashdot.org%2Fstory%2F26%2F07%2F11%2F0639259%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fit.slashdot.org%2Fstory%2F26%2F07%2F11%2F0639259%2Fthis-factory-was-severely-short-on-workers-then-it-offered-flexible-work%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://it.slashdot.org/story/26/07/11/0639259/this-factory-was-severely-short-on-workers-then-it-offered-flexible-work?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Safe from AI: which jobs will help you thrive in the future?]]></title>
<description><![CDATA[Experts say there will still be opportunities ahead in everything from teaching to hotels and the lawEntering the world of work often brings some uncertainty, but now there is another question: how can I AI-proof my career?We asked people from across various industries what they think the impact ...]]></description>
<link>https://tsecurity.de/de/3661711/ai-nachrichten/safe-from-ai-which-jobs-will-help-you-thrive-in-the-future/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3661711/ai-nachrichten/safe-from-ai-which-jobs-will-help-you-thrive-in-the-future/</guid>
<pubDate>Sat, 11 Jul 2026 13:03:17 +0200</pubDate>
<content:encoded><![CDATA[<p>Experts say there will still be opportunities ahead in everything from teaching to hotels and the law</p><p>Entering the world of work often brings some uncertainty, but now there is another question: how can I AI-proof my career?</p><p>We asked people from across various industries what they think the impact of AI will be on careers, and which jobs may be less affected. While it is still early days for the tech, many had ideas about how you can best prepare yourself for a successful career in this new world.</p> <a href="https://www.theguardian.com/money/2026/jul/11/ai-work-jobs-future-medicine-teaching-hotels-law">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI’s potential to infect the hiring process with bias]]></title>
<description><![CDATA[You’ll be hard pressed to find an area of corporate America where AI hasn’t found a place, and that includes the tech hiring process. A survey from MyPerfectResume found that 73% of employers say they use AI in hiring decisions, while 52% use it for decisions around restructuring and role plannin...]]></description>
<link>https://tsecurity.de/de/3659261/it-nachrichten/ais-potential-to-infect-the-hiring-process-with-bias/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3659261/it-nachrichten/ais-potential-to-infect-the-hiring-process-with-bias/</guid>
<pubDate>Fri, 10 Jul 2026 11:32:30 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>You’ll be hard pressed to find an area of corporate America where AI hasn’t found a place, and that includes the tech hiring process. A <a href="https://www.myperfectresume.com/career-center/careers/basics/ai-in-hiring-layoffs" rel="nofollow">survey from MyPerfectResume</a> found that 73% of employers say they use AI in hiring decisions, while 52% use it for decisions around restructuring and role planning.</p>



<p>On the other side, candidates are also increasingly relying on AI, with 52% of current job seekers reporting they use AI to help them in their job searches to refine submission materials (85%) and prepare for interviews (73%), according to <a href="https://www.sap.com/documents/2026/05/ccd1609f-507f-0010-bca6-c68f7e60039b.html" rel="nofollow">data from SAP</a>.</p>



<p>“Technology can help employers be more efficient, but hiring decisions still benefit from human judgment, especially when a candidate’s experience requires context that automated screening may not understand,” says Jasmine Escalera, career expert at online career and résumé builder Zety.</p>



<p>It’s clear AI is an integral part of the hiring process, and organizations need to prepare a strategy for what that looks like moving forward in terms of hiring bias, transparency, and striking the right balance of human effort and AI assistance.</p>



<h2 class="wp-block-heading">Recognizing the warning signs</h2>



<p>AI has the promise of bringing efficiency in hiring for both job seekers and employees, but if organizations aren’t careful, an overreliance on AI technology can lead to unintended consequences. Further MyPerfectResume data also reveals 65% of respondents say AI often automatically rejects applicants before a person sees them, and 14% say AI rejects more than half of applicants outright.</p>



<p>Additionally, 47% say they feel AI has filtered out candidates who would’ve otherwise advanced in the process. And 51% say they use AI to flag risky candidates, such as people who might be viewed as job-hoppers or who have employment gaps.</p>



<p>Flagging risky candidates and eliminating them before a human can look at their résumé can filter out candidates with experience that tells a more complex story than an algorithm is designed to interpret, says Escalera. Candidates re-entering the workforce after time off, for example, may have valuable skills that don’t fit neatly into automated screening criteria, she adds.</p>



<p>Similarly, there’s concern AI will reject a professional who wants to change industries, or has qualifications that don’t  perfectly reflect the language in a job description before a human has a chance to look.</p>



<p>Laurie Cure, CEO of consulting firm Innovative Connections, says she’s seen instances where AI has eliminated highly qualified yet nervous candidates who take more time than what the AI allocated to answer a question, or candidates may simply use a different language than the AI is programmed to look for, causing them to not be recommended to progress in the process.</p>



<p>She’s also seen where AI might use historical data to determine patterns of a successful employee, identifying certain schools, work histories, tenure, or other characteristics that, while not inherently bias, perpetuates the bias that accurate correlations exist between these elements, when they often don’t. Organizations need to ensure that humans remain a part of these processes, Cure adds, where they can bring context, intuition, nuance, and an ability to identify potential in a candidate that AI can’t replicate.</p>



<p>“I think we’re allowing AI to become the process instead of allowing it to support the process in ways that makes hiring better,” she says.</p>



<h2 class="wp-block-heading">An emphasis on accuracy over speed</h2>



<p>Cure says a major problem for most companies is that the balance is off, with companies using AI for the majority, if not all, of résumé screening rather than as a complement to human efforts. Organizations that simply implement AI to speed up different parts of the hiring process, without taking time to consider if a process stands to benefit from AI, run the risk of introducing bias.</p>



<p>“While this allows for managing high volumes of applicants, and provides greater degrees of consistency in applying job criteria, it likely misses many good candidates,” she says. “The human element needs to be highly active in developing job requirements so they’re not too narrow. Organizations need to look at how they ask AI to do its work, so be cautious how you frame the screening or other criteria.”</p>



<p>Ultimately, AI isn’t a tool to be implemented and forgotten, or one that should be viewed simply as a path to efficiency since many processes still benefit from and require a human touch. It’s important to conduct audits of AI processes in hiring, and to remember that the use of AI doesn’t eliminate the legal or ethical obligations an organization has for equal employment, says Cure, making the balance between human and AI even more important.</p>



<h2 class="wp-block-heading">AI transparency and fostering candidate trust</h2>



<p>AI has also introduced an element of mistrust into hiring on both sides, where employers can’t be sure candidates haven’t relied on AI the same way candidates aren’t always sure exactly how AI is being used in the hiring process. Candidates are aware that employers are implementing AI, but they’re often unsure of the extent it’s being used and when to expect to interact with humans.</p>



<p>“That lack of clarity can create skepticism and frustration, particularly in a job market that already feels highly competitive,” says Escalera. “The goal shouldn’t be to convince candidates that AI isn’t being used, but to help them understand how technology supports decisions rather than replaces the human judgment behind them.”     </p>



<p>Cure recommends organizations start with a process map that outlines every step of an organization’s hiring process to help visualize where AI is beneficial and which processes still require human intervention. Companies can shift to relying too heavily on AI or they may become too dependent on human effort, when that effort could be put toward more important tasks.</p>



<p>“Humans bring an understanding of a person’s broader history, and the ability to detect when a candidate has potential to grow into the role,” she says. “People can see non-traditional career paths and motivations more distinctly than AI. Yet AI brings consistency, efficiency, criteria standardization, and a level of objectivity the process benefits from. If we effectively blend these two at the right points in the process, hiring is enhanced, not diminished.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[This Bug is Perfect.]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 306x - Views:3473 Try Flare's ThreatFlow for FREE right now @ https://go.lowlevel.tv/flareflow before July 11th

🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://s...]]></description>
<link>https://tsecurity.de/de/3657504/it-security-video/this-bug-is-perfect/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3657504/it-security-video/this-bug-is-perfect/</guid>
<pubDate>Thu, 09 Jul 2026 17:18:33 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 306x - Views:3473 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/E0A7IrJtpUY?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Try Flare's ThreatFlow for FREE right now @ https://go.lowlevel.tv/flareflow before July 11th<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Physical AI will see the fusion of robotics and AI transform the world]]></title>
<description><![CDATA[Historically, humans have solved their toughest tasks by creating tools capable of withstanding greater strain to undertake the job or augment their abilities. From levers to steam engines and beyond, the structural evolution of machines is almost as remarkable as their ability to improve operati...]]></description>
<link>https://tsecurity.de/de/3656811/it-nachrichten/physical-ai-will-see-the-fusion-of-robotics-and-ai-transform-the-world/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3656811/it-nachrichten/physical-ai-will-see-the-fusion-of-robotics-and-ai-transform-the-world/</guid>
<pubDate>Thu, 09 Jul 2026 13:17:15 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Historically, humans have solved their toughest tasks by creating tools capable of withstanding greater strain to undertake the job or augment their abilities. From levers to steam engines and beyond, the structural evolution of machines is almost as remarkable as their ability to improve operational cultures.</p>



<p>In recent times, we have seen machines attain their highest structural complexity, productivity, and best aesthetics yet. The most relevant new technologies today focus on creating high-throughput physical machines and software that ‘thinks’, and, more futuristically, a fusion of both.</p>



<h2 class="wp-block-heading">From moving machines to intelligent humanoids</h2>



<p>Evolving from ‘moving machines’ capable of handling repetitive tasks to intelligent machines is a century-long goal for robotics. The rapid growth in this sector over the past half-decade, with a <a href="https://www.mordorintelligence.com/industry-reports/robotics-market" target="_blank" rel="noreferrer noopener">$218 billion projection for 2031</a>, is driven by expectations that advancements in AI will extend to robotics and expedite the development of intelligent robots.</p>



<p>Current prototypes are robots capable of taking initiatives or executing tasks more efficiently with less supervision. These have been applied in agriculture, industrial-grade production, and healthcare.</p>



<p>Humanoid robots have attracted the most attention due to the excitement around their potential as near-human machines and the signals their development sends for the future of human-machine coexistence.</p>



<p>Tech leaders around the world are contributing to advancing physical AI with optimism about the impact of robotics on humanity.</p>



<p>Physical AI is a department of artificial intelligence specializing in developing AI algorithms and models for locomotive systems. This includes every kind of robot and, at a more advanced level, humans.</p>



<p>Recent developments in this field include <a href="https://x.com/Figure_robot/status/2059350969700491632" target="_blank" rel="noreferrer noopener">Figure AI’s humanoid robot deployments</a> and Tether’s investment in the <a href="https://tether.io/news/tether-to-lead-neura-robotics-series-c-financing-one-of-the-largest-up-to-1-4bn-robotics-physical-ai-investment-rounds-on-record-to-power-the-financial-and-intelligence-layer/" target="_blank" rel="noreferrer noopener">NEURA</a>, leading the fundraising of up to $1.4 billion in one of the largest robotics and physical AI investment rounds on record.</p>



<p>Physical AI researchers are exploring future-proof strategies to develop intelligent, safe humanoid robots that can collaborate with humans, undertake humanly impossible tasks, and handle routine tasks more efficiently.</p>



<p>The strongest case for AI-powered humanoid robots is that they complement human power. A <a href="https://reports.weforum.org/docs/WEF_Physical_AI_Powering_the_New_Age_of_Industrial_Operations_2025.pdf" target="_blank" rel="noreferrer noopener">World Economic Forum (WEF)</a> report projects shifts in work roles. Humanoid robots increase the workforce, take over repetitive, strenuous, and boring roles, allowing humans to pursue more interesting career paths.</p>



<p>This way, superintelligent humanoid robots will lead sector-wide transformations beyond current imagination and uniquely transform the world.</p>



<p>In theory, it creates the ideal conditions for an improved global economy and a higher quality of life. This theory is challenged by the dystopian vision of a machine-dominated world in which humans become less relevant. However, history suggests otherwise. Every major wave of automation, from the industrial revolution to the rise of computers, initially sparked fears of human redundancy. Yet each ultimately created more opportunities than it eliminated.</p>



<h2 class="wp-block-heading">Super-human advancements with physical AI</h2>



<p>In ideal operations, physical AI will serve as a lever for humans as well. While progress in robotics is loudest, efforts to directly augment human abilities with physical AI are also yielding remarkable results. Brain-computer interfaces can now <a href="https://techcrunch.com/sponsor/tether/tether-is-setting-the-standards-forbrain-to-text-speech-decoding-withai-augmented-bci-implants/" target="_blank" rel="noreferrer noopener">accurately decode speech in paralyzed and speech-impaired</a> individuals through intracortical implants that detect brain activity. And this is only a ‘start’. Projections from leaders in this space give insight into the trajectory of this technology.</p>



<p>In a recent <a href="https://www.youtube.com/watch?v=rKZ3LPLF2-A" target="_blank" rel="noreferrer noopener">fireside chat</a> with NEURA Robotics CEO and founder David Reger, Tether CEO Paolo Ardoino noted, <em>“the evolution of robotics that Neura is making is going to allow testing and building of a framework[…] where the real impact is in the real world. Everything starts digital, but to see the true potential, we will see robots roaming the streets, helping people, and being part of society. It has to happen safely, it has to be transparent.”</em></p>



<p>Physical AI products designed for direct human integration are being developed differently, with a focus on ergonomics, a minimalist aesthetic, and performance. <a href="https://tether.io/evo/" target="_blank" rel="noreferrer noopener">EVO</a>, Tether’s arm leading the charge for human advancement through intelligent technologies, also shared plans for non-invasive implants that maintain high productivity and offer greater composability.</p>



<p>Technologies like these will allow humans to leverage high-level physical AI technologies to attain the same technical abilities as humanoid robots and outperform them by combining machine and raw human intelligence.</p>



<h2 class="wp-block-heading">AI robotics in non-user-controlled infrastructures</h2>



<p>Resource efficiency, data sovereignty, and surveillance are some of the biggest ethical considerations of Physical AI after safety and responsibility. The infrastructure line-up for Software and Physical AI relies heavily on managed systems, blurring the lines of control and governance.</p>



<p>Who is really in charge? The end user, developer, or proprietors of the centralized infrastructure that powers the product? The result is a product with multiple points of failure, disruptions, and most importantly, operational risks.</p>



<p>Physical AI solutions will be used by billions of people worldwide; they should therefore not be built on limited, slow, and centralized infrastructures. This necessitates localized or truly decentralized AI solutions. Local-first AI solutions like <a href="https://qvac.tether.io/" target="_blank" rel="noreferrer noopener">Tether’s QVAC</a> also prioritize resource efficiency, since users are expected to provide the core infrastructure. QVAC is a modular, highly efficient, local-first AI platform that runs anywhere. Tether regards it as the invisible intelligence engine of the 21st century.</p>



<h2 class="wp-block-heading">Open-sourcing and aligning intelligent robots for co-existence with humans</h2>



<p>Yann LeCun, Chief AI scientist at Meta, <a href="https://observer.com/2025/07/metas-yann-lecun-defends-open-source-a-i-amid-geopolitical-tension/" target="_blank" rel="noreferrer noopener">notes</a> that open-sourcing AI development is the answer to the most pressing ethical challenges of AI applications. According to LeCun:</p>



<p><em>“The magic of open research is that you accelerate progress by involving more people[…] the biggest danger of AI isn’t ‘bad behavior’ […] It’s that every digital interaction in our future will be mediated by AI. In that world, diverse open-source systems let users choose their own biases.”</em></p>



<p>Open-sourced (systemic decentralization) and local-first (Infrastructural decentralization) solutions are the only path to developing ethically aligned Physical AI capable of co-existing with humans as intended. A successful physical AI solution is expected to tick the check boxes of safety, resource efficiency, true user control, and tamper-proofness. To do this, it must embrace transparent development procedures and function without gatekeepers.</p>



<p></p>



<p><strong>Learn how </strong><a href="https://tether.io/evo/" target="_blank" rel="noreferrer noopener"><strong>Tether EVO</strong></a><strong> is building resilient technology built on fairness, inclusivity, and systems with zero points of failure.</strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[heise-Angebot: gamescom jobs & career 2026: Recruiting-Messe und Fachkonferenz]]></title>
<description><![CDATA[In Halle 10.1 treffen Arbeitgeber, Fachkräfte und Nachwuchstalente aufeinander. Die gamescom jobs & career area bietet Recruiting, Networking und Vorträge.]]></description>
<link>https://tsecurity.de/de/3656345/it-nachrichten/heise-angebot-gamescom-jobs-career-2026-recruiting-messe-und-fachkonferenz/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3656345/it-nachrichten/heise-angebot-gamescom-jobs-career-2026-recruiting-messe-und-fachkonferenz/</guid>
<pubDate>Thu, 09 Jul 2026 10:17:08 +0200</pubDate>
<content:encoded><![CDATA[In Halle 10.1 treffen Arbeitgeber, Fachkräfte und Nachwuchstalente aufeinander. Die gamescom jobs &amp; career area bietet Recruiting, Networking und Vorträge.]]></content:encoded>
</item>
<item>
<title><![CDATA[Planning on career shift]]></title>
<description><![CDATA[Is offsec Exp-301 worth the investment? What is the future career path for exploit development?     submitted by    /u/Double_Loan_6261   [link]   [comments]]]></description>
<link>https://tsecurity.de/de/3655765/malware-trojaner-viren/planning-on-career-shift/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3655765/malware-trojaner-viren/planning-on-career-shift/</guid>
<pubDate>Thu, 09 Jul 2026 04:03:17 +0200</pubDate>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>Is offsec Exp-301 worth the investment? What is the future career path for exploit development? </p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/Double_Loan_6261"> /u/Double_Loan_6261 </a> <br> <span><a href="https://www.reddit.com/r/ExploitDev/comments/1uo1p6m/planning_on_career_shift/">[link]</a></span>   <span><a href="https://www.reddit.com/r/ExploitDev/comments/1uo1p6m/planning_on_career_shift/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[What skills and habits might empower a research career in 2026?]]></title>
<description><![CDATA[If you are considering a career in research, but aren’t sure whether your skills and abilities are in alignment, then look no further than this list.
Read more: What skills and habits might empower a research career in 2026?]]></description>
<link>https://tsecurity.de/de/3654710/it-nachrichten/what-skills-and-habits-might-empower-a-research-career-in-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654710/it-nachrichten/what-skills-and-habits-might-empower-a-research-career-in-2026/</guid>
<pubDate>Wed, 08 Jul 2026 17:03:03 +0200</pubDate>
<content:encoded><![CDATA[<p>If you are considering a career in research, but aren’t sure whether your skills and abilities are in alignment, then look no further than this list.</p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/advice/tips-tricks-long-lasting-career-research-space-skills-working-life">What skills and habits might empower a research career in 2026?</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Reallocating cybersecurity capital in the Mythos era]]></title>
<description><![CDATA[Throughout my career, I’ve seen countless technological shifts categorized as “unprecedented” that turned out to be merely incremental. The recent deployment of advanced, agentic AI models — what we are categorizing here as the “Mythos” capability — is fundamentally different. It represents a per...]]></description>
<link>https://tsecurity.de/de/3654208/it-security-nachrichten/reallocating-cybersecurity-capital-in-the-mythos-era/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654208/it-security-nachrichten/reallocating-cybersecurity-capital-in-the-mythos-era/</guid>
<pubDate>Wed, 08 Jul 2026 14:08:01 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Throughout my career, I’ve seen countless technological shifts categorized as “unprecedented” that turned out to be merely incremental. The recent deployment of advanced, agentic AI models — what we are categorizing here as the “Mythos” capability — is fundamentally different. It represents a permanent, structural shift in the risk and financial dynamics of the enterprise.</p>



<p>To understand why this requires <a href="https://www.nacdonline.org/all-governance/governance-resources/governance-research/director-handbooks/2026-cyber-risk-oversight/" rel="nofollow">immediate boardroom attention</a>, we must look at the cybersecurity budgeting baseline we are leaving behind. For decades, we relied on a predictable equilibrium: vulnerabilities were discovered and exploited at human speed. That inherent latency gave us a reasonable runway to patch systems and allowed CFOs to safely manage cyber budgets via fixed percentages or predictable annual bumps. With the arrival of machine-speed AI agents, that equilibrium — and the financial assumptions built upon it — is gone.</p>



<p>I want to be clear: this is not a crisis that should cause panic. Rather, it is a severe, balance-sheet-level mismatch in capital allocation. Mythos-level AI hasn’t magically created new vulnerabilities; it has simply industrialized the discovery and exploitation of our existing, legacy technical debt at machine speed.</p>



<p>As leaders, we cannot apply a legacy budgeting model to a machine-speed paradigm. To protect the business, preserve insurability and ensure continuity, we must fundamentally rethink how and where we deploy our cybersecurity capital.</p>



<h2 class="wp-block-heading">The core problem: The economics of asymmetry</h2>



<p>To understand the necessary budget shift, we have to look at the math. The Mythos capability isn’t just fast; it possesses agentic reasoning. Threat actors are no longer manually probing our networks; they are <a href="https://reports.weforum.org/docs/WEF_Global_Cybersecurity_Outlook_2026.pdf" rel="nofollow">using autonomous AI agents</a> to stitch together low-level bugs into critical exploits in hours, not months.</p>



<p>This asymmetry creates a crushing economic burden on our side of the ledger. Historically, a standard enterprise team of 100 software engineers could conservatively spend about 17,700 hours per year triaging code and addressing bad-code issues – a baseline direct labor cost of roughly $708,000 at a conservative US blended $40 hourly rate. In the era of frontier AI models such as Mythos, that hidden labor pool becomes a strategic budget parameter. That’s because AI may accelerate discovery, but enterprises still need the skills of expert technical talent to validate, prioritize and remediate what AI finds.</p>



<p>Today, Mythos-driven scanners can identify up to seven times that standard volume of vulnerabilities. The bottleneck is no longer finding the flaws; it is the human capacity to fix them. I see highly compensated engineering teams drowning in “triage fatigue,” burning millions in payroll hours chasing AI-generated alerts while actual, critical threats slip through the noise.</p>



<p>Throwing more money at our current strategy will only accelerate capital burn. We need a structural pivot.</p>



<h2 class="wp-block-heading">The capital reallocation mandate: Five strategic shifts</h2>



<p>Simply expanding the IT budget is not the answer. Capital must be urgently reallocated away from legacy, perimeter-based defenses and directed into five critical operational areas:</p>



<h3 class="wp-block-heading">1. Network redesign: Funding zero trust and micro-segmentation</h3>



<p>We are still funding the “castle and moat” model, which is obsolete against autonomous agents that either bypass the moat entirely or originate from within it.</p>



<p><strong>The shift:</strong> We must redirect OpEx from legacy firewalls and VPNs into <a href="https://www.cio.com/article/4076366/why-zero-trust-is-fundamental-to-containment-and-microsegmentation.html">Zero Trust Architecture (ZTA)</a>, prioritizing deep micro-segmentation alongside dynamic, AI-driven identity and access management.</p>



<p><strong>The business case:</strong> Operating on a “never trust, always verify” basis is about limiting the blast radius. Micro-segmentation acts as digital bulkheads across your network. If an AI-driven agent compromises a single endpoint or workload, these internal barriers ensure it cannot move laterally to reach your crown-jewel financial or customer data.</p>



<h3 class="wp-block-heading">2. Infrastructure modernization: Retiring legacy technical debt</h3>



<p>Mythos models are incredibly efficient at weaponizing deeply embedded technical debt, particularly in older systems built on unsafe programming languages.</p>



<p><strong>The shift:</strong> We need strategic CapEx allocated to systematically re-architect foundational systems into modern, safe languages.</p>



<p><strong>The business case:</strong> You cannot hire enough humans to patch structural flaws at machine speed. Re-platforming acts as a permanent structural fix, eliminating entire classes of vulnerabilities before the code is even compiled. This requires upfront capital but permanently shrinks the attack surface and reduces long-term OpEx associated with triage.</p>



<h3 class="wp-block-heading">3. Inside security controls: Governing shadow AI</h3>



<p>The most immediate risk to your IP isn’t always an external hacker; it’s your own workforce. To speed up their tasks, well-meaning employees are feeding proprietary source code and sensitive financial data into unsanctioned, public AI models (<a href="https://www.csoonline.com/article/4143302/the-cisos-guide-to-responding-to-shadow-ai.html">shadow AI</a>).</p>



<p><strong>The shift:</strong> Budgets must account for prompt-level Data Loss Prevention (DLP) tools, the creation of secure, private AI enclaves for internal use, and robust Non-Human Identity (NHI) management.</p>



<p><strong>The business case:</strong> A blanket ban on AI stifles productivity and innovation, but unmanaged use invites severe regulatory violations and IP theft. Upgraded internal controls give your workforce the AI tools they need to stay competitive while keeping your proprietary data inside the house.</p>



<h3 class="wp-block-heading">4. Outside security controls: AI-native defense and contextual triage</h3>



<p>Relying on manual labor to manually sort through machine-speed attacks is a losing proposition. We must invest in defenses that contextualize risk instantly.</p>



<p><strong>The shift:</strong> We need to fund AI-native posture management platforms.</p>



<p><strong>The business case:</strong> This is about maximizing the ROI of human labor. Modern platforms prioritize <em>reachability over volume</em>. If a scanner finds 1,000 flaws, but only 10 are actually exposed to the live internet, the platform filters out the 990 irrelevant alerts. This ensures your expensive engineering hours are deployed <em>only</em> where the business faces material financial exposure.</p>



<h3 class="wp-block-heading">5. Operational execution: Deploying autonomous operations</h3>



<p>Finding and prioritizing vulnerabilities is only the first step; executing the fix is where human bottlenecks create catastrophic enterprise risk. Relying on manual ticketing and reactive IT operations is no longer viable.</p>



<p><strong>The shift:</strong> <a href="https://www.weforum.org/stories/2025/06/ai-agents-cybersecurity-defenders-tip-the-scales/" rel="nofollow">Capital must be allocated toward autonomous operations</a> — platforms capable of executing complex, multi-step IT processes with limited human intervention.</p>



<p><strong>The business case:</strong> This fundamentally changes the economics of remediation. By deploying trusted, purpose-built AI agents to handle automated patch management, configuration updates and routine self-healing workflows, you eliminate the human latency in your defense. It shrinks the vulnerability exposure window from weeks to minutes, while freeing your engineering talent to focus on revenue-generating product development rather than endless IT maintenance.</p>



<h2 class="wp-block-heading">The bottom line</h2>



<p>The veil protecting our legacy infrastructure has been lifted. Deploying capital strategically toward network redesign, structural modernization, autonomous execution and AI-native controls is no longer a discretionary technology expense — it is a core fiduciary responsibility and the ultimate determinant of corporate resilience.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><a href="https://www.cio.com/expert-contributor-network/"><strong>Want to join?</strong></a></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[A brewing battle: More IT workers want unions. The industry doesn’t.]]></title>
<description><![CDATA[Until recently, many tech professionals viewed themselves as a special and respected worker class: highly educated, hard-working, well paid, and in demand.



“They considered themselves above unions,” says Zak Thompson, senior software engineer at Kickstarter and union steward at Kickstarter Uni...]]></description>
<link>https://tsecurity.de/de/3654078/ai-nachrichten/a-brewing-battle-more-it-workers-want-unions-the-industry-doesnt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3654078/ai-nachrichten/a-brewing-battle-more-it-workers-want-unions-the-industry-doesnt/</guid>
<pubDate>Wed, 08 Jul 2026 13:04:22 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Until recently, many tech professionals viewed themselves as a special and respected worker class: highly educated, hard-working, well paid, and in demand.</p>



<p>“They considered themselves above unions,” says <a href="https://www.linkedin.com/in/zthompson1/" target="_blank" rel="noreferrer noopener">Zak Thompson</a>, senior software engineer at Kickstarter and union steward at Kickstarter United.</p>



<p>Big Tech issued aspirational mission statements that motivated workers, workplaces were seen as meritocracies, and employees were encouraged to speak out if they were unhappy. If workers didn’t like where they worked, they just moved on: other employers would be falling over themselves to hire them.</p>



<p>How times have changed.</p>



<p>Now, fed up with mass layoffs, disillusioned with Big Tech’s direction, and stunned by bold management proclamations that AI will displace huge numbers of people in many tech jobs — starting with programmers — interest in unions has risen sharply among tech professionals. Workers in some organizations, including Kickstarter, have already taken the plunge.</p>



<h2 class="wp-block-heading">A surge in interest</h2>



<p>“Starting in 2022, the industry as a whole started seeing very large layoffs across the board [and] that has dramatically shifted the balance of power. I think most people in the industry have experienced that one way or another,” says Google software engineer <a href="https://www.linkedin.com/in/alan-mcavinney-a386b8122/" target="_blank" rel="noreferrer noopener">Alan McAvinney</a>.</p>



<p>But not everyone is convinced that the layoffs have changed the power dynamic. “I wouldn’t say the balance has definitively shifted… some things point to workers losing ground and others point to improvement,” says <a href="https://www.mercatus.org/scholars/liya-palagashvili" target="_blank" rel="noreferrer noopener">Liya Palagashvili</a>, senior research fellow and director of the Labor Policy Project at the Mercatus Center at George Mason University. </p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Liya Palagashvili of the Mercatus Center at George Mason University</p><br></figcaption></figure><p class="imageCredit">Mercatus Center at George Mason University</p></div>



<p>What matters, she says, is not the size of the layoffs but worker options: how easily laid off workers can find alternative work in their field.</p>



<p>For McAvinney, the decision to support a union was about a culture change at his employer.</p>



<p>“In 2019, Google fired four people (<a href="https://www.newsweek.com/google-fires-thanksgiving-four-workers-crush-dissent-1474102" target="_blank" rel="noreferrer noopener">the ‘Thanksgiving Four’</a>) after they organized and spoke out internally against the company’s work with the anti-union firm IRI and US Customs and Border Protection. That was a big turning point for me,” he says. “Historically, we had a pretty robust culture that actually encouraged us to speak up internally.”</p>



<p>Google said the employees were fired for violating data security policies, but many workers believed the move was retaliatory. It became a galvanizing event that contributed to the launch of the <a href="https://www.alphabetworkersunion.org/" target="_blank" rel="noreferrer noopener">Alphabet Workers Union (AWU)</a> in 2021, says McAvinney, organizing chair, Alphabet Workers Union-CWA. (Alphabet is the parent company of Google.)</p>



<p>So far, tech worker interest in unions hasn’t translated into higher membership numbers nationally. According to the US Census Bureau’s <a href="https://www.census.gov/programs-surveys/cps.html" target="_blank" rel="noreferrer noopener">Current Population Survey (CPS)</a>, union membership in tech occupations was about 3.5% in 2025, says Palagashvili. “While there have been some high-profile organizing efforts, they do not yet show up as a broad national increase in tech-sector unionization.”</p>



<p>Overall, only 10% of American workers belonged to a union in 2025, the Bureau of Labor Statistics (BLS) <a href="https://www.bls.gov/news.release/union2.nr0.htm" target="_blank" rel="noreferrer noopener">reported</a> — near an all-time low — but interest in labor unions is rising. A 2025 Gallup survey found that <a href="https://news.gallup.com/poll/694472/labor-union-approval-relatively-steady.aspx" target="_blank" rel="noreferrer noopener">68% of Americans approved of unions</a>, up from 48% in 2009. Interest is particularly strong among younger workers, the <a href="https://www.epi.org/publication/workers-resolve-drives-increase-in-unionization-in-2025/" target="_blank" rel="noreferrer noopener">Economic Policy Institute reports</a>, and in a 2024 <a href="https://www.teamblind.com/blog/why-are-unions-not-common-tech-industry/" target="_blank" rel="noreferrer noopener">online survey of 1,900 tech professionals</a> on the career site Blind, 67% of respondents said they’d be “very likely” or “somewhat likely” to join a union if their company had one.</p>



<p>Nonetheless, for most tech professionals, those positive perceptions have not so far translated into widespread union membership.</p>



<h2 class="wp-block-heading">Fear, uncertainty, and doubt</h2>



<p>In the wake of mass layoffs that began in 2022, the primary driver toward tech worker unionization may well be job security.</p>



<p>“I think a greater concern is that their work and skills have been devalued at the same time their jobs become less secure and their wages and benefits have declined,” says <a href="https://www.ilr.cornell.edu/people/kate-l-bronfenbrenner" target="_blank" rel="noreferrer noopener">Kate Bronfenbrenner</a>, director of labor education research and senior lecturer emeritus at Cornell University’s School of Industrial and Labor Relations.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Kate Bronfenbrenner from the School of Industrial and Labor Relations, Cornell University</p><br></figcaption></figure><p class="imageCredit">ILR School/Cornell University</p></div>



<p>The fear that AI will displace IT workers en masse is palpable, says Google’s McAvinney. Whether the <a href="https://www.computerworld.com/article/4175956/the-ai-tech-job-slaughter-gets-real.html">mass layoffs to date</a> were actually driven by AI or if AI was used as a pretext, “Large numbers of people have that concern, and that is absolutely part of the interest in collective action — getting organized, joining a union, or forming a union,” he says.</p>



<p>The second motivator is ideological disillusionment. “Workers recruited with promises that they would be changing the world discovered that they were really building surveillance systems or military technology,” Bronfenbrenner says.</p>



<p>The insidious use of AI surveillance is another concern, says Bronfenbrenner. For example, Meta’s announcement that it would <a href="https://www.computerworld.com/article/4161929/meta-to-track-employee-keystrokes-screen-activity-to-train-ai-agents.html">use AI to track US-based workers’ computer activities</a>, including clicks, keystrokes, mouse movements, and screen snapshots to train AI agents had a dystopian feel to it. Were these workers training AI to take over their jobs, just as US workers were asked to train their lower-cost foreign replacements during the offshoring craze in the mid-2000s? (Meta later <a href="https://www.computerworld.com/article/4188640/meta-pauses-employee-monitoring-program-after-data-protections-fail-2.html">paused the tracking program</a> after employees twice demonstrated the inadequacy of privacy protections for the collected data.)</p>



<p>But Bronfenbrenner argues that AI’s bigger threat may be its use as a surveillance tool to prevent organizing. “My research on surveillance in organizing campaigns found that it tripled from 11% in the early 2000s to one third in 2021,” she says.</p>



<p>“The deeper pattern is the same one inherent in <a href="https://www.britannica.com/science/Taylorism" target="_blank" rel="noreferrer noopener">Taylorism</a> — management trying to know everything that’s under the worker’s cap, to monitor every step so workers have no control and no secrets,” Bronfenbrenner says. “Now they have even more technology to do it, and they can potentially replace you entirely with AI.”</p>



<p><a href="https://www.linkedin.com/in/simonerobutti/" target="_blank" rel="noreferrer noopener">Simone Robutti</a>, an organizer with Tech Workers Coalition Global, calls the current wave of tech layoffs “a prequel to whatever AI-driven layoffs are coming.” It’s part of the trend of “lowering the cost of knowledge workers, of cognitive workers, of office workers in general — because that’s the bet on AI,” he says.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full is-resized"> width="745" height="486" sizes="auto, (max-width: 745px) 100vw, 745px"&gt;<figcaption class="wp-element-caption"><p>Simone Robutti from Tech Workers Coalition Global</p><br></figcaption></figure><p class="imageCredit">TWC</p></div>



<p>Whether employers can in fact replace workers with AI (or will be able to soon) is an open question. “If Amazon lays off a hundred workers, and ninety of them find comparable jobs within a few months, that mitigates the concern,” says Palagashvili from George Mason University. “If most of them have to sell their houses and move across the country, or end up underemployed — not just unemployed, but working in warehouses instead of at a competitor — that’s a different picture.”</p>



<p>So far that hasn’t been a big issue for former Google employees, says McAvinney. “It used to be that if you left Google, you could get a job anywhere in tech instantly. That’s no longer the case, but most people I talk to are still finding work in the industry,” he says.</p>



<p>But for those newly entering the workforce, it’s much harder to find a job. According to the <a href="https://hai.stanford.edu/ai-index/2026-ai-index-report/economy" target="_blank" rel="noreferrer noopener">Stanford HAI <em>2026 AI Index Report</em></a>, released in April, “employment for software developers ages 22 to 25 has fallen nearly 20% from 2024.”</p>



<h2 class="wp-block-heading">Successes and setbacks</h2>



<p>While organizing can be an uphill battle and workers often face aggressive pushback from their employers, there have been a few notable successes.</p>



<p>In the UK, workers can join a union as individual members before their employer formally recognizes that union for collective bargaining purposes. That’s how 300 workers in Google DeepMind’s London office initially joined the <a href="https://www.cwu.org/" target="_blank" rel="noreferrer noopener">Communication Workers Union</a>. In April, 98% of the 300 CWU members <a href="https://fortune.com/2026/05/05/google-deepmind-unionize-vote-military-ai-contracts-internal-backlash-pentagon-deal-israeli-defense-forces/" target="_blank" rel="noreferrer noopener">voted in favor of pursuing union recognition</a>, formally requesting that management recognize the CWU and <a href="https://www.unitetheunion.org/" target="_blank" rel="noreferrer noopener">Unite the Union</a> as representatives for approximately 1,000 staff. (Google DeepMind disputed characterizing the action as a vote to unionize).</p>



<p>And in May, some 2,100 tech workers at the University of California <a href="https://upte.org/news/2100-tech-workers-vote-to-join-upte" target="_blank" rel="noreferrer noopener">joined the University Professional and Technical Employees union</a>, which is affiliated with Communications Workers of America (UPTE-CWA), with 96% of the workers voting yes.</p>



<p>“A lot of tech workers right now are extremely concerned about job security and about their work being automated,” says <a href="https://www.linkedin.com/in/mbelasco/" target="_blank" rel="noreferrer noopener">Max Belasco</a>, a business systems analyst at the UCLA School of Law and co-chair of the UCLA chapter of UPTE-CWA, Local 9119.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Max Belasco from the UCLA chapter of UPTE-CWA</p>
</figcaption></figure><p class="imageCredit">Zac Goldstein</p></div>



<p>The CWA described the organizing initiative as “<a href="https://cwa-union.org/news/it-workers-join-upte-cwa-form-largest-tech-union-country" target="_blank" rel="noreferrer noopener">the largest tech industry organizing campaign in US history</a>.” But it wasn’t the first.</p>



<p>“Between 2022 and 2024, CWA organized nearly 400 different digital media companies,” Bronfenbrenner says, including the game developer Activision and the New York Times.</p>



<p>Kickstarter’s 85 employees voted in 2020 to form <a href="https://kickstarterunited.org/" target="_blank" rel="noreferrer noopener">Kickstarter United</a> — the vote was 55% in favor — and most recently the union negotiated a contract that includes a four-day workweek, AI protections, and a minimum pay floor for 59 employees, including tech workers. </p>



<p>“What we ended up winning was yearly benchmarking of all employee salaries to the 60th percentile, along with yearly cost of living adjustments,” says Thompson.</p>



<p>But the way forward has been rocky. Shortly after the union was ratified, Kickstarter announced layoffs. The union, which is affiliated with the Office and Professional Employees International Union (OPEIU), wasn’t able to reverse that decision but did <a href="https://kickstarterunited.org/may-day-severance-agreement/" target="_blank" rel="noreferrer noopener">negotiate better severance terms</a>, including four months of severance pay (versus 2 to 3 weeks for every year worked) and six months of health benefits.</p>



<p>When contract negotiations faltered in October 2025, the union went on strike for 42 days. By December, a new contract was ratified. Shortly thereafter, the company announced another round of layoffs that included four union leaders, one of whom had helped to negotiate the new contract. The union is currently fighting those dismissals and will be arguing its case in third-party arbitration.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="618" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Members of Kickstarter United union on strike</p></figcaption></figure><p class="imageCredit">Kyle Friend</p></div>



<p>The <a href="https://www.nlrb.gov/guidance/key-reference-materials/national-labor-relations-act" target="_blank" rel="noreferrer noopener">National Labor Relations Act</a> of 1935 codified American workers’ rights to unionize and take collective action, and it established the <a href="https://www.nlrb.gov/about-nlrb/who-we-are" target="_blank" rel="noreferrer noopener">National Labor Relations Board</a> to protect those rights. Unfortunately for Kickstarter, NLRA enforcement under the Trump administration isn’t what it once was.</p>



<p>“Cases brought up for violations of the NLRA can go for months or years without ever seeing a hearing or having any sort of judgment. That gives companies more power to flagrantly ignore it,” Thompson says.</p>



<p>Tech firms have other weapons to dissuade employees from unionizing. Researchers from Carnegie Mellon University and Princeton University in 2025 <a href="https://dl.acm.org/doi/epdf/10.1145/3757671" target="_blank" rel="noreferrer noopener">interviewed 44 US-based tech worker-organizers</a>, who cited additional pressure tactics including threats to withdraw venture capital funding — essentially killing venture-backed firms if employees vote to unionize — and threats of being fired that <a href="https://techworkerscoalition.org/blog/2025/03/14/immigrant-rights-are-labor-rights-tech-workers-and-h-1b-visas/" target="_blank" rel="noreferrer noopener">put tech workers with H-1B visas in an impossible position</a>.</p>



<p>Kickstarter United is a majority union — one that has won NLRB certification. While that’s possible in smaller organizations, success in larger tech firms has been much more limited.</p>



<p>Alphabet is a prime example: the Alphabet Workers Union-CWA is a “pre-majority” union that lacks NLRB certification and has no formally recognized bargaining unit. Formed in 2021 with fewer than 400 members, today it represents 1,400 members, still a small fraction of Alphabet’s US-based workforce, estimated at over 100,000.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large is-resized"> width="1024" height="839" sizes="auto, (max-width: 1024px) 100vw, 1024px"&gt;<figcaption class="wp-element-caption"><p>Alan McAvinney from Alphabet Workers Union-CWA</p></figcaption></figure><p class="imageCredit">Aran Per Ink</p></div>



<p>The challenge, says McAvinney, lies in trying to organize a distributed workforce of in-office, remote, and contract workers. “Large tech companies don’t split easily into discrete segments — there’s no strong geographic component to teams, and a single team is often spread across many locations,” which makes getting majority support unrealistic, he says.</p>



<p>But that doesn’t mean the union has had no impact. “In January, we launched our Googlers for Job Security campaign. Today we’re organizing around four demands: a guaranteed minimum severance package for everyone who’s laid off, voluntary buyouts before any mandatory layoffs, an end to GRAD quotas (GRAD being Google’s performance review system) so ratings reflect actual performance and aren’t given or changed to force a particular distribution, and the option to take severance as leave, giving workers, especially those on visas, more time on payroll,” McAvinney says.</p>



<p>“In response, Google did start offering voluntary exit packages,” he says. The union was also able to negotiate one contract, for Google Help workers. However, those workers aren’t actually Google employees: they’re contractors who report to Google management but work for Accenture.</p>



<h2 class="wp-block-heading">The counterargument</h2>



<p>Do unions get what they bargain for? Conservative business and labor economists say union contracts typically have rigid pay structures that restrict merit-based pay in favor of seniority-based wage increases, and that unions, as certified by the NLRB, create labor monopolies that limit worker choice and push up wages to levels detrimental to both workers and business.</p>



<p>The collective bargaining model is not well suited to the highly dynamic and innovation-driven tech sector, Palagashvili argues. “Firms often need to reorganize teams, redesign products, adjust roles, and redeploy talent quickly,” she says. </p>



<p>Collective bargaining agreements make those adjustments much more difficult by imposing uniform terms for an entire bargaining unit, regardless of individual preferences and circumstances. The contracts, she says, “are more about higher pay and less about flexibility.”</p>



<p>But Thompson says that hasn’t been his experience. “The thing with a union is you get to write the contract,” he says. “At Kickstarter we care about recognizing individual contributions, merit, and having a clear career progression.”</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-full is-resized"> width="972" height="972" sizes="auto, (max-width: 972px) 100vw, 972px"&gt;<figcaption class="wp-element-caption"><p>Zak Thompson from Kickstarter United</p><br></figcaption></figure><p class="imageCredit">Fee Christoph</p></div>



<p>Kickstarter United pushed the company to clearly define what it takes to get a promotion, advocated for no “at will” employment, where employees can be fired any time without a stated reason; won standards for minimum pay, raises, promotions, and time off; secured AI protections; and codified a four-day work week.</p>



<p>Yes, some tech professionals voiced concerns about unions, such as that they stifle innovation and limit compensation for top performers, Thompson says, but “a lot of those people came around. They said ‘I was wrong. I feel way more protected, more secure, and I see the benefits.’”</p>



<p>Bronfenbrenner says it’s a mistake to think that tech workers are inherently different from other workers, adding that the two industries with the highest union density are entertainment and professional sports. “These are professionals with unique talents and capabilities, and they’ve organized successfully under the exclusive representation system.”</p>



<h2 class="wp-block-heading">Will we see a unionized tech workforce?</h2>



<p>If unions eventually prevail in tech, it will happen in the face of intense pressure from employers not to organize. </p>



<p>“The Alphabet Workers Union is a case study of the limits of the first wave of tech labor organizing,” says Robutti from the Tech Workers Coalition. “They hit a threshold beyond which they couldn’t fight the union busting anymore, and they became entrenched at that size.”</p>



<p>No one should expect large-scale unionization to occur overnight, Bronfenbrenner says. “The auto and steel industries weren’t organized in months. It took decades. Organizing global tech companies will take the same.”</p>



<p>While McAvinney acknowledges that a traditional majority union may be difficult to achieve any time soon in a company as large as Alphabet, he’s still bullish on his pre-majority union’s ability to make a difference. “Ultimately, regardless of which type of union you are, you can only win as much as you have leverage to win. Your leverage is inherently limited, but that doesn’t mean you can’t win anything,” he says.</p>



<p>Attitudes about unions appear to be changing rapidly. “Interest in unions is high, and I expect that will continue,” McAvinney says. “Now is an excellent time for people to start getting organized. I have seen lots of evidence of that.”</p>



<p>Thompson agrees. “We are seeing an uptick of people in tech reaching out, trying to get help organizing. When people have their job conditions continue to deteriorate, they are going to start organizing,” he says. “We’re definitely seeing a shift from ‘it’d be nice if we had a union’ to ‘okay, how can I actually do this now?’”</p>



<p><em>Come back next week for Part 2: How to unionize your tech workplace</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[13 in-demand IT security certifications for higher pay]]></title>
<description><![CDATA[With change a constant, cybersecurity professionals looking to improve their careers can benefit from the latest insights into employers’ needs. Data from Foote Partners on the skills and certification most in demand today may provide helpful signposts.



Analyzing more than 660 certifications a...]]></description>
<link>https://tsecurity.de/de/3653485/it-security-nachrichten/13-in-demand-it-security-certifications-for-higher-pay/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3653485/it-security-nachrichten/13-in-demand-it-security-certifications-for-higher-pay/</guid>
<pubDate>Wed, 08 Jul 2026 09:08:38 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>With change a constant, cybersecurity professionals looking to improve their careers can benefit from the latest insights into employers’ needs. Data from Foote Partners on the skills and certification most in demand today may provide helpful signposts.</p>



<p>Analyzing more than <a href="https://footepartners.com/pages/report-skills-certs">660 certifications</a> as part of its 2Q 2026 “IT Skills Demand and Pay Trends Report,” Foote Partners calculated the most valuable IT security certifications to pursue right now based on two dimensions. The first, the <a href="https://www.cio.com/article/350363/pay-for-in-demand-it-skills-rises-fastest-in-14-years.html">average pay premium</a>, measures the difference in pay between IT pros with a particular credential and those without it. The second, market value increase, measures the increase in pay gains over the past six months.</p>



<p>Together, average pay premium and market value increase can give cybersecurity pros a starting point in deciding which certification to pursue for more pay. Apart from considering their overall professional goals, security professionals should consider each certification’s training and exam costs, whether vendor-specific or vendor-neutral, and the lateral or vertical role opportunities it may open.</p>



<p>Here are the top 13 certifications paying higher premiums today in descending order.</p>



<h2 class="wp-block-heading">GIAC Security Expert (GSE)</h2>



<p>The <a href="https://www.giac.org/get-certified/giac-portfolio-certifications">GIAC Security Expert</a> (GSE) portfolio certification is for security leaders wishing to prove their status as a top information security practitioner by showing they have offensive and defensive skills and hands-on practical skills. Available for more than 15 years, the GSE is considered one of the broadest and deepest cybersecurity certifications. To earn the certification, candidates must complete any six <a href="https://www.giac.org/get-started/practitioner">practitioner</a> certifications and any four <a href="https://www.giac.org/get-started/applied-knowledge">applied knowledge</a> certifications.</p>



<p>GIAC allows candidates to customize the certification to fit their expertise and career. Candidates can also build their certification over any amount of time as along as the required certifications within the portfolio remain active. Practitioner certification exams are 2-5 hours in length, depending on the specific certification attempt, and applied knowledge certification exams are 4 hours in length.</p>



<p><strong>Training fees:</strong> Some training is offered in affiliation with SANS Institute and costs $8,780.</p>



<p><strong>Exam Fees:</strong> Because you need 10 certifications to achieve the GSE <a href="https://www.giac.org/pricing">prices vary significantly</a>. If you already hold a GIAC Certified Forensic Analyst (GCFA), the cost of one of the required certifications drops from $1,299 to $499. Most required certifications are priced at either $999 or $1,299 per attempt, though they can cost up to $11,190.</p>



<h2 class="wp-block-heading">GIAC Security Professional (GSP)</h2>



<p>The <a href="https://www.giac.org/get-certified/giac-portfolio-certifications">GIAC Security Professional (GSP)</a> is designed to demonstrate the holder’s depth and breadth of information security knowledge. Launched approximately two years, this newer certification is the halfway point to the GSE. Customization of the certification is allowed, and to achieve it a candidate must complete any three <a href="https://www.giac.org/get-started/practitioner">practitioner</a> certifications and any two <a href="https://www.giac.org/get-started/applied-knowledge">applied knowledge</a> certifications. Candidates can also build their certification over any amount of time as along as the required certifications within the portfolio remain active. Practitioner Certification exams are 2-5 hours in length, depending on the specific certification attempt, and Applied Knowledge Certification exams are 4 hours in length.</p>



<p><strong>Training fees:</strong> Some training is offered in affiliation with SANS Institute and costs $8,780.</p>



<p><strong>Exam Fees:</strong> Because you need five certifications to achieve the GSP <a href="https://www.giac.org/pricing">prices vary significantly</a>. If you already hold a GIAC Security Essentials (GSEC), the cost of one of the required certifications drops from $1,299 to $499. Most certifications required are priced at either $999 or $1,299 per attempt, though certification can cost up to $5,595.</p>



<h2 class="wp-block-heading">Microsoft Certified Azure Cybersecurity Architect Expert</h2>



<p>Those who earn the <a href="https://learn.microsoft.com/en-us/credentials/certifications/cybersecurity-architect-expert/">Microsoft Certified: Cybersecurity Architect Expert</a> credential are able to translate a cybersecurity strategy into capabilities that protect the assets, business, and operations of an organization. Through the certification process, candidates learn to design, guide the implementation of, and maintain security solutions that follow zero-trust principles and best practices. You’ll also be able to design solutions for governance, risk, and compliance (GRC), security operations, and security posture management.​</p>



<p>As a prerequisite, candidate must have earned one of the following: <a href="https://learn.microsoft.com/en-us/credentials/certifications/azure-security-engineer/">Microsoft Certified: Azure Security Engineer Associate</a>, <a href="https://learn.microsoft.com/en-us/credentials/certifications/identity-and-access-administrator/">Microsoft Certified: Identity and Access Administrator Associate</a>, <a href="https://learn.microsoft.com/en-us/credentials/certifications/security-operations-analyst/">Microsoft Certified: Security Operations Analyst Associate</a> certification.</p>



<p><strong>Training fees: </strong>Self-paced training is available from the course’s page and free of charge. There is also an option to find an instructor-led training with pricing starting at $1,300.</p>



<p><strong>Exam Fees:</strong> The exam costs $165 and Microsoft offers free practice assessments.</p>



<h2 class="wp-block-heading">Certificate of Cloud Security Knowledge (CCSK)</h2>



<p>As a certificate and not a certification — an important distinction — the Cloud Security Alliance (CSA) positions its <a href="https://cloudsecurityalliance.org/education/ccsk">Certificate of Cloud Security Knowledge</a> as the foundation for future credentials and upskilling in the sector. From this perspective, the CCSK is helpful for cybersecurity analysts, compliance managers, security engineers, architects, and administrators. This vendor-neutral certificate has been recently updated and covers topics in zero trust, DevSecOps, cloud telemetry and security analytics, artificial intelligence, and more. CCSK offers a variety of training modalities, including an exam prep kit, instructor-led classes offered virtually and in person, and an online self-paced option. Candidates must score at least 80% on the exam, randomly pulling 60 multiple-choice questions from a test bank.</p>



<p><strong>Training fees:</strong> Prices vary based on modality. A self-paced course<a href="https://cloudsecurityalliance.org/education/ccsk#preparing-for-the-ccsk"> and exam bundle costs $795</a>, and online, instructor-led training begins at<a href="https://cloudsecuritypass.com/training/"> </a><a href="https://cloudsecuritypass.com/training/">$995</a>.</p>



<p><strong>Exam fees:</strong> The exam costs $445, though discounts are<a href="https://cloudsecurityalliance.org/membership"> available for corporate members</a>, and<a href="https://cloudsecurityalliance.org/education/ccsk/free-for-veterans"> </a><a href="https://cloudsecurityalliance.org/education/ccsk/free-for-veterans">US military veterans can take it for free</a>.</p>



<h2 class="wp-block-heading">Certified in Risk and Information Systems Control (CRISC)</h2>



<p>Administered by ISACA, the<a href="https://www.isaca.org/credentialing/crisc"> </a><a href="https://www.csoonline.com/article/571249/crisc-certification-your-ticket-to-the-c-suite.html">Certified in Risk and Information Systems Control</a> certification provides candidates with training across four domains: corporate IT governance, risk assessment, risk response and reporting, and technology and security. CRISC is ideal for candidates who want to enhance and optimize business resilience and risk management across their organization. The exam consists of 150 questions across the four domains. Since ISACA began offering CRISC in 2010, more than 23,000 people have obtained the certification. ISACA claims 52% of certificate holders experienced on-the-job improvement, and CRISC is the “4th top-paying certification worldwide.” To qualify for CRISC, candidates must adhere to a code of professional ethics and have <a href="https://support.isaca.org/s/article/What-are-the-requirements-to-become-CRISC-certified">three years of work experience</a> in risk assessment and risk response and reporting. On passing the exam, candidates must submit 20 CPE credits annually and<a href="https://www.isaca.org/-/media/files/isacadp/project/isaca/certification/crisc/crisc-cpe/crisc-cpe-policy.pdf"> </a><a href="https://www.isaca.org/-/media/files/isacadp/project/isaca/certification/crisc/crisc-cpe/crisc-cpe-policy.pdf">120 continuing professional education (CPE) hours</a> every three years to maintain their CRISC.</p>



<p><strong>Training fees:</strong> ISACA offers three resources: an<a href="https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004Km4PEAS"> </a><a href="https://store.isaca.org/s/store#/store/browse/detail/a2SVQ000001VR1l2AG">online review course</a>, $895; a review manual in<a href="https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004Tx3aEAC"> </a><a href="https://store.isaca.org/s/store#/store/browse/detail/a2SVQ000001FWgY2AW">print</a> or<a href="https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004Tx60EAC"> </a><a href="https://store.isaca.org/s/store#/store/browse/detail/a2SVQ000001FoOv2AK">digital</a>, $139; and an<a href="https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004Ko5TEAS"> </a><a href="https://store.isaca.org/s/store#/store/browse/detail/a2SVQ000001IPKL2A4">annual subscription to a 833-question test bank</a>, $399. Discounts are available for ISACA members.</p>



<p><strong>Exam fees: </strong>$575, ISACA members; $760 for non-members; plus $50 application fee.</p>



<h2 class="wp-block-heading">Certified Information Systems Auditor (CISA)</h2>



<p>The Information Systems Audit and Control Association (ISACA)’s CISA is geared toward IT auditors who wish to upskill or earn a pay boost. According to ISACA, 70% of CISA holders report on-the-job improvement, and another 22% receive a raise. The course covers five domains: information systems auditing, implementation, and operations; protection of information assets; and IT governance. The<a href="https://www.isaca.org/-/media/files/isacadp/project/isaca/certification/exam-candidate-guides/2024/exam-candidate-guide-2024.pdf"> </a>four-hour exam consists of 150 multiple-choice questions, and candidates must earn 450 on ISACA’s scaled scoring system, with 800 representing a perfect score. To<a href="https://www.isaca.org/credentialing/cisa/maintain-cisa-certification"> </a><a href="https://www.isaca.org/credentialing/cisa/maintain-cisa-certification">maintain their CISA</a>, certification holders must take 20 CPE credits annually and 120 over three years through conferences, volunteering, on-demand learning, and other methods as well as paying maintenance fee. To qualify, you must have five years of experience in IT or IS audit, control, assurance, or security. You can apply for an experience waiver for up to three years.</p>



<p><strong>Training fees:</strong> ISACA offers four resources: an<a href="https://store.isaca.org/s/store#/store/browse/detail/a2SVQ000000Fqvx2AC"> </a><a href="https://store.isaca.org/s/store#/store/browse/detail/a2SVQ000000Fqvx2AC">online review course</a> for $895, an<a href="https://store.isaca.org/s/store#/store/browse/detail/a2S4w000008KxGWEA0"> </a><a href="https://store.isaca.org/s/store#/store/browse/detail/a2S4w000008KxGWEA0">annual subscription to a question bank</a> for $399, and a print or digital<a href="https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004W2rOEAS"> </a><a href="https://store.isaca.org/s/store#/store/browse/detail/a2S4w000004W2rOEAS">review manual</a> for $139. Discounts are available for ISACA members. </p>



<p><strong>Exam fees:</strong> $575, members; $760, non-members; plus $50 application fee.</p>



<h2 class="wp-block-heading">Certified Information Systems Security Professional (CISSP)</h2>



<p><a href="https://www.csoonline.com/article/570239/cissp-certification-requirements-training-and-cost.html">CISSP</a> is a generalist cert from ISC2 aimed at security pros who have already established a strong track record. Advanced-level analysts interested in getting CISSP certified will need to know all the ins and outs of security and risk management, asset security, operations, security assessment and testing, and more. The CISSP certification requires five years of full-time experience in at least two of its <a href="https://www.isc2.org/certifications/cissp#The%20CISSP%20Exam">eight domains</a>. The exam is <a href="https://www.isc2.org/Certifications/CISSP/CISSP-CAT">adaptive</a>, ranging from 100 to 150 questions, including multiple-choice and advanced items of varying formats. Candidates need to score 700 points out of 1,000 to pass the exam.</p>



<p><strong>Training fees:</strong><a href="https://www.isc2.org/training/online-self-paced/cissp-online-self-paced"> </a>Online self-paced training <a href="https://www.isc2.org/training#CISSP">fees start</a> at $595 and can cost up to $1,993;<a href="https://www.isc2.org/training/online-instructor-led/cissp-online-instructor-led"> </a>online instructor-led bootcamp costs $2,880.</p>



<p><strong>Exam fee:</strong><a href="https://www.isc2.org/register-for-exam/isc2-exam-pricing"> </a><a href="https://www.isc2.org/register-for-exam/isc2-exam-pricing">$749</a></p>



<h2 class="wp-block-heading">Certified Secure Software Lifecycle Professional (CSSLP)</h2>



<p>This ISC2 certification helps cyber pros build their career by training them to better incorporate security practices throughout software development phases. The <a href="https://www.isc2.org/certifications/csslp">CSSLP</a> exam evaluates experience across eight domains: secure software concepts; secure software; lifecycle management; secure software requirements; secure software architecture and design; secure software implementation; secure software testing; secure software deployment, operations, maintenance; secure software supply chain. Those wishing to acquire the CSSLP must have four years of paid work experience as a software development lifecycle professional in one or more of the eight domains.</p>



<p><strong>Training fees:</strong><a href="https://www.isc2.org/training/online-self-paced/cissp-online-self-paced"> </a>Online self-paced training <a href="https://www.isc2.org/training#CSSLP">fees start</a> at $550 and can cost up to $1,718; online instructor-led bootcamp costs $2,650.</p>



<p><strong>Exam fee:</strong> <a href="https://www.isc2.org/register-for-exam/isc2-exam-pricing">$599</a></p>



<h2 class="wp-block-heading">Check Point Certified Security Master (CCSM)</h2>



<p>To become a <a href="https://www.checkpoint.com/services/training/certification-program/">Check Point Certified Security Master (CCSM) </a>security professionals must have an active Certified Security Expert (CCSE) and mast have completed two subsequent Check Point Specialist accreditations. CCSM validates advanced expertise in configuring, deploying, and troubleshooting Check Point solutions. Check Point certifications are valid for 24 months.</p>



<p><strong>Training fees:</strong><a href="https://www.isc2.org/training/online-self-paced/cissp-online-self-paced"></a> <a href="https://securityservices.checkpoint.com/categories/trainingprograms">Training for CCSE</a> is $3,500</p>



<p><strong>Exam fee:</strong> The fee for CCSE is $300</p>



<h2 class="wp-block-heading">GIAC Experienced Cybersecurity Specialist (GX-CS)</h2>



<p>The <a href="https://www.giac.org/certifications/experienced-cyber-security-gxcs">Experienced Cybersecurity Specialist (GX-CS)</a> sits within the applied knowledge certifications with GIAC. The certification is for practitioners to show their qualifications for advanced, hands-on IT systems roles across cybersecurity. Its intent is to demonstrate the candidate can navigate evolving real-world threats. The certification covers five areas: network security analysis and tools; evaluation of Windows and Linux OS security; advanced security tools and techniques; common attacks and defenses; and implementing overall cybersecurity and information security. The GX-CS is for <a href="https://www.giac.org/certifications/security-essentials-gsec">GSEC</a> holders who acquired additional experience — the GSEC exam costs $999, and SANS Institute offers <a href="https://www.sans.org/cyber-security-courses/security-essentials">training</a> for GSEC.</p>



<p><strong>Training fees:</strong><a href="https://www.isc2.org/training/online-self-paced/cissp-online-self-paced"></a> There are a few related affiliate training programs provided by SANS, each costing approximately $9,000.</p>



<p><strong>Exam fee: </strong>$499 for those with an active GSEC; otherwise <a href="https://www.giac.org/pricing">$1,299</a>.</p>



<h2 class="wp-block-heading">OffSec Certified Professional (OSCP+)</h2>



<p>To earn the<a href="https://www.offsec.com/courses/pen-200/"> </a><a href="https://www.offsec.com/courses/pen-200/">OffSec Certified Professional</a> certification, candidates must complete the affiliated course, PEN-200: Penetration Testing with Kali Linux, and pass the subsequent exam. The course covers 20 plus modules, including information gathering, vulnerability scanning, encryption and cryptography, Active Directory and AWS exploitation, and more. Certificate holders will have shown mastery of penetration testing methodologies ideal for new roles, such as an ethical hacker, incident responder, or threat hunter. The OSCP+ exam is entirely hands-on, and test-takers must compromise systems within a lab environment.</p>



<p>OffSec does not enforce any prerequisites but recommends candidates be familiar with TCP/IP networking, scripting in Bash and Python, and Linux and Windows, which they can learn through its<a href="https://www.offsec.com/learning/paths/network-penetration-testing-essentials/"> </a><a href="https://www.offsec.com/learning/paths/network-penetration-testing-essentials/">Network Penetration Testing Essentials Learning Path</a>.</p>



<p><strong>Training and exam fees:</strong> OffSec bundles the course and exam for $1,749 and as a yearly subscription that includes access to one 200 or 300-level course, the associated labs, and two exam attempts for $2,749 annually.</p>



<h2 class="wp-block-heading">OffSec Experienced Penetration Tester (OSEP)</h2>



<p>The<a href="https://www.offsec.com/courses/pen-300/"> </a><a href="https://www.offsec.com/courses/pen-300/">OffSec Experienced Penetration Tester</a> is ideal for penetration testers and ethical hackers who need more advanced techniques to sharpen offensive skills against modern enterprise defenses. Across more than 20 modules, the certification introduces these professionals to advanced offensive techniques, EDR and AV evasion, advanced Windows offensive security and more. During the two-day proctored exam, professionals must connect to a lab environment via a VPN and compromise multiple machines within a network through several possible attack paths. To pass, professionals must achieve the objective stated within the control panel or score at<a href="https://help.offsec.com/hc/en-us/articles/360049781352-OSEP-Exam-FAQ"> </a><a href="https://help.offsec.com/hc/en-us/articles/360049781352-OSEP-Exam-FAQ">least 100 points</a> — 10 points are awarded for every flag found in a local.txt or proof.txt file. Professionals who earn their OSEP can also obtain their<a href="https://www.offsec.com/certificates/osce3/"> </a><a href="https://www.offsec.com/certificates/osce3/">OSCE³ Certification</a> to demonstrate their mastery of offensive security. They would also need to pass the exams for WEB-300: Advanced Web Attacks and Exploitation and EXP-301: Windows User Mode Exploit Development, after which the OSCE³ is automatically awarded.</p>



<p>While there are no formal prerequisites for OSEP, OffSec recommends candidates take the<a href="https://www.offsec.com/courses/pen-200/"> </a><a href="https://www.offsec.com/courses/pen-200/">PEN-200: Penetration Testing</a> with Kali Linux or have a strong foundation in operating systems, networking, and scripting. </p>



<p><strong>Training and exam fees:</strong> OffSec bundles the course and exam for $1,749, and as a yearly subscription that includes access to one 200 or 300-level course, the associated labs, and two exam attempts for $2,749 annually.</p>



<h2 class="wp-block-heading">OffSec Exploitation Expert (OSEE)</h2>



<p>OffSec’s <a href="https://www.offsec.com/courses/exp-401/">Offensive Security Exploitation Expert</a> is a vendor-specific certification, focusing on advanced Windows exploitation, with OffSec deeming it its most challenging certification. As a penetration testing course, the material dives deep into topics such as advanced heap manipulations and disarming WDEG mitigations. Certificate holders can identify problematic code in Windows operating systems and develop exploits. For the practical exam, candidates must complete a comprehensive penetration test of software and create an exploit within a lab environment — all within 72 hours. To qualify, you must have experience debugging, developing Windows exploits, and using the following technologies: WinDBG, x86_64, IDA Pro, and basic C/C++ programming. OffSec recommends completing its<a href="https://www.offsec.com/courses-and-certifications/"> </a><a href="https://www.offsec.com/courses-and-certifications/">300-level certifications</a> before OSEE.</p>



<p><strong>Training and exam fees:</strong> OffSec offers only instructor-led, in-person training. Enterprises should <a href="https://www.offsec.com/organizations/live-training/">inquire for more information</a>.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Digital-native startups are ditching rigid databases for their agentic stacks     ]]></title>
<description><![CDATA[Presented by MongoDBThe gap between what AI models and agents can produce and what legacy infrastructure can reliably support is known as architectural drag, and it is the defining bottleneck of the agentic era. The data layer underneath an agentic system must handle variable schemas, vector embe...]]></description>
<link>https://tsecurity.de/de/3652101/it-nachrichten/digital-native-startups-are-ditching-rigid-databases-for-their-agentic-stacks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3652101/it-nachrichten/digital-native-startups-are-ditching-rigid-databases-for-their-agentic-stacks/</guid>
<pubDate>Tue, 07 Jul 2026 18:18:26 +0200</pubDate>
<content:encoded><![CDATA[<p><i>Presented by MongoDB</i></p><hr><p>The gap between what AI models and agents can produce and what legacy infrastructure can reliably support is known as architectural drag, and it is the defining bottleneck of the agentic era. </p><p>The data layer underneath an agentic system must handle variable schemas, vector embeddings, real-time retrieval, and multi-tenant scale, often simultaneously and without human intervention to manage migrations — but traditional relational databases weren't natively designed for document flexibility or AI capabilities. Fixed schemas require manual updates every time an AI agent introduces a new data shape, while separate vector databases add latency and synchronization overhead.</p><p>Three digital-native startups — Huntr, Modelence, and Tavily — solved this problem the same way: by building on MongoDB Atlas, a unified database platform with native vector search, hybrid search, and managed autoscaling. Their experiences define what an agent-native data stack looks like in production, and why using Atlas enables developers to easily build complex AI native companies.</p><h2>Modelence: Building the agent-native cloud</h2><p>Modelence is an AI app builder with an open-source framework designed specifically for agent-native development, enabling anyone to build and deploy production-ready web applications, including APIs and databases, in minutes. The company recognized early that most backend infrastructure was built for humans, not AI, and that the rigid schema management and complex migrations of traditional systems create operational drag that causes agents to fail when trying to build production-ready apps.</p><p>“Choosing MongoDB helped us keep everything in a single place, which is an important property of what we strive to do for our own users," says Aram Shatakhtsyan, co-founder and CEO of Modelence. "Live data streams, vector search, all as part of the main database. For AI agents, it’s especially important to have a single platform where everything can be done, because connecting multiple platforms together makes it more error prone.”</p><p>Modelence standardized on MongoDB Atlas because its document model aligns with how AI agents process and generate data, allowing schemas to evolve rapidly without manual migrations. The platform pairs that flexibility with a typed schema layer on top, a deliberate architectural decision. </p><p>“MongoDB’s document model enables us to both keep things simple and at the same time decide how structured we want everything to be," Shatakhtsyan says. We still add a typed schema on top, which tremendously improves the accuracy at which AI can generate fully working, reliable web apps."</p><p>The TypeScript integration has been especially consequential, he adds. </p><p>“Because MongoDB types and values can be directly translated to TypeScript, it becomes an extension of the Modelence framework and our App Builder has a single source of truth for both app logic and database,” Shatakhtsyan explains.</p><p>The result is a platform that can move from planning to a running live feature in minutes with significantly fewer regressions. That speed and reliability helped Modelence raise $3 million in seed funding and successfully launch an AI-native app builder that handles the entire application lifecycle end-to-end.</p><h2>Tavily: The web access layer for agents     </h2><p>Tavily is the search API purpose-built for AI agents, connecting them to real-time, accurate web knowledge and keeping them grounded in what's actually happening, not in static training data. At Tavily's scale, every agent request authenticates, retrieves, and meters without friction. That demanded backend infrastructure built to absorb change without breaking.</p><p>“On the user side, every agent request authenticates and meters against it," says Tomer Weiss, Data Team Lead at Tavily. "On the data side, we use it to track the lifecycle of every document we’ve ever touched: when it was fetched, how stale it is, what the freshness signals were and how popular it is. MongoDB’s flexible schema let us keep evolving those records without migrations as new metrics and features came along.”</p><p>That living record is what keeps agents grounded in reality. Multi-tenancy at Tavily's scale means managing millions of API keys, distinct usage profiles, plan tiers, and regional residency requirements. They built for that complexity from day one. </p><p>“We separated concerns across clusters early: a user/account cluster optimized for low-latency authentication and usage writes, and a sharded cluster for document state where the scaling axis is URLs, not users," Weiss explains. "That separation has paid off.”</p><p>The most critical lesson is about choosing infrastructure that doesn’t punish change, and that flexibility compounds, he says. </p><p>"The AI space moves so fast that change is our norm," he explains.  "For a company serving AI agents, where the workloads themselves keep changing shape, choosing a data platform that doesn’t punish change has turned out to be more valuable than any single feature.”
</p><h2>Huntr: From job tracker to AI career platform</h2><p>Huntr.co, an AI resume building and tailoring platform, helps more than 500,000 job seekers across 190 countries craft stronger applications and manage their search. For a lean, three-person engineering team, the challenge was finding a data foundation flexible enough to store the full complexity of a person’s career history in a structure that AI could read, reason about, and generate from natively.</p><p>“The kinds of career data we are gathering at Huntr naturally aligns with MongoDB’s document model," says Trevor McCann, senior software engineer at Huntr. "The core problem we’re solving with AI job search tools is how to surface the qualities of a candidate that make them unique. We need to be ready to store whatever kinds of data the candidate wants to include in their materials.”</p><p>Huntr built its AI Resume Builder on MongoDB Atlas, where the document model mirrors the natural shape of career data: deeply nested, variable across candidates, and constantly evolving as the platform ships new features. MongoDB Search on Atlas handles core search needs while MongoDB Vector Search powers the <a href="https://huntr.co/product/resume-tailor"><u>Job Tailoring</u></a> feature, which puts a candidate’s stored career profile side by side a specific job description and uses semantic matching to generate a resume optimized for that role.</p><p>The integrated capabilities have had a direct impact on how quickly the team can ship, McCann says. </p><p>“MongoDB’s hybrid search allows us to seamlessly query across literal and semantic text matches, a must-have when working with such diverse data,” McCann says. “This is something we could piece together using other solutions but with MongoDB it’s ready to go on top of our existing data layer.”
The consolidation of database, search, and vector capabilities into a single platform is what allows the team to punch above its weight. Huntr considers MongoDB the fourth member of its engineering team, McCann adds. </p><p>Looking ahead, the platform is building toward AI that learns from a candidate’s full professional history over time, delivering more personalized guidance with every interaction.</p><h2>The digital native blueprint</h2><p>These success stories become a definitive "digital native blueprint" for the agentic era, built on three core pillars. First, by unifying database, search, and vector storage into a single platform, these startups have effectively eliminated the architectural tax of complex data schemas that typically slows down development. This consolidation enables a level of fluidity that is now non-negotiable; AI agents require a modern data platform that can adapt as quickly as a natural language prompt evolves. </p><p>The winners of the AI era will be the ones who build the most performant, durable, and flexible systems to support those models in production. As agentic workflows grow more sophisticated, the data foundation determines how fast a team can ship, how reliably agents can operate, and how quickly the platform can adapt when the landscape shifts again. </p><hr><p><i>Sponsored articles are content produced by a company that is either paying for the post or has a business relationship with VentureBeat, and they’re always clearly marked. For more information, contact </i><a href="mailto:sales@venturebeat.com"><i><u>sales@venturebeat.com</u></i></a><i>.</i>
</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers Use Recruiter Phishing Emails and Fake Career Pages to Harvest Gmail Logins]]></title>
<description><![CDATA[A new phishing campaign is targeting job seekers by posing as recruiters from recognizable brands. The scheme uses fake career pages and worded emails to trick people into handing over Gmail login credentials. What makes this campaign notable is not…
Read more →
The post Hackers Use Recruiter Phi...]]></description>
<link>https://tsecurity.de/de/3651599/it-security-nachrichten/hackers-use-recruiter-phishing-emails-and-fake-career-pages-to-harvest-gmail-logins/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3651599/it-security-nachrichten/hackers-use-recruiter-phishing-emails-and-fake-career-pages-to-harvest-gmail-logins/</guid>
<pubDate>Tue, 07 Jul 2026 15:09:03 +0200</pubDate>
<content:encoded><![CDATA[<p>A new phishing campaign is targeting job seekers by posing as recruiters from recognizable brands. The scheme uses fake career pages and worded emails to trick people into handing over Gmail login credentials. What makes this campaign notable is not…</p>
<p class="more-link-p"><a class="more-link" href="https://www.itsecuritynews.info/hackers-use-recruiter-phishing-emails-and-fake-career-pages-to-harvest-gmail-logins/">Read more →</a></p>
<p>The post <a href="https://www.itsecuritynews.info/hackers-use-recruiter-phishing-emails-and-fake-career-pages-to-harvest-gmail-logins/">Hackers Use Recruiter Phishing Emails and Fake Career Pages to Harvest Gmail Logins</a> appeared first on <a href="https://www.itsecuritynews.info/">IT Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers Use Recruiter Phishing Emails and Fake Career Pages to Harvest Gmail Logins]]></title>
<description><![CDATA[A new phishing campaign is targeting job seekers by posing as recruiters from recognizable brands. The scheme uses fake career pages and worded emails to trick people into handing over Gmail login credentials. What makes this campaign notable is not just its scale but the planning behind each mes...]]></description>
<link>https://tsecurity.de/de/3651429/it-security-nachrichten/hackers-use-recruiter-phishing-emails-and-fake-career-pages-to-harvest-gmail-logins/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3651429/it-security-nachrichten/hackers-use-recruiter-phishing-emails-and-fake-career-pages-to-harvest-gmail-logins/</guid>
<pubDate>Tue, 07 Jul 2026 14:08:57 +0200</pubDate>
<content:encoded><![CDATA[<p>A new phishing campaign is targeting job seekers by posing as recruiters from recognizable brands. The scheme uses fake career pages and worded emails to trick people into handing over Gmail login credentials. What makes this campaign notable is not just its scale but the planning behind each message. The attack begins with an email […]</p>
<p>The post <a href="https://cybersecuritynews.com/hackers-use-recruiter-phishing-emails-and-fake-career-pages/">Hackers Use Recruiter Phishing Emails and Fake Career Pages to Harvest Gmail Logins</a> appeared first on <a href="https://cybersecuritynews.com/">Cyber Security News</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The modern CISO is becoming the next CFO]]></title>
<description><![CDATA[At some point, every security leader gets asked a version of the same question: Are we good? It tends to arrive when something is at stake and the person asking needs to know they can rely on the answer.



I learned what that question really means at a firm I was with earlier in my career. We ha...]]></description>
<link>https://tsecurity.de/de/3650974/it-security-nachrichten/the-modern-ciso-is-becoming-the-next-cfo/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3650974/it-security-nachrichten/the-modern-ciso-is-becoming-the-next-cfo/</guid>
<pubDate>Tue, 07 Jul 2026 11:09:17 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>At some point, every security leader gets asked a version of the same question: <em>Are we good?</em> It tends to arrive when something is at stake and the person asking needs to know they can rely on the answer.</p>



<p>I learned what that question really means at a firm I was with earlier in my career. We had received intelligence that threat actors were preparing to go after financial services firms over the holidays, counting on skeleton staffing and slower response times. We had procedures for exactly that kind of heightened alert, and we ran them. The moment that stayed with me came in a hallway. The head of business stopped me and asked, plainly, “Are we good?” He was not asking for a status report on our controls or a walkthrough of our incident response plan. He wanted a seasoned leader to look at him and say, with conviction, that we were good.</p>



<p>That instinct, the need for someone accountable enough to say “we’re good” and mean it, sits at the center of a debate the cybersecurity industry keeps having: Whether the CISO role has become unsustainable. The list of responsibilities continues to grow. Security leaders are expected to oversee cyber resilience, regulatory compliance, third-party risk, business continuity, AI governance, incident response and an ever-more-complex threat landscape. Boards, regulators, customers and investors simultaneously demand greater visibility into cyber risk than ever before.</p>



<p>The conclusion many people draw from this expansion is that the traditional CISO role can no longer work. If no single person can realistically master every domain that falls under modern cybersecurity, perhaps the role itself has become obsolete.</p>



<p>I believe the opposite is true. The modern CISO is disappearing from one version of itself and re-emerging as something larger. It is undergoing the same evolution the CFO role experienced over the last two decades.</p>



<p>Historically, CFOs were viewed primarily as financial operators. Their responsibilities centered on accounting, reporting, controls, audits and budgeting. As businesses grew larger, more global, more regulated and more dependent on technology, that model changed. The CFO evolved from a finance specialist into a strategic executive responsible for shaping enterprise-wide decisions. <a href="https://www.mckinsey.com/~/media/McKinsey/Business%20Functions/Strategy%20and%20Corporate%20Finance/Our%20Insights/The%20evolution%20of%20the%20CFO/The-evolution-of-the-CFO-vF.pdf?">McKinsey documented</a> this shift, finding that the number of functions reporting to CFOs had expanded significantly, and that business leaders had come to see them as critical drivers of change across the enterprise, not just stewards of the balance sheet.</p>



<p>Nobody looked at that expanding mandate and concluded the CFO role was becoming irrelevant. They recognized that finance had become more important to the business.</p>



<p>The same thing is happening in cybersecurity. For years, security was treated as a technical discipline operating on the periphery of the organization. Today, a significant cyber incident can halt operations, disrupt revenue, trigger regulatory scrutiny, damage customer trust and move markets. Cyber risk has become business risk, and that shift fundamentally changes what a CISO is for. Security leaders increasingly sit on enterprise risk committees alongside their peers, and regulators are paying far closer attention to how security is built into the design of products and systems from the outset. Both are signs that security has moved from a back-office function into the room where business risk gets decided.</p>



<p>The data reflects how much the role has already changed. According to <a href="https://www.helpnetsecurity.com/2026/02/27/splunk-ciso-liability-risk-report/">Splunk’s 2026 CISO Report</a>, nearly all CISOs now count AI governance and risk management among their core responsibilities. Seventy-eight percent report personal liability concerns tied to security incidents, up from 56% just a year ago. The role now carries individual legal exposure alongside operational accountability. That is a description of an executive function, full stop.</p>



<p>Modern security leaders are now expected to help boards understand risk, participate in strategic planning, navigate regulatory obligations, oversee resilience programs and establish governance around emerging technologies like artificial intelligence. These responsibilities extend well beyond traditional security operations, and the job has grown considerably faster than the organizational structures supporting it.</p>



<p>Some companies have responded by building larger, more specialized security leadership teams. <a href="https://www.securityweek.com/ciso-conversations-are-microsofts-deputy-cisos-a-signpost-to-the-future/">Microsoft’s Secure Future Initiative</a> is the most prominent example. The company established a Cybersecurity Governance Council led by a Global CISO, with over a dozen Deputy CISOs appointed across major security domains including engineering, AI, cloud services, gaming and government systems. It represents one of the largest security transformations in the industry, involving thousands of engineers and a governance structure built to coordinate security across a genuinely sprawling organization.</p>



<p>Some observers read structures like this as evidence that the traditional CISO model is breaking down. Look closer and you see the opposite. Microsoft expanded the organization supporting security leadership rather than dismantling it. Centralized accountability remains with a global CISO while execution is distributed across specialized leaders and teams.</p>



<p>This is exactly what mature executive functions look like at scale. Large enterprises do not eliminate CFOs when finance grows more complex. They add controllers, treasury leaders, FP&amp;A organizations and investor relations teams. Complexity does not eliminate executive accountability. It deepens the need for it.</p>



<p>There is shared, organization-wide security: the SOC, vulnerability management and the other services the entire firm depends on. Then there is business-line security, led by deputy or business-unit CISOs whose job is to make sure their individual units are protected. Those embedded leaders drive requirements into the shared services and provide independent oversight of them, while staying close enough to their business to understand what it actually needs. One central executive owns the whole picture, with specialized leaders carrying it into every corner of the organization.</p>



<p>One structural point follows directly from this: The CISO should never report to the CTO. The person accountable for security should not sit underneath the person accountable for building and shipping technology, because those two mandates can pull in different directions. Security belongs under the COO, the CRO or the CEO, where it can speak to risk independently and be heard.</p>



<p>AI is accelerating this evolution further. Organizations are deploying autonomous systems capable of making recommendations, triggering workflows and acting at machine speed. What AI cannot do is own the decisions behind those actions. Someone still has to determine what can be delegated to machines, establish governance frameworks, define acceptable risk and answer for those choices to regulators, boards and shareholders. In most organizations, that someone is the CISO.</p>



<p>The most practical place to start is a simple principle: every AI action should trace back to an accountable human. Framed that way, we are not delegating decisions to AI at all. We are putting machines to work while keeping a person answerable for what they do. That principle forces accountability to live somewhere specific in the organization rather than dissolving into the system.</p>



<p>This is worth sitting with: AI may strengthen the case for executive security leadership rather than weaken it. For years, CISOs governed human behavior inside organizations. Now they govern human and machine behavior simultaneously, a mandate with no obvious ceiling.</p>



<p>The cybersecurity industry keeps asking whether the CISO role can survive the demands being placed on it. The better question is whether organizations are adapting their leadership structures fast enough to support where the role is already heading.</p>



<p>The future of security leadership is unlikely to be a loose collection of specialists operating without clear ownership. It will more closely resemble other mature executive functions, with specialized leaders operating under a single accountable executive who understands how risk connects to the business as a whole. As cyber risk becomes inseparable from business risk, that executive becomes indispensable.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Vulnerability Research is About to Change]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 112x - Views:1299 🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEYBOARD
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard

🔥CO...]]></description>
<link>https://tsecurity.de/de/3649057/it-security-video/vulnerability-research-is-about-to-change/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3649057/it-security-video/vulnerability-research-is-about-to-change/</guid>
<pubDate>Mon, 06 Jul 2026 16:18:56 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 112x - Views:1299 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/ty1IGU9U8_o?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘STEM is not just about formulas and calculations, it is also about creativity’]]></title>
<description><![CDATA[Henkel’s Julie Joseph explores the aspects of the sector she would change and the personality traits most suited to a career in this space. 
Read more: ‘STEM is not just about formulas and calculations, it is also about creativity’]]></description>
<link>https://tsecurity.de/de/3648594/it-nachrichten/stem-is-not-just-about-formulas-and-calculations-it-is-also-about-creativity/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3648594/it-nachrichten/stem-is-not-just-about-formulas-and-calculations-it-is-also-about-creativity/</guid>
<pubDate>Mon, 06 Jul 2026 13:48:34 +0200</pubDate>
<content:encoded><![CDATA[<p>Henkel’s Julie Joseph explores the aspects of the sector she would change and the personality traits most suited to a career in this space. </p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/people/stem-formulas-calculations-creativity-working-life-henkel-skills-technology">‘STEM is not just about formulas and calculations, it is also about creativity’</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI doesn’t eliminate inefficiency. It amplifies it]]></title>
<description><![CDATA[Over the past two years, I have spent a significant amount of time discussing artificial intelligence with technology leaders, business executives and teams across my own organization. Most conversations begin with questions about the use cases, tools, governance and return on investment. Leaders...]]></description>
<link>https://tsecurity.de/de/3648397/it-security-nachrichten/ai-doesnt-eliminate-inefficiency-it-amplifies-it/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3648397/it-security-nachrichten/ai-doesnt-eliminate-inefficiency-it-amplifies-it/</guid>
<pubDate>Mon, 06 Jul 2026 12:08:19 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Over the past two years, I have spent a significant amount of time discussing artificial intelligence with technology leaders, business executives and teams across my own organization. Most conversations begin with questions about the use cases, tools, governance and return on investment. Leaders want to know which technologies are creating the most value, where to invest next and how quickly they should scale adoption.</p>



<p>Those are important questions, but I have noticed another pattern emerging as organizations move beyond experimentation and begin embedding AI into everyday work. In many cases, the technology itself is not the primary obstacle to success. Instead, AI is exposing organizational challenges that have existed for years. Processes that were already inefficient become more visible. Ambiguous decision-making structures become harder to ignore. Accountability gaps that once slowed projects quietly now become more apparent as work accelerates.</p>



<p>This has led me to a simple conclusion: AI does not eliminate inefficiency. It amplifies it.</p>



<p>That observation should not be interpreted as a criticism of AI. In fact, it highlights just how powerful the technology can be. AI accelerates workflows, shortens analysis cycles, improves access to information and increases employee productivity. However, because it accelerates the way work gets done, it also magnifies the strengths and weaknesses of the operating environment in which it is deployed. Organizations with strong processes and clear accountability often realize value quickly. Organizations with operational complexity frequently discover that technology alone cannot overcome management challenges.</p>



<h2 class="wp-block-heading">AI accelerates existing operating models</h2>



<p>Many organizations approach AI as a technology initiative. They evaluate platforms, launch pilots and identify tasks that can be automated. While those activities are important, they can also create a false impression that AI itself is the primary driver of transformation.</p>



<p>In my experience, the greatest value comes not from the technology alone but from the willingness to rethink how work gets done. AI can automate tasks, but it cannot redesign a broken workflow. If a process contains unnecessary approvals, duplicate activities, conflicting priorities or poorly defined handoffs, those issues remain regardless of how sophisticated the technology becomes.</p>



<p>This idea is consistent with a broader lesson I explore in my latest book, <a href="https://www.nicholascolisto.com/digital-inside-out"><em>Digital Inside Out</em></a>: digital transformation succeeds when organizations focus first on how work gets done, how decisions are made and how accountability is established. Technology can accelerate performance, but it rarely compensates for weaknesses in the underlying operating model. In many cases, new technologies simply make those weaknesses more visible.</p>



<p>Researchers at the<a href="https://mitsloan.mit.edu/ideas-made-to-matter/how-ai-reshaping-workflows-and-redefining-jobs?utm_source=chatgpt.com" rel="nofollow"> </a><a href="https://mitsloan.mit.edu/ideas-made-to-matter/how-ai-reshaping-workflows-and-redefining-jobs?utm_source=chatgpt.com" rel="nofollow">MIT Sloan School of Management</a> have reached a similar conclusion. Their work suggests that organizations generate the greatest value from AI when they redesign workflows rather than simply automate individual tasks. In other words, the most significant gains come from rethinking how work flows through the organization rather than accelerating isolated activities.</p>



<p>I have seen this pattern repeatedly throughout my career. Enterprise systems did not fix poor business processes. Collaboration platforms did not automatically improve communication. Analytics tools did not create accountability. Each technology delivered substantial benefits, but only when accompanied by process redesign, governance improvements and leadership commitment. AI follows the same pattern.</p>



<p>Organizations that simply layer AI on top of existing complexity often find themselves completing inefficient work faster. Employees may generate reports in minutes instead of hours, produce presentations more quickly and analyze larger volumes of information. Yet the underlying process may still contain the same bottlenecks that limited performance before AI was introduced. The technology increases speed, but it does not automatically improve effectiveness.</p>



<h2 class="wp-block-heading">Why decision-making becomes the new bottleneck</h2>



<p>One of the most interesting effects of AI is how it changes the nature of organizational constraints. Historically, many companies struggled because information was difficult to access. Data was fragmented across systems, reporting cycles were slow and analysis required significant manual effort. Leaders frequently spent considerable time gathering information before they could make decisions.</p>



<p>AI is rapidly reducing those barriers. Teams can now summarize large volumes of information, identify patterns, generate recommendations and produce insights in a fraction of the time previously required. Access to information is becoming less of a competitive differentiator because the effort required to generate it continues to decline.</p>



<p>As this happens, another challenge becomes more visible. Many organizations discover that their greatest constraint is no longer information. It is decision-making.</p>



<p>When ownership is unclear, faster insights do not necessarily produce faster outcomes. Teams may have access to excellent recommendations yet still struggle to determine who is responsible for acting on them. Multiple stakeholders may believe they have authority over a decision. Escalations become more common. Consensus-driven cultures can become overwhelmed by the volume of information being generated.</p>



<p>Some of the most difficult conversations I have encountered in AI initiatives have had little to do with models, prompts or technical architecture. Instead, they involve governance, ownership, accountability and decision rights. These challenges existed before AI, but the technology makes them more visible because it removes many of the delays previously associated with gathering and analyzing information.</p>



<p>This trend is likely to become even more pronounced as organizations adopt AI agents capable of executing tasks and workflows. While technology can automate actions, accountability remains a leadership responsibility. Leaders must still determine who owns outcomes, who approves actions and who is responsible when decisions create unintended consequences.</p>



<h2 class="wp-block-heading"><a></a>What leaders should fix before scaling AI</h2>



<p>Deloitte’s annual<a href="https://www.deloitte.com/us/en/what-we-do/capabilities/applied-artificial-intelligence/content/state-of-ai-in-the-enterprise.html?utm_source=chatgpt.com" rel="nofollow"> </a><a href="https://www.deloitte.com/us/en/what-we-do/capabilities/applied-artificial-intelligence/content/state-of-ai-in-the-enterprise.html?utm_source=chatgpt.com" rel="nofollow">State of AI in the Enterprise research</a> highlights the challenges organizations face when attempting to scale AI beyond pilots and isolated use cases. This finding reinforces a lesson many leaders are learning firsthand: realizing value from AI requires organizational change, process redesign and strong leadership, not just new technology</p>



<p>For CIOs and business leaders, one of the most important priorities should be simplifying processes before automating them. AI can reduce manual effort, but it rarely eliminates complexity that has been embedded into a process over many years. Organizations often achieve greater value by removing unnecessary steps before introducing automation.  As Jon McNeill writes in his book, The Algorithm, <em>“No need to waste time speeding up the old process. Instead, design, simplify, optimize and begin to work your new process. Then speed it up.”</em></p>



<p>Leaders should also establish clear decision rights before scaling AI-enabled workflows. As information becomes easier to generate, organizations need clarity regarding who is accountable for making decisions and driving action. Without that clarity, AI can create more recommendations than the organization is capable of acting upon.</p>



<p>Another important consideration is measurement. Many organizations continue to evaluate AI success through adoption rates, license utilization or employee engagement metrics. While these measures provide useful signals, they do not necessarily reflect business value. Leaders should focus on outcomes such as productivity improvements, revenue growth, cost reduction, customer experience enhancements and risk mitigation.</p>



<p>Most importantly, leaders should recognize that AI adoption is fundamentally a leadership challenge. Technology can accelerate work, but leaders determine how work is organized, governed, measured and improved. Organizations that treat AI solely as a technology initiative often struggle to move beyond experimentation. Organizations that use AI as an opportunity to improve processes, clarify accountability and modernize operating models are more likely to achieve sustainable results.</p>



<p>As AI adoption continues to accelerate, I believe the organizations that realize the greatest value will not necessarily be those with the largest investments or the most advanced models. They will be the organizations willing to address the management and operational issues that AI brings into focus. In many cases, AI is not creating new problems. It is revealing existing ones with greater speed and clarity.</p>



<p>That may be one of the most valuable contributions AI can make. By exposing inefficiencies that organizations have learned to tolerate, it creates an opportunity for leaders to address them directly. The companies that seize that opportunity will be better positioned not only to benefit from AI, but also to improve the way their organizations operate long after the current wave of innovation has passed.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CW@60: A career in data - it's all about the people that you meet]]></title>
<description><![CDATA[On 22 September 2026, Computer Weekly turns 60. To mark the milestone, we asked some of our friends - experts, trusted contacts, IT leaders and suppliers - for their perspectives on how tech has changed their lives over six decades]]></description>
<link>https://tsecurity.de/de/3648032/it-nachrichten/cw60-a-career-in-data-its-all-about-the-people-that-you-meet/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3648032/it-nachrichten/cw60-a-career-in-data-its-all-about-the-people-that-you-meet/</guid>
<pubDate>Mon, 06 Jul 2026 09:18:11 +0200</pubDate>
<content:encoded><![CDATA[On 22 September 2026, Computer Weekly turns 60. To mark the milestone, we asked some of our friends - experts, trusted contacts, IT leaders and suppliers - for their perspectives on how tech has changed their lives over six decades]]></content:encoded>
</item>
<item>
<title><![CDATA[Why Your GRC Career Isn’t Moving Forward]]></title>
<description><![CDATA[It’s not your certifications. It’s that you’re still explaining knowledge instead of proving judgment.Continue reading on InfoSec Write-ups »]]></description>
<link>https://tsecurity.de/de/3646309/hacking/why-your-grc-career-isnt-moving-forward/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3646309/hacking/why-your-grc-career-isnt-moving-forward/</guid>
<pubDate>Sun, 05 Jul 2026 08:22:35 +0200</pubDate>
<content:encoded><![CDATA[<div class="medium-feed-item"><p class="medium-feed-image"><a href="https://infosecwriteups.com/why-your-grc-career-isnt-moving-forward-87735b884d4a"><img src="https://cdn-images-1.medium.com/max/1280/1*Ey8-8AsBKrVd1JzuGOb0kQ.jpeg" width="1280"></a></p><p class="medium-feed-snippet">It’s not your certifications. It’s that you’re still explaining knowledge instead of proving judgment.</p><p class="medium-feed-link"><a href="https://infosecwriteups.com/why-your-grc-career-isnt-moving-forward-87735b884d4a">Continue reading on InfoSec Write-ups »</a></p></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hackers are Hacking HEADPHONES? #cyber #hacker #cybersecurity]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 0x - Views:0 🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEYBOARD
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard

🔥COME HA...]]></description>
<link>https://tsecurity.de/de/3644182/it-security-video/hackers-are-hacking-headphones-cyber-hacker-cybersecurity/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3644182/it-security-video/hackers-are-hacking-headphones-cyber-hacker-cybersecurity/</guid>
<pubDate>Fri, 03 Jul 2026 20:03:41 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 0x - Views:0 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/dGGyOn1ImrA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Researchers Find Backdoor in Thousands of Headphones]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 238x - Views:2827 Get $100 in FREE Sentry.io credits to find bugs in YOUR codebase at https://go.lowlevel.tv/sentry26

Sources:
https://thehackernews.com/2026/06/apple-patches-beats-studio-buds-flaw.html
https://thehackernews.com/2025/06/weekly-recap-airline-hacks-c...]]></description>
<link>https://tsecurity.de/de/3643786/it-security-video/researchers-find-backdoor-in-thousands-of-headphones/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3643786/it-security-video/researchers-find-backdoor-in-thousands-of-headphones/</guid>
<pubDate>Fri, 03 Jul 2026 16:18:41 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 238x - Views:2827 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/H7u2VfUZyV0?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Get $100 in FREE Sentry.io credits to find bugs in YOUR codebase at https://go.lowlevel.tv/sentry26<br />
<br />
Sources:<br />
https://thehackernews.com/2026/06/apple-patches-beats-studio-buds-flaw.html<br />
https://thehackernews.com/2025/06/weekly-recap-airline-hacks-citrix-0-day.html#:~:text=Vulnerabilities%20in%20Airoha%20SoCs<br />
https://insinuator.net/2025/06/airoha-bluetooth-security-vulnerabilities/<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Hacker Drops INSANE Exploit #hacking #cybersecurity #windows]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 34x - Views:189 🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEYBOARD
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard

🔥COME...]]></description>
<link>https://tsecurity.de/de/3642076/it-security-video/hacker-drops-insane-exploit-hacking-cybersecurity-windows/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3642076/it-security-video/hacker-drops-insane-exploit-hacking-cybersecurity-windows/</guid>
<pubDate>Thu, 02 Jul 2026 21:03:18 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 34x - Views:189 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/ms7tvhWfgV4?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[You Ruled Yourself Out Too Soon]]></title>
<description><![CDATA[Author: Security Weekly - A CRA Resource - Bewertung: 0x - Views:2 Early interest in technology and cybersecurity didn’t automatically turn into confidence. At eighteen, the assumption was that a career in cyber “probably wasn’t in the cards,” despite the interest already being there.

That minds...]]></description>
<link>https://tsecurity.de/de/3641407/it-security-video/you-ruled-yourself-out-too-soon/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3641407/it-security-video/you-ruled-yourself-out-too-soon/</guid>
<pubDate>Thu, 02 Jul 2026 16:04:05 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Security Weekly - A CRA Resource - Bewertung: 0x - Views:2 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/pb3ZKkwAIc0?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Early interest in technology and cybersecurity didn’t automatically turn into confidence. At eighteen, the assumption was that a career in cyber “probably wasn’t in the cards,” despite the interest already being there.<br />
<br />
That mindset is common across industries. People often eliminate themselves from opportunities long before failure ever happens. In fast-moving fields like cybersecurity, curiosity and persistence can matter just as much as traditional credentials or early certainty.<br />
<br />
The bigger risk may not be trying and failing — it may be deciding too early that you were never capable in the first place.<br />
<br />
Leaning into strengths and interests earlier can completely change long-term growth, fulfillment, and career direction.<br />
<br />
How many people walk away from careers they would’ve loved simply because they underestimated themselves too soon?<br />
<br />
Subscribe to our podcasts: https://securityweekly.com/subscribe<br />
<br />
#CareerGrowth #Motivation #SecurityWeekly #Cybersecurity #InformationSecurity #AI #InfoSec<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[‘Many workers no longer feel there is a natural point where pressure eases or where they can properly switch off’: 'Always on' culture is pushing Brits to breaking point – and nearly half are ready to quit]]></title>
<description><![CDATA[Growing performance expectations and poor work-life balance are forcing some workers to consider career moves]]></description>
<link>https://tsecurity.de/de/3641334/it-security-nachrichten/many-workers-no-longer-feel-there-is-a-natural-point-where-pressure-eases-or-where-they-can-properly-switch-off-always-on-culture-is-pushing-brits-to-breaking-point-and-nearly-half-are-ready-to-quit/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3641334/it-security-nachrichten/many-workers-no-longer-feel-there-is-a-natural-point-where-pressure-eases-or-where-they-can-properly-switch-off-always-on-culture-is-pushing-brits-to-breaking-point-and-nearly-half-are-ready-to-quit/</guid>
<pubDate>Thu, 02 Jul 2026 15:36:09 +0200</pubDate>
<content:encoded><![CDATA[Growing performance expectations and poor work-life balance are forcing some workers to consider career moves]]></content:encoded>
</item>
<item>
<title><![CDATA[How AI automation is reshaping the IT leadership pipeline]]></title>
<description><![CDATA[In the wake of AI, the early-talent job market is in decline across all jobs and industries, with a 10% drop since 2021, according to a recent report from SAP. When isolated for the top 10 most common entry level job titles, including software engineer, customer support, and data analyst, job ope...]]></description>
<link>https://tsecurity.de/de/3640731/it-nachrichten/how-ai-automation-is-reshaping-the-it-leadership-pipeline/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3640731/it-nachrichten/how-ai-automation-is-reshaping-the-it-leadership-pipeline/</guid>
<pubDate>Thu, 02 Jul 2026 12:03:46 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>In the wake of AI, the early-talent job market is in decline across all jobs and industries, with a 10% drop since 2021, <a href="https://www.sap.com/documents/2026/05/ccd1609f-507f-0010-bca6-c68f7e60039b.html" rel="nofollow">according to a recent report from SAP</a>. When isolated for the top 10 most common entry level job titles, including software engineer, customer support, and data analyst, job openings declined 35% from 2024 to 2025.</p>



<p>AI is already impacting entry-level and task-based roles, leaving the question of what will happen to the future talent pipeline of IT leadership.</p>



<p>“Our research suggests that organizations create a gap in their <a href="https://www.cio.com/article/4165232/whats-holding-back-enterprise-ai-shortage-of-talent-cios-say.html?utm=hybrid_search">future leadership pipeline</a> if they continue reducing entry-level hiring without rethinking how early-career talent develops,” says Autumn Krauss, chief scientist for Future of Work Research Lab at SAP SuccessFactors. “Historically, people built business acumen, technical expertise, and leadership skills through the first few years of their careers. As AI becomes embedded in workflows, organizations need to be intentional about creating new ways for employees to build those skills.”</p>



<p>Companies have traditionally followed hierarchal processes that encourage employees to advance up the career ladder via promotions, with many taking a leadership path to IT director, CIO, or CTO. However, this process has always relied on workers starting with entry-level and routine work to create a natural first step for future leaders. But now, more companies are automating the work that entry-level and mid-level employees used to cut their teeth on, says Maruf Ahmed, CEO of IT staffing and consulting company Dexian.</p>



<p>For example, a junior engineer might start in QA and testing on the technical side, getting hands-on experience with how systems work. As they progress in their career, that knowledge continues to stack, creating future leaders who deeply understand the technology and the business.</p>



<p>“Maintaining a strong succession path starts with being honest about what AI removed from someone’s development, and then being intentional about replacing it,” says Ahmed. “Senior leaders need to spend more time actively teaching, and people need exposure to complex decisions earlier in their careers. Day-to-day work used to build that foundation on its own, and it doesn’t anymore.”</p>



<h2 class="wp-block-heading">Redesigning jobs for AI and leading in uncertainty</h2>



<p>As many have discovered, it’s not always easy to decipher quality AI outputs, especially as the technology has become renowned for <a href="https://www.cio.com/article/228199/the-12-biggest-issues-it-faces-today.html?utm=hybrid_search">hallucinating results</a>. Current and future IT leaders need the foundational knowledge to have confidence when evaluating AI outputs, especially if they’re expecting employees to use AI. The most valuable leaders are the ones comfortable making decisions with incomplete information, and who can make calls on the spot about automated processes, no matter what may arise.</p>



<p>“We often see AI doesn’t stay contained in one function for long,” Ahmed adds. “Once an organization automates in one area, there’s an expectation to extend that more broadly, and leaders who built their careers inside a specific function are suddenly being asked to weigh in on AI use in areas they’ve never directly managed.”</p>



<p>According to recent research from <a href="https://www.deloitte.com/cz-sk/en/services/consulting/research/the-state-of-ai-in-the-enterprise.html" rel="nofollow">Deloitte</a>, 84% of companies haven’t done the work to redesign jobs around AI despite high expectations for automation, and 36% expect at least 10% of their jobs to be fully automated within a year, and 82% say within three years. Even with those results, fewer than half are making significant adjustments to talent strategies, with 53% saying they’re simply focusing on educating employees to raise AI fluency.</p>



<p>That leaves entry-level workers and those in task-aligned roles in somewhat unknown territory as automation replaces time-consuming tasks, and managers shift to overseeing human-AI teams. Deloitte points to a potential shift toward flatter structures, with more than half of businesses considering pod-based or non-hierarchal models, while 16% have already started to make a shift.</p>



<p>IT leaders will likely find themselves relying more on others in the company to make judgment calls around AI, opening communication and transparency as job roles evolve and structures begin to flatten. With AI adoption happening at a rapid pace, organizations need to evaluate how it’ll impact talent and leadership structures, and what the future of leadership will look like with automation.</p>



<h2 class="wp-block-heading">Investing in early talent to maintain a leadership pathway</h2>



<p>IT leaders need to avoid the trap of treating AI adoption as a technology rollout rather than a workforce development project, says Ahmed. Leaders will continue to invest heavily in new tools, services, hardware, and technology, and then expect employees to become self-taught on these platforms in their downtime.</p>



<p>“Our research found that leaders don’t often feel confident or equipped with the skills to lead that level of transformation. Instead, organizations often fall back on the tactic of giving employees AI tools and expecting them to figure out how best to use them on their own,” says Krauss.</p>



<p>If current IT leaders feel unequipped to lead through AI transformation, it’s imperative companies step back and reevaluate training and future leadership talent pools. Investments in AI should be weighed alongside the necessary investments for employee upskilling and training, and to redefine long-standing organizational structures.</p>



<p>Investment in early <a href="https://www.cio.com/article/251060/employee-retention-10-strategies-for-retaining-top-talent.html?utm=hybrid_search">talent development programs</a> can also be beneficial for tackling potential future leadership gaps left by AI adoption, with 86% of employees saying that an early talent program helped set them up for career success, according to the SAP report. But despite the beneficial nature of such programs, only 32% of early talent report participating in an early talent program, and 49% say their organization doesn’t offer one. Plus, only 35% of early talent employees say they’ve been given sufficient transparency into which roles in their organization may be automated in the future, while one in three express concerns their job may one day cease to exist due to AI advancements.</p>



<p>“As roles change, organizations need to give employees a clearer picture of where opportunities are emerging and what skills will be most important,” says Krauss. “Many employees are already uncertain about how technology will affect their careers, and that uncertainty can make it harder to stay engaged. People are more likely to invest in their growth when they see a path forward. That visibility is becoming increasingly important.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Digital resilience compounds when AI and human expertise scale together]]></title>
<description><![CDATA[Presented by Splunk Agentic AI is making IT and security teams dramatically more efficient. But it’s also removing the apprenticeship that has long produced experienced operators. As organizations automate more of the work once performed by junior analysts and engineers, they’re confronting a cha...]]></description>
<link>https://tsecurity.de/de/3639544/it-nachrichten/digital-resilience-compounds-when-ai-and-human-expertise-scale-together/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3639544/it-nachrichten/digital-resilience-compounds-when-ai-and-human-expertise-scale-together/</guid>
<pubDate>Wed, 01 Jul 2026 21:33:03 +0200</pubDate>
<content:encoded><![CDATA[<p><i>Presented by Splunk </i></p><hr><p>Agentic AI is making IT and security teams dramatically more efficient. But it’s also removing the apprenticeship that has long produced experienced operators. </p><p>As organizations automate more of the work once performed by junior analysts and engineers, they’re confronting a challenge that’s as much about workforce design as architecture design: how to build the next generation of experts when AI handles the work that once trained them.</p><h2>What the junior workforce has been doing</h2><p>For two decades, the path to becoming a world-class SecOps analyst, SRE, or NetOps engineer ran through repetition.</p><p>Triaging false positives. Hunting through dashboards for context. Reading logs at 2 a.m. that turned out to be benign. The industry treated this work as drudgery, and in many ways it was.</p><p>But it also served as the apprenticeship.</p><p>The thousands of hours an analyst spent staring at traffic patterns built the intuition that made them invaluable when a real attack arrived. That intuition was not taught in a single course or captured in a runbook. It was accumulated through exposure, pattern recognition, failure, and escalation. Over time, this is how people earn deep analytical experience.</p><p>However, agentic AI is now beginning to automate the very tasks that once served as the training ground for that expertise. That is not a reason to slow down. The drudgery was costly. The burnout was real. Organizations should use agents to reduce toil wherever they can.</p><p>At the same time, as we remove that apprenticeship loop, we need to provide operators something better in its place. How organizations approach this issue today will determine the winners for the future.</p><p>Organizations that approach this deliberately will produce the operators skilled to succeed in the next decade. Organizations that punt on this may find themselves with faster systems today, but with fewer people who understand them deeply enough to govern them tomorrow.</p><h2>When automation hollows out accountability</h2><p>There is also a second dimension to this conversation that gets less attention than it should.</p><p>In regulated environments, the drudgery of apprenticeship is part of the accountability layer. Frameworks from SOX to PCI DSS to HIPAA to NIS2 assume there is a chain of human judgments behind a control decision.</p><p>Auditors do not interview models. They interview people who can explain why a system did what it did, why the decision was sound, and whether the right controls were in place.</p><p>When the population of professionals who can explain that chain begins to thin, the risk may not appear immediately. The control may still pass. The workflow may still be executed. The dashboard may still look green.</p><p>But the underlying organizational memory begins to hollow out.</p><p>This is not simply a tooling problem. It is also a workforce skill and design problem. And for organizations moving quickly on agentic adoption, the risk is closer than many think.</p><h2>Building human expertise to govern AI</h2><p>When we lose part of the accountability layer to agents, humans will step into a different type of governance role. Governing an agentic system means implementing automated guardrails that adapt to non-deterministic agent behavior and ensure<s>s</s> agents behave appropriately under conditions no one fully anticipated. It means designing escalation criteria that catch the right anomalies without overwhelming humans with the wrong ones. It means implementing dynamic tools, alerts, and processes to review machine decisions to detect drift, bias, and reasoning failures that no individual case would reveal.</p><p>The ability to evaluate and respond to these exceptions requires judgment built over years of experience, learning pattern recognition that the old apprenticeship model used to produce.</p><p>That is why the workforce question and the architecture question are now the same question. If we expect humans to govern increasingly autonomous systems, we need intentional pathways that help people manage the scale and speed of AI systems while building the intuition and judgment in human operators required to do that work.</p><p>In the AI era, the most valuable platforms will not simply automate the most tasks. They will help people become more capable, more credible, and more essential as the systems around them become faster and more intelligent.</p><p>That means organizations need to invest in the full ecosystem of expertise for operators: communities that spread shared practices, certifications or other proofs that make expertise visible, and human-oriented explanations and verifications in the AI along with learning paths that build capability. Empowerment is an architecture design choice</p><p>Human empowerment is a critical part of the conversation around the practical use of AI. However, without an intentional strategy to back this up, it risks becoming the kind of phrase that means nothing because it can mean anything.</p><p>Empowerment for agentic systems cannot just be a conceptual requirement. It has to be a set of design choices baked into how systems behave. An agentic system that empowers its human operators and grows their professional skillset does four things:</p><h5>1. Exposes reasoning, with the data lineage behind it</h5><p>Every recommendation an agent makes should be traceable to the data it considered, the logic it applied, and the provenance of the inputs it used. Operators who can see reasoning develop judgment about when to trust it. Operators handed only conclusions do not.</p><h5>2. Tiers authority by confidence and impact</h5><p>Familiar, low-risk patterns can be handled autonomously. Novel situations or actions with meaningful blast radius should escalate by default. The boundary should be explicit and configurable by the teams that own the consequences.</p><h5>3. Treats disagreements as a correction signal</h5><p>When an experienced engineer overrides an agent, they are doing more than disagreeing. They are correcting the system with judgment the model did not have: a fragile dependency, a quirk in the environment, a constraint the data never saw. A system that registers the override but ignores the reasoning behind it learns nothing from the one moment a human knew better.</p><h5>4. Captures resolutions as cross-domain knowledge</h5><p>How an incident gets resolved is a lesson that rarely stays in one lane. A SecOps incident may expose an ITOps weakness. A network issue may trace back to business impact. When that connection lives only inside a closed ticket, the next team to hit it starts from zero. Resolutions should travel across domains, not die where they were filed.</p><p>These are not aspirational qualities. They are testable product capabilities. Leaders evaluating agentic systems should be able to identify where these capabilities live, what happens when they fail, and whether operator skill improves after deployment.</p><h2>The next advantage is when human and AI scale together</h2><p>For AI systems to be practical, trusted, and work at scale, the critical design point is for the AI to work deeply alongside and empower human operators. </p><p>As such, the agentic era is not a story about replacing humans. It is a story about redesigning the systems humans operate so that these operations can happen at machine speed and scale, while human expertise grows at the same time. Together, rather than at each other's expense.</p><p>That outcome is not a given. It will happen only where leaders treat operator development as a priority, not an afterthought. To achieve this, agentic systems have to be intentionally designed to expose reasoning, capture learning, and route work back to humans in ways that build skill and career rather than erode both.</p><p>The agents will keep getting smarter and faster. The ability of operators who work alongside them to learn and grow in lockstep, will determine whether the next decade of digital resilience is something organizations truly own, or something they rent from a shrinking pool of expertise. </p><p><b><i>Learn more about how </i></b><a href="https://www.splunk.com/ciscodatafabric"><b><i>Cisco Data Fabric powered by the Splunk Platform</i></b></a><b><i> is helping teams accelerate agentic operations.</i></b></p><p><i>Kamal Hathi is SVP and GM of Splunk, a Cisco Company.</i></p><hr><p><i>Sponsored articles are content produced by a company that is either paying for the post or has a business relationship with VentureBeat, and they’re always clearly marked. For more information, contact </i><a href="mailto:sales@venturebeat.com"><i><u>sales@venturebeat.com</u></i></a><i>.</i></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Want to be an astronaut? Career routes that can take you to space]]></title>
<description><![CDATA[Kirsty Lindsay of Northumbria University explores the various ways students can work towards a career in the space industry. 
Read more: Want to be an astronaut? Career routes that can take you to space]]></description>
<link>https://tsecurity.de/de/3638391/it-nachrichten/want-to-be-an-astronaut-career-routes-that-can-take-you-to-space/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638391/it-nachrichten/want-to-be-an-astronaut-career-routes-that-can-take-you-to-space/</guid>
<pubDate>Wed, 01 Jul 2026 13:46:35 +0200</pubDate>
<content:encoded><![CDATA[<p>Kirsty Lindsay of Northumbria University explores the various ways students can work towards a career in the space industry. </p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/careers/astronaut-career-routes-space-skills-working-life-advice">Want to be an astronaut? Career routes that can take you to space</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI가 없앤 주니어, 누가 미래의 시니어를 키우나]]></title>
<description><![CDATA[AI가 가져온 혁신의 물결은 많은 IT 리더가 인정하고 싶어 하는 것보다 훨씬 빠른 속도로 IT 인재 육성 체계를 중대한 갈림길로 몰아가고 있다.



그동안 기업들은 신입 직급부터 인재를 육성해 내부에서 IT 전문성을 키워왔지만, 이제는 AI 활용 경험을 갖춘 인재에 대한 수요가 커지고 AI 자동화가 초급 직무를 대체하면서 이러한 전통적인 인재 육성 방식이 흔들리고 있다.



스탠퍼드대학교 디지털경제연구소(Stanford Digital Economy Lab)의 널리 인용되는 연구에 따르면, 챗GPT가 등장한 2022년 말 ...]]></description>
<link>https://tsecurity.de/de/3638354/it-security-nachrichten/ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638354/it-security-nachrichten/ai/</guid>
<pubDate>Wed, 01 Jul 2026 13:38:24 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>AI가 가져온 혁신의 물결은 많은 IT 리더가 인정하고 싶어 하는 것보다 훨씬 빠른 속도로 IT 인재 육성 체계를 중대한 갈림길로 몰아가고 있다.</p>



<p>그동안 기업들은 신입 직급부터 인재를 육성해 내부에서 IT 전문성을 키워왔지만, 이제는 AI 활용 경험을 갖춘 인재에 대한 수요가 커지고 AI 자동화가 초급 직무를 대체하면서 이러한 전통적인 인재 육성 방식이 흔들리고 있다.</p>



<p><a href="https://digitaleconomy.stanford.edu/publication/canaries-in-the-coal-mine-six-facts-about-the-recent-employment-effects-of-artificial-intelligence/" target="_blank" rel="nofollow">스탠퍼드대학교 디지털경제연구소</a>(Stanford Digital Economy Lab)의 널리 인용되는 연구에 따르면, 챗GPT가 등장한 2022년 말 이후 AI의 영향을 가장 크게 받는 직군에서 22~25세 초기 경력 직원의 고용은 16% 감소했다. 신입 소프트웨어 개발자의 경우 감소 폭은 약 20%에 달했다. 실무 경험을 쌓은 초기 경력 IT 인재 풀이 줄어들면서 앞으로 IT 리더들은 보다 중요한 중급 인력을 확보하는 데 더욱 큰 어려움을 겪을 가능성이 크다.</p>



<p>일부 IT 리더는 비용 절감을 위해 주니어 엔지니어와 신입 IT 직무를 AI로 대체하는 전략이 결국 역효과를 낳을 것으로 보고 있다. 복잡한 문제를 해결하고 확장 가능한 시스템을 설계할 수 있는 숙련 인력이 부족해질 수 있다는 것이다.</p>



<p>가트너가 최근 전 세계 기업 경영진을 대상으로 실시한 <a href="https://www.gartner.com/en/newsroom/press-releases/2026-05-05-gartner-says-autonomous-business-and-artificial-intelligence-layoffs-may-create-budget-room-but-do-not-deliver-returns" target="_blank" rel="nofollow">조사</a>에서도 비슷한 결과가 나타났다. 업무 자동화를 확대하고 인력을 감축한 기업들은 기대했던 생산성 향상 효과를 충분히 거두지 못한 것으로 조사됐다. 반면 새로운 직무를 만들고 직원의 역량을 강화하며 자율적으로 수행되는 업무를 관리하고 발전시킬 수 있도록 지원하는 시스템에 투자한 기업들은 수익성 개선 효과를 거둔 것으로 나타났다.</p>



<p>가트너는 앞으로 2~3년 동안 자율형 비즈니스 운영이 확산되면서 오히려 더 많은 인력이 필요해질 것으로 전망했다. 자율형 업무를 관리할 인재 채용이 늘어나면서 전체적으로는 고용이 순증할 것이라는 분석이다.</p>



<p>그럼에도 단기적으로는 AI를 활용해 인력을 감축하는 기업들이 투자자들로부터 긍정적인 평가를 받고 있으며, 많은 경영진 역시 이러한 전략을 추진하고 있다. 그렇다면 CIO를 비롯한 IT 리더들은 미래에 필요한 역량을 확보하기 위해 중견·고급 IT 인재로 성장할 수 있는 경력 경로를 어떻게 구축할 계획일까?</p>



<h2 class="wp-block-heading">성장을 좌우하는 것은 ‘맥락 경험’</h2>



<p>초기 경력 인력 채용이 감소하는 흐름에 대해 마이크로소프트(MS)의 마크 루시노비치와 스콧 한셀만은 최근 <a href="https://dl.acm.org/doi/10.1145/3779312" target="_blank" rel="nofollow">공동 기고문</a>을 통해 다른 해법을 제시했다. 이들은 초기 경력 개발자를 제품 개발팀에 배치하고 숙련된 엔지니어와 멘토 관계를 맺도록 해야 한다고 주장했다. 이를 통해 신입 개발자가 AI가 놓칠 수 있는 실제 현장의 문제를 발견하고 해결하는 능력을 기를 수 있다는 것이다.</p>



<p>두 사람은 기고문에서 AI가 생성한 코드가 겉보기에는 정상적으로 작동하는 것처럼 보였지만, 숙련된 개발자들은 그 안에서 수십 개의 문제를 찾아냈다고 소개했다. 또한 MIT 연구를 인용하며, 글쓰기 작업에서 AI에 지나치게 의존할 경우 뇌 활동이 감소하는 이른바 ‘인지 부채(cognitive debt)’ 가 발생할 수 있다고 지적했다.</p>



<p>두 사람은 “AI 에이전트는 업무 속도를 높이고 반복적인 작업을 줄일 수는 있지만, 예외 상황을 예측하거나 견고한 시스템을 설계하는 직관은 갖추지 못했다”라며 “AI에 지나치게 의존하면 숙련된 엔지니어만 발견할 수 있는 미묘한 버그와 아키텍처 결함, 보안 취약점을 놓칠 위험이 있다. 기술이 발전할수록 인간의 검토와 비판적 사고, 도메인 지식은 오류를 바로잡고 혁신을 이끄는 데 필수적이다”라고 설명했다.</p>



<p>MS 부사장이자 기술 스태프(Microsoft Technical Fellow)인 한셀만은 소프트웨어 개발은 단순히 코드를 작성하는 일이 아니라고 강조했다.</p>



<p>한셀만은 숙련된 엔지니어는 무엇이 효과가 있고 무엇이 실패하는지, 실제 운영 환경에서 어떤 문제가 발생하는지, 뛰어난 설계란 무엇인지, 그리고 시스템을 어떻게 확장해야 하는지를 경험을 통해 체득한다고 설명했다. AI는 개발 생산성을 높일 수는 있지만 이러한 판단력을 신입 개발자에게 길러주지는 못한다는 것이다.</p>



<p>한셀만은 “흔히 ‘초기 경력(early in career)’이라고 말하지만, 실제로는 ‘맥락을 처음 접하는 단계(early in context)’ 에 가깝다. 주니어 개발자에게 부족한 것은 맥락(Context)이다”라고 말했다.</p>



<p>이어 “좋은 안목과 판단력은 안전하게 실패를 경험하는 과정에서 만들어진다”라며 “하지만 지금 많은 기업은 주니어 개발자를 채용한 뒤 곧바로 어려운 문제에 투입하고 소모품처럼 다룬다. 이는 사람을 성장시키는 방식이 아니라 잘못된 접근이다”라고 지적했다.</p>



<h2 class="wp-block-heading">새로운 멘토링 모델</h2>



<p>한셀만은 주니어 프로그래머를 감원하기보다 이들이 미래에 핵심적인 시니어 인재로 성장하는 데 필요한 역량을 키울 수 있는 체계를 구축해야 한다고 제안했다.</p>



<p>그가 제시한 해법은 의료 분야의 ‘프리셉터십(preceptorship)’ 모델이다. 숙련된 엔지니어가 주니어 개발자의 실무 경험과 판단력 향상을 공식적으로 책임지는 멘토링 방식이다. 한셀만은 간호사이자 프리셉터로 활동하는 아내의 경험에서 이 아이디어를 얻었다고 설명했다.</p>



<p>한셀만은 “프리셉터십은 간호사가 국가 자격시험을 통과했고 회사에 입사했으며 첫 출근을 했다는 사실을 인정하는 제도”라며 “현장에서 일할 자격은 충분히 갖췄지만 아직 업무에 필요한 맥락(Context)은 부족하다는 점을 전제로 한다”라고 설명했다.</p>



<p>기술 기업에도 이와 같은 모델이 필요하다고 그는 주장했다. 경험 많은 멘토로부터 단순히 결과물을 만들어내는 방법이 아니라 배우고 성장할 기회를 제공해야 한다는 것이다.</p>



<p>그는 “우리에게 필요한 것은 뛰어난 소통 능력과 높은 주도성을 갖춘 사람, 그리고 미래 인재 육성에 기꺼이 투자할 수 있는 사람이다”라고 말했다.</p>



<p>한셀만은 이러한 실무 중심의 멘토링 방식을 코딩 부트캠프와 비교하며 차이점을 설명했다.</p>



<p>그는 “부트캠프에서는 결국 많은 사람이 중도에 탈락한다. ‘당신은 해낼 수 없었다’는 평가를 받게 되는 셈이다”라며 “반면 프리셉터십은 숙련된 엔지니어가 주니어 개발자의 성장을 진심으로 돕고, AI를 활용하는 뛰어난 소프트웨어 엔지니어로 성장하도록 이끄는 관계다. 단순히 ‘바이브 코더(vibe coder)’를 만드는 것이 아니다”라고 말했다.</p>



<p>이어 “우리는 감에 의존해 코드를 운영 환경에 배포하는 것이 아니다. 이미 개발된 강력한 도구를 활용해 뛰어난 안목과 분별력을 바탕으로 대규모 환경에서도 높은 품질의 소프트웨어를 만드는 것이 목표다”라고 설명했다.</p>



<h2 class="wp-block-heading">AI가 초래할 미래 인재 공백</h2>



<p>AI가 일부 초급 업무를 대신할 수 있다는 이유로 주니어 직무를 없애는 기업은 단기적으로는 생산성을 높일 수 있을지 몰라도 장기적으로는 기술 경쟁력을 약화시킬 수 있다. 업계에서는 초기 경력 인재 채용에 대한 투자가 줄어들면 앞으로 리더십과 조직 내 축적된 기술 지식이 부족해질 뿐 아니라, 제품 품질과 AI가 생성한 코드 및 결과물을 효과적으로 관리·감독하는 능력도 떨어질 것이라고 우려한다.</p>



<p>패스트푸드 체인 소닉(Sonic)의 전 CIO이자 현재 컨설턴트, 이사회 자문위원, 저술가로 활동하는 크레이그 밀러(Craig Miller)는 “시니어 엔지니어는 단순히 코드를 작성한다고 만들어지는 것이 아니라 실제 시스템을 경험하면서 성장한다”라며 “시스템이 어떻게 확장되는지, 어떤 방식으로 장애가 발생하는지, 그리고 기술적 의사결정이 비즈니스에 어떤 영향을 미치는지를 이해해야 한다. 이런 경험은 자동화할 수 없다”라고 말했다.</p>



<p>클라우드 기반 HR 소프트웨어 기업 하이밥(HiBob)의 인사·문화 담당 부사장인 마케어 몬티니(Macaire Montini)는 주니어 개발자 채용 축소를 단순한 비용 절감이 아니라 장기적인 역량 리스크로 봐야 한다고 말했다.</p>



<p>몬티니는 “주니어 개발자 채용 감소는 단순한 고용시장 변화가 아니다”라며 “이는 장기적인 인재 파이프라인 문제로, 기술 리더는 이를 인프라 리스크와 같은 수준의 시급성으로 다뤄야 한다”라고 설명했다. 이어 “초기 경력 인재 영입을 중단하면 지금 당장 인력 공백이 생기는 데 그치지 않는다. 5년 후에는 조직을 이끌 리더가 부족한 상황에 직면하게 될 것”이라고 말했다.</p>



<p>그래프소프트(Graphisoft)의 CTO 졸트 케레첸(Zsolt Kerecsen)은 초기 경력 인력을 AI로 대체하면 인재 육성을 저해하고 조직의 자율형 시스템 운영 역량도 약화된다고 지적했다. 그는 CIO가 초기 경력 인재 채용을 미래의 서비스 품질과 시스템 관리, AI 거버넌스를 위한 투자로 인식해야 한다고 강조했다.</p>



<p>케레첸은 “AI를 학습시키고 결과물을 검증하려면 숙련된 개발자가 반드시 필요하다”라며 “주니어 개발자를 AI로 대체하려는 발상은 근본적으로 잘못됐다. 오히려 시니어 개발자의 지도 아래 AI를 활용해 주니어 개발자의 성장을 지원하고 더 빠르게 시니어 엔지니어로 성장하도록 도와야 한다”라고 말했다.</p>



<p>밀러는 초기 경력 채용 감소는 현재의 기술 인력이 후배를 제대로 양성하지 않는 이른바 ‘느린 쇠퇴(slow decay)’ 현상의 한 단면일 뿐이라고 진단했다. 그는 미래 인재 부족을 보여주는 또 다른 신호로 컴퓨터공학(CS) 전공 지원자 감소를 꼽았다.</p>



<p>밀러는 “취업시장 전망이 악화되면서 컴퓨터공학 전공 등록자도 줄고 있다”라며 “이런 추세가 이어지면 AI가 현재는 초급 개발자 수요를 줄이더라도 앞으로 5~10년 안에 시니어 엔지니어 부족 현상이 나타날 수 있다”라고 말했다.</p>



<p>이어 “진짜 위험은 AI가 개발자를 필요 없게 만드는 것이 아니다”라며 “기업들이 뛰어난 개발자를 길러내던 초기 학습의 장 자체를 없애고 있다는 점이 더 큰 문제”라고 지적했다.</p>



<h2 class="wp-block-heading">미래 인재 파이프라인 구축</h2>



<p>초기 경력 직무의 성격이 빠르게 변화하는 가운데 전문가들은 CIO에게 특히 개발자를 포함한 IT 인재의 채용과 육성 방식을 보다 전략적으로 재설계해야 한다고 조언한다. 핵심은 AI로 주니어 인력을 대체하는 것이 아니라, AI를 활용해 이들이 더 빠르고 효과적으로 성장하도록 지원하는 것이다.</p>



<p>몬티니는 AI 덕분에 주니어 개발자가 이전보다 더 복잡한 업무를 일찍 맡을 수 있게 됐지만, 숙련된 인재로 성장하려면 여전히 멘토링과 체계적인 지도가 필요하다고 말했다.</p>



<p>몬티니는 “해답은 단순히 사람을 채용하는 데 있지 않다”라며 “중요한 것은 초기 경력 인재가 입사한 이후 어떻게 온보딩하고 성장시키느냐이다. 체계적인 교육과 명확한 <strong>역량</strong> 개발 경로, 의미 있는 멘토링이 잠재력을 실제 성과로 연결해 준다. 이러한 성장 기반이 없다면 주니어 인력은 기업이 필요로 하는 중급 인재로 성장하기 전에 조직을 떠나게 된다”라고 설명했다.</p>



<p>헬륨 SEO(Helium SEO)의 CTO 폴 드모트(Paul DeMott)는 인재 육성은 신입사원의 첫 출근일부터 새롭게 설계해야 한다고 강조했다.</p>



<p>드모트는 “우리 팀의 주니어 개발자는 새로운 기능을 위해 코드를 한 줄이라도 작성하기 전에 먼저 전체 아키텍처를 설계하고, 이를 시니어 개발자들과 15분 동안 리뷰하며 모든 설계 선택의 이유와 트레이드오프를 설명해야 한다”라며 “주니어 개발자는 자신의 판단을 충분히 입증하기 전까지는 구현을 시작할 수 없다. 이 과정은 문법(syntax)보다 시스템 관점의 사고를 먼저 익히도록 만들며, 이것이 시니어 개발자로 성장하는 사람과 단순 구현 업무에 머무는 사람을 가르는 결정적인 차이”라고 설명했다.</p>



<p>드모트는 지난 1년 반 동안 이러한 방식 덕분에 주니어 개발자의 성장 속도가 빨라졌으며, 실제로 두 명의 주니어 개발자가 중급 개발자로 승진했다고 소개했다.</p>



<p>케레첸은 자사에서는 대학 단계부터 유망한 인재를 적극 발굴해 수년간 함께 프로젝트를 수행한 뒤 주니어 또는 경우에 따라 중급 엔지니어로 채용하고 있다고 밝혔다.</p>



<p>케레첸은 “AI의 잠재력, 특히 주니어 개발자를 대체할 수 있다는 능력에 대해 심각한 오해가 존재한다”라며 “그러한 접근은 서비스 품질과 장기적인 지속 가능성을 해치는 결과를 초래할 수 있다. 주니어 개발자는 우리의 미래를 위한 투자다”라고 말했다.</p>



<p>역량 개발 및 채용 전문 기업 커리어 하이웨이즈(Career Highways)의 CEO 리즈 에버솔(Liz Eversoll)은 조직이 비공식적인 도제식 교육에서 벗어나 역량 중심의 성장 모델을 보다 체계적으로 구축해야 한다고 말했다.</p>



<p>에버솔은 “차세대 시니어 프로그래머는 지금까지와는 다른 방식으로 성장하게 될 것”이라며 “주니어 엔지니어는 AI를 코파일럿처럼 활용해 이전보다 복잡한 업무에도 더 일찍 기여할 수 있다. 다만 이를 위해서는 실제 업무와 학습, 지속적인 평가를 유기적으로 연결하는 성장 경로를 조직이 마련해야 한다”라고 설명했다.</p>



<h2 class="wp-block-heading">생산성이 아니라 ‘판단력’을 키워야 한다</h2>



<p>궁극적인 목표는 주니어 개발자가 시스템을 이해하고 다양한 선택지의 장단점을 판단하며, 궁극적으로는 기술적 의사결정을 주도할 수 있는 경험을 쌓도록 돕는 것이다.</p>



<p>소닉(Sonic)의 전 CIO인 크레이그 밀러는 이러한 경험은 자동화할 수 없다고 강조했다.</p>



<p>밀러는 “이 문제를 제대로 해결하는 조직은 AI가 가져오는 효율성과 체계적인 멘토링, 실제 운영 환경에서의 경험을 균형 있게 결합하고 인재 육성을 장기적인 과제로 바라볼 것”이라며 “차세대 시니어 엔지니어는 저절로 탄생하지 않는다. 체계적인 도제식 교육과 적절한 AI 활용, 실제 운영 환경 경험은 물론, 판단력과 아키텍처 사고, 디버깅 역량, 비즈니스 맥락에 대한 이해를 의도적으로 키워야만 성장할 수 있다”라고 말했다.</p>



<p>팀 빌딩 플랫폼 기업 그로지악(Groziac)의 설립자 레마 로라스(Rema Lolas)는 AI가 기술 역량의 진입 장벽을 낮출 수는 있지만, 사람 간 협업 방식의 중요성은 더욱 커질 것이라고 전망했다.</p>



<p>로라스는 “AI는 기술 역량의 격차를 줄일 수 있지만, 사람의 업무 수행 능력 차이는 오히려 더 크게 만들 것”이라며 “이를 일찍 깨닫는 조직은 더 이상 인재 육성을 단순한 교육 문제가 아니라 시스템 설계의 과제로 접근하게 될 것이다. 구성원의 기술뿐 아니라 함께 일하는 방식과 성과를 내는 방식까지 의도적으로 설계하고 육성하게 될 것”이라고 설명했다.</p>



<p>MS의 스콧 한셀만은 지금 가장 중요한 역량은 AI 프롬프트를 능숙하게 작성하거나 빠르게 코드를 생성하는 능력이 아니라 시스템 사고와 커뮤니케이션 능력이라고 강조했다.</p>



<p>한셀만은 “이 분야에 새롭게 들어오는 사람이라면 시야를 좁게 가져서는 안 된다”라며 “사람들에게 도움을 주고 삶을 더 나아지게 하는 크고 복잡한 시스템을 만드는 일은 결코 상품처럼 대체될 수 없다. 큰 그림을 보는 사고력과 안목, 분별력, 올바른 판단력, 뛰어난 의사소통 능력, 그리고 기본기에 대한 탄탄한 이해가 필요하다. 우버를 이용해 이동한다고 해서 자동차 타이어를 교체하는 방법까지 잊어버리는 것은 아니다”라고 말했다.</p>



<p>업계 리더들은 초기 경력 인재의 성장을 엔지니어링 조직의 핵심 업무로 삼아야 한다고 입을 모은다. 이를 위해서는 주니어 개발자에게 실제 개발 업무를 맡기고, 업무 현장에서 시니어 엔지니어의 즉각적인 지도를 제공하며, AI를 사람을 대체하는 도구가 아니라 학습을 가속하는 도구로 활용해야 한다는 것이다.</p>



<p>커리어 하이웨이즈(Career Highways)의 리즈 에버솔은 “이제 시니어 인재 육성은 채용의 부산물이 아니라 의도적으로 설계한 조직 시스템의 결과”라며 “역량 기반 성장 체계에 투자하는 조직은 인재 파이프라인을 유지하는 데 그치지 않고, 그 성장 속도까지 더욱 높일 수 있을 것”이라고 말했다.<br>dl-ciokorea@foundryco.com</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Is the Android Lock Screen an Illusion? A Critical Logical Bypass Discovered in the Gemini App]]></title>
<description><![CDATA[Image generated by Google GeminiNOTE: As of the publication of this article, the vulnerability has been fully patched, and all coordination regarding disclosure was managed directly with the Google VRP team.Introduction: “Security Architecture vs. The Real World”How can Android’s foundational sec...]]></description>
<link>https://tsecurity.de/de/3638146/hacking/is-the-android-lock-screen-an-illusion-a-critical-logical-bypass-discovered-in-the-gemini-app/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3638146/hacking/is-the-android-lock-screen-an-illusion-a-critical-logical-bypass-discovered-in-the-gemini-app/</guid>
<pubDate>Wed, 01 Jul 2026 12:21:44 +0200</pubDate>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*9_XxbXU5gPX6wrq251_tIg.png"><figcaption>Image generated by Google Gemini</figcaption></figure><p><strong>NOTE:</strong> <em>As of the publication of this article, the vulnerability has been fully patched, and all coordination regarding disclosure was managed directly with the Google VRP team.</em></p><h3>Introduction: “Security Architecture vs. The Real World”</h3><p>How can Android’s foundational security layer, the Keyguard, falter when confronted with the complexity of a modern AI interface? The answer is simple: as systems grow more complex, the impact of overlooked edge cases amplifies.</p><p>In this write-up, I will dissect how a simple multi-touch interaction triggered a critical logical security flaw. I’ll provide the technical details of how this vulnerability bypassed the lock screen — the very boundary designed to be the most secure — and exposed sensitive user data.</p><h3>How I Discovered It</h3><figure><img alt="" src="https://cdn-images-1.medium.com/max/426/1*bfiQwfzmzuTXg4qGaLwLKA.gif"><figcaption><strong>Fig 1: </strong>Demonstration of the Multi-touch Bypass</figcaption></figure><p>I didn’t uncover this vulnerability using automated scanning utilities or complex fuzzing frameworks; rather, it surfaced organically during my daily user experience. I noticed that multi-finger interactions within the user interface triggered benign functions that should have been restricted under specific device states. While an average user might dismiss this behavior as a transient UI glitch, to a security researcher, it signaled a potential flaw.</p><p>Further analysis revealed that invoking specific operational modes, such as Lyria or Deep Research, forced the application into a full-screen state. Initially, interaction was restricted, and the system prompted for credentials. However, applying the multi-touch technique I discovered earlier circumvented these constraints, granting unauthorized access to application settings and chat histories. By expanding the attack surface during my research, I confirmed that critical assets like NotebookLM notebooks and Gmail drafts were equally vulnerable, subsequently documenting and escalating these findings to Google.</p><h3>Technical Analysis</h3><p>Gemini’s modular features bypassed the system Keyguard due to an architectural misconfiguration. The application improperly exposed UI elements that should remain strictly inaccessible while the device is locked. Although the system repeatedly invoked the Keyguard to request authentication during these operations, I successfully bypassed the lock state by leveraging a form of <strong>Context Hijacking</strong>.</p><p>The root cause lies in inadequate validation of concurrent UI interactions. By maintaining an active press on a permitted interaction area (such as a text input field) while simultaneously tapping a restricted target element, the application failed to isolate the input contexts. This race-like UI interaction completely neutralized the application’s internal security control mechanisms, turning a seemingly minor interface bug into a robust logical bypass.</p><a href="https://medium.com/media/e9c63ce92d169f8571147826f68417cf/href">https://medium.com/media/e9c63ce92d169f8571147826f68417cf/href</a><h4><strong>Impact &amp; Exploitation Surface</strong></h4><p>During the initial phase of my research, the exploit vectors were limited to reading, deleting, or renaming historical chats, accessing Gemini’s core settings, and viewing profile data. However, digging deeper into the application’s ecosystem revealed a significantly more severe impact:</p><ul><li><strong>Arbitrary Creation of Gmail and Google Docs Drafts:</strong> Allowing unauthenticated data injection into core Google services.</li><li><strong>Unauthorized Access to NotebookLM:</strong> Exposing proprietary or highly sensitive personal and enterprise data stored within notebooks.</li><li><strong>Gem Execution:</strong> Triggering custom AI agents without owner authentication.</li><li><strong>Destructive Actions:</strong> Permanently deleting critical NotebookLM assets.</li></ul><p>The practical implications of this vulnerability present severe risks, including data exfiltration, advanced social engineering scenarios via unauthorized draft creation, and the compromise of enterprise-grade environments.</p><h3>Coordination and Disclosure Timeline</h3><p>Throughout the lifecycle of this vulnerability, I maintained an active and transparent line of communication with Google’s security team. Shortly after submission, my report was designated as a <strong>“Duplicate,”</strong> tied to an older legacy issue inherent to Android’s core component architecture. Despite my requests for verification regarding the unique interaction vector, the root cause was maintained as identical.</p><p>Nevertheless, I continued my research. Following a subsequent major Gemini update, I verified that the exploit remained active. Upon presenting this evidence, an immediate mitigation was deployed, removing the specific mode buttons from the locked interface. Roughly a month later, a comprehensive patch was pushed, completely resolving the underlying logic flaw. My subsequent regression testing confirmed that unauthorized multi-touch access had been completely mitigated, successfully concluding the lifecycle of the report.</p><h3>Key Takeaways and Conclusion</h3><p>This journey marked my very first experience within the bug bounty ecosystem. Uncovering this logical vulnerability taught me that security research extends far beyond hunting for code flaws; it is about navigating the disclosure process and understanding how even a “duplicate” report can be leveraged to harden a system’s overall security posture. It perfectly illustrated how seemingly decoupled, non-critical components can be chained together to form a high-severity exploit.</p><p>Analyzing Android’s security architecture and engaging with engineering teams on regression analysis during my first research attempt fundamentally shifted my perspective on information security. While this specific report did not yield a financial bounty, the true payout was invaluable: a deep dive into the inner workings of complex enterprise software and the discipline required to execute a responsible disclosure process.</p><p>This experience is merely the opening chapter of my career in security research. It stands as a reminder that no architecture is infallible, but through the vigilance of independent researchers, they can be made resilient. Security is never a static defense; it is a continuous cycle of curiosity, analysis, and refinement.</p><p><strong>NOTE:</strong> All PoC media provided in this article have been redacted to ensure user privacy and are presented solely for educational and security analysis purposes.</p><h3>📌 References &amp; Community</h3><p>If you want to check out my other security research, tools, or open-source projects, feel free to explore the links below:</p><ul><li><strong>GitHub:</strong> <a href="https://github.com/msalihberk/">github.com/msalihberk</a></li><li><strong>Previous Research:</strong> <a href="https://medium.com/meetcyber/shadowlab-a-modular-c2-framework-architecture-built-with-python-for-modern-cybersecurity-research-7acb496e6784">ShadowLab: A Modular C2 Framework Architecture Built with Python for Modern Cybersecurity Research</a></li><li><strong>Follow for More:</strong> Feel free to follow my Medium profile to get notified about my future security research, development projects, and technical write-ups.</li></ul><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=9e7da290ea06" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/gemini-app-logical-lockscreen-bypass-9e7da290ea06">Is the Android Lock Screen an Illusion? A Critical Logical Bypass Discovered in the Gemini App</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[San Diego Charter School Embraces Physical AI With Humanoid Robots]]></title>
<description><![CDATA[A San Diego location of Altus charter schools, which are designed for students who have fallen behind academically, purchased a pair of robots for $500,000 to help with teaching, career planning and translation.]]></description>
<link>https://tsecurity.de/de/3636856/ai-nachrichten/san-diego-charter-school-embraces-physical-ai-with-humanoid-robots/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3636856/ai-nachrichten/san-diego-charter-school-embraces-physical-ai-with-humanoid-robots/</guid>
<pubDate>Tue, 30 Jun 2026 23:03:25 +0200</pubDate>
<content:encoded><![CDATA[A San Diego location of Altus charter schools, which are designed for students who have fallen behind academically, purchased a pair of robots for $500,000 to help with teaching, career planning and translation.]]></content:encoded>
</item>
<item>
<title><![CDATA[Why Identity Security Is Your Cyber Career Entry Point]]></title>
<description><![CDATA[As AI reshapes cybersecurity workflows, John Paul Cunningham, CISO at SIlverfort, says the technology is creating opportunities rather than eliminating jobs — and there are more ways than ever to break into the essential field.]]></description>
<link>https://tsecurity.de/de/3636792/it-security-nachrichten/why-identity-security-is-your-cyber-career-entry-point/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3636792/it-security-nachrichten/why-identity-security-is-your-cyber-career-entry-point/</guid>
<pubDate>Tue, 30 Jun 2026 22:22:52 +0200</pubDate>
<content:encoded><![CDATA[As AI reshapes cybersecurity workflows, John Paul Cunningham, CISO at SIlverfort, says the technology is creating opportunities rather than eliminating jobs — and there are more ways than ever to break into the essential field.]]></content:encoded>
</item>
<item>
<title><![CDATA[Five tools to bolster your AI coding stack]]></title>
<description><![CDATA[Whether you are using an AI code generator, vibe coding, or applying spec-driven development methodologies, your job doesn’t end with AI writing the code. Whether you’re using AI to develop applications, APIs, data pipelines, AI agents, or other automations, writing the code is just one part of t...]]></description>
<link>https://tsecurity.de/de/3635032/ai-nachrichten/five-tools-to-bolster-your-ai-coding-stack/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3635032/ai-nachrichten/five-tools-to-bolster-your-ai-coding-stack/</guid>
<pubDate>Tue, 30 Jun 2026 11:18:27 +0200</pubDate>
<content:encoded><![CDATA[<div>
<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Whether you are using an <a href="https://www.infoworld.com/article/4032989/a-developers-guide-to-code-generation.html">AI code generator</a>, <a href="https://www.infoworld.com/article/4058076/vibe-coding-and-the-future-of-software-development.html">vibe coding</a>, or applying <a href="https://www.infoworld.com/article/4166817/vibe-coding-or-spec-driven-development.html">spec-driven development</a> methodologies, your job doesn’t end with AI writing the code. Whether you’re using AI to develop applications, APIs, <a href="https://www.infoworld.com/article/3487711/the-definitive-guide-to-data-pipelines.html">data pipelines</a>, <a href="https://www.infoworld.com/article/4105884/10-essential-release-criteria-for-launching-ai-agents.html">AI agents</a>, or other automations, writing the code is just one part of the job. Developers must still perform code validation, test applications, automate deployment, and configure infrastructure.</p>



<p>According to <a href="https://www.infoworld.com/article/3831759/developers-spend-most-of-their-time-not-coding-idc-report.html">one survey</a>, only 16% of a developer’s time is spent writing code. The remaining 84% is spent on <a href="https://www.atlassian.com/blog/ai-at-work/beyond-the-jira-board-how-autonomous-workflows-unlock-engineering-velocity">other activities</a> including defining requirements, triaging bugs, and addressing vulnerabilities.</p>



<p>Additionally, while AI code generation speeds up development, it can come at the cost of quality and collaboration. In Atlassian’s <a href="https://www.atlassian.com/blog/state-of-teams-2026">State of Teams 2026</a> survey, nearly 50% of respondents say their AI outputs aren’t reliably high quality and admit that using AI is a compromise between speed and quality. Knowledge workers say the pressure to execute is also problematic, with 87% saying they lack time to coordinate and 70% saying their processes aren’t well-optimized for AI.</p>



<p>So, although AI capabilities have changed drastically in the past few years, code-generation tools are not the only ways <a href="https://www.infoworld.com/article/3993479/what-we-know-now-about-generative-ai-for-software-development.html">AI can improve software development</a>. In fact, developers should seek additional AI capabilities to support the full software development life cycle (SDLC). Here are five recommendations for the AI coding stack. </p>



<h2 class="wp-block-heading">Scale up testing environments</h2>



<p>If coding is faster, development teams should have suitably configured environments that they can use to quickly and easily test changes against real APIs and databases. Testing apps and AI agents against environments that don’t mimic production can slow down development. </p>



<p><a href="https://metalbear.com/mirrord/docs/use-cases/local-development" data-type="link" data-id="https://metalbear.com/mirrord/docs/use-cases/local-development">“Remote + local” development environments</a> (local execution with remote context) are one option to accelerate testing. Developers can code locally on their own physical or virtual machine, but build and deploy to remote instances. Additionally, when developing AI agents, developers need an execution environment, such as secure sandboxes or ephemeral virtual machines.</p>



<p>“GenAI has been a step-change for developer productivity, absorbing the repetitive work of writing boilerplate, tests, and refactors so engineers can focus on intent and design,” says Aviram Hassan, CEO and cofounder at <a href="https://metalbear.com/">MetalBear</a>. “But by compressing the time it takes to produce all of this, genAI has also exposed what’s always been the real bottleneck in the SDLC: the feedback loop against the real world. Validating code and configurations against a realistic cloud environment still depends on the same slow build-and-deploy cycles teams have tolerated for years.”</p>



<p>The goal should be to remove the friction and delays from where developers code to a complete, real-world infrastructure they can use to validate changes. Three tools to review are <a href="https://metalbear.com/mirrord/">mirrord</a>, <a href="https://www.signadot.com/">Signadot</a>, and <a href="https://telepresence.io/">Telepresence</a>.</p>



<h2 class="wp-block-heading">Validate the AI-generated code</h2>



<p>At a recent <a href="https://drive.starcio.com/coffee-with-digital-trailblazers/">Coffee With Digital Trailblazers</a> LinkedIn Live event that I hosted on <a href="https://drive.starcio.com/podcast/ai-coding-competencies-hype-realities-and-the-future/">AI coding competencies</a>, one speaker shared how he quickly went from a short spec to more than 10,000 lines of AI-generated code. He admitted he didn’t have the time, expertise, or tools to validate the code. He’s not alone. In Sonar’s <a href="https://www.sonarsource.com/resources/developer-survey-report/">State of Code Developer Survey</a>, 96% of developers don’t fully trust AI’s output, but only 48% always verify it before committing.</p>



<p>“Agentic software development is generating code faster than any team can manually review it, but speed without confidence only results in technical debt,” says Scott Sanders, corporate vice president of engineering at <a href="https://www.sonarsource.com/">Sonar</a>. “What’s needed to avoid this is an automated independent verification layer embedded directly into the development workflow—one that unifies code quality and code security into a single, deterministic platform to deliver actionable intelligence before code ever reaches the repository.”</p>



<p>A big concern is that AI-generated code can produce 1.4 times as many critical issues as code created by developers, according to CodeRabbit’s <a href="https://www.coderabbit.ai/blog/state-of-ai-vs-human-code-generation-report">State of AI Versus Human Code Generation Report</a>. Top issues include code readability, cross-site scripting, code formatting errors, and incorrect concurrency control.</p>



<p>Another challenge is that 82.4% of AI tools originate from third-party packages, according to Snyk’s <a href="https://snyk.io/lp/state-of-agentic-ai-adoption/">2026 State of Agentic AI Adoption</a>. The implication is that development teams have much more code to validate than they develop themselves, whether by humans or AI code generators.</p>



<p>“When tools like Cursor are installing dependencies and running actions on a developer’s behalf, they can unintentionally pull in malicious or unvetted packages,” says Randall Degges, vice president of AI engineering and developer relations at <a href="https://snyk.io/">Snyk</a>. “That’s why techniques like intercepting tool calls, validating inputs and outputs, enforcing least-privilege access, and isolating credentials are becoming foundational to how AI-driven development systems operate. Without security embedded directly into the agent loop, teams risk shipping faster into more exposure, not less.”</p>



<p>According to Qodo’s report on <a href="https://www.qodo.ai/resources/the-ai-coding-paradox/">The AI Coding Paradox</a>, 89% of enterprise engineering teams have experienced an AI-generated code incident and have had a production outage caused by AI-generated code. Development teams building a large portfolio of AI agents or heavily relying on AI code-generation capabilities may want to look at AI code-review tools that provide more contextual analysis than basic static code review tools.</p>



<p>“Current AI coding assistants suffer from a severe amnesia problem, and each session starts without memory of an organization’s unique context, subjective standards, and business logic,” says Itamar Friedman, CEO and cofounder at <a href="https://qodo.ai/">Qodo</a>. “To safely scale AI, it requires integrating stateful systems equipped with persistent organizational memory that continuously learn from past pull requests and automatically enforce enterprise-specific governance. Ultimately, developers need tools that ensure code is guided by continuously learning organizational experience rather than just raw machine-generated code.”</p>



<p>Tools to review include static application security testing (SAST), software composition analysis (SCA), software bill of materials (SBOM), and AI code review tools.</p>



<h2 class="wp-block-heading">Security and end-to-end testing</h2>



<p>Even when AI-generated code passes all the tests, how can devops teams validate whether it meets business and <a href="https://www.infoworld.com/article/4061123/how-to-write-nonfunctional-requirements-for-ai-agents.html">non-functional technical requirements</a>? Many devops teams have invested in <a href="https://www.infoworld.com/article/3705049/3-ways-to-upgrade-continuous-testing-for-generative-ai.html">continuous testing</a>, and some support <a href="https://www.infoworld.com/article/3663055/are-you-ready-to-automate-continuous-deployment-in-cicd.html">continuous deployment</a>, but the underlying assumptions behind those practices are being challenged now by who is coding and how much code is being generated. </p>



<p>Some spec-driven development platforms aim to bridge the gap. Tools like <a href="https://docs.appian.com/suite/help/26.4/plan-view.html">Appian Composer</a> and <a href="https://www.sap.com/products/artificial-intelligence/joule-studio.html">SAP Joule Studio 2.0</a> generate product requirements documents (PRDs) before coding, enabling the introduction of business acceptance criteria. These tools create knowledge graphs from the business processes implemented on their platforms and provide environments for validating AI agents before deployment.</p>



<p>“For most organizations, the AI code-generation methodology question matters less than the verification question,” says Gal Vered, CEO and cofounder at <a href="https://checksum.ai/">Checksum.ai</a>.  “Whether your team is prompting from intent or working from specs, AI-generated code still needs to be validated against a production environment before it ships.”</p>



<p>Beyond functional testing, developers must look at new security concerns, especially as AI agents integrate with <a href="https://www.infoworld.com/article/4124612/5-requirements-for-using-mcp-servers-to-connect-ai-agents.html">Model Context Protocol servers</a>. “Most teams are stacking generation tools on top of review tools and on top of testing tools, but without security validation embedded at every stage, you’re just automating the path to your next breach,” says Harshit Agarwal, CEO at <a href="https://www.appknox.com/">Appknox</a>. “Mature teams treat security feedback as a non-negotiable part of the build loop, running automated checks continuously rather than catching issues after the fact.”</p>



<h2 class="wp-block-heading">Add observability tools </h2>



<p>Developers save an average of 3.6 hours per week with AI coding tools, <a href="https://getdx.com/blog/ai-assisted-engineering-q4-impact-report-2025/#developers-save-an-average-of-36-hours-per-week-with-ai-coding-tools">according to one report</a>, and the more experienced engineers achieve the largest productivity gains.</p>



<p>What’s one way to blow these savings? When defects get pushed to production, it’s often the <a href="https://www.infoworld.com/article/3689881/career-paths-for-devops-engineers-and-sres.html">site reliability engineers</a> and senior developers who are left to triage and resolve the issue. Establishing <a href="https://www.infoworld.com/article/3686056/best-practices-for-devops-observability.html">observability practices</a> as a <a href="https://drive.starcio.com/2025/01/important-devsecops-non-negotiables/">devops non-negotiable</a> is a development investment that pays off significantly to help diagnose issues, resolve errors, and improve performance.</p>



<p>“In data and AI systems, even small changes like model updates, tool decisions, or shifts in data flow can silently cascade into issues no one anticipated, and the AI agent has no way to know that,” says Barr Moses, cofounder and CEO at <a href="https://www.montecarlodata.com/">Monte Carlo</a>. “Leading teams are addressing this by embedding observability across the entire agentic stack, particularly at precommit checkpoints, so agents can surface the true impact of changes before they go live.”</p>



<p>While many devops teams have mature observability practices for APIs, applications, and data integrations, <a href="https://www.infoworld.com/article/4140832/7-safeguards-for-observable-ai-agents.html">observability practices for AI agents</a> are relatively new. One technique to consider is <a href="https://www.montecarlodata.com/blog-best-ai-observability-tools/">AI tracing platforms</a> with notation queues for human review and <a href="https://www.evidentlyai.com/llm-guide/llm-as-a-judge">LLM-as-judge</a> evals. A second option is to implement an <a href="https://startupstash.com/top-ai-gateways/">AI gateway</a> with observability, caching, routing, and cost-tracking capabilities.</p>



<h2 class="wp-block-heading">Develop reusable agent skills</h2>



<p>One last element of the AI stack, especially for organizations heavily investing in AI agent development, is to adopt best practices for developing reusable skills embedded in code-generating tools.</p>



<p>“A key emerging pattern is purpose-built AI skills: reusable, scoped instructions that give agents deep context for specific tasks, rather than relying on general-purpose prompting alongside antagonist agents that challenge other agents’ outputs,” says Phillip Goericke, CTO of <a href="https://www.nmi.com/">NMI</a>. “The defining shift is that developers are no longer writing code with AI assistance—they’re architecting the systems that produce and validate it.”</p>



<p>Development organizations that leverage code-generation tools are recognizing that coding is just one part of delivering <a href="https://drive.starcio.com/2026/02/why-chaotic-ai-experiments-arent-producing-business-value/">business value from AI</a> and <a href="https://www.infoworld.com/article/4105884/10-essential-release-criteria-for-launching-ai-agents.html">resilient AI agents</a>. Developing AI skills and establishing an AI stack are steps toward scaling to a dependable AI software development life cycle.</p>
</div></div></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Ex-Governors, Big Tech Launch Coalition To Help Workers 'Navigate the AI Economy']]></title>
<description><![CDATA["Amid growing public anger over A.I. and a debate over how to regulate it, a group of employers, state governors and foundations has raised $500 million to try to answer some of those questions themselves," reports the New York Times. 


"Just how many jobs will AI upend?" asks the Wall Street Jo...]]></description>
<link>https://tsecurity.de/de/3633923/it-security-nachrichten/ex-governors-big-tech-launch-coalition-to-help-workers-navigate-the-ai-economy/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3633923/it-security-nachrichten/ex-governors-big-tech-launch-coalition-to-help-workers-navigate-the-ai-economy/</guid>
<pubDate>Mon, 29 Jun 2026 21:52:27 +0200</pubDate>
<content:encoded><![CDATA["Amid growing public anger over A.I. and a debate over how to regulate it, a group of employers, state governors and foundations has raised $500 million to try to answer some of those questions themselves," reports the New York Times. 


"Just how many jobs will AI upend?" asks the Wall Street Journal, reporting that the new coalition says it's time to ready the U.S. workforce for a "major" disruption — no matter how large it turns out to be. The coalition "has so far raised more than $500 million — about half of its multiyear goal — from companies and nonprofit groups. It will initially work with state governments in Arkansas, Maryland, Utah and Connecticut. OpenAI and Anthropic are also involved, and academics including MIT economist David Autor sit on an advisory board."

[The new "RAISE US" coalition] will be led by former Commerce Secretary Gina Raimondo, who served under former President Joe Biden, and former Indiana Gov. Eric Holcomb, a Republican. Its mandate, they said, isn't just to build retraining programs but also to reconsider decades-old policies such as unemployment insurance and act as a working lab for testing the most effective ways to transition workers to new fields. The group will explore corporate incentives for employers to hold on to workers whose jobs are disrupted by AI and prep them for new roles... The mission of the group is to "pull all the levers at once," Raimondo said. That means teaming up with employers to find ways to help workers gain skills or new roles and joining with educators to roll out different types of training. It also plans to propose policy changes such as tweaking unemployment benefits to let displaced workers continue to get them while they, for instance, start new businesses with AI... In Maryland, the group plans to expand a service-year option in the state to help people gain exposure to such growing fields as healthcare. An effort in Arkansas will focus on supporting "an AI-powered career navigation platform." 


More from New York Times:

The organization will work primarily with governors... The theory: States generally control their community college systems, which can translate work force policy through course offerings and industry partnerships. The bulk of the budget will fund pilot programs overseen by about 15 staff members and consultants. For example, Maryland will expand a "service year" for recent high school graduates to provide experience in fields where there are shortages, such as health care. In other states, Raise Us hopes to offer "wage insurance" for workers who take lower-paying jobs rather than dropping out of the work force entirely. 

The group plans to furnish technical assistance for companies that want to retain workers as A.I. changes their roles, rather than eliminating them. Microsoft, one of the companies backing the organization, said it had already found a promising model: cross-training its entry-level lawyers in different parts of the organization and equipping them with A.I. skills in order for them to be repositioned as technology evolves. "You can think of doing that with almost any job we have," said Brad Smith, vice chair and president at Microsoft. "It creates an opportunity to transfer people from jobs that are being eliminated to jobs that are being created...." 

Ms. Raimondo and her colleagues are not fans of a universal basic income, an idea that has gained popularity in Silicon Valley as an answer to job disruption. They emphasize that work provides more than just wages, and plan to focus on helping people find pathways to new jobs. But it's unclear whether A.I. will create jobs at the rate that it will destroy them. Jack Malde studied work force policy for the Bipartisan Policy Center and is now going to work for the Windfall Trust, another A.I.-focused think tank. He said long-term income support might be necessary, even if better models for transitioning workers were found. "The truth is, there's still a lot of uncertainty," Mr. Malde said. "What we think is resilient now might not be resilient later. We're not going to get everything right, so we're going to need those strong safety-net programs." 

Long-time Slashdot reader theodp writes:
If you think you've seen this movie before, prior to "partnering with governors, employers, and training partners to help the American workforce make a successful transition to an AI economy" with RAISE US, Raimondo and Holcomb partnered with governors, employers and training partners to help U.S. K-12 students make a successful transition to a CS economy with the Governors for Computer Science coalition.
<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Ex-Governors%2C+Big+Tech+Launch+Coalition+To+Help+Workers+'Navigate+the+AI+Economy'%3A+https%3A%2F%2Fyro.slashdot.org%2Fstory%2F26%2F06%2F29%2F0548210%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fyro.slashdot.org%2Fstory%2F26%2F06%2F29%2F0548210%2Fex-governors-big-tech-launch-coalition-to-help-workers-navigate-the-ai-economy%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://yro.slashdot.org/story/26/06/29/0548210/ex-governors-big-tech-launch-coalition-to-help-workers-navigate-the-ai-economy?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Google Says These 3 AI Tools Can Help You Find and Land Your Next Job]]></title>
<description><![CDATA[Google says Career Dreamer, NotebookLM, and Gemini Live can help job seekers explore career paths, tailor applications, and practice interviews.]]></description>
<link>https://tsecurity.de/de/3633276/it-nachrichten/google-says-these-3-ai-tools-can-help-you-find-and-land-your-next-job/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3633276/it-nachrichten/google-says-these-3-ai-tools-can-help-you-find-and-land-your-next-job/</guid>
<pubDate>Mon, 29 Jun 2026 17:19:22 +0200</pubDate>
<content:encoded><![CDATA[Google says Career Dreamer, NotebookLM, and Gemini Live can help job seekers explore career paths, tailor applications, and practice interviews.]]></content:encoded>
</item>
<item>
<title><![CDATA[How to keep your IT talent pipeline from collapsing]]></title>
<description><![CDATA[The transformative lure of AI is rapidly pushing IT leaders’ talent pipelines toward more of a crossroads than many may fully want to admit.



The traditional approach of growing IT expertise in-house from entry-level positions is being challenged by a combination of skills-demand shifts toward ...]]></description>
<link>https://tsecurity.de/de/3632581/it-security-nachrichten/how-to-keep-your-it-talent-pipeline-from-collapsing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3632581/it-security-nachrichten/how-to-keep-your-it-talent-pipeline-from-collapsing/</guid>
<pubDate>Mon, 29 Jun 2026 12:09:08 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>The transformative lure of AI is rapidly pushing IT leaders’ talent pipelines toward more of a crossroads than many may fully want to admit.</p>



<p>The traditional approach of growing IT expertise in-house from entry-level positions is being challenged by a combination of skills-demand shifts toward AI experience and the replacement of entry-level roles in favor of AI automation.</p>



<p>Employment among early-career workers, ages 22 to 25, in the most AI-exposed occupations has fallen 16% since the introduction of ChatGPT in late 2022, according to a widely cited <a href="https://digitaleconomy.stanford.edu/publication/canaries-in-the-coal-mine-six-facts-about-the-recent-employment-effects-of-artificial-intelligence/" rel="nofollow">study from Stanford’s Digital Economy Lab</a>. For entry-level software developers, the drop was nearly 20%. As the pool of talent with early-career IT pros with hands-on experience shrinks, IT leaders are likely to face stiffer challenges filling more vital midlevel roles down the road.</p>



<p>Looking forward, some IT leaders believe replacing junior engineers and other entry-level IT roles with AI to cut costs will eventually backfire, leaving companies short of experienced staff who can tackle difficult problems and design scalable solutions.<br><br></p>



<p>According to a recent <a href="https://www.gartner.com/en/newsroom/press-releases/2026-05-05-gartner-says-autonomous-business-and-artificial-intelligence-layoffs-may-create-budget-room-but-do-not-deliver-returns" rel="nofollow">Gartner survey of global business executives</a>, organizations that automated aspects of their businesses and reduced their workforces aren’t seeing returns from those supposed efficiencies. What has improved the bottom line? Investing in new roles, upskilling, and systems that amplify the capabilities of staff so they can supervise and grow autonomous work.</p>



<p>Moreover, the Gartner report forecasts that autonomous business practices will require more staff, not less, over the next two to three years, leading to a net positive in job growth as people are hired to manage those efforts.</p>



<p>Yet, in the short term, investors are rewarding companies that make AI-related workforce reductions. And many executives are pushing for the same. So how are CIOs and other leaders planning to build the necessary skills for future success by creating a pathway for middle- and senior-level IT talent?</p>



<h2 class="wp-block-heading">‘Early in context’</h2>



<p>In response to this downward trend in early career hiring, Microsoft’s Mark Russinovich and Scott Hanselman penned an <a href="https://dl.acm.org/doi/10.1145/3779312">article</a> that pushes back on this trend. They propose bringing in early-career programming talent and pairing them with experienced mentors on product teams, where they can help new hires identify — and solve — real-world problems that AI might miss.</p>



<p>In the article, the Microsoft execs noted that experienced programmers found dozens of problems in AI-generated code that appeared to work correctly. They also pointed to the risk of “cognitive debt,” citing MIT research that found reduced brain activity among people relying heavily on AI for writing tasks.</p>



<p>“While agents can speed up workflows and reduce manual effort, they lack the intuition to anticipate edge cases and build robust solutions,” the authors wrote. “Relying too much on AI risks missing subtle bugs, architectural flaws, and vulnerabilities that only skilled engineers can catch. Human oversight, critical thinking, and domain knowledge are indispensable for both correcting errors and driving innovation as technology progresses.”</p>



<p>Hanselman, vice president and member of technical staff at Microsoft, argues that software development isn’t simply a matter of writing code. Senior engineers, he notes, have experience in what works, what fails, what can break in production, and what elegant design looks like — and how to scale it. AI can increase output, but it does not help a new developer learn this sort of judgment.</p>



<p>“When you say early in career, it’s actually early in context — junior devs are missing context,” he says. “The way that we develop good taste is through failing in a safe place. And right now, companies hire juniors, throw them at a problem, chew them up and spit them out — and that’s the wrong way to do it.”</p>



<h2 class="wp-block-heading">A new mentorship model</h2>



<p>Hanselman suggests, instead of slashing roles for junior programmers, companies should be creating systems that help them develop the skills necessary to become valued senior contributors in the future.</p>



<p>He proposes adopting a mentorship approach called a “preceptorship,” borrowed from the medical field, where senior engineers are explicitly responsible for helping juniors gain experience and develop good judgment. Hanselman’s wife is a nurse and preceptor, and her experience helped spur the idea.</p>



<p>“The preceptorship acknowledges that a nurse has passed the board,” he explains. “They’ve joined the company. It’s their first day on the job. They are qualified to be there. They are supposed to be there — but they’re missing context.”</p>



<p>Technology companies need a similar model, he argues, where programmers are allowed to learn, not just produce, from experienced mentors: “We need high communicators, with high agency — kind individuals who will invest in the future.”</p>



<p>He contrasts this practical, real-world mentoring approach with a coding boot camp.</p>



<p>“What do people do in boot camps? They wash out,” he says. “You couldn’t hack it. A preceptorship is a relationship between a senior engineer, who has your best interest at heart and is going to help you become a better AI-augmented software engineer — not a vibe coder. We’re not vibing into production. We are using the powerful tools that have been developed to create high-quality software with good taste and with good discernment at scale.”</p>



<h2 class="wp-block-heading"><a></a>A talent gap in the making</h2>



<p>Companies that eliminate junior roles because AI can do some entry-level tasks may see improved short-term output while weakening their future technical capabilities. Tech executives say a lack of investment in early career hiring will show up in the future as a dearth of leadership and institutional knowledge, as well as a reduction in product quality and the ability to effectively manage and oversee code or other work created with AI.</p>



<p>“Senior engineers are built through exposure to real systems, not just writing code,” says Craig Miller, former CIO of fast-food chain Sonic, now a consultant, board advisor, and author. “They need to understand how things scale, how they break, and how decisions impact the business. That experience cannot be automated.”</p>



<p>Reducing junior developer roles should be seen as a long-term capability risk instead of a budget efficiency, says Macaire Montini, vice president of people and culture at cloud-based HR software company HiBob.</p>



<p>“The decline in junior developer roles isn’t just an employment trend,” Montini says. “It’s a long-term pipeline problem that technology leaders should treat with the same urgency as any infrastructure risk. If you stop bringing in early-career talent, you don’t just have a gap today — you have a leadership drought in five years.”</p>



<p>Zsolt Kerecsen, CTO at Graphisoft, argues that replacing early-career staff with AI hurts staff growth and undercuts an organization’s ability to manage autonomous capabilities. CIOs should treat early-career hiring as an investment in future delivery quality, system oversight, and AI governance, he says.</p>



<p>“Experienced developers are needed to train AI and validate its outputs,” he says. “That’s why trying to substitute juniors with AI is a fundamentally flawed approach. Instead, AI should be used — guided by seniors — to support junior developers and help them become seniors more quickly.”</p>



<p>Miller says the reduction in early career hiring is just one sign of a broader issue of “slow decay,” where current tech staff aren’t training their replacements. He points to other indications of a future talent crisis: “Decline in CS enrollments as prospective students respond to deteriorating job market signals, which could produce a senior engineer shortage in 5 to 10 years even as AI reduces demand for entry-level workers today. The real risk is not that AI will eliminate the need for developers. It’s that companies will eliminate the early learning ground that has always produced great ones.”</p>



<h2 class="wp-block-heading">Filling the pipeline</h2>



<p>With early-career roles evolving quickly, experts advise CIOs to take a more intentional approach to hiring and training IT talent, programmers in particular — one that uses AI to help junior staff become better, faster, instead of replacing them.</p>



<p>AI may enable junior developers to take on more advanced tasks earlier, Montini says, but they still need mentoring and structured guidance to become experienced contributors.</p>



<p>“We believe the answer isn’t just hiring,” Montini says. “It’s how you onboard and develop early-career talent once they’re through the door. Structured training, clear skill development pathways, and meaningful mentorship are what actually close the gap between potential and performance. Without that scaffolding, junior hires churn before they become the midlevel talent you need.”</p>



<p>Paul DeMott, CTO at Helium SEO, says organizations should rethink talent development from a new hire’s first day.</p>



<p>“Before a junior developer on our team writes a single line of code on any new feature, they have to propose the full architecture for it, present it in a 15-minute review with the senior team, and explain every tradeoff they considered,” he says. “The junior does not implement anything until they defend those decisions. This process forces systems thinking before syntax thinking, which is exactly what separates a developer who grows into senior roles from one who stays at the execution layer indefinitely.”</p>



<p>In the past year and a half, DeMott says, that process has helped junior hires rise more quickly through the ranks, with two junior developers promoted to midlevel roles.</p>



<p>Kerecsen says his company actively seeks out junior talent at the university level, works with them for several years, then brings them on as junior or potentially midlevel engineers.</p>



<p>“There is a concerning misunderstanding about AI’s potential, especially regarding its ability to replace junior developers,” Kerecsen says. “It is actually disastrous for delivery quality and long-term sustainability. Junior developers are an investment in our future.”</p>



<p>Liz Eversoll, CEO of upskilling and recruitment company Career Highways, says organizations should move from informal apprenticeship to a more intentional model for skills-based growth.</p>



<p>“The next generation of senior programmers will be developed differently,” Eversoll says. “Junior engineers can now contribute to higher-complexity work earlier by using AI as a copilot, but that only works if organizations provide pathways that connect real work, learning, and continuous assessment.”</p>



<h2 class="wp-block-heading"><a></a>Building judgment, not just output</h2>



<p>The goal is to help junior developers gain the kind of experience that allows them to understand systems, weigh tradeoffs, and eventually guide technical decisions.</p>



<p>Former Sonic CIO Miller says that kind of experience cannot be automated.</p>



<p>“The organizations that get this right will balance AI-driven efficiency with structured mentorship and real-world exposure, treating talent development as a long-term priority,” Miller says. “The next generation of senior engineers will not emerge accidentally. They will have to be built through structured apprenticeship, guided use of AI, real exposure to production environments, and deliberate development of judgment, architecture thinking, debugging discipline, and business context.”</p>



<p>Rema Lolas, founder of team-building platform Groziac, says AI may make technical skills more accessible, but it will also put more pressure on how people work together.</p>



<p>“AI may level the technical playing field, but it will amplify the differences in human performance,” Lolas says. “The organizations that recognize this early will stop treating development as a training problem, and start treating it as a system design challenge — where people are intentionally developed not just in skill, but in how they operate and perform together.”</p>



<p>Microsoft’s Hanselman says the skills that matter most today are not just AI prompt fluency or the ability to generate code quickly, but systems thinking and communication.</p>



<p>“So for the young person who’s coming into this, you can’t have blinders on,” he says. “Making large, interesting systems that help people and make their lives better — that is not being commoditized. You need big-picture thinking, taste, discernment, good judgment, good communication skills, and a rock-solid understanding of the basics. Just because I’m riding around in an Uber doesn’t mean that I don’t know how to change a tire.”</p>



<p>Tech leaders say organizations need to make early-career growth a core part of engineering work. That means giving junior staff real programming work, in-the-moment senior guidance and AI support that accelerates learning without replacing it.</p>



<p>“Ultimately, developing senior talent is no longer a byproduct of hiring, it’s the result of deliberate infrastructure,” Eversoll says. “Organizations that invest in skills-based progression systems will not only sustain their pipeline, but accelerate it.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[CW@60: An award-winning, ZX81-frisbee-throwing tech journalism career]]></title>
<description><![CDATA[On 22 September 2026, Computer Weekly turns 60. To mark the milestone, we asked our industry contacts - and our journalists - for their perspectives on how tech has changed their lives over six decades]]></description>
<link>https://tsecurity.de/de/3632152/it-nachrichten/cw60-an-award-winning-zx81-frisbee-throwing-tech-journalism-career/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3632152/it-nachrichten/cw60-an-award-winning-zx81-frisbee-throwing-tech-journalism-career/</guid>
<pubDate>Mon, 29 Jun 2026 09:03:19 +0200</pubDate>
<content:encoded><![CDATA[On 22 September 2026, Computer Weekly turns 60. To mark the milestone, we asked our industry contacts - and our journalists - for their perspectives on how tech has changed their lives over six decades]]></content:encoded>
</item>
<item>
<title><![CDATA[Students Around the World are Using AI-Powered Smart Glasses to Cheat on Tests]]></title>
<description><![CDATA[Students are using AI-powered smart glasses to cheat on tests, reports CNN. "And in East Asia's test-obsessed societies, where a single exam could impact the trajectory of a student's future career and social status, educators are scrambling to get ahead of the problem."


Already, countries are ...]]></description>
<link>https://tsecurity.de/de/3631292/it-security-nachrichten/students-around-the-world-are-using-ai-powered-smart-glasses-to-cheat-on-tests/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3631292/it-security-nachrichten/students-around-the-world-are-using-ai-powered-smart-glasses-to-cheat-on-tests/</guid>
<pubDate>Sun, 28 Jun 2026 18:53:13 +0200</pubDate>
<content:encoded><![CDATA[Students are using AI-powered smart glasses to cheat on tests, reports CNN. "And in East Asia's test-obsessed societies, where a single exam could impact the trajectory of a student's future career and social status, educators are scrambling to get ahead of the problem."


Already, countries are stepping up inspections for test-takers. For China's grueling annual college entrance exam earlier this month — which more than 10 million hopefuls take each year — authorities required screening of all glasses. In the United Kingdom, the head of England's exam watchdog warned earlier this month that AI glasses and smart devices like earpieces could worsen cheating in exams... [T]wo incidents in South Korea were the country's first reported cases of cheating with AI glasses... In Taiwan, the university where a prospective student was caught cheating is now reviewing rules and standard operating procedures for AI eyewears during examinations. 

But experts worry these individual cases point to a more widespread issue. "If we're seeing a few cases being reported, we're seeing a lot more cases not being reported," said Thomas Corbin, lecturer at Deakin University in Australia, who has conducted research around the usage of AI-powered glasses and other smart devices in academic assessment. With the rapid development of AI technology, however, smart glasses are becoming slimmer, less noticeable, while integrating AI models that can operate independently with connectivity, raising concerns not only about exam integrity, but also about broader privacy risks... "Wearable AI is as much of a challenge to exams as ChatGPT was to essays in 2022 and I just don't think there is any real way that we can reliably have exam practices moving forward," Corbin said.


<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Students+Around+the+World+are+Using+AI-Powered+Smart+Glasses+to+Cheat+on+Tests%3A+https%3A%2F%2Fnews.slashdot.org%2Fstory%2F26%2F06%2F27%2F1926233%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fnews.slashdot.org%2Fstory%2F26%2F06%2F27%2F1926233%2Fstudents-around-the-world-are-using-ai-powered-smart-glasses-to-cheat-on-tests%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://news.slashdot.org/story/26/06/27/1926233/students-around-the-world-are-using-ai-powered-smart-glasses-to-cheat-on-tests?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Claude Code turned every engineer into three. Now companies need more product thinkers]]></title>
<description><![CDATA[Anthropic recently told its growth team to hire more product managers, not fewer. The reason, as reported in industry coverage, was that Claude Code had quietly turned its engineering org into a team that ships at roughly three times its actual headcount, and the bottleneck moved from the integra...]]></description>
<link>https://tsecurity.de/de/3630129/it-nachrichten/claude-code-turned-every-engineer-into-three-now-companies-need-more-product-thinkers/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3630129/it-nachrichten/claude-code-turned-every-engineer-into-three-now-companies-need-more-product-thinkers/</guid>
<pubDate>Sat, 27 Jun 2026 21:47:31 +0200</pubDate>
<content:encoded><![CDATA[<p>Anthropic recently told its growth team to hire more product managers, not fewer. The reason, as reported in industry coverage, was that Claude Code had quietly turned its engineering org into a team that ships at roughly three times its actual headcount, and the bottleneck moved from the integrated development environment (IDE) to the people deciding what to build.</p><p>That detail is easy to miss in the noise of every <a href="https://venturebeat.com/orchestration/vibe-coding-can-build-your-pipeline-it-cant-explain-it-six-months-later">AI productivity claim</a>. It is also the structural shift the rest of the industry is now living through. The bottleneck in software is no longer typing. It is deciding what to type. And the engineers who treat that as someone else's problem are about to plateau. </p><p>For most of the last decade, that decision sat with someone else. <a href="https://venturebeat.com/technology/agentic-ai-solved-coding-and-exposed-every-other-problem-in-software-engineering">Software engineering</a> was a craft you absorbed slowly, then practiced in a long, predictable sequence: Dive deep on the technology, write the code, ask Stack Overflow when stuck, escalate to a senior engineer when Stack Overflow failed, ship the ticket. The product manager owned the funnel. The engineer owned the build. Both sides treated this division as physics.</p><p>Then the funnel collapsed in five steps.</p><h2><b>A short history of how the engineer's day got compressed</b></h2><p><b>The Stack Overflow era (2014 to late 2022): </b>The way engineers thought lived in one place. But new monthly questions on Stack Overflow are now down <a href="https://www.reddit.com/r/programming/comments/1hwg2px/stackoverflow_has_lost_77_of_new_questions/">roughly 77%</a> since November 2022, which was not coincidentally when ChatGPT launched. The drop is not a referendum on the site. It is a referendum on the workflow it represented.</p><p><b>The browser-tab era (late 2022 to 2024):</b> The first ChatGPT generation sat outside the IDE. Engineers ran the same loop they had always run, just with a faster oracle: Write a prompt in a browser, paste the answer back into VS Code, repeat. The work was still single-threaded and engineer-driven. The leverage was real but local.</p><p><b>The IDE-native era (2024 to 2025):</b> Cursor and Claude Code moved the model inside the editor and gave it access to the full repository. The senior-engineer escalation path largely dissolved. For years, the prevailing wisdom among veteran engineers was that Bash had the longest shelf life of any tool in the stack. By 2026, for a meaningful share of working developers, the first command typed in a fresh terminal is claude.</p><p><b>The spec-driven era (2025 to 2026):</b> Larger context windows turned single-session work into something that previously required tickets, design docs, and sprints. Amazon's Kiro IDE team reportedly compressed feature builds from two weeks to two days using the same spec-driven workflow they were shipping. An AWS engineering team described an 18-month rearchitecture, originally scoped for 30 engineers, was completed by 6 people in 76 days. The bottleneck stopped being how long it takes to write the code. It started being how clearly the team can describe what correct looks like.</p><p><b>The routines era (2026):</b> In April, Anthropic shipped Claude Code Routines: Scheduled, persistent agents that run on a cadence, on a webhook, or overnight while the laptop is closed. Cron came back. Hooks came back. The engineer's job is now part orchestration: Spin up a swarm before bed, review a stack of pull requests in the morning. Third-party wrappers like OpenClaw, which was briefly suspended by Anthropic in April before partial reinstatement, made the same point from the open-source side.</p><h2><b>The bottleneck moved; most teams have not</b></h2><p>Engineering has roughly tripled. Product management has not budged. The traditional 1:8 ratio of PMs to engineers, already strained, now plays out closer to an effective 1:20 because each engineer ships more per day. For instance, LinkedIn replaced its associate product manager track with a "Product Builder" program that trains generalists across product, design, and engineering. Anthropic is hiring more PMs, not fewer. The pattern is consistent across companies that have actually deployed agentic workflows in production: The system is producing built features faster than it is producing decisions about what should be built.</p><p>For engineers, this is the most important career signal of the decade, and the easiest one to miss while the productivity stories dominate the feed.</p><h2><b>First principles matter more, not less</b></h2><p>The instinct to declare fundamentals obsolete in the agent era gets the trend exactly wrong.</p><p>When a memory leak takes down production at 3 a.m., and the cause turns out to be a subtle ownership bug pushed 4 years ago, no agent currently in the wild closes that loop end-to-end. Operating systems, networks, concurrency, and query plans still decide who can resolve a real incident. They also decide who can spot the moments when an <a href="https://venturebeat.com/technology/why-prompt-debt-retrieval-debt-and-evaluation-debt-are-quietly-reshaping-enterprise-ai-risk">agent's output</a> looks correct on the surface and is quietly, expensively, wrong underneath. The agent that wrote 70% of the code in a modern repo cannot reliably tell anyone where its assumptions about thread safety, memory ownership, or transaction isolation diverged from the runtime. The engineer who can read the diff and catch that is the engineer the rest of the team needs in the room, and that engineer is built on fundamentals, not on prompting skill.</p><p>The corollary is that fundamentals are now a leverage skill, not a hygiene skill. In 2014, knowing how a TCP retransmit worked got a debug ticket closed faster. In 2026, the same knowledge keeps an entire agent-driven release pipeline from shipping a regression at scale. The blast radius of the engineer who knows what is happening underneath has gone up, not down.</p><h2><b>Review is the new writing</b></h2><p>Engineers in 2026 generate code at a rate that exceeds what any of them can read carefully. The team that ships fast and survives is the team whose engineers treat reviewing AI-generated code with at least the same rigor they once reserved for writing it. The 2025 <a href="https://survey.stackoverflow.co/2025">Stack Overflow developer survey</a> put 84% of developers on AI tools, with 46% saying they do not trust the output, up sharply from 31% the year before. That gap, heavy use paired with low trust, is exactly where review skills now matter most. Coders who push lots and review little are accumulating a debt that will come due during the first real incident, and the engineer who can pay it back is the one who paired their volume with deep first-principles knowledge of the systems involved.</p><h2><b>The new differentiator is the product funnel</b></h2><p>Both of those are necessary. Neither is sufficient. The engineer who matters in 2026 is the one who has stopped waiting for the funnel to arrive in the form of a Jira ticket.</p><p>That means doing things the role was historically allowed to skip.</p><p>Talk to customers. Watch how they actually use the product. Read the support queue. Sit in on the sales call. The signal a product team gets through three layers of summary, an engineer can now get firsthand in an afternoon.</p><p>Generate ideas, not just estimates. The product manager who used to source ideas for 8 engineers cannot source ideas for 20 at the same fidelity. The engineer who shows up with a validated, scoped opportunity is no longer doing the PM's job. The engineer is doing the job the new ratio requires.</p><p>Work backwards from the customer. Amazon has been writing the press release first for two decades. The discipline travels well to teams of one and to swarms of agents. Both produce a great deal of working software in the wrong direction without a clear statement of what "customer wins" means before any code is written.</p><p>Stop hiding behind bandwidth. The honest answer to "Do you have capacity for this idea?" used to be 'No.' With routines, hooks, and a cooperative agent stack, the honest answer is closer to "What is the idea worth?" That is a different conversation, and a much harder one to have without a real point of view on the customer.</p><h2><b>What the next decade rewards</b></h2><p>The five-phase history above is not really a history of tools. It is a history of which part of the job a human had to do. The part that is still human, and that will remain human for the foreseeable future, has moved up the funnel: From typing, to reviewing, to deciding, to choosing the customer to serve and the problem to solve.</p><p>The 2026 version of a <a href="https://venturebeat.com/technology/the-enterprise-risk-nobody-is-modeling-ai-is-replacing-the-very-experts-it-needs-to-learn-from">great engineer</a> is not the one who writes the most code. It is the one who knows what to build, can prove it is worth building, and has the agent fleet plus the review discipline to ship it without the system collapsing under its own velocity.</p><p>Engineers who internalize this will spend the next decade doing the most interesting work software has ever produced. Engineers who wait for a ticket will spend it watching the ticket get written by the agent next to them.</p><p><i>Ishan Gupta is a software engineer at Amazon.</i></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Half of Claude users say AI can already handle half their work according to Anthropic survey]]></title>
<description><![CDATA[About half of Claude users say AI can already handle 50 percent or more of their work tasks, according to a survey of roughly 9,700 users by Anthropic. In 12 months, 26 percent expect AI to cover 60 to 90 percent of their work. Early-career workers worry the most, while the heaviest users are the...]]></description>
<link>https://tsecurity.de/de/3629791/ai-nachrichten/half-of-claude-users-say-ai-can-already-handle-half-their-work-according-to-anthropic-survey/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3629791/ai-nachrichten/half-of-claude-users-say-ai-can-already-handle-half-their-work-according-to-anthropic-survey/</guid>
<pubDate>Sat, 27 Jun 2026 17:33:33 +0200</pubDate>
<content:encoded><![CDATA[<p><img width="1376" height="768" src="https://the-decoder.com/wp-content/uploads/2026/03/anthropic_office_work.png" class="attachment-full size-full wp-post-image" alt="" decoding="async" fetchpriority="high"></p>
<p>        About half of Claude users say AI can already handle 50 percent or more of their work tasks, according to a survey of roughly 9,700 users by Anthropic. In 12 months, 26 percent expect AI to cover 60 to 90 percent of their work. Early-career workers worry the most, while the heaviest users are the most optimistic about their career prospects.</p>
<p>The article <a href="https://the-decoder.com/half-of-claude-users-say-ai-can-already-handle-half-their-work-according-to-anthropic-survey/">Half of Claude users say AI can already handle half their work according to Anthropic survey</a> appeared first on <a href="https://the-decoder.com/">The Decoder</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Consistency]]></title>
<description><![CDATA[I've worked a lot of places over the years, all for varying lengths of time. While this worked against me in the early days, with potential employers wondering why I didn't stay longer at my previous employer, and wondering how long I'd potentially stay with them, this became less of an issue lat...]]></description>
<link>https://tsecurity.de/de/3629638/windows-tipps/consistency/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3629638/windows-tipps/consistency/</guid>
<pubDate>Sat, 27 Jun 2026 15:11:29 +0200</pubDate>
<content:encoded><![CDATA[<p>I've worked a lot of places over the years, all for varying lengths of time. While this worked against me in the early days, with potential employers wondering why I didn't stay longer at my previous employer, and wondering how long I'd potentially stay with them, this became less of an issue later in my career. </p><p>During my career in the private sector, I've run vulnerability assessments, and spent over 26 yrs in digital forensics and incident response, some in FTE roles, and much more in consultant roles. </p><p>In 2006, I started in a DFIR consulting role at ISS, which evolved 6 months later when the company purchase by IBM was completed. I then became a "plank owner" of the IBM ISS X-Force ERS team, one of the original members of the team, even before we expanded. When I started, I was provided with a complete outfitting of equipment, including (but not limited to) write-blockers, cabling, laptops, and dongles for EnCase 4.22, EnCase 6.19, and FTK. As our team grew in size, everyone received similar (albeit updated, in some cases) equipment. When I started at ISS, I was one of 4 responders, and we each did our own thing when it came to analysis. There was little in the way of cross-pollination, sharing of experiences, etc. As the new team began to grow, it was a bit before some of us saw the need for consistency across the team.</p><p>In 2007, members of our team became certified to conduct PCI forensic investigations, which were subject to very stringent (and somewhat arbitrary) timelines. As part of this, <a href="https://www.linkedin.com/in/christopher-pogue-msis-6148441/">Chris</a> and I developed a process that we shared with all of the team members, using EnCase to conduct all of the searches required by Visa (driving the whole PCI effort at the time), not just the mandatory the credit card number searches. The idea was, in part, to remove the need for individual analysts to have to try to figure out what to do, by giving them a common, documented step-by-step process for completing all of the required activities in a consistent manner. This way, if issues arose, they were easier to troubleshoot. More importantly, having a consistent process meant that there was less room for guesswork, and we had confidence that as long as the process was followed, we'd be able to meet our obligations regarding timeliness. This also left more time for analysts to uncover things like initial access, and other pertinent information, because the guesswork of "what to do next" in order to meet Visa's requirements was no longer something analysts needed to concern themselves with.</p><p>In 2013, I started at &lt;company&gt;, on a team that was already well-established. This team was responsible for developing and actively employing the EDR technology used by the company, and this was used to drastically reduce the scoping of "targeted threat actor" incidents, at which point, triage or full forensics of specific systems could take place. For example, one incident involved 15,000 endpoints in a global infrastructure, and we found that the threat actor had "touched" 8 of the systems, and "been on" only 2. Few members of the team, at the time, had actual hands-on experience with truly in-depth DF work, and there was very little in the way of sharing of tools, techniques, and processes between analysts. There was no documentation, little cross-pollination, and some issues with consistency in the use of the analysis framework. Every now and then, someone might share a tidbit here and there, but different analysts had different ways of using the framework. For example, one analyst might tag something they hadn't seen before as "unknown", where another would tag it as definitely "malicious", with the thought of going back and researching those items a bit more...and often, they didn't. They remained marked the way they were, so when those same indicators showed up on another engagement for another analyst, it was pretty much guaranteed that you'd see a mix of "unknown", "malicious", and "benign" from previous engagements.</p><p></p><div class="separator"><a href="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEj1qDMv1yivk28XrmjvxpTlULjK77T7FOfPPSWVnWb3CZo0LEfrPOE31KpBpH1maP1nmpRlW0JIpOFeG3ggZFImarYhl_PC6rKXqTdUKI4qTBR8JjAT3Xo3-pWCbtfQ7hhqqbEy2FWk8PE3jggE2CW3hQMbhjizRW-9Da2DJp91FgIYdhtaWQ/s450/consistency.jpg" imageanchor="1"><img border="0" data-original-height="264" data-original-width="450" height="188" src="https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEj1qDMv1yivk28XrmjvxpTlULjK77T7FOfPPSWVnWb3CZo0LEfrPOE31KpBpH1maP1nmpRlW0JIpOFeG3ggZFImarYhl_PC6rKXqTdUKI4qTBR8JjAT3Xo3-pWCbtfQ7hhqqbEy2FWk8PE3jggE2CW3hQMbhjizRW-9Da2DJp91FgIYdhtaWQ/s320/consistency.jpg" width="320"></a></div>In 2020, I started at a DF/IR consulting company, and spent my first week on-boarding at headquarters. During that time, I made an effort to start engaging with DF analysts, in part to see what tools they were using, and how they were using them. What I found was that almost all of the analysts had at least 4 dongles/licenses to commercial products, and in some cases, a total of 5 (or more). And every analyst had their own way of doing things; one analyst described what they did as an "art". I sat with one analyst as they walked me through how they used one of tools, selecting various artifacts to be parsed. They'd been doing this for some time now, and for every case, they'd go in and manually select each item, from memory. We spent a few minutes working on it together, and we found that the application had a way for analysts to have a set of items be selected every time, in a profile. <p></p><p>Unfortunately, I returned home at the end of that first week, just as the pandemic lockdown was kicking off, and just shy of three months into my tenure, I (and others) were laid off. It took time, but I found an amazing role as the director of the internal SOC for a large consulting company, one that had three levels of SOC analyst. The highest, L3, were responsible for deeper forensic analysis of incidents that had been escalated up by the prior two levels. During my time there, while there were some tools discussed, what became clear to me was that each of the analysts had their own way of doing things, and there was very little in way of documentation (case notes, etc.) or cross-pollination, and there was limited effort to develop a "best practices" approach to analysis, or just something that was employed consistently across the team. As a result, when a "finding" was added to a ticket or report, there was no clear understanding as to how that finding was developed, and when the "how" was dug into, often the results would be different depending upon the analyst. </p><p>I had seen time and again in the tickets that analysts were collecting active memory from reported endpoints, and running <i>strings</i> on the memory dump in an effort to locate indications of the use of IP addresses. I wrote up a message to the team, describing why this was an incorrect approach, and that what was expected is that they'd use <a href="https://github.com/volatilityfoundation/volatility">Volatility</a> and <a href="https://github.com/simsong/bulk_extractor">bulk_extractor</a> to get the necessary information. I also provided a technical description as to <i>why</i> they needed to do this, and why they needed to use both methods. </p><p>What's common across both organizations and time is that without some modicum of consistency in processes, what you're left with is an inefficient, error-prone mess that, thankfully, cannot be replicated. Regardless of whether it's DF or SOC work, if everyone has their own way of doing things, and there's no common, consistent processes, and no way to develop and operationalize corporate/institutional knowledge across the entire analyst base, then engagement or ticket completion times will vary, accuracy will vary and be difficult to assess, some analysts will spend a great deal of time chasing down rabbit holes, and other analysts will move very quickly to incorrect answers and findings. In some cases, you'll notice that analysts will spackle over gaps in analysis with guesses and assumption.<br></p><p>The other thing you'll notice about these organizations, and ones like them, is that the less consistency there is, there's also little to no oversight. That is, there's no one monitoring output, no one doing "QA" or "QC". For many customer organizations, this means that what they receive is also going to be inconsistent, and the overall strategic issues, the things that could really protect them, will be missed.</p><p>Having consistency and developing processes isn't about restricting what analysts can do. Rather, it's about taking those aspects of analysis that appear regularly, finding the "best" way of conducting the parsing, and then, if possible, automating not just the parsing, but also the enrichment and decoration of that data. After all, these are things you're going to do anyway, right? If you find an IP address, you're going to look it up on some platform, such as VirusTotal, so why not automate it? Why not use CPU cycles to parse out Windows Event Logs, extract IP addresses from login (and other) events, do some form of look-up, and then tag that entry in some way with what you find. Doing all of this automatically doesn't take anything away from an analyst, other than a great deal of very manual work, and provides them with additional time to focus on actual analysis.</p><p><i>Next Steps</i><br>So here's what you do...write down the steps you take. Make it repeatable. Make it so that 6 months from now, you or someone else can follow the same steps on the same data and get the same results. Repeatability leads to consistency, and if it's written down, you don't forget steps. You don't forget to collect Prefetch files because the last 6 systems you looked at were servers and didn't have Prefetch files. You don't forget to parse the AmCache.hve file. </p><p>Once you've written it down, you have some place to start. Now, notice that I said, "write it down", but <i>not</i> that it's written in stone, <i>not</i> that it's immutable. You have a baseline now, and you can deviate from it, in part by adding justification for that deviation to your process. It's easy..."I collected and parsed the PCA files because this was the first Windows 11 system I'd seen in X months." Boom. Done.</p><p>With it written down, how much can you automate? If you mount the acquired image, or put the triage data in a specific folder structure, is this something you can easily do every time? Yes? Okay, so then, can you automate your parsing process? If the data is in the same location every time, can you automate the process so that a single command or button press can get everything parsed?</p><p>At one point in my career, I'd thought that having a lab intake process was the way to go...acquired images, laptops, or just hard drives could be sent to the lab, where the intake technician would take care of connecting the device/data, running through the parsing, extraction, enrichment and decoration process, and then inform the analyst when the results were ready. At that point, the analyst would have access to the parsed data, as well as the original "evidence", if needed. But they wouldn't have to do the processing themselves, and there wouldn't be a bunch of missed steps, and gaps in the reporting.</p><p>Let's assume that the automation is complete, to some extent. It doesn't have to be fancy, and it doesn't have to be everything at this point. Now that we've got stuff written down, we have something we can build on, that we can add to and extend. Now only can we add other data sources, but we can add things like enrichment and decoration, from external sources or from previous incidents. Now that we've got some modicum of automation, a lot of the manually-intensive "heavy lifting" is now being done by the computer. Now we have a more efficient, less error-prone process that frees up a LOT of time for things like actual analysis, lessons learned development, and baking those things we learn back into the process. </p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Silo Season 3 Hits Apple TV Next Week With Three Big Plot Shifts]]></title>
<description><![CDATA[Fans of the hit dystopian series can finally mark their calendars. The wait is almost over for the next chapter of this gripping story. If you have been searching for the Silo season 3 release date and first trailer, you will be happy to know the show premieres on July 3. It is bringing some majo...]]></description>
<link>https://tsecurity.de/de/3628207/ios-mac-os/silo-season-3-hits-apple-tv-next-week-with-three-big-plot-shifts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3628207/ios-mac-os/silo-season-3-hits-apple-tv-next-week-with-three-big-plot-shifts/</guid>
<pubDate>Fri, 26 Jun 2026 19:39:25 +0200</pubDate>
<content:encoded><![CDATA[Fans of the hit dystopian series can finally mark their calendars. The wait is almost over for the next chapter of this gripping story. If you have been searching for the Silo season 3 release date and first trailer, you will be happy to know the show premieres on July 3. It is bringing some major twists to the underground world.



The show is moving beyond the first book to weave together storylines from the rest of the trilogy. You can expect a fresh timeline, a huge shift in leadership, and plenty of new faces when it lands next week.



Quick details




Title: Silo



Genre: Sci-Fi, drama



Lead star: Rebecca Ferguson



Premiere date: July 3, 2026



Setting: Dystopian underground society




According to Apple's official description of Silo Season 3-




"Season three of “Silo” continues the saga of a dystopian society of 10,000 people living underground under mysterious circumstances, while revealing an origin story set centuries earlier. In the present, Juliette Nichols (Ferguson) survives her forced “cleaning” but returns with memory loss as the silo recovers from rebellion and faces a dangerous new threat."




The story jumps back in time to explore the surface



Instead of picking up exactly where the second book starts, the new season blends events from the second and third books by Hugh Howey. This means the show will step outside the dark walls of the silo to show us what the world looked like before the underground structures were built.



It is a big change from the familiar setting. The split timeline allows the story to dig into the origins of the silos, giving answers about how this society started. Meanwhile, the present day plot will still follow Juliette and the characters you already know from previous seasons created by Apple. It is making sure its biggest hit stays fresh by expanding the world.



New actors join the cast to play people from the past



Because a large part of the story focuses on the world before the silos, the show is bringing in a bunch of new talent. You might have seen a quick look at Jessica Henwick and Ashley Zukerman at the end of the second season. They play a journalist and a congressman who stumble onto a dangerous conspiracy.



Other fresh faces include Laura Innes, Jessica Brown Findlay, Morven Christie, Reed Birney, Matt Craven, and Colin Hanks. They will help flesh out this earlier timeline as the show expands its universe and explores the events that forced humanity underground.



Juliette takes charge as the new mayor of the silo



A teaser clip shared earlier this year confirmed a massive career change for the main character. Juliette is now the mayor of the silo. This completely changes her dynamic with the rest of the underground community.



The last time we saw Juliette, she was fighting for her life in an airlock with the previous mayor, Bernard, while flames surrounded them. It is clear she made it out of that situation alive and ended up taking his job. You can catch up on the earlier episodes on Apple TV before the new ones drop.



With a new role for Juliette, a fresh cast of characters, and a timeline that finally reveals the outside world, this season promises to answer some of the biggest questions fans have had since the beginning. It will be interesting to see how the show balances the past and present without losing the tense atmosphere that made it a hit.]]></content:encoded>
</item>
<item>
<title><![CDATA[AI Won't Wipe-Out Entry-Level Cybersecurity Jobs]]></title>
<description><![CDATA[Instead of eliminating jobs for early-career cyber pros, AI is creating new opportunities for candidates with strong human decision-making skills.]]></description>
<link>https://tsecurity.de/de/3627959/it-security-nachrichten/ai-wont-wipe-out-entry-level-cybersecurity-jobs/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3627959/it-security-nachrichten/ai-wont-wipe-out-entry-level-cybersecurity-jobs/</guid>
<pubDate>Fri, 26 Jun 2026 18:08:03 +0200</pubDate>
<content:encoded><![CDATA[Instead of eliminating jobs for early-career cyber pros, AI is creating new opportunities for candidates with strong human decision-making skills.]]></content:encoded>
</item>
<item>
<title><![CDATA[Microsoft Can't Keep Up]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 330x - Views:3655 https://git.projectnightcrawler.dev/
https://github.com/MSNightmare/RoguePlanet
https://www.cyderes.com/howler-cell/rogueplanet-windows-zero-day

🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna...]]></description>
<link>https://tsecurity.de/de/3627647/it-security-video/microsoft-cant-keep-up/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3627647/it-security-video/microsoft-cant-keep-up/</guid>
<pubDate>Fri, 26 Jun 2026 16:03:47 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 330x - Views:3655 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/VtFaQjTcRts?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://git.projectnightcrawler.dev/<br />
https://github.com/MSNightmare/RoguePlanet<br />
https://www.cyderes.com/howler-cell/rogueplanet-windows-zero-day<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[13 companies recruiting experts in the Industry 4.0 space]]></title>
<description><![CDATA[If you are looking for a new opportunity in an Industry 4.0 career check out these 13 organisations. 
Read more: 13 companies recruiting experts in the Industry 4.0 space]]></description>
<link>https://tsecurity.de/de/3627416/it-nachrichten/13-companies-recruiting-experts-in-the-industry-40-space/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3627416/it-nachrichten/13-companies-recruiting-experts-in-the-industry-40-space/</guid>
<pubDate>Fri, 26 Jun 2026 14:47:58 +0200</pubDate>
<content:encoded><![CDATA[<p>If you are looking for a new opportunity in an Industry 4.0 career check out these 13 organisations. </p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/jobs-news/13-companies-recruiting-experts-industry-4-0-space-careers-jobs">13 companies recruiting experts in the Industry 4.0 space</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI vendors fund non-profit to help workers adapt to AI era]]></title>
<description><![CDATA[AI is here, and we must help workers adapt: That’s the response of a new non-profit organization to the ongoing debate about whether AI will destroy jobs and cause catastrophe or take the economy to new heights.



Launched Thursday, Raise Us is a nonpartisan national organization that says it wi...]]></description>
<link>https://tsecurity.de/de/3626993/it-security-nachrichten/ai-vendors-fund-non-profit-to-help-workers-adapt-to-ai-era/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3626993/it-security-nachrichten/ai-vendors-fund-non-profit-to-help-workers-adapt-to-ai-era/</guid>
<pubDate>Fri, 26 Jun 2026 12:09:00 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>AI is here, and we must help workers adapt: That’s the response of a new non-profit organization to the ongoing debate about whether AI will destroy jobs and cause catastrophe or take the economy to new heights.</p>



<p>Launched Thursday, <a href="https://www.raiseus.ai/" target="_blank" rel="nofollow">Raise Us</a> is a nonpartisan national organization that says it will partner with state governors, employers, workers, and training organizations to help the US workforce make a successful transition to an AI economy. It says it will design and pilot new corporate incentives to retrain and redeploy workers, develop new approaches to support people through job transitions, and create new training models tied to changing employer demand.</p>



<p>It has already raised more than $500 million and hopes to bring that up to $1 billion in multi-year commitments from philanthropists and industry sources. Anchor partners include Amazon, Microsoft, Anthropic, and the OpenAI Foundation, and more than two dozen other organizations including Cisco, IBM, ADP, AMD, and Deloitte have also signed on.</p>



<p>The organization is led by two former US state governors, Gina Raimondo, who will serve as CEO and co-chair, and Eric Holcomb, co-chair, and its initial government partnerships are with the states of Arkansas, Connecticut, Maryland, and Utah, which, it said, “will serve as the first proving grounds for outcome-driven pilots.”</p>



<p>However, analysts are skeptical that the initiative is anything other than a public-relations effort for the AI industry.</p>



<p><a href="https://moorinsightsstrategy.com/team/jason-andersen/" target="_blank" rel="nofollow">Jason Andersen</a>, VP and principal analyst at Moor Insights &amp; Strategy, said the organization’s initial communications are more marketing and posturing than strategy and action. “It also does not help that there are many CEOs involved who have already displaced thousands of workers due to AI,” he said.</p>



<p>The organization has chosen to work with state governments rather than the US federal government but even partnering at the state level may be too broad, he said, given that the industry makeup varies from state to state, with some leaning towards knowledge workers, while others are more manufacturing-focused.</p>



<h2 class="wp-block-heading">AI-washing</h2>



<p>Technology analyst <a href="https://www.linkedin.com/in/carmi" target="_blank" rel="nofollow">Carmi Levy</a> said Raise Us’s mission is laudable, but, “Unfortunately, for all its slick website and optimistic-sounding copy, Raise Us is possibly the highest-profile example of AI-washing thus far, a well-intentioned but ultimately futile attempt to illustrate that something is being done to cut through the uncertainty and empower the workforce of tomorrow. In reality, it’s a convenient vehicle for a diverse range of stakeholders, including state governments, educators, financial institutions, and companies like Amazon, Anthropic, Microsoft, and the OpenAI Foundation, to virtue-signal that they’re doing their utmost to solve the AI employment crisis and mitigate the impact of this generational technology deployment on everyday workers.”</p>



<p>Like Andersen, he noted that since many of those same companies have already had multiple rounds of tech-driven layoffs, “It’s more than a little rich for them to be joining an initiative whose mission revolves around protecting workers from the worst risks associated with AI.”</p>



<p>But, he said, “If Raise Us can deliver on its lofty promises, it could be an important first step in the great AI workforce transition. Otherwise, it could end up being little more than a high-profile exercise in creating plans and reports and conference panels with little on-the-ground execution to show for it. I’ll believe in its mission when middle-aged, mid-level administrative workers are realistically redirected into new AI-enabled career paths without a massive pay cut.”</p>



<p>Andersen, too, said he’s keeping an open mind, “but something more measurable and specific is in order, or this just looks like a public relations effort.”</p>



<p><em>This article first appeared on <a href="https://www.computerworld.com/article/4189900/ai-vendors-fund-non-profit-to-help-workers-adapt-to-ai-era.html">Computerworld</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI vendors fund non-profit to help workers adapt to AI era]]></title>
<description><![CDATA[AI is here, and we must help workers adapt: That’s the response of a new non-profit organization to the ongoing debate about whether AI will destroy jobs and cause catastrophe or take the economy to new heights.



Launched Thursday, Raise Us is a nonpartisan national organization that says it wi...]]></description>
<link>https://tsecurity.de/de/3626972/it-nachrichten/ai-vendors-fund-non-profit-to-help-workers-adapt-to-ai-era/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3626972/it-nachrichten/ai-vendors-fund-non-profit-to-help-workers-adapt-to-ai-era/</guid>
<pubDate>Fri, 26 Jun 2026 12:02:53 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>AI is here, and we must help workers adapt: That’s the response of a new non-profit organization to the ongoing debate about whether AI will destroy jobs and cause catastrophe or take the economy to new heights.</p>



<p>Launched Thursday, <a href="https://www.raiseus.ai/" target="_blank" rel="noreferrer noopener">Raise Us</a> is a nonpartisan national organization that says it will partner with state governors, employers, workers, and training organizations to help the US workforce make a successful transition to an AI economy. It says it will design and pilot new corporate incentives to retrain and redeploy workers, develop new approaches to support people through job transitions, and create new training models tied to changing employer demand.</p>



<p>It has already raised more than $500 million and hopes to bring that up to $1 billion in multi-year commitments from philanthropists and industry sources. Anchor partners include Amazon, Microsoft, Anthropic, and the OpenAI Foundation, and more than two dozen other organizations including Cisco, IBM, ADP, AMD, and Deloitte have also signed on.</p>



<p>The organization is led by two former US state governors, Gina Raimondo, who will serve as CEO and co-chair, and Eric Holcomb, co-chair, and its initial government partnerships are with the states of Arkansas, Connecticut, Maryland, and Utah, which, it said, “will serve as the first proving grounds for outcome-driven pilots.”</p>



<p>However, analysts are skeptical that the initiative is anything other than a public-relations effort for the AI industry.</p>



<p><a href="https://moorinsightsstrategy.com/team/jason-andersen/" target="_blank" rel="noreferrer noopener">Jason Andersen</a>, VP and principal analyst at Moor Insights &amp; Strategy, said the organization’s initial communications are more marketing and posturing than strategy and action. “It also does not help that there are many CEOs involved who have already displaced thousands of workers due to AI,” he said.</p>



<p>The organization has chosen to work with state governments rather than the US federal government but even partnering at the state level may be too broad, he said, given that the industry makeup varies from state to state, with some leaning towards knowledge workers, while others are more manufacturing-focused.</p>



<h2 class="wp-block-heading">AI-washing</h2>



<p>Technology analyst <a href="https://www.linkedin.com/in/carmi" target="_blank" rel="noreferrer noopener">Carmi Levy</a> said Raise Us’s mission is laudable, but, “Unfortunately, for all its slick website and optimistic-sounding copy, Raise Us is possibly the highest-profile example of AI-washing thus far, a well-intentioned but ultimately futile attempt to illustrate that something is being done to cut through the uncertainty and empower the workforce of tomorrow. In reality, it’s a convenient vehicle for a diverse range of stakeholders, including state governments, educators, financial institutions, and companies like Amazon, Anthropic, Microsoft, and the OpenAI Foundation, to virtue-signal that they’re doing their utmost to solve the AI employment crisis and mitigate the impact of this generational technology deployment on everyday workers.”</p>



<p>Like Andersen, he noted that since many of those same companies have already had multiple rounds of tech-driven layoffs, “It’s more than a little rich for them to be joining an initiative whose mission revolves around protecting workers from the worst risks associated with AI.”</p>



<p>But, he said, “If Raise Us can deliver on its lofty promises, it could be an important first step in the great AI workforce transition. Otherwise, it could end up being little more than a high-profile exercise in creating plans and reports and conference panels with little on-the-ground execution to show for it. I’ll believe in its mission when middle-aged, mid-level administrative workers are realistically redirected into new AI-enabled career paths without a massive pay cut.”</p>



<p>Andersen, too, said he’s keeping an open mind, “but something more measurable and specific is in order, or this just looks like a public relations effort.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Identifying Government Leaders Who Will Succeed in Corporate Security]]></title>
<description><![CDATA[A candidate’s background and career level by themselves do not forecast results.]]></description>
<link>https://tsecurity.de/de/3626885/it-security-nachrichten/identifying-government-leaders-who-will-succeed-in-corporate-security/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3626885/it-security-nachrichten/identifying-government-leaders-who-will-succeed-in-corporate-security/</guid>
<pubDate>Fri, 26 Jun 2026 11:23:29 +0200</pubDate>
<content:encoded><![CDATA[<p>A candidate’s background and career level by themselves do not forecast results.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Worried about GRC role]]></title>
<description><![CDATA[I’m a Software Engineer (MERN, Python, AWS) with an offer for a GRC/Identity Management role (Associate Security Analyst) at a healthcare product company. HR says it’s semi-technical/process-driven. I have background in development though. My questions: Future: Career growth/pay in GRC vs. pure S...]]></description>
<link>https://tsecurity.de/de/3626069/it-security-nachrichten/worried-about-grc-role/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3626069/it-security-nachrichten/worried-about-grc-role/</guid>
<pubDate>Fri, 26 Jun 2026 02:05:42 +0200</pubDate>
<content:encoded><![CDATA[<!-- SC_OFF --><div class="md"><p>I’m a Software Engineer (MERN, Python, AWS) with an offer for a GRC/Identity Management role (Associate Security Analyst) at a healthcare product company. HR says it’s semi-technical/process-driven.</p> <p>I have background in development though.</p> <p>My questions:</p> <p>Future: Career growth/pay in GRC vs. pure SDE?</p> <p>Skill Decay: Will my coding skills die if I stay for 2 years?</p> <p>Pivot: Can I transition to DevSecOps or Security Engineering later?</p> <p>Verdict: Take it as a fresher or wait for an SDE role?</p> </div><!-- SC_ON -->   submitted by   <a href="https://www.reddit.com/user/SlightEntertainer360"> /u/SlightEntertainer360 </a> <br> <span><a href="https://www.reddit.com/r/security/comments/1uef7sl/worried_about_grc_role/">[link]</a></span>   <span><a href="https://www.reddit.com/r/security/comments/1uef7sl/worried_about_grc_role/">[comments]</a></span>]]></content:encoded>
</item>
<item>
<title><![CDATA[Try these 3 Google AI tools to help find your next job.]]></title>
<description><![CDATA[Job hunting can be a slog. But with a few Google AI tools, you can simplify the process from start to finish.Career Dreamer: The first step in landing a job is finding o…]]></description>
<link>https://tsecurity.de/de/3625551/it-nachrichten/try-these-3-google-ai-tools-to-help-find-your-next-job/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3625551/it-nachrichten/try-these-3-google-ai-tools-to-help-find-your-next-job/</guid>
<pubDate>Thu, 25 Jun 2026 20:03:07 +0200</pubDate>
<content:encoded><![CDATA[<img src="https://storage.googleapis.com/gweb-uniblog-publish-prod/images/Google_AI_Tools_CC_social.max-600x600.format-webp.webp">Job hunting can be a slog. But with a few Google AI tools, you can simplify the process from start to finish.Career Dreamer: The first step in landing a job is finding o…]]></content:encoded>
</item>
<item>
<title><![CDATA[Building community is as important as building a career, finds engineer]]></title>
<description><![CDATA[Rent the Runway’s Mark Kenny discusses his role in software engineering and his experiences of working abroad. 
Read more: Building community is as important as building a career, finds engineer]]></description>
<link>https://tsecurity.de/de/3624788/it-nachrichten/building-community-is-as-important-as-building-a-career-finds-engineer/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3624788/it-nachrichten/building-community-is-as-important-as-building-a-career-finds-engineer/</guid>
<pubDate>Thu, 25 Jun 2026 16:02:43 +0200</pubDate>
<content:encoded><![CDATA[<p>Rent the Runway’s Mark Kenny discusses his role in software engineering and his experiences of working abroad. </p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/people/building-community-important-career-development-engineer-rent-the-runway">Building community is as important as building a career, finds engineer</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Diese kostenlosen Kurse bieten IT-Hersteller]]></title>
<description><![CDATA[Diese kostenlosen Weiterbildungsangebote können IT-Fachkräfte ihren Zertifizierungs- beziehungsweise Karrierezielen ein Stück näher bringen. 
					Foto: VectorMine – shutterstock.com




Sich weiterzuentwickeln ist für ITler von jeher Pflicht. Das gilt heute umso mehr, weil gerade Cloud-Services ...]]></description>
<link>https://tsecurity.de/de/3623310/it-security-nachrichten/diese-kostenlosen-kurse-bieten-it-hersteller/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3623310/it-security-nachrichten/diese-kostenlosen-kurse-bieten-it-hersteller/</guid>
<pubDate>Thu, 25 Jun 2026 06:08:14 +0200</pubDate>
<content:encoded><![CDATA[<div>
<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<div class="extendedBlock-wrapper block-coreImage"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" alt="Diese kostenlosen Weiterbildungsangebote können IT-Fachkräfte ihren Zertifizierungs- beziehungsweise Karrierezielen ein Stück näher bringen. " title="Diese kostenlosen Weiterbildungsangebote können IT-Fachkräfte ihren Zertifizierungs- beziehungsweise Karrierezielen ein Stück näher bringen. " src="https://images.computerwoche.de/bdb/3378413/840x473.jpg" width="840" height="473"><figcaption class="wp-element-caption"><p class="foundryImageCaption">Diese kostenlosen Weiterbildungsangebote können IT-Fachkräfte ihren Zertifizierungs- beziehungsweise Karrierezielen ein Stück näher bringen. </p></figcaption></figure><p class="imageCredit">
					Foto: VectorMine – shutterstock.com</p></div>




<p><a href="https://www.computerwoche.de/article/2802741/upskilling-heisst-das-zauberwort.html" title="Sich weiterzuentwickeln " target="_blank">Sich weiterzuentwickeln </a>ist für ITler von jeher Pflicht. Das gilt heute umso mehr, weil gerade Cloud-Services schnell reifen und sich verändern. Zudem treiben Cloud-Infrastrukturkomponenten die Entwicklung der <a href="https://www.computerwoche.de/article/2818575/so-wird-ihr-rechenzentrum-energieeffizient.html" title="Enterprise-Rechenzentren" target="_blank">Enterprise-Rechenzentren</a> voran. </p>



<p>Unabhängig davon, ob Sie Ihre <a href="https://www.computerwoche.de/article/2806521/stinkt-ihre-weiterbildung.html" title="Kenntnisse nur auffrischen" target="_blank">Kenntnisse nur auffrischen</a> oder sich auf ein <a href="https://www.computerwoche.de/article/2819676/4-aufstiegsmoeglichkeiten-fuer-developer.html" title="neues Fachgebiet" target="_blank">neues Fachgebiet</a> spezialisieren möchten, stehen Ihnen jede Menge kostenlose Ressourcen großer Technologieunternehmen zur Verfügung. IT-Profis sollten diese Chance nutzen, um der nächsten <a href="https://www.computerwoche.de/article/2808615/so-rekrutieren-sie-intern.html" title="Beförderung" target="_blank">Beförderung</a> – oder einem besseren Job – ein Stückchen näher zu kommen.</p>



<h2 class="wp-block-heading">Kostenlose Karriere-Booster für IT-Profis</h2>



<p>Die nachfolgend aufgelisteten Schulungs- und Weiterbildungsangebote sind qualitativ hochwertig. Sie bieten Videos, Referenzmaterial und in einigen Fällen sogar vollständige Laborumgebungen sowie <a href="https://www.computerwoche.de/article/2812179/10-pflicht-tools-fuer-netzwerk-und-security-profis.html" title="kostenlose Softwaretools" target="_blank">kostenlose Softwaretools</a>.</p>



<p>Oft gibt es auch Abschlusszertifikate, die Absolventen den Weg zu einer <a href="https://www.computerwoche.de/article/2810324/die-wichtigsten-it-security-zertifizierungen.html" title="Zertifizierung" target="_blank">Zertifizierung</a> ebnen können. Dabei sind die Angebote meistens kostenlos, bieten jedoch gegen Bezahlung zusätzliche Inhalte. Eine Registrierung ist fast immer erforderlich.</p>



<p><strong><a href="https://www.aws.training/" title="AWS Training" target="_blank" rel="noopener">AWS Training</a></strong></p>



<p><a href="https://www.computerwoche.de/article/2732199/amazon-web-services-viel-cloud-fuer-wenig-geld.html" target="_blank" class="idgGlossaryLink">AWS</a> bietet nicht nur Services im Übermaß, sondern auch eine beeindruckende Palette an Weiterbildungskursen an. Die Struktur der AWS-Trainingsbibliothek spricht sowohl Anfänger als auch Profis an – auch solche, die in weniger technischen Rollen in Vertrieb, Management oder Planung tätig sind. Die Kurse werden in Deutsch, Englisch, Spanisch, Französisch und einer Viezahl weiterer Sprachen angeboten.</p>



<p>Das Kursmaterial besteht bei <a href="https://www.computerwoche.de/article/2732199/amazon-web-services-viel-cloud-fuer-wenig-geld.html" target="_blank" class="idgGlossaryLink">AWS</a> aus Text- und Videoinhalten sowie regelmäßigen Wissenstests. Letztere sollen gewährleisten, dass der Lernstoff auch im Kopf bleibt. Dabei lassen sich Kurse, die bereits bekannte Inhalte behandeln, im Schnellverfahren absolvieren. Zum Schulungsangebot gehört auch das etwas kitschige, aber durchaus innovative Open-World-Rollenspiel AWS Cloud Quest:</p>



<figure class="wp-block-embed is-type-rich is-provider-x wp-block-embed-x"><div class="wp-block-embed__wrapper youtube-video">
<blockquote class="twitter-tweet" data-width="500" data-dnt="true"><p lang="en" dir="ltr">Zap drones⚡, Befriend pets 🐈 , Solve puzzles 🧩 AWS Cloud Quest is a role-playing game to help you build practical experiences with AWS. <a href="https://t.co/yHKu00Z9z3">https://t.co/yHKu00Z9z3</a><a href="https://x.com/hashtag/AWSTraining?src=hash&amp;ref_src=twsrc%5Etfw">#AWSTraining</a> <a href="https://x.com/hashtag/CloudComputing?src=hash&amp;ref_src=twsrc%5Etfw">#CloudComputing</a> <a href="https://t.co/QtNrNblADc">pic.twitter.com/QtNrNblADc</a></p>— AWS Cloud SEAsia (@AWSCloudSEAsia) <a href="https://x.com/AWSCloudSEAsia/status/1543066990625148929?ref_src=twsrc%5Etfw">July 2, 2022</a></blockquote>
</div></figure>



<p>Amazon Web Services bietet sowohl eine <a href="https://aws.amazon.com/de/training/digital/?nc2=sb_tr_dt#Free_training" title="kostenlose" target="_blank" rel="noopener">kostenlose</a> als auch eine Abonnement-pflichtige <a href="https://aws.amazon.com/de/training/digital/?nc2=sb_tr_dt" title="Schulungsbibliothek" target="_blank" rel="noopener">Schulungsbibliothek</a> an. Die kostenlose enthält über 500 Kurse, Übungstests für Zertifizierungsprüfungen und Cloud Quest. Abonnenten können zwischen einer Team- (ab 449 Dollar pro Jahr und Platz) oder einer Einzel-Subscription (29 Dollar pro Jahr) wählen. Zahlende Benutzer erhalten auch Zugang zu Laborumgebungen, zusätzliche Cloud-Quest-Rollen sowie Zugriff auf ein zweites Rollenspiel – <a href="https://www.youtube.com/watch?v=4b0H5C0DLw4" title="AWS Industry Quest" target="_blank" rel="noopener">AWS Industry Quest</a>.</p>



<p><strong><a href="https://skillsforall.com/" title="Cisco Skills for All" target="_blank" rel="noopener">Cisco Skills for All</a></strong></p>



<p>Skills for All von Cisco bietet eine Fülle von Kursen für Anfänger und Fortgeschrittene zu einer breit gefächerten Themenpalette – von Netzwerk-Basics über <a href="https://www.computerwoche.de/digital-transformation/" target="_blank" class="idgGlossaryLink">IoT</a> bis hin zu <a href="https://www.csoonline.com/de/" title="Cybersicherheit" target="_blank">Cybersicherheit</a>. Die Kurse sind in Learning Collections von (im Regelfall) bis zu 70 Stunden gebündelt und vorrangig auf Englisch verfügbar, viele auch auf Spanisch und Französisch. In geringerem Umfang finden sich auch Angebote auf Deutsch, Portugiesisch und Russisch.</p>



<p>Das Kursmaterial von Skills for All umfasst Videoschulungen und interaktive Lektionen, die auf optimiertes Lernen und das Verinnerlichen von Lehrstoff ausgelegt sind. Cisco bietet auch einige Ressourcen zum Download an, darunter beispielsweise <a href="https://skillsforall.com/course/getting-started-cisco-packet-tracer" title="Packet Tracer" target="_blank" rel="noopener">Packet Tracer</a>, sein Simulations-Tool für die Netzwerkkonfiguration. Cisco bietet über Skills for All keine direkten Zertifizierungen an – einige Kurse wie etwa Python Essentials bereiten aber darauf vor.</p>



<p><strong><a href="https://training.fortinet.com/" title="Fortinet Training Institute" target="_blank" rel="noopener">Fortinet Training Institute</a></strong></p>



<p>Das Fortinet Training Institute eröffnet einen kostenlosen Zugang zu den <a href="https://www.fortinet.com/training-certification" title="Network-Security-Expert" target="_blank" rel="noopener">Network-Security-Expert</a> (NSE)-Kursen der Stufen 1 bis 8. Die ersten drei ermöglichen es, Associate-Zertifizierungen zu erwerben. Die Kurse bauen aufeinander auf und bieten einen Überblick über Sicherheitsbedrohungen und Schutzmaßnahmen.</p>



<p>Darüber hinaus offeriert Fortinet auch Schulungskurse zum Selbststudium für eine Vielzahl von Sicherheitsprodukten. Einige Angebote können um kostenpflichtige, aber nicht zwingend notwendige Zusatzinhalte wie Bücher oder einen Laborzugang ergänzt werden. Die Schulungsinhalte bestehen größtenteils aus Videomaterial, aber auch interaktive Komponenten werden zur Überprüfung von Wissen und Skills eingesetzt. Vollständige Lernskripte stehen im PDF-Format zum Download bereit.</p>



<p>Viele Fortinet-Kurse beinhalten Abschlusszertifikate und können auch zum Erwerb von Continuing Professional Education Credits im Rahmen von (ISC)2-Zertifizierungen wie <a href="https://www.computerwoche.de/article/2785596/das-muss-ein-chief-information-security-officer-koennen.html" title="CISSP" target="_blank">CISSP</a> verwendet werden. Wie viele Stunden Sie angerechnet bekommen und welchem Zertifizierungsbereich diese entsprechen, ist in den jeweiligen Kursen angegeben.</p>



<p><strong><a title="Juniper Learning Portal" href="https://learningportal.juniper.net/juniper/default.aspx" target="_blank" rel="noopener">HPE Juniper Learning Portal</a></strong></p>



<p>Dieses Lernportal konzentriert sich weitgehend auf Juniper-Zertifizierungen – wobei auch kostenlose Schulungen auf der Grundlage bereits erworbener Zertifizierungen verfügbar sind. Wer kein aktuelles Juniper-Zertifikat hat, muss sich auf Associate-Zertifizierungen beschränken. Diese ermöglichen jedoch Zugang zu einem Kurs für jede Zertifizierungsschiene. </p>



<p>Nach Abschluss eines zertifizierungsspezifischen Kurses erhalten Nutzer einen Gutschein, der ihnen 75 Prozent Rabatt auf die Prüfung einräumt. Bis zum Professional-Level sind alle Vorbereitungskurse für eine Juniper-Zertifizierung kostenlos, sofern User die Voraussetzungen für die Zertifizierung erfüllen. Für Kurse, die auf eine Zertifizierung auf Expertenniveau vorbereiten, wird eine Gebühr erhoben. Darüber hinaus steht auch eine kleine Auswahl nicht zertifizierungsbezogener Kurse zur Wahl.</p>



<p>Davon abgesehen bietet HPE Juniper kostenlosen Zugang zu seiner <a title="vLabs-Plattform" href="https://jlabs.juniper.net/vlabs/" target="_blank" rel="noopener">vLabs-Plattform</a>. Diese stellt vorgefertigte Laborumgebungen bereit, in denen interessierte Experten ihre Skills trainieren und validieren können. Die Anmeldung für diese Plattform erfolgt allerdings getrennt vom Lernportal.</p>



<p>Wenn Sie eine weitere Vertiefung wünschen, bietet Juniper auch diverse <a href="https://learningportal.juniper.net/juniper/user_activity_info.aspx?id=JUNIPER-ONDEMAND-TRAINING-HOME" title="On-Demand-Schulungen" target="_blank" rel="noopener">On-Demand-Schulungen</a> gegen einen kursindividuellen Aufpreis. Alternativ haben Sie die Möglichkeit, sich mit einem <a href="https://learningportal.juniper.net/juniper/user_activity_info.aspx?id=ALL-ACCESS-TRAINING-PASS-HOME" title="All-Access-Pass" target="_blank" rel="noopener">All-Access-Pass</a> unbegrenzten Zugang zu allen On-Demand-Kursen und -Laboren zu erkaufen.</p>



<p><strong><a href="https://learn.microsoft.com/de-de/" title="Microsoft Learn" target="_blank" rel="noopener">Microsoft Learn</a></strong></p>



<p>Die Schulungsbibliothek von Microsoft bietet Material zu vielen Themen, die für den Betrieb moderner Rechenzentren relevant sind, darunter:</p>



<ul class="wp-block-list">
<li><p><a title="Active Directory" href="https://www.computerwoche.de/article/2763543/einfuehrung-in-azure-active-directory.html" target="_blank">Active Directory</a>,</p></li>



<li><p>Windows Server,</p></li>



<li><p>Hyper-V,</p></li>



<li><p>Clustering und Hochverfügbarkeit,</p></li>



<li><p>Speicher- und Dateidienste sowie</p></li>



<li><p>unzählige hybride oder Azure-basierte Workloads.</p></li>
</ul>



<p>Die meisten Inhalte in Microsoft Learn sind textbasiert. Interessierte werden also jede Menge Zeit damit verbringen, Kursmaterial zu lesen, Diagramme zu wälzen und <a href="https://www.computerwoche.de/article/2811058/wie-excel-und-co-ins-verderben-fuehren.html" title="Tabellen" target="_blank">Tabellen</a> zu durchforsten. Das fesselt zwar nicht in dem Maße, wie es interaktives Schulungsmaterial vermag, gewährleistet aber den zugriff auf eine Fülle von Informationen, die in den meisten Fällen direkt mit Microsoft-Zertifizierungen korrespondieren.</p>



<p>Microsofts Lernplattform bietet darüber hinaus <a href="https://www.computerwoche.de/article/2804659/was-ist-gamification.html" title="Gamification" target="_blank">Gamification</a>-Anreize wie Urkunden oder Erfahrungspunkte. Gelegentlich bietet die <a href="https://www.computerwoche.de/operating-systems/" target="_blank" class="idgGlossaryLink">Windows</a>-Company auch spezielle “Learning Challenges” an, bei denen Belohnungen in Form von Prüfungsgutscheinen erlernt oder erspielt werden können.</p>



<p>Microsoft-Zertifizierungen sind schon seit mehr als zwei Dekaden populär und konzentrieren sich heute vor allem auf <a href="https://www.computerwoche.de/article/2798106/was-microsofts-cloud-plattform-bietet.html" title="Azure" target="_blank">Azure</a>. Zusätzlich zu den Branchen-Kernzertifizierungen bietet der Konzern heute auch Fundamentals-Zertifizierungen an, die die Einstiegshürde für eine “richtige” Zertifizierung etwas senken.</p>



<figure class="wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio"><div class="wp-block-embed__wrapper youtube-video">

</div></figure>



<p><strong><a href="https://www.redhat.com/en/services/training/all-courses-exams" title="Red Hat Training" target="_blank" rel="noopener">Red Hat Training</a></strong></p>



<p>Der kostenlose Bereich des Schulungsangebots von Red Hat umfasst zehn Kurse, die wichtige Themen abdecken, zum Beispiel:</p>



<ul class="wp-block-list">
<li><p>Grundlagen der Red-Hat-Administration,</p></li>



<li><p><a title="OpenStack" href="https://www.computerwoche.de/article/2818874/openstack-lebendiger-denn-je.html" target="_blank">OpenStack</a>,</p></li>



<li><p>OpenShift oder</p></li>



<li><p>Ansible.</p></li>
</ul>



<p>Jeder Kurs führt zu einer Zertifizierung als Red Hat Certified System Administrator (RHCSA) oder als Red Hat Certified Specialist (RHCS). Zusätzlich zu den Kursen bietet das Unternehmen über die Streaming-Plattform <a href="https://www.redhat.com/de/tv" title="Red Hat TV" target="_blank" rel="noopener">Red Hat TV</a> Schulungsvideos an. Diese sind sehr technisch gehalten und damit vor allem für IT-Profis nützlich, die sich mit den neuesten Red-Hat-Angeboten vertraut machen wollen.</p>



<p>Ein kostenpflichtiges Abo im Rahmen von <a href="https://www.redhat.com/de/services/training/learning-subscription" title="Red Hat Learning" target="_blank" rel="noopener">Red Hat Learning</a> ermöglicht unbegrenzten Zugang zu einer umfangreichen Kurs-Bibliothek, inklusive Cloud-basierter Labs und Zertifizierungsprüfungen. Die Preise beginnen bei 6.000 Dollar pro Jahr.</p>



<p><strong><a href="https://www.broadcom.com/support/education/vmware" target="_blank" rel="noreferrer noopener">VMware Learning</a></strong></p>



<p>Das kostenlose Basic-Abonnement von VMware Learning bietet in erster Linie textbasierte Produktübersichten und technische Einweisungen. Das geschieht allerdings auf hohem Niveau, die Inhalte werden in “mundgerechten” Häppchen mit eingestreuten Diagrammen und interaktiven Elementen serviert.</p>



<p>VMware Learning stellt darüber hinaus die <a title="VMware-Videobibliothek" href="https://blogs.vmware.com/explore/2022/11/18/10-top-videos-from-the-video-library/" target="_blank" rel="noopener">VMware-Videobibliothek</a> zur Verfügung, die auch ohne Basic-Abonnement öffentlich zugänglich ist und schnellen Zugriff auf zusätzliche Inhalte bietet. (fm)</p>



<p><strong>Dieser Artikel ist <a href="https://www.networkworld.com/article/971871/free-training-from-8-top-vendors-to-advance-your-it-career.html" target="_blank">im Original</a> bei unserer Schwesterpublikation Networkworld.com erschienen.</strong></p>
</div></div></div>
</div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI coding token costs are on track to rival human payroll]]></title>
<description><![CDATA[Enterprises may soon be paying as much for their developers’ AI token usage as they do for their salaries.



According to Gartner, these costs will meet, or even exceed, the typical software engineer’s monthly salary within the next two years.



This is not only because developers are increasin...]]></description>
<link>https://tsecurity.de/de/3623163/ai-nachrichten/ai-coding-token-costs-are-on-track-to-rival-human-payroll/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3623163/ai-nachrichten/ai-coding-token-costs-are-on-track-to-rival-human-payroll/</guid>
<pubDate>Thu, 25 Jun 2026 03:18:27 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Enterprises may soon be paying as much for their developers’ AI token usage as they do for their salaries.</p>



<p><a href="https://www.gartner.com/en/newsroom/press-releases/2026-06-24-gartner-predicts-ai-coding-costs-will-surpass-average-developer-salary-by-2028-as-token-consumption-surges" target="_blank" rel="noreferrer noopener">According to Gartner</a>, these costs will meet, or even exceed, the typical software engineer’s monthly salary within the next two years.</p>



<p>This is not only because developers are increasingly adopting generative AI and <a href="https://www.cio.com/article/3603856/agentic-ai-promising-use-cases-for-business.html" target="_blank">agentic tools</a>, it reflects a trend toward consumption-based licensing models as vendors balance infrastructure investments with profitability. Rather than the flat per-seat <a href="https://www.computerworld.com/article/4131921/saas-isnt-dead-the-market-is-just-becoming-more-hybrid-2.html" target="_blank">SaaS model</a> of the past, enterprises now pay for developer token use as well.</p>



<p>Gartner senior principal analyst <a href="https://www.gartner.com/en/experts/nitish-tyagi" target="_blank" rel="noreferrer noopener">Nitish Tyagi</a> explained that it’s important to note that Gartner’s prediction is based on a global average salary of $2,000 per month; it doesn’t mean AI token usage will exceed all salaries. For instance, in the US, yearly pay rates can be six digits or more.</p>



<p>However, that kind of spend is not out of the realm of possibility, Tyagi emphasized. “I have heard scary numbers like ‘My developer consumed $20K last month,’ or ‘A business user consumed $32K’.”</p>



<p>If these amounts sound shocking, that’s the point. “The goal is to alarm the industry about the impact of token cost if it is not governed and controlled,” he said.</p>



<h2 class="wp-block-heading">Lack of visibility, immature oversight</h2>



<p>Enterprises are quickly moving from experimentation to scaled deployment of <a href="https://www.infoworld.com/article/4183153/why-ai-coding-debt-is-different.html" target="_blank">AI coding agents</a>, but many still underestimate token costs, Tyagi noted.</p>



<p>This is because cost structures for software engineering workloads are “highly variable,” he pointed out, and there isn’t a lot of transparency into how token consumption is calculated and billed.</p>



<p>AI coding vendors have yet to deliver “mature, built-in cost optimization capabilities,” Tyagi said, and prices will likely only continue to rise as vendors further build out their models while at the same time trying to remain profitable.</p>



<p>Thus, enterprises struggle to forecast and control costs, and, because AI is moving so fast, many organizations lack the “maturity and frameworks” to determine ROI, he noted. Agent-driven workflows are difficult to govern, context windows become bloated, budgets are wiped out earlier than anticipated, and token spend becomes hard to justify.</p>



<p>Added to this, light users such as non-developers will increase their usage as they become more familiar with, and even reliant on, AI tools, driving up token consumption and spend even more.</p>



<p>Tyagi said that, while AI is incredibly valuable, he sees no “direct relationship” between the number of tokens developers consume and their productivity gains. Rather, applying context engineering principles to optimize or reduce token consumption increases quality.</p>



<p>“<a href="https://www.cio.com/article/4178320/tokenmaxxing-when-ai-adoption-metrics-go-bad.html" target="_blank">Tokenmaxxing</a> is not directly related to higher productivity gains,” Tyagi said, “but optimizing token consumption is.”</p>



<p>Still, this in no way means that organizations should move away from AI coding agents, he emphasized. Optimizing token consumption simply means spending only as much as needed without compromising the quality and value brought by AI.</p>



<p>“Without a governed engineering operating model, costs can escalate faster than the productivity gains these tools are designed to deliver,” Tyagi said.</p>



<h2 class="wp-block-heading">How enterprises can control token usage</h2>



<p>The traditional ‘lines-of-code-written’ productivity metric no longer applies when AI can almost instantaneously produce entire Python libraries. Rather, value should be measured in quality, speed, and customer satisfaction metrics, Tyagi said.</p>



<p>For instance: How quickly are developers able to release important features? How much time is reduced between app development and feedback from business, product, and development teams? Shipping features quickly while maintaining quality can create competitive advantage and improve user and customer experience, he said.</p>



<p>Gartner also advises establishing strong governance and cost controls. For instance, introduce token thresholds, automate usage monitoring, and create explicit escalation policies.</p>



<p>“Embedding these controls into engineering workflows ensures consistency and prevents uncontrolled cost growth,” the firm notes.</p>



<p>In addition, enterprises should create a “use case driven” decision framework. This means clearly defining when AI coding agents should be used, and their appropriate levels of autonomy given certain tasks. Further, classify those tasks into three execution models: ‘developer‑led,’ ‘developer‑with‑agent’, and ‘fully agent‑led.’</p>



<p>Enterprises should also select models based on task complexity. Break work into smaller tasks that can be performed by smaller models, “with escalation only when complexity demands it,” Gartner advises. Engineering teams should route workflows deliberately, directing simpler, high-frequency tasks to smaller models and using frontier models only for complex and high-value work.</p>



<p>Another cost saving tactic is mandating specific context engineering practices, the firm says. Developers should be trained to optimize the context they input to AI, including only the information that’s relevant, summarizing that content as much as possible, and eliminating unnecessary data.</p>



<p>Further, teams should embed token usage reviews into development cycles. Regular review of high token consuming workflows can help identify inefficiencies, refine practices, and support collaboration, Gartner says.</p>



<p>Tyagi noted that developers tend to optimize for speed and convenience rather than cost efficiency, so token discipline cannot be achieved through developer choice alone.</p>



<p>His advice for leaders: Do not treat escalating AI coding costs as a reason to move away from AI, or to shift to open generative AI models for everything. “The goal is always to optimize costs without compromising the value.”</p>



<p>Start small, and focus on context engineering first, he said. Assess your current software engineering maturity and select the appropriate agent autonomy. AI assistive development can provide up to 20% productivity gains, “which is not a bad number.”</p>



<p>For developers, he advises: “Target context engineering as one of the most important <a href="https://www.cio.com/article/2128415/generative-ai-certifications-and-certificate-programs.html" target="_blank">skills for yourself</a>. This is not only going to help your employer, but also your career.”</p>



<p><em>This article originally appeared on <a href="https://www.cio.com/article/4189149/ai-coding-token-costs-are-on-track-to-rival-human-payroll.html" target="_blank">CIO.com</a>.</em></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI coding token costs are on track to rival human payroll]]></title>
<description><![CDATA[Enterprises may soon be paying as much for their developers’ AI token usage as they do for their salaries.



According to Gartner, these costs will meet, or even exceed, the typical software engineer’s monthly salary within the next two years.



This is not only because developers are increasin...]]></description>
<link>https://tsecurity.de/de/3623145/it-nachrichten/ai-coding-token-costs-are-on-track-to-rival-human-payroll/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3623145/it-nachrichten/ai-coding-token-costs-are-on-track-to-rival-human-payroll/</guid>
<pubDate>Thu, 25 Jun 2026 02:47:34 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Enterprises may soon be paying as much for their developers’ AI token usage as they do for their salaries.</p>



<p><a href="https://www.gartner.com/en/newsroom/press-releases/2026-06-24-gartner-predicts-ai-coding-costs-will-surpass-average-developer-salary-by-2028-as-token-consumption-surges" target="_blank" rel="nofollow">According to Gartner</a>, these costs will meet, or even exceed, the typical software engineer’s monthly salary within the next two years.</p>



<p>This is not only because developers are increasingly adopting generative AI and <a href="https://www.cio.com/article/3603856/agentic-ai-promising-use-cases-for-business.html" target="_blank">agentic tools</a>, it reflects a trend toward consumption-based licensing models as vendors balance infrastructure investments with profitability. Rather than the flat per-seat <a href="https://www.computerworld.com/article/4131921/saas-isnt-dead-the-market-is-just-becoming-more-hybrid-2.html" target="_blank">SaaS model</a> of the past, enterprises now pay for developer token use as well.</p>



<p>Gartner senior principal analyst <a href="https://www.gartner.com/en/experts/nitish-tyagi" target="_blank" rel="nofollow">Nitish Tyagi</a> explained that it’s important to note that Gartner’s prediction is based on a global average salary of $2,000 per month; it doesn’t mean AI token usage will exceed all salaries. For instance, in the US, yearly pay rates can be six digits or more.</p>



<p>However, that kind of spend is not out of the realm of possibility, Tyagi emphasized. “I have heard scary numbers like ‘My developer consumed $20K last month,’ or ‘A business user consumed $32K’.”</p>



<p>If these amounts sound shocking, that’s the point. “The goal is to alarm the industry about the impact of token cost if it is not governed and controlled,” he said.</p>



<h2 class="wp-block-heading">Lack of visibility, immature oversight</h2>



<p>Enterprises are quickly moving from experimentation to scaled deployment of <a href="https://www.infoworld.com/article/4183153/why-ai-coding-debt-is-different.html" target="_blank">AI coding agents</a>, but many still underestimate token costs, Tyagi noted.</p>



<p>This is because cost structures for software engineering workloads are “highly variable,” he pointed out, and there isn’t a lot of transparency into how token consumption is calculated and billed.</p>



<p>AI coding vendors have yet to deliver “mature, built-in cost optimization capabilities,” Tyagi said, and prices will likely only continue to rise as vendors further build out their models while at the same time trying to remain profitable.</p>



<p>Thus, enterprises struggle to forecast and control costs, and, because AI is moving so fast, many organizations lack the “maturity and frameworks” to determine ROI, he noted. Agent-driven workflows are difficult to govern, context windows become bloated, budgets are wiped out earlier than anticipated, and token spend becomes hard to justify.</p>



<p>Added to this, light users such as non-developers will increase their usage as they become more familiar with, and even reliant on, AI tools, driving up token consumption and spend even more.</p>



<p>Tyagi said that, while AI is incredibly valuable, he sees no “direct relationship” between the number of tokens developers consume and their productivity gains. Rather, applying context engineering principles to optimize or reduce token consumption increases quality.</p>



<p>“<a href="https://www.cio.com/article/4178320/tokenmaxxing-when-ai-adoption-metrics-go-bad.html" target="_blank">Tokenmaxxing</a> is not directly related to higher productivity gains,” Tyagi said, “but optimizing token consumption is.”</p>



<p>Still, this in no way means that organizations should move away from AI coding agents, he emphasized. Optimizing token consumption simply means spending only as much as needed without compromising the quality and value brought by AI.</p>



<p>“Without a governed engineering operating model, costs can escalate faster than the productivity gains these tools are designed to deliver,” Tyagi said.</p>



<h2 class="wp-block-heading">How enterprises can control token usage</h2>



<p>The traditional ‘lines-of-code-written’ productivity metric no longer applies when AI can almost instantaneously produce entire Python libraries. Rather, value should be measured in quality, speed, and customer satisfaction metrics, Tyagi said.</p>



<p>For instance: How quickly are developers able to release important features? How much time is reduced between app development and feedback from business, product, and development teams? Shipping features quickly while maintaining quality can create competitive advantage and improve user and customer experience, he said.</p>



<p>Gartner also advises establishing strong governance and cost controls. For instance, introduce token thresholds, automate usage monitoring, and create explicit escalation policies.</p>



<p>“Embedding these controls into engineering workflows ensures consistency and prevents uncontrolled cost growth,” the firm notes.</p>



<p>In addition, enterprises should create a “use case driven” decision framework. This means clearly defining when AI coding agents should be used, and their appropriate levels of autonomy given certain tasks. Further, classify those tasks into three execution models: ‘developer‑led,’ ‘developer‑with‑agent’, and ‘fully agent‑led.’</p>



<p>Enterprises should also select models based on task complexity. Break work into smaller tasks that can be performed by smaller models, “with escalation only when complexity demands it,” Gartner advises. Engineering teams should route workflows deliberately, directing simpler, high-frequency tasks to smaller models and using frontier models only for complex and high-value work.</p>



<p>Another cost saving tactic is mandating specific context engineering practices, the firm says. Developers should be trained to optimize the context they input to AI, including only the information that’s relevant, summarizing that content as much as possible, and eliminating unnecessary data.</p>



<p>Further, teams should embed token usage reviews into development cycles. Regular review of high token consuming workflows can help identify inefficiencies, refine practices, and support collaboration, Gartner says.</p>



<p>Tyagi noted that developers tend to optimize for speed and convenience rather than cost efficiency, so token discipline cannot be achieved through developer choice alone.</p>



<p>His advice for leaders: Do not treat escalating AI coding costs as a reason to move away from AI, or to shift to open generative AI models for everything. “The goal is always to optimize costs without compromising the value.”</p>



<p>Start small, and focus on context engineering first, he said. Assess your current software engineering maturity and select the appropriate agent autonomy. AI assistive development can provide up to 20% productivity gains, “which is not a bad number.”</p>



<p>For developers, he advises: “Target context engineering as one of the most important <a href="https://www.cio.com/article/2128415/generative-ai-certifications-and-certificate-programs.html" target="_blank">skills for yourself</a>. This is not only going to help your employer, but also your career.”</p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Entry-level AI workers now need ‘senior-level’ skills, PwC says]]></title>
<description><![CDATA[AI has created a tough job environment for entry-level workers and things aren’t getting better anytime soon — even those with AI capabilities now need “senior-level” skills to land a job.



“AI-exposed entry-level roles are seven times more likely to require traditionally senior-level skills su...]]></description>
<link>https://tsecurity.de/de/3621063/it-nachrichten/entry-level-ai-workers-now-need-senior-level-skills-pwc-says/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3621063/it-nachrichten/entry-level-ai-workers-now-need-senior-level-skills-pwc-says/</guid>
<pubDate>Wed, 24 Jun 2026 13:03:24 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>AI has created a tough job environment for entry-level workers and things aren’t getting better anytime soon — even those with AI capabilities now need “senior-level” skills to land a job.</p>



<p>“AI-exposed entry-level roles are seven times more likely to require traditionally senior-level skills such as judgement and leadership,” consulting firm <a href="https://www.pwc.com/gx/en/services/ai/ai-jobs-barometer.html">PwC said in a study released this month</a>.</p>



<p>That’s because AI is changing the traditional career ladder. Companies are increasingly looking for candidates that use the cutting-edge tools and services to amplify their performance and grow faster. “Organizations must rethink how they mentor and train junior staff, helping them step up to complex decision-making much earlier in their careers,” PwC said.</p>



<p>Entry-level job seekers with or without AI skills are already <a href="https://www.computerworld.com/article/4147180/ai-could-be-suppressing-wages-for-young-workers.html">dealing with stagnant wages</a>,  layoffs, and <a href="https://www.computerworld.com/article/4089594/ai-related-layoffs-often-hit-entry-level-roles-young-workers.html">stalled hiring</a>. </p>



<p>(The PwC findings echo similar concerns raised late last year in McKinsey’s State of AI report. Many companies are <a href="https://www.mckinsey.com/capabilities/quantumblack/our-insights/the-state-of-ai#/" target="_blank" rel="noreferrer noopener">reducing headcount by deploying AI agents</a> to take over entry-level jobs.)</p>



<p>Early-career AI job postings “have flatlined in highly AI exposed sectors,” and listings for junior roles with mid-career or senior-level skills have grown 35% since 2019, PwC said.  The consulting firm largely discounted the notion that AI is taking jobs away, though other studies point in the opposite direction. </p>



<p>By the end of May, AI-driven job cuts had reached 87,174 for 2026, already outpacing the total of around 54,836 in 2025, according to <a href="https://www.challengergray.com/blog/challenger-report-may-job-cuts-rise-16-from-april-highest-may-total-since-2020/" target="_blank" rel="noreferrer noopener">figures released by Challenger, Gray and Christmas earlier this month</a>.</p>



<p>The AI-driven layoffs haven’t reached the “jobpocalypse” stage yet, and workers are more productive with it, said Andy Challenger, chief revenue officer at Challenger, Gray and Christmas. But companies are rethinking hiring and long-term operational strategies as AI becomes a routine component in daily workflows and processes, he said.</p>



<p>Businesses are “restructuring aggressively as they reposition for an AI-driven economy,” he said.</p>



<p>That’s putting downward pressure on entry-level hiring as AI tools absorb more routine work, said Kye Mitchell, head of Experis US, a part of ManpowerGroup. “That doesn’t remove opportunity, but it changes the expectations. Employers now expect candidates to come in with hands-on experience, AI familiarity, and the ability to contribute faster,” Mitchell said.</p>



<p>Compensation remains strong for specialized, in-demand skills, while more commoditized roles such as customer service, helpdesk, and some entry-level positions  are flattening. “The shift overall is toward skills-based hiring, where demonstrable capability matters more than credentials alone,” Mitchell said.</p>



<p>Graduates who combine technical fundamentals with practical experience, AI fluency and strong communication skills stand out quickly. Job candidates can’t rely solely on academic credentials. </p>



<p>“Employers are moving away from ‘train-from-scratch’ hiring and looking for talent that can contribute earlier and continue to adapt,” Mitchell said.</p>



<p>The PwC study also focused on the productivity gap between companies that have invested heavily in AI and companies lagging in adoption.</p>



<p>Since <a href="https://www.computerworld.com/article/1615637/chatgpt-finally-an-ai-chatbot-worth-talking-to.html" data-type="link" data-id="https://www.computerworld.com/article/1615637/chatgpt-finally-an-ai-chatbot-worth-talking-to.html">ChatGPT showed up in 2022</a>, AI-exposed companies have seen productivity gains of 40% versus other companies. “The companies achieving the biggest productivity gains from AI are not using it only to cut costs,” PwC said.</p>



<p>AI-forward firms are also raising headcounts and wages. “Far from being a job killer, AI may actually be a job expander when used to unlock growth and enter new markets,” PwC said. </p>



<p>Workers who use their domain expertise to supplement AI tools can advance, with AI-exposed roles “2.5 times more likely to rely on skills like empathy, judgement, and creativity that become even more valuable as AI absorbs some routine work,” PwC said.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI engineer vs. forward deployed engineer: Which role delivers the most business value?]]></title>
<description><![CDATA[A prominent AI expert says that forward-deployed engineers are limited, and that the broader emerging category of AI engineers has the greatest career potential. Is he right?]]></description>
<link>https://tsecurity.de/de/3620704/it-nachrichten/ai-engineer-vs-forward-deployed-engineer-which-role-delivers-the-most-business-value/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3620704/it-nachrichten/ai-engineer-vs-forward-deployed-engineer-which-role-delivers-the-most-business-value/</guid>
<pubDate>Wed, 24 Jun 2026 11:02:50 +0200</pubDate>
<content:encoded><![CDATA[A prominent AI expert says that forward-deployed engineers are limited, and that the broader emerging category of AI engineers has the greatest career potential. Is he right?]]></content:encoded>
</item>
<item>
<title><![CDATA[Rami Rahim’s message for network pros: Legacy networks can’t withstand rigors of AI]]></title>
<description><![CDATA[Last week’s HPE Discover event in Las Vegas marked the first time the annual user conference included the now-fully-absorbed Juniper Networks. Rami Rahim, former CEO of Juniper Networks and current EVP, president and general manager of HPE Networking, took to the main stage for a dedicated networ...]]></description>
<link>https://tsecurity.de/de/3618900/it-security-nachrichten/rami-rahims-message-for-network-pros-legacy-networks-cant-withstand-rigors-of-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3618900/it-security-nachrichten/rami-rahims-message-for-network-pros-legacy-networks-cant-withstand-rigors-of-ai/</guid>
<pubDate>Tue, 23 Jun 2026 18:25:59 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Last week’s HPE Discover event in Las Vegas marked the first time the annual user conference included the now-fully-absorbed Juniper Networks. Rami Rahim, former CEO of Juniper Networks and current EVP, president and general manager of HPE Networking, took to the main stage for a dedicated networking session after HPE CEO Antonio Neri’s <a href="https://www.networkworld.com/article/4185952/hpe-discover-neri-outlines-an-ai-architecture-built-for-agents.html">morning keynote</a>.</p>



<p>Rahim emphasized the network’s importance to AI and how AI is changing networking. He framed the AI conversation around one thing: network foundations. “AI is reshaping every part of the enterprise,” he said, “but none of that happens without the right foundation underneath it. And that foundation starts with the network.”</p>



<p>For network engineers, his keynote and customer conversations offered a clear blueprint for what comes next. Here are five key themes from the keynote and what they mean for your day‑to‑day work life and future career.</p>



<h2 class="wp-block-heading">1. The network is now the AI foundation</h2>



<p>Rahim opened with the story of San Francisco’s <a href="https://en.wikipedia.org/wiki/Millennium_Tower_(San_Francisco)">Millennium Tower</a>, a visually stunning skyscraper that began to tilt because its foundation wasn’t built for long‑term environmental realities. He used it as an analogy for AI in the enterprise: Massive data movement, constant inference, real‑time responsiveness, and explosive scale will break any network that wasn’t designed for this new era.</p>



<p>“The network is no longer infrastructure sitting quietly in the background,” he said. “It’s become the strategic platform for how organizations operate, innovate, and scale.” You can buy “millions, if not billions, spent on GPUs,” he warned, but “if the network introduces latency and bottlenecks and instability, you’re limiting performance and slowing down outcomes.”</p>



<p>What this means for network engineers:</p>



<ul class="wp-block-list">
<li>Architect for AI-era baselines, not legacy traffic assumptions. Design for sustained east-west flows, low jitter, and deterministic paths that support AI training and inference, not just classic north-south traffic.</li>



<li>Translate network health into AI business outcomes. When you speak to leadership, link latency, loss, and path diversity to model training time, inference SLA, or customer experience, not just “link utilization.”</li>



<li>Get in early on AI projects. Push to join the initial design discussions so connectivity, security, and data movement patterns are engineered in rather than patched later.</li>
</ul>



<h2 class="wp-block-heading">2. AI for networks: Self‑driving operations are becoming table stakes</h2>



<p>The core thesis of Rahim’s presentation is that the legacy network can’t withstand the rigors of AI. “The old model of networking, static, manual, and reactive, simply cannot keep up with the speed and complexity AI introduces.” His alternative is an AI-native, self-driving operations model spanning Aruba Central and Mist, powered by Marvis, Marvis Minis, and an “agentic AI framework.”</p>



<p>On stage, he was joined by <a href="https://www.linkedin.com/in/sunalini/">Sunalini Sankhavaram</a>, VP of product management at HPE, who elaborated on this shift. “Experience-first AI in action” is built on “real-life experience data, every user, every minute, validated against real customer support cases, and enriched with digital twins.” In one demo, Marvis detected that “over 6% of user minutes were bad,” isolated the issue to a few overutilized APs, and “autonomously fixed the problem by enabling dual-band 5 GHz,” cutting peak utilization from 90% to 54%. Rahim summarized the outcome: “The network identified the issue, understood the root cause, determined the right action, and resolved the problem automatically before any user even had a chance to complain.”</p>



<p>For engineers, that’s a fundamental shift: from being the resolver to configuring, supervising, and governing these AI systems.</p>



<p>How to respond:</p>



<ul class="wp-block-list">
<li>Lean into AIOps rather than treating it as a dashboard. Feed full-fidelity telemetry (“every user every minute”) into platforms like Mist and Aruba Central and actively test their recommendations.</li>



<li>Redefine your role as a guardrail designer. Your value increasingly lies in defining SLAs, allowed action scopes, and approval workflows for autonomous changes, rather than hand-tuning every parameter.</li>



<li>Learn the new language of operations: SLAs and “bad user minutes.” If your tooling speaks in experience metrics, you need to as well; they will become the common currency between IT and the business.</li>
</ul>



<h2 class="wp-block-heading">3. One AI‑native fabric across campus, branch, and routing</h2>



<p>A big structural message in the keynote is unification: Juniper plus Aruba, Mist plus Central, wired plus wireless plus routing, all tied together by a common AI engine.</p>



<p>“We are innovating across both platforms to deliver a consistent self-driving experience,” Sankhavaram said. “With microservices, we can develop self-driving innovations once and deploy them on both the HPE Aruba Central and HPE Mist platforms,” much like a single app running on both iOS and Android. Marvis is being brought “right into the global north view” in Aruba Central, including the “Marvis Trust List”—actions you can set to run fully autonomously, such as automatically recovering a dead camera port to restore video without human intervention.</p>



<p>On the hardware front, HPE has already shipped a dual-platform AP and is bringing the “world-class HPE networking CX portfolio” to Mist for day zero, day one, and day two operations.” Rahim articulated the design principle clearly: “Our mission is simple. Bring the best innovations to both platforms, so that every customer in every industry gets the same powerful self-driving network, no matter which platform they choose.”</p>



<p>Advice for engineers:</p>



<ul class="wp-block-list">
<li>Design for platform optionality. Assume that over the life of your hardware, management planes may change. Favor equipment that can switch between Mist and Central (or similar ecosystems) without rip-and-replace.</li>



<li>Embed digital twins into your workflows. Experience twins and synthetic testing should be part of pre-deployment validation and change management, not just a vendor demo.</li>



<li>Build API-first automation muscle. Sankhavaram emphasized “an API-first approach,” making data and actions accessible programmatically. That’s your cue to deepen your skills in Python, CI/CD, and infrastructure-as-code.</li>
</ul>



<h2 class="wp-block-heading">4. Networking and security are converging, with AI‑aware controls</h2>



<p>Rahim repeatedly stressed that networking and security can no longer operate separately. “Attackers are already using the network as their weapon of choice,” he said, “and with AI making threats faster, smarter, and more sophisticated, defenders need to use the network as part of their defense.” This aligns with my research, which has found that 83% of network engineers now have security as part of their remit. </p>



<p>Customer voices underscored the point. “Security for us is job number one,” said Royal Bank of Canada’s <a href="https://www.linkedin.com/in/marlon-drummond-3550a81b/">Marlon Drummond</a>. “We don’t have any other job other than protecting our client data. It’s our competitive edge, so we protect it with everything in our fiber.” RBC troubleshoots “at the network layer – the only place that you can get some immutable evidence,” using SD-WAN and DPI to create a “persona or personality for a user” and treat deviations as anomalies.</p>



<p>On the product side, HPE announced a unified SASE orchestrator that combines its Edge Connect SD‑WAN with its SSE stack into a unified SASE orchestrator with a single console. During the session, HPE showed an “AI‑aware firewall” that distinguishes sanctioned, unsanctioned, and tolerated AI apps, enforcing fine‑grained guardrails on uploads, prompts, and keywords. As Rahim put it, this lets customers “see, govern, and protect how AI is being used across their entire organizations without slowing down their businesses.”</p>



<p>For network engineers:</p>



<ul class="wp-block-list">
<li>Expect to own more of the zero‑trust and AI‑governance story. Policies like “block ChatGPT, tolerate Gemini with upload and keyword controls” will be implemented in your SASE and firewall fabric.</li>



<li>Instrument the network as a primary security sensor. Follow RBC’s lead: build detection pipelines around network telemetry, lateral movement patterns, and per‑user “personas.”</li>



<li>Treat self‑driving changes as security‑sensitive. Autonomous routing shifts, RF changes, and port resets must respect segmentation and zero‑trust boundaries. Think like both a network engineer and a security architect.</li>
</ul>



<h2 class="wp-block-heading">5. Experience‑first networking at real‑world scale</h2>



<p>The most compelling parts of the keynote were the customer segments, which showcased just how unforgiving modern environments have become.</p>



<p>Ohio State CIO <a href="https://www.linkedin.com/in/roblowden/">Rob Lowden</a> described a campus that is “a small city” with 66,000 students, 8,500 faculty, 22,000 HPE APs, and a football stadium that can see “200,000 plus people” in and around the venue on game day. With that density, “we need AI ops to crunch all of that data in real time,” he said. They’ve gone from problems that “can take hours” to being “resolved in minutes versus hours.”</p>



<p>At Sentara Health, director <a href="https://www.linkedin.com/in/tom-johnson-2aa3a617/">Tom Johnson</a> did a great job highlighting the problem in his industry. “We move massive amounts of data across the organization, and it directly impacts patient care. That’s why our network must be resilient, secure, and always available. Because when data is delayed, care is delayed.” Ambient AI that listens to patient conversations and generates clinical notes is already in production, but “for those kinds of capabilities to work, our network has to deliver that data in real time, reliably, securely.”</p>



<p>Disney’s <a href="https://www.linkedin.com/in/bencroy/">Ben Croy</a>, who runs global networking, described studio networks where a single animated feature “could easily generate a petabyte of content,” with “over 200 concurrent productions globally.” In that world, the requirement is simple: “speed and simplicity… that’s it.” The network must be “foundational” yet “ideally invisible,” so filmmakers focus on story rather than connectivity.</p>



<p>What network engineers should take from these stories:</p>



<ul class="wp-block-list">
<li>Measure what users feel, not just what devices report. Adopt SLAs around app quality (Zoom, EMR, VFX pipelines) as primary KPIs, and design your telemetry and AI‑ops to optimize those.</li>



<li>Use AI‑driven twins and synthetic tests to avoid “disasters that never happened” becoming real ones. Pre‑test big launches (stadium events, AI rollouts, global premieres) with synthetic users and paths, then let Marvis‑style systems validate and remediate.</li>



<li>Become a vertical expert. Whether you support healthcare, finance, education, or media, understanding domain‑specific workflows lets you prioritize and tune the network for what matters to clinicians, traders, students, or artists.</li>
</ul>



<h2 class="wp-block-heading">Final thoughts</h2>



<p>Rahim closed with a challenge: “The old way of operating networks has reached its limits. The scale is too large, the complexity is too high, the pace of change is too fast, and AI is accelerating all of it.” In that world, “self‑driving networks are not a futuristic idea but a practical necessity.” For network engineers, the opportunity is to be the ones who build, govern, and extend that self‑driving foundation—before someone else does it for you.</p>



<p>I know many engineers still fear AI, but as the expression goes: AI won’t take your job, but another person who uses AI will.</p>



<h3 class="wp-block-heading">Read more content from HPE Discover:</h3>



<ul class="wp-block-list">
<li><a href="https://www.networkworld.com/article/4185952/hpe-discover-neri-outlines-an-ai-architecture-built-for-agents.html">HPE Discover: Neri outlines an AI architecture built for agents</a></li>



<li><a href="https://www.networkworld.com/article/4186421/hpe-cto-russo-drills-into-data-orchestration-and-observability-for-the-agentic-enterprise.html">HPE CTO Russo drills into data, orchestration, and observability for the agentic enterprise</a></li>



<li><a href="https://www.networkworld.com/article/4185763/hpe-product-barrage-targets-ai-networks-agents-management.html">HPE product barrage targets AI networks, agents, management</a></li>
</ul>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[In 2026 how might you forge a career as a bioprocessing technician?]]></title>
<description><![CDATA[Amgen’s Rachael Harte and Barakat Raji explore the routes towards a career in bioprocessing and how they found themselves in their current roles. 
Read more: In 2026 how might you forge a career as a bioprocessing technician?]]></description>
<link>https://tsecurity.de/de/3618668/it-nachrichten/in-2026-how-might-you-forge-a-career-as-a-bioprocessing-technician/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3618668/it-nachrichten/in-2026-how-might-you-forge-a-career-as-a-bioprocessing-technician/</guid>
<pubDate>Tue, 23 Jun 2026 17:03:29 +0200</pubDate>
<content:encoded><![CDATA[<p>Amgen’s Rachael Harte and Barakat Raji explore the routes towards a career in bioprocessing and how they found themselves in their current roles. </p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/careers/forge-career-bioprocessing-technician-manufacturing-amgen-skills-working-life">In 2026 how might you forge a career as a bioprocessing technician?</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New iPhone Exploit is Crazy #cyber #hacking #iphone #jailbreak]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 49x - Views:828 🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEYBOARD
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard

🔥COME...]]></description>
<link>https://tsecurity.de/de/3618636/it-security-video/new-iphone-exploit-is-crazy-cyber-hacking-iphone-jailbreak/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3618636/it-security-video/new-iphone-exploit-is-crazy-cyber-hacking-iphone-jailbreak/</guid>
<pubDate>Tue, 23 Jun 2026 16:33:53 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 49x - Views:828 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/cuU2gWWIHcQ?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[This iPhone Bug Is Impossible to Fix]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 117x - Views:1126 https://ps.tc/pages/blog-usbliter8.html

🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEYBOARD
Like what you hear? Grab a Q...]]></description>
<link>https://tsecurity.de/de/3618445/it-security-video/this-iphone-bug-is-impossible-to-fix/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3618445/it-security-video/this-iphone-bug-is-impossible-to-fix/</guid>
<pubDate>Tue, 23 Jun 2026 15:33:51 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 117x - Views:1126 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/fGo6JEQ7pPg?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>https://ps.tc/pages/blog-usbliter8.html<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Preserving cultural heritage: Inside Google DeepMind’s collaboration with Pelé]]></title>
<description><![CDATA[On August 2, 1959, Pelé scored the most beautiful goal of his career: three consecutive “sombreros” without the ball touching the ground. Yet, the legendary 'Gol da Rua …]]></description>
<link>https://tsecurity.de/de/3618247/it-nachrichten/preserving-cultural-heritage-inside-google-deepminds-collaboration-with-pel/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3618247/it-nachrichten/preserving-cultural-heritage-inside-google-deepminds-collaboration-with-pel/</guid>
<pubDate>Tue, 23 Jun 2026 14:31:59 +0200</pubDate>
<content:encoded><![CDATA[<img src="https://storage.googleapis.com/gweb-uniblog-publish-prod/images/pele_bts.max-600x600.format-webp.webp">On August 2, 1959, Pelé scored the most beautiful goal of his career: three consecutive “sombreros” without the ball touching the ground. Yet, the legendary 'Gol da Rua …]]></content:encoded>
</item>
<item>
<title><![CDATA[What 20 years of AWS taught me about agentic AI]]></title>
<description><![CDATA[This year marks the 20th anniversary of AWS — and my 20th year building at Amazon.



My entire career is for the sole purpose of making developers’ lives easier. As a developer, it is a bit of a self-serving purpose. For example, I was constantly distracted by operating databases, so I joined th...]]></description>
<link>https://tsecurity.de/de/3617835/it-nachrichten/what-20-years-of-aws-taught-me-about-agentic-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3617835/it-nachrichten/what-20-years-of-aws-taught-me-about-agentic-ai/</guid>
<pubDate>Tue, 23 Jun 2026 12:02:54 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>This year marks the 20th anniversary of AWS — and my 20th year building at Amazon.</p>



<p>My entire career is for the sole purpose of making developers’ lives easier. As a developer, it is a bit of a self-serving purpose. For example, I was constantly distracted by operating databases, so I joined the DynamoDB team to build a service that handles that, so that other developers and I would never have to operate databases again.</p>



<p>I then went on to work on Lambda and API <a>Gateway</a>. I didn’t have to babysit servers or handle request routing, and on CloudWatch, so I could see what my code was doing in production. Each time, the goal was the same: remove the painful, repetitive work and turn it into a service that just works.</p>



<p>I’m still chasing the same goal, just with a very different set of tools.</p>



<h2 class="wp-block-heading">The rise — and limits — of vibe coding</h2>



<p>Large language models added the ability to describe what I want in natural language and have code synthesized on demand. At first, this looked like “<a href="https://www.infoworld.com/article/4166817/vibe-coding-or-spec-driven-development-how-to-choose.html?utm=hybrid_search">vibe coding</a>” — ask for a change to the script, compile it, run it, copy the errors back and hope the next iteration was better.</p>



<p>Things got interesting when we wrapped the whole “vibe coding” workflow in agentic loops. Instead of me feeding back every error, an agent could call the model, run the code, see its own failures and keep iterating until tests passed. But there was a big problem: the agents wandered. That’s fine for side projects, not fine for large, critical codebases.</p>



<h2 class="wp-block-heading">Spec‑driven development for agents</h2>



<p>The way I’ve come <a href="https://kiro.dev/blog/kiro-and-the-future-of-software-development/" rel="nofollow">to keep agents focused is through spec‑driven development</a>. Instead of dropping an agent into a repo with a vague prompt, I co‑create three concrete artifacts with it before any serious coding begins: a requirements spec, a design document and a task breakdown, all in Markdown. These are a shared contract for what “done” means, written in a form that both humans and agents can read, critique and update.</p>



<p>In my day-to-day, I start with almost the same prompt I’d give any AI, but the agent expands it into a structured requirements document with clear “shall” statements and acceptance criteria. I review those requirements and chat with the agent until the document matches what I actually want. From there, the agent proposes a design, then breaks the work into tasks focused on getting something tangible running before adding polish and exhaustive tests.</p>



<p>What I like about this flow is not that it’s rigid. In practice, I bounce back and forth. I often see a design that reveals missing requirements, or I change my mind about the approach once I see code snippets. The point is that agents no longer “forget” what we agreed on. The spec, design and tasks are explicit, versioned and always visible. And when I want to tack on another feature or bugfix, I start with a fresh spec that describes exactly what I want to change.</p>



<h2 class="wp-block-heading">Property‑based testing and keeping agents honest</h2>



<p>Once the specs are explicit, you can turn them into invariants and <a href="https://kiro.dev/blog/property-based-testing-fixed-security-bug/" rel="nofollow">use property-based tests to keep agents honest</a>. Instead of writing one test for “given this exact input, expect this exact output,” I define properties that must hold across many inputs and sequences.</p>



<p>Without strong, spec-derived tests, I’ve seen agents game the system by “fixing” the tests instead of the code — commenting out assertions or weakening conditions just to get a green build. Property-based tests give me a way to encode my expectations once and have both humans and agents constantly prove we’re still meeting them.</p>



<p>This approach has clear implications for security as well. If security teams can encode expectations — about data handling, authorization and error behavior — as invariants in the same spec language the agent consumes, then property-based tests can hammer those invariants across many scenarios. That’s a much more robust way to shift security left than hoping every developer remembers every rule under deadline pressure.</p>



<h2 class="wp-block-heading">DevOps agents and the next decade of practice</h2>



<p>Over twenty years, I’ve learned that the key to incident response isn’t only about chasing the root cause — it’s systematically asking what changed, what callers changed, what limits were hit, what components failed as designed and what dependencies are involved.</p>



<p>A DevOps agent is becoming as important as any IDE. It <a href="https://aws.amazon.com/blogs/networking-and-content-delivery/automated-network-incident-response-with-aws-devops-agent/">plugs into the tooling teams already use and runs that investigation automatically whenever an alarm fires</a>. It reads logs, metrics, traces and code, and often has a diagnosis and plan ready by the time I open my laptop.</p>



<p>I’ve seen incidents that once took eight hours of human sleuthing reduced to fifteen minutes, with the agent explaining the bug, citing evidence, and recommending a rollback and follow-up fix.</p>



<p>Between incidents, the same system scans past outages and infrastructure to suggest preventative work — code hardening, better retries, alarm tuning — that teams rarely have time to prioritize on their own, and that’s the most important part. Reducing downtime is great, but avoiding it altogether is a big reason why we’re here.</p>



<p>Looking ahead, I think developers will learn to wear all sorts of other hats — the operator, product manager, customer support — while agents take on their routine tasks. The most valuable work becomes problem-solving and ensuring systems are built right and serve the right purpose.</p>



<p>Other things won’t change at all. “If you build it, you run it” still applies, even when an agent wrote part or all of the code. Developers will still own production and post‑incident retrospectives that focus on how to prevent issues. Some parts — like data collection, impact analysis, root cause analysis — get faster with agents doing the legwork, but developers still direct the investigation, decide the real fixes and share those lessons across teams.</p>



<p>Twenty years ago, the big shift was turning infrastructure into services, so developers didn’t have to think about <a>racking</a> servers or babysitting databases. In this new era, the move is turning our best practices, operational experience and security expectations into specs and agents that can execute them consistently, at any scale. The lesson from the first two decades still applies: The pain you tolerate today is the platform someone else will build tomorrow — only now, agents give us a much faster way to close that gap.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Some Electricians Think Building Data Centers Is For Sellouts]]></title>
<description><![CDATA[An anonymous reader quotes a report from Wired: As Big Tech dumps billions of dollars into America's data center buildout, a slew of opportunities have opened up to the electricians wiring these massive facilities. In some cases, the scale of the projects and the demanding construction timelines ...]]></description>
<link>https://tsecurity.de/de/3616444/it-security-nachrichten/some-electricians-think-building-data-centers-is-for-sellouts/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3616444/it-security-nachrichten/some-electricians-think-building-data-centers-is-for-sellouts/</guid>
<pubDate>Mon, 22 Jun 2026 21:08:51 +0200</pubDate>
<content:encoded><![CDATA[An anonymous reader quotes a report from Wired: As Big Tech dumps billions of dollars into America's data center buildout, a slew of opportunities have opened up to the electricians wiring these massive facilities. In some cases, the scale of the projects and the demanding construction timelines are fueling talent wars for the industry's best and brightest. The US-based International Brotherhood of Electrical Workers (IBEW) has argued that its workers are "powering the AI Revolution," and a set of "Data Center Principles" published in March argues that union labor is "essential to the future of AI." Tech companies are trying to meet the moment: Meta recently announced a skilled trade academy program, and Google committed $50 million to help train people in skilled trades.
 
But amid growing national opposition to data centers, debates over the ethics of the massive buildout have started to pop up in some online pockets of the community. Threads about how AI will affect the economy now pepper r/electricians, a subreddit with around half a million monthly visitors. Some users wonder whether the work will eventually prompt widespread job losses. Others aren't sure if their labor makes them complicit in the damage done to local communities or whether it's unethical to take on data center work. For some, the answer is a firm no. Ultimately, they argue, work is work. An anonymous Midwest electrician who spoke to Wired acknowledged concerns about scams, corporate greed, and AI's impact on workers, but said he views data centers as an important source of career advancement. "This is most likely going to be a major part of our future. And if you can't beat them, join them," he said. 

An electrician named Ryan, meanwhile, is strongly opposed to working on data centers because he distrusts the corporations and political environment driving AI development. Still, if the facilities are going to be built, he would prefer union workers construct them. "If they're going to get built, I'd rather they go union," he said. 

Jesse, an IBEW electrician, sympathizes with communities negatively affected by data centers but does not believe the electricians building them should be blamed. In his view, opposition should instead be directed toward policymakers and the project approval process. "I think it's ridiculous if, to build a data center or any kind of a business, you're going to significantly impact the lives of that community in a negative way," he told Wired. 

An electrician named Dante echoed some of those sentiments, arguing that data center work is no more ethically compromised than many other commercial construction projects. "We're almost always working for the worst possible people in the end, but we all need a paycheck," he said. He added that such projects are "essentially the same kind of work," typically performed for wealthy corporations seeking to become even richer.<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Some+Electricians+Think+Building+Data+Centers+Is+For+Sellouts%3A+https%3A%2F%2Ftech.slashdot.org%2Fstory%2F26%2F06%2F22%2F1749209%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Ftech.slashdot.org%2Fstory%2F26%2F06%2F22%2F1749209%2Fsome-electricians-think-building-data-centers-is-for-sellouts%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://tech.slashdot.org/story/26/06/22/1749209/some-electricians-think-building-data-centers-is-for-sellouts?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Sunil Varkey Joins Hexaware Technologies as EVP & CISO]]></title>
<description><![CDATA[Sunil Varkey has been appointed as Executive Vice President (EVP) and Chief Information Security Officer (CISO) at Hexaware Technologies, where he will lead the company's information security strategy, governance, risk management, and enterprise resilience initiatives. The appointment marks the l...]]></description>
<link>https://tsecurity.de/de/3615234/it-security-nachrichten/sunil-varkey-joins-hexaware-technologies-as-evp-ciso/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615234/it-security-nachrichten/sunil-varkey-joins-hexaware-technologies-as-evp-ciso/</guid>
<pubDate>Mon, 22 Jun 2026 13:05:37 +0200</pubDate>
<content:encoded><![CDATA[<p><img width="960" height="557" src="https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="Sunil Varkey" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment.webp 960w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-300x174.webp 300w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-768x446.webp 768w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-600x348.webp 600w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-150x87.webp 150w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-750x435.webp 750w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment.webp 960w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-300x174.webp 300w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-768x446.webp 768w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-600x348.webp 600w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-150x87.webp 150w, https://thecyberexpress.com/wp-content/uploads/Sunil-Varkey-Appointment-750x435.webp 750w" sizes="(max-width: 960px) 100vw, 960px" title="Sunil Varkey Joins Hexaware Technologies as EVP &amp; CISO 1"></p>Sunil Varkey has been appointed as Executive Vice President (EVP) and Chief Information Security Officer (CISO) at Hexaware Technologies, where he will lead the company's information security strategy, governance, risk management, and enterprise resilience initiatives. The appointment marks the latest leadership role for the cybersecurity veteran, who brings more than three decades of experience across global enterprises and multiple industry sectors.

Based in Chennai, India, and operating in a hybrid work model, Varkey will be responsible for strengthening enterprise cybersecurity governance, risk management frameworks, and overall security strategy at Hexaware Technologies. His appointment was announced in June 2026.
<h3>Sunil Varkey to Lead Cybersecurity Strategy at Hexaware Technologies</h3>
In his new role, <a href="https://www.linkedin.com/in/sunilvarkey1/" target="_blank" rel="nofollow noopener">Sunil Varkey </a>will oversee key areas including information security governance, <a href="https://thecyberexpress.com/the-global-commerce-vulnerability-window/" target="_blank" rel="noopener">enterprise risk management</a>, and resilience initiatives. His responsibilities align with Hexaware Technologies' broader technology and growth objectives as the company continues to support large-scale digital transformation programs for clients worldwide.

Hexaware Technologies delivers technology-led services across application development, cloud services, automation, <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-data/" title="data" data-wpil-keyword-link="linked" data-wpil-monitor-id="28794">data</a> analytics, and enterprise IT operations. The company serves organizations across multiple industries and supports digital modernization initiatives at scale.

Varkey's appointment comes as organizations continue to focus on strengthening <a class="wpil_keyword_link" href="https://cyble.com/knowledge-hub/what-is-cybersecurity/" target="_blank" rel="noopener" title="cybersecurity" data-wpil-keyword-link="linked" data-wpil-monitor-id="28789">cybersecurity</a> programs and managing digital risks across increasingly complex technology environments.
<h3>More Than 30 Years of Cybersecurity Leadership Experience</h3>
Varkey brings over 30 years of experience in <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-cybersecurity/" title="cybersecurity" data-wpil-keyword-link="linked" data-wpil-monitor-id="28795">cybersecurity</a> leadership spanning banking, telecommunications, IT services, manufacturing, and enterprise technology sectors. His professional experience extends across India, the Middle East, and the United States.

His areas of expertise include cybersecurity <a href="https://thecyberexpress.com/global-grc-platform-market/" target="_blank" rel="noopener">governance, risk and compliance</a> (GRC), security architecture, incident response, DevSecOps, cloud security, privacy management, cyber defense, business continuity management, security operations, and AI security.

Prior to joining Hexaware Technologies, Varkey served as <a class="wpil_keyword_link" href="https://thecyberexpress.com/cyber-news/" title="Cyber" data-wpil-keyword-link="linked" data-wpil-monitor-id="28792">Cyber</a> Security Consultant and Advisor at TAHAKOM in Riyadh, Saudi Arabia, from June 2023 to March 2025. In that role, he worked alongside the organization's <a href="https://thecyberexpress.com/2026-10-technologies-cisos-will-invest-in/" target="_blank" rel="noopener">CISO</a> to enhance cybersecurity resilience and strengthen security posture.

Before TAHAKOM, he held the position of Vice President and Chief Technology Officer for EMEA and APJ at Forescout Technologies Inc. between April 2021 and November 2022. Based in Dubai, he focused on IT/OT security strategy, enterprise cybersecurity advisory services, and product positioning across global markets.
<h3>Leadership Roles Across Global Organizations</h3>
Between March 2020 and January 2021, Varkey served as Managing Director and Global Head of Cyber Security Assessments and Testing at HSBC in Hyderabad. He led a team of approximately 300 professionals responsible for penetration testing, threat modeling, <a class="wpil_keyword_link" href="https://thecyberexpress.com/firewall-daily/vulnerabilities/" title="vulnerability" data-wpil-keyword-link="linked" data-wpil-monitor-id="28790">vulnerability</a> management, and third-party security risk assessments.

Earlier, from December 2018 to February 2020, he worked as CTO and Security Strategist for the Middle East, Africa, and Eastern Europe region at Symantec. His responsibilities included developing cybersecurity strategies for enterprise, government, industrial, and financial sector organizations.

His career also includes senior leadership positions such as Global CISO at Wipro, CISO for Security and <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-privacy/" title="Privacy" data-wpil-keyword-link="linked" data-wpil-monitor-id="28788">Privacy</a> at Idea Cellular, and Vice President of Security Engineering at Barclays. Additionally, he held global security leadership roles at GE Capital, Genpact, Paramount Computer Systems, and other multinational organizations.
<h3>Focus on Governance, Risk Management, and Enterprise Resilience</h3>
Throughout his career, Varkey has overseen cybersecurity functions covering governance, compliance, strategy, security engineering, <a class="wpil_keyword_link" href="https://cyble.com/knowledge-hub/what-is-incident-response/" target="_blank" rel="noopener" title="incident response" data-wpil-keyword-link="linked" data-wpil-monitor-id="28793">incident response</a>, privacy, cloud security, cyber defense, and enterprise resilience.

His experience includes leading security programs for organizations with large-scale user bases and complex operational environments. At Wipro, he served as Global CISO for a technology company supporting more than 200,000 end users. At Idea Cellular, he led security and privacy initiatives for a telecom operator with approximately 120 million subscribers.

With his appointment, Hexaware Technologies adds a cybersecurity leader with extensive experience in building and scaling security programs across global enterprises. The move underscores the company's continued focus on strengthening cybersecurity operations, governance frameworks, and digital <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-risk-management/" title="risk management" data-wpil-keyword-link="linked" data-wpil-monitor-id="28791">risk management</a> capabilities as part of its ongoing technology initiatives.]]></content:encoded>
</item>
<item>
<title><![CDATA[CW@60: On longevity – a career spanning 60 years of modern computing]]></title>
<description><![CDATA[On 22 September 2026, Computer Weekly turns 60. To mark the milestone, we asked some of our friends - experts, trusted contacts, IT leaders and suppliers - for their perspectives on how tech has changed their lives over six decades]]></description>
<link>https://tsecurity.de/de/3615164/it-nachrichten/cw60-on-longevity-a-career-spanning-60-years-of-modern-computing/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615164/it-nachrichten/cw60-on-longevity-a-career-spanning-60-years-of-modern-computing/</guid>
<pubDate>Mon, 22 Jun 2026 12:33:44 +0200</pubDate>
<content:encoded><![CDATA[On 22 September 2026, Computer Weekly turns 60. To mark the milestone, we asked some of our friends - experts, trusted contacts, IT leaders and suppliers - for their perspectives on how tech has changed their lives over six decades]]></content:encoded>
</item>
<item>
<title><![CDATA[We are witnessing the slow death of the prestige career | Alice Lassman]]></title>
<description><![CDATA[White-collar work is at risk across the board, including at elite consulting firms that used to be a pathway to the 1%Consulting is a delicate contract: endure two challenging, formative years – and in return, get a golden ticket to anywhere. Firms like McKinsey tout themselves as the “CEO factor...]]></description>
<link>https://tsecurity.de/de/3615078/ai-nachrichten/we-are-witnessing-the-slow-death-of-the-prestige-career-alice-lassman/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3615078/ai-nachrichten/we-are-witnessing-the-slow-death-of-the-prestige-career-alice-lassman/</guid>
<pubDate>Mon, 22 Jun 2026 12:03:16 +0200</pubDate>
<content:encoded><![CDATA[<p>White-collar work is at risk across the board, including at elite consulting firms that used to be a pathway to the 1%</p><p>Consulting is a delicate contract: endure two challenging, formative years – and in return, get a golden ticket to anywhere. Firms like McKinsey tout themselves as the “<a href="https://fortune.com/2025/09/25/mckinsey-ceo-pipeline-fortune-500-global-500-consulting-ai/">CEO factory</a>”, and boast they’re “<a href="https://www.mckinsey.com/alumni/news-and-events/global-news/firm-news/2024-12-mckinsey-leadership-factory">not surprised</a>” to be consistently named the best place for future leaders.</p><p>The skills they promise to build – synthesis, sharp analysis, crisp communication, client-readiness, hypothesis-driven thinking – have enticed every generation’s top graduates. Get an offer from a place like this, and everything else will fall into place: about as clear a guarantee of future success as you could get fresh out of a bachelors. These firms spent decades marketing themselves as production houses of excellence, and until recently, they were.</p><p>Alice Lassman is an economist who writes The Intimacy Economy, a Substack and forthcoming book on the economics of connection, care and relationships</p> <a href="https://www.theguardian.com/commentisfree/2026/jun/22/consulting-ai-prestige-careers">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tech Pundit Cringely Co-Founds Startup '2Brains Inc' to Solve LLM Hallucinations]]></title>
<description><![CDATA[Long-time tech pundit Robert Cringely started his career at the Stanford Artificial Intelligence Lab back in 1978. Last month 73-year-old Cringely explained why his site went on a two-year hiatus — and it's not just because of a heart attack and a stroke last July:


Just like everyone else, I've...]]></description>
<link>https://tsecurity.de/de/3612700/it-security-nachrichten/tech-pundit-cringely-co-founds-startup-2brains-inc-to-solve-llm-hallucinations/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3612700/it-security-nachrichten/tech-pundit-cringely-co-founds-startup-2brains-inc-to-solve-llm-hallucinations/</guid>
<pubDate>Sat, 20 Jun 2026 21:52:31 +0200</pubDate>
<content:encoded><![CDATA[Long-time tech pundit Robert Cringely started his career at the Stanford Artificial Intelligence Lab back in 1978. Last month 73-year-old Cringely explained why his site went on a two-year hiatus — and it's not just because of a heart attack and a stroke last July:


Just like everyone else, I've been busy all this time on Artificial Intelligence, founding with two partners a company called 2Brains... The work we were doing together is unfinished, but it's not stopped. The patents are filed, the architecture is documented, and the small team continuing the work includes me. 

Cringely's first piece made the cast that "the trillion-dollar bet the AI industry is making right now may be wrong, and that there's an architectural alternative we've patented and built."




In Machines of Loving Grace, Amodei made the case that scaling compute would eventually solve essentially every hard problem in artificial intelligence. Buried in that optimism — or maybe not buried, maybe right out in the open — was a quiet absolution. Hallucinations, the embarrassing tendency of these systems to state falsehoods with total confidence, would take care of themselves. Make the models big enough, train them long enough, and the problem dissolves. You don't have to solve it. You just have to wait, and spend. And so the entire AI industry breathed a sigh of relief. 

I have spent forty years watching this industry, and I know a permission slip when I see one. 

Because that is what the essay became, whatever Amodei intended. It gave every other person writing nine- and ten-figure checks a reason not to worry about the one thing that should worry them most. The hallucination problem is the difference between a clever toy and a system a hospital or a bank or a court can actually rely on. It is the whole ballgame for enterprise AI. And the prevailing wisdom, blessed from the top, is that you needn't address it directly. Scale will provide... 

A small company I helped start, 2Brains Inc., set out in 2022 to solve hallucinations — before ChatGPT, before the scaling consensus hardened into received truth, back when the polite assumption was that the problem was simply insurmountable. We did not solve it by waiting for bigger models. We solved it architecturally, by separating the part of the system that generates language from the part that retrieves and verifies facts, and reconciling the two before anything reaches the user. It runs on ordinary processors. It is cheap. And on the industry's own benchmark for this kind of faithfulness, it more than doubles the published baseline, with no fabricated facts in the verified case at all. 

The article asks whether scaling will, at tremendous cost, eventually reduce hallucinations — or even worse, if the largest companies in the world "are spending a fortune chasing a cure that is not coming." 

And last week Cringely pitched more advantages for their solution, noting that most prompts aren't even chatbot-level creative prompts — but just requests to retrieve simple data:

The reason 2Brains doesn't lie and the reason it's cheap are the same reason. It looks the fact up instead of guessing it — so it cannot fabricate, and the lookup runs on a processor that sips power instead of a chip that gulps it. Trust and thrift are not a trade-off you balance against each other. They fall out of a single design decision. You do not pay extra for the honest version. The honest version is the cheap version. That sentence is the whole company.
<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Tech+Pundit+Cringely+Co-Founds+Startup+'2Brains+Inc'+to+Solve+LLM+Hallucinations%3A+https%3A%2F%2Fslashdot.org%2Fstory%2F26%2F06%2F20%2F0556251%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fslashdot.org%2Fstory%2F26%2F06%2F20%2F0556251%2Ftech-pundit-cringely-co-founds-startup-2brains-inc-to-solve-llm-hallucinations%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://slashdot.org/story/26/06/20/0556251/tech-pundit-cringely-co-founds-startup-2brains-inc-to-solve-llm-hallucinations?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA["I leave feeling grateful, proud, and excited": After 31 years, Age of Empires veteran Earnest Yuen retires]]></title>
<description><![CDATA[After a 31-year career spanning 50+ titles, Age of Empires veteran Earnest Yuen has officially announced his retirement from Microsoft.]]></description>
<link>https://tsecurity.de/de/3612302/windows-tipps/i-leave-feeling-grateful-proud-and-excited-after-31-years-age-of-empires-veteran-earnest-yuen-retires/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3612302/windows-tipps/i-leave-feeling-grateful-proud-and-excited-after-31-years-age-of-empires-veteran-earnest-yuen-retires/</guid>
<pubDate>Sat, 20 Jun 2026 15:55:08 +0200</pubDate>
<content:encoded><![CDATA[After a 31-year career spanning 50+ titles, Age of Empires veteran Earnest Yuen has officially announced his retirement from Microsoft.]]></content:encoded>
</item>
<item>
<title><![CDATA[they cant keep getting away with this...]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 252x - Views:2892 Tired of SASE slowing you down? Speed things up with Island @ https://go.lowlevel.tv/island2026

🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https:/...]]></description>
<link>https://tsecurity.de/de/3610635/it-security-video/they-cant-keep-getting-away-with-this/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3610635/it-security-video/they-cant-keep-getting-away-with-this/</guid>
<pubDate>Fri, 19 Jun 2026 16:19:05 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 252x - Views:2892 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/gEMx7kt7n4E?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Tired of SASE slowing you down? Speed things up with Island @ https://go.lowlevel.tv/island2026<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Convoy co-founder Dan Lewis exits Microsoft to launch stealth startup aiming to reinvent AI supply chain]]></title>
<description><![CDATA[Dan Lewis, who led the Seattle freight marketplace Convoy before it shut down in 2023, has left Microsoft to start a stealth company focused on running AI models more efficiently, extending a career spent at the intersection of AI and logistics. Read More]]></description>
<link>https://tsecurity.de/de/3608331/it-nachrichten/convoy-co-founder-dan-lewis-exits-microsoft-to-launch-stealth-startup-aiming-to-reinvent-ai-supply-chain/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608331/it-nachrichten/convoy-co-founder-dan-lewis-exits-microsoft-to-launch-stealth-startup-aiming-to-reinvent-ai-supply-chain/</guid>
<pubDate>Thu, 18 Jun 2026 18:05:29 +0200</pubDate>
<content:encoded><![CDATA[<img width="1260" height="840" src="https://cdn.geekwire.com/wp-content/uploads/2019/10/2663-Summit-20191008-DD-1260x840.jpg" class="webfeedsFeaturedVisual wp-post-image" alt="" decoding="async" srcset="https://cdn.geekwire.com/wp-content/uploads/2019/10/2663-Summit-20191008-DD-1260x840.jpg 1260w, https://cdn.geekwire.com/wp-content/uploads/2019/10/2663-Summit-20191008-DD-768x512.jpg 768w, https://cdn.geekwire.com/wp-content/uploads/2019/10/2663-Summit-20191008-DD-630x420.jpg 630w, https://cdn.geekwire.com/wp-content/uploads/2019/10/2663-Summit-20191008-DD.jpg 2048w" sizes="(max-width: 1260px) 100vw, 1260px"><br>Dan Lewis, who led the Seattle freight marketplace Convoy before it shut down in 2023, has left Microsoft to start a stealth company focused on running AI models more efficiently, extending a career spent at the intersection of AI and logistics. <a href="https://www.geekwire.com/2026/convoy-co-founder-dan-lewis-exits-microsoft-to-launch-stealth-startup-aiming-to-reinvent-ai-supply-chain/">Read More</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[How returning to education mid-career ‘changes your thinking’]]></title>
<description><![CDATA[Mohammed Azharuddin Khan discusses the good, the difficult and the rewarding parts of returning to education in the middle of your career.
Read more: How returning to education mid-career ‘changes your thinking’]]></description>
<link>https://tsecurity.de/de/3608142/it-nachrichten/how-returning-to-education-mid-career-changes-your-thinking/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3608142/it-nachrichten/how-returning-to-education-mid-career-changes-your-thinking/</guid>
<pubDate>Thu, 18 Jun 2026 17:07:36 +0200</pubDate>
<content:encoded><![CDATA[<p>Mohammed Azharuddin Khan discusses the good, the difficult and the rewarding parts of returning to education in the middle of your career.</p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/careers/technology-ireland-ict-skillnet-career-education-upskilling">How returning to education mid-career ‘changes your thinking’</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Brian Johnson, Special Effects Artist Behind 'Space: 1999,' Dies At 86]]></title>
<description><![CDATA[Special-effects designer Brian Johnson, known for his groundbreaking work on Space: 1999, The Empire Strikes Back, Alien, and Aliens, has died at the age of 86. Johnson began his career creating models and explosions for Gerry and Sylvia Anderson productions, later designed the iconic Eagle Trans...]]></description>
<link>https://tsecurity.de/de/3607503/it-security-nachrichten/brian-johnson-special-effects-artist-behind-space-1999-dies-at-86/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607503/it-security-nachrichten/brian-johnson-special-effects-artist-behind-space-1999-dies-at-86/</guid>
<pubDate>Thu, 18 Jun 2026 13:17:15 +0200</pubDate>
<content:encoded><![CDATA[Special-effects designer Brian Johnson, known for his groundbreaking work on Space: 1999, The Empire Strikes Back, Alien, and Aliens, has died at the age of 86. Johnson began his career creating models and explosions for Gerry and Sylvia Anderson productions, later designed the iconic Eagle Transporter, and became one of science fiction cinema's most influential behind-the-scenes artists. Longtime Slashdot reader sandbagger remembers the SFX legend, writing: "The Space: 1999 Eagle is one of the great space ships of science fiction."<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=Brian+Johnson%2C+Special+Effects+Artist+Behind+'Space%3A+1999%2C'+Dies+At+86%3A+https%3A%2F%2Fentertainment.slashdot.org%2Fstory%2F26%2F06%2F18%2F0048244%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fentertainment.slashdot.org%2Fstory%2F26%2F06%2F18%2F0048244%2Fbrian-johnson-special-effects-artist-behind-space-1999-dies-at-86%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://entertainment.slashdot.org/story/26/06/18/0048244/brian-johnson-special-effects-artist-behind-space-1999-dies-at-86?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[New CISO appointments 2026]]></title>
<description><![CDATA[The upper ranks of corporate security are seeing a high rate of change as companies try to adapt to the evolving threat landscape. Many companies are hiring a chief security officer (CSO) or chief information security officer (CISO) for the first time to support a deeper commitment to information...]]></description>
<link>https://tsecurity.de/de/3607427/it-security-nachrichten/new-ciso-appointments-2026/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607427/it-security-nachrichten/new-ciso-appointments-2026/</guid>
<pubDate>Thu, 18 Jun 2026 12:54:29 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>The upper ranks of corporate security are seeing a high rate of change as companies try to adapt to the evolving threat landscape. Many companies are hiring a chief security officer (CSO) or <a href="https://www.csoonline.com/article/566757/what-is-a-ciso-responsibilities-and-requirements-for-this-vital-leadership-role.html">chief information security officer</a> (CISO) for the first time to support a deeper commitment to information security.</p>



<p>Follow this column to keep up with new appointments to senior-level security roles and perhaps gain a little insight into hiring trends. If you have an announcement of your own that you would like us to include here, contact Peter Sayer, executive editor of news, at <a href="mailto:peter_sayer@foundryco.com?subject=New%20CISO%20appointment">peter_sayer@foundryco.com</a>.</p>



<h2 class="wp-block-heading">New CISO appointments in June 2026</h2>



<h3 class="wp-block-heading">SolarWinds appoints Justin Henkel as CISO</h3>



<p>IT management software vendor SolarWinds has named Justin Henkel its new CISO. Henkel was previously deputy CISO at OneTrust, and before that spent 25 years as an intelligence officer in the US Air Force. </p>



<h2 class="wp-block-heading">New CISO appointments in March 2026</h2>



<h3 class="wp-block-heading">Kathy Wang joints micro1 as CISO</h3>



<p>Frontier AI model training company micro1 has hired Kathy Wang as CISO. She was most recently CISO at hospitality software developer Otelier, and has previously held top cybersecurity roles at Discord and GitLab.</p>



<h3 class="wp-block-heading">Green Impact Exchange names John Visneski CISO</h3>



<p>John Visneski has joined stock exchange operator Green Impact Exchange as CISO. He was previously CISO at MGM Studios, and following that company’s acquisition by Amazon became head fo security for mergers and acquisitions. His cybersecurity career began with the US Air Force, where he served as cyber advisor to the Secretary and Chief of Staff of teh Air Force.</p>



<h2 class="wp-block-heading">New CISO appointments in January 2026</h2>



<h3 class="wp-block-heading">Julien Mousqueton joins Cohesity as field CISO for Europe</h3>



<p>Data security firm Cohesity has hired Julien Mousqueton as field CISO for Europe. His previous role was as CTO at IT service provider Computacenter. He is a reservist advisor for OFAC, the French national police force’s anti-cybercrime division, and created the real-time ransomware activity-tracking platform <a href="https://ransomware.live/" target="_blank" rel="noreferrer noopener">ransomware.live</a>.</p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Pro Chefs Consider These 20 Kitchen Tools a Joke. Here's What They Use Instead]]></title>
<description><![CDATA[I asked a handful of career chefs about the kitchen gadgets they recommend skipping -- and what to use in their place.]]></description>
<link>https://tsecurity.de/de/3607416/it-nachrichten/pro-chefs-consider-these-20-kitchen-tools-a-joke-heres-what-they-use-instead/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607416/it-nachrichten/pro-chefs-consider-these-20-kitchen-tools-a-joke-heres-what-they-use-instead/</guid>
<pubDate>Thu, 18 Jun 2026 12:48:35 +0200</pubDate>
<content:encoded><![CDATA[I asked a handful of career chefs about the kitchen gadgets they recommend skipping -- and what to use in their place.]]></content:encoded>
</item>
<item>
<title><![CDATA[Cybersecurity was built for predictable systems. AI changes the rules]]></title>
<description><![CDATA[Every major technology shift changes cybersecurity. I’ve spent much of my career working through major technology transitions, from the rise of the commercial internet to mobile and cloud computing. Each shift created new opportunities for innovation, but it also created new security problems org...]]></description>
<link>https://tsecurity.de/de/3607198/it-security-nachrichten/cybersecurity-was-built-for-predictable-systems-ai-changes-the-rules/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607198/it-security-nachrichten/cybersecurity-was-built-for-predictable-systems-ai-changes-the-rules/</guid>
<pubDate>Thu, 18 Jun 2026 11:23:18 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Every major technology shift changes cybersecurity. I’ve spent much of my career working through major technology transitions, from the rise of the commercial internet to mobile and cloud computing. Each shift created new opportunities for innovation, but it also created new security problems organizations weren’t fully prepared for.</p>



<p>AI may resemble previous technology shifts in some ways, but it differs in one important respect: it challenges one of the foundational assumptions modern security programs were built around: predictability.</p>



<p>For most of my career, security teams operated in environments where systems behaved deterministically. Applications generally executed the same way every time. Infrastructure changed slowly enough for humans to map dependencies, understand trust boundaries and implement controls around them. Even cloud transformation allowed us to apply familiar security models to new infrastructure.</p>



<p>AI changes those assumptions.</p>



<p>Agentic systems make decisions dynamically. Large language models generate different outputs based on context. AI systems increasingly interact with external tools, APIs and environments in ways their developers can’t always fully predict ahead of time. When systems stop behaving consistently, the traditional “keep bad things out” approach to cybersecurity starts to break down.</p>



<p>Prevention still matters. But prevention alone is structurally insufficient for environments where risk evolves continuously at runtime.</p>



<h2 class="wp-block-heading">Security was built for deterministic systems</h2>



<p>When I was helping build security programs years ago, much of the focus centered on hardening systems before deployment. Security teams tried to identify vulnerabilities early, reduce exposure and prevent attackers from gaining access in the first place.</p>



<p>Even during the early years of cloud adoption, most organizations still approached security primarily through configuration and policy management. We worried about permissions, exposed storage buckets and identity sprawl while cloud security tools focused heavily on identifying misconfigurations and locking down infrastructure.</p>



<p>Those controls remain critically important today. But the cloud era also taught us that security failures rarely happen in static diagrams. They happen in live environments, where permissions change, APIs evolve and identities gain unexpected access paths while systems interact in ways architects never fully anticipated.</p>



<p>By the time organizations map one state of the environment, it’s already changed. Risk increasingly emerges at runtime, when identities inherit unintended access, APIs change behavior or AI agents interact with systems in ways no architecture diagram captured.</p>



<p>In conversations I’ve had with companies, I’ve seen them go from generating hundreds of thousands of lines of code per month to millions. AI-assisted development tools are fundamentally changing software engineering workflows. A <a href="https://papers.ssrn.com/sol3/papers.cfm?abstract_id=5007084">Harvard Business School study</a> found that after developers gained access to GitHub Copilot, coding activity increased by 12.4% while time spent on project management tasks dropped by nearly 25% – a shift that can leave less time for the reviews and coordination governance depends on.</p>



<p>From a business perspective, acceleration creates leverage, but it also compresses the time security teams have to understand what’s entering production. Attackers are beginning to use AI to reduce the manual effort historically required for reconnaissance, exploit chaining and vulnerability validation at scale.</p>



<p>Security by obscurity isn’t a winning strategy. For years, organizations often accepted certain vulnerabilities because exploitation required too much time, expertise or effort from attackers.</p>



<p>Vulnerabilities once considered difficult to chain together are becoming easier to operationalize at scale as attackers use AI to automate portions of the process. Security leaders need to recognize that some of the prioritization models organizations built over the last decade may no longer reflect today’s reality.</p>



<h2 class="wp-block-heading">Why prevention alone no longer works</h2>



<p>As AI systems become more autonomous, <a href="https://www.csoonline.com/article/4145127/runtime-the-new-frontier-of-ai-agent-security.html">runtime visibility</a> becomes critical.</p>



<p>Many organizations historically treated runtime monitoring as a secondary layer behind prevention, viewing it mainly as a safety net for edge cases.</p>



<p>That model breaks down when systems can evolve and interact faster than security teams can realistically validate in real time.</p>



<p>If an AI agent can interact with multiple systems, generate new actions independently or adapt its behavior based on changing context, organizations can’t rely exclusively on pre-deployment controls. Security teams need visibility into what these systems are doing while they operate.</p>



<p>That includes:</p>



<ul class="wp-block-list">
<li>What data AI systems can access</li>



<li>How identities interact with sensitive environments</li>



<li>What actions agents are taking</li>



<li>Whether systems are deviating from expected behavior</li>



<li>How quickly organizations can contain unintended consequences</li>
</ul>



<p>In many ways, modern security is shifting from trying to prevent every compromise to limiting how quickly unintended behavior can spread once systems begin acting autonomously.</p>



<p>Security leaders should be careful not to overreact to this shift with fear-driven narratives. AI will absolutely create new security challenges, but it also creates opportunities for defenders.</p>



<p>Security teams can’t scale using human labor alone anymore. The sheer volume of infrastructure changes, software generation and vulnerability management exceeds what most organizations can handle manually.</p>



<p>We’re already seeing organizations experiment with AI-assisted triage, automated investigation workflows and defensive agents that can help security teams move faster and manage growing operational complexity. Security products are beginning to evolve into operational extensions of security teams rather than passive alerting systems.</p>



<p>That evolution makes sense. Attackers are using automation and AI to increase speed and scale. Defenders will need to do the same to maintain parity.</p>



<h2 class="wp-block-heading">5 priorities for security leaders in the AI era</h2>



<p>The organizations that adapt best to AI-driven risk won’t necessarily be the ones with the largest security teams or the biggest budgets. More often, they’ll be the ones that adjust fastest as software, infrastructure and attacker behavior evolve more quickly than traditional security operations were built to handle.</p>



<p>That shift requires you to think differently about how you manage risk, operations and resilience.</p>



<h3 class="wp-block-heading">1. Rebuild vulnerability management for AI-scale software development</h3>



<p>Many vulnerability management programs were already overwhelmed before AI accelerated software generation and lowered portions of the attacker cost curve. That challenge is becoming exponentially harder.</p>



<p>Stop assuming old exploitability models will hold up in an environment where attackers can use AI to accelerate reconnaissance, vulnerability chaining and exploit development.</p>



<p>You need to reassess how vulnerabilities are prioritized, validated and remediated because some of the assumptions organizations made over the last decade about attacker limitations may no longer reflect reality.</p>



<p>Some organizations are already investing in model harnesses to deploy new AI models more effectively and securely.</p>



<h3 class="wp-block-heading">2. Treat runtime visibility as a primary control</h3>



<p>Runtime monitoring can no longer be treated as a secondary capability behind prevention. Every team needs to invest in new forms of tooling to gain this visibility.</p>



<p>That said, runtime monitoring is not something security organizations can vibe code into existence. We need to expect our security vendors to build continuous visibility into workloads, identities, APIs and AI system behavior in production environments.</p>



<p>Prioritize clearer context around which vulnerabilities are reachable, exposed or being actively leveraged. This becomes increasingly important as AI systems interact with infrastructure and data in less predictable ways.</p>



<h3 class="wp-block-heading">3. Use AI to augment defensive operations</h3>



<p>Most organizations can’t hire enough people to keep pace with the operational demands AI introduces.</p>



<p>Use automation and AI to reduce investigation time, automate repetitive workflows and improve response speed. Human judgment still matters, but security teams are operating in environments where the volume of alerts, infrastructure changes and software generation exceeds what people can manage manually.</p>



<p>AI can help teams focus on higher-order decisions instead of operational noise.</p>



<h3 class="wp-block-heading">4. Focus on resilience and containment</h3>



<p>Perfect prevention has never existed, but it becomes even less realistic in highly dynamic AI environments.</p>



<p>Think more carefully about blast radius reduction, rapid containment and operational resilience. Your ability to detect unintended behavior quickly and limit downstream impact will matter far more as organizations deploy more autonomous systems.</p>



<p>I think many security leaders are still too focused on whether AI systems can fail instead of preparing for how to operate safely when they inevitably do.</p>



<h3 class="wp-block-heading">5. Position security as an enabler of transformation</h3>



<p>One of the biggest mistakes security organizations can make right now is to approach AI primarily as something to stop.</p>



<p>Boards and CEOs are pushing aggressively toward AI adoption because they view it as strategically necessary. If you position security purely as a blocking function, you risk losing influence during one of the most important technology transitions in decades.</p>



<p>Executive teams understand AI transformation can’t succeed without strong security leadership guiding risk decisions in real time.</p>



<p>That creates an opportunity to help your business move faster safely while building security programs better equipped for dynamic environments.</p>



<h2 class="wp-block-heading">AI is forcing a new security operating model</h2>



<p>The core challenge AI creates for security teams isn’t simply scale. It’s the erosion of predictability. The pace of change will accelerate as AI systems become more deeply integrated into business operations.</p>



<p>To operate effectively in this environment, focus on building security programs that can adapt quickly, contain risk in real time and support innovation without losing visibility or control. Drive this evolution through both hiring and vendor investments, with a stronger focus on AI fluency and operational expertise.</p>



<p>Only with prioritized investment in staff and tooling can you achieve stronger runtime awareness, faster response capabilities and operating models that keep pace with continuously changing infrastructure and software environments.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.csoonline.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The future of insurance is contextual, conversational and customer-first – thanks to AI]]></title>
<description><![CDATA[The insurance industry has long been regarded as a highly regulated, slow-moving monolith. But look closely, and you’ll see that we’re entering a new phase of significant change and overdue optimization – one that puts the consumer experience front-and-center.



I’ve long anticipated this transi...]]></description>
<link>https://tsecurity.de/de/3607142/it-security-nachrichten/the-future-of-insurance-is-contextual-conversational-and-customer-first-thanks-to-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3607142/it-security-nachrichten/the-future-of-insurance-is-contextual-conversational-and-customer-first-thanks-to-ai/</guid>
<pubDate>Thu, 18 Jun 2026 11:05:47 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>The insurance industry has long been regarded as a highly regulated, slow-moving monolith. But look closely, and you’ll see that we’re entering a new phase of significant change and overdue optimization – one that puts the consumer experience front-and-center.</p>



<p>I’ve long anticipated this transition. My experience in recent years working on the core machine learning (ML) team at Google taught me that the true value of artificial intelligence is not in hardware efficiency but in the radical personalization it enables. I learned a valuable lesson earlier in my career: Even the most tech-savvy tools can fail if they don’t solve a human problem. It’s a belief that’s been reinforced after recently joining The Zebra team as chief AI officer, a position that empowers me to better employ AI and ML to maximize the synergy between product and technology and make for a more efficient and customer-centric insurance shopping model.</p>



<h2 class="wp-block-heading">From keywords to context</h2>



<p>For years, consumers have used basic SEO keywords to find insurance policies while carriers relied on simple ML to price these policies. But that paradigm is changing quickly. It won’t be long before we see automation processes occurring across several different areas, particularly on the customer-facing side, where we are attempting to collect as much context as we can.</p>



<p>Today, customers provide deep, intent-based context, with a shift toward hyper-personalized, highly detailed queries. The next logical step is for Large Language Models (LLMs) to parse this massive amount of customer intent data and map it against complex and unstructured policy data. This represents both a major challenge and a fantastic opportunity: successfully and efficiently organizing our internal insurance data so that it can be presented back to the consumer. The goal here is to advance to a stage where organizing policy data (the provider side) and collecting information (the customer side) blend to create a perfectly personalized middle ground.</p>



<p>I’ve observed this incredible shift firsthand. Customers used to find The Zebra after using a basic two-word Google keyword search like “car insurance.” But courtesy of LLMs, their queries today are much more specific and customized: “I need car insurance for my 2022 Honda Civic in Austin, Texas, and I park it outside.” Providing this rich data upfront and directly to our advisors changes the whole game, allowing us to bypass tedious intake and start nurturing genuine human relationships.</p>



<p>I love the automation side of AI – especially its ability to eliminate manual data entry. Still, handling sensitive customer information means that AI tooling can quickly throw gasoline on a growing fire. That’s the reason I’m committed to creating a controlled environment. At The Zebra, we’ve spent a decade researching how humans sell policies, and I want to ensure our models don’t “reward hack.” A good illustration of this is an unsupervised model believing that hanging up on every customer ensures it will never technically lose a deal. At our company, it’s my job to build the guardrails that prevent these bizarre optimizations.</p>



<h2 class="wp-block-heading">Exciting developments underfoot</h2>



<p>We’ve entered a sea change moment, signaling a shift toward agentic coding and dynamic UI and away from the hard-coded, static websites that earlier dominated the insurance space. At present, most insurance online portals are linear, with the sequence of questions typically predetermined by a developer. In the coming phase, however, the LLMs will define the questions and the order in which they are asked, and UI components will be chosen or generated ad hoc, depending on the consumer’s particular context. That’s real progress.</p>



<p>Even more than the interface, I’m energized about forthcoming improvements in the agent-to-agent ecosystem. I envision a future where, for example, an online car-buying service like CarEdge or AutoCompanion learns key info about a given user, including their vehicle preferences, budget and safety priorities; then, at the moment the user clicks “buy,” that entire world of context is communicated directly from that website and its human or AI agent to an insurance agent. This layer of interaction eliminates the need for the customer to repeat redundant details while also ensuring that they are instantly offered the best personalized insurance policy.</p>



<p>Peering forward, I’m especially excited about this “agent-to-agent” future. Years ago, I built recommendations, search engines and pricings for a used car e-commerce platform, employing basic filters like “Toyota under $30,000.” But nowadays, people hunt online with so much more context and use conversational AI for nuanced intent, with focused queries like “I need a car for a family of three that fits a bulky stroller.” Extracting that deep context from a vehicle-purchasing AI agent directly into our insurance workflow is a fantastic opportunity to eliminate friction.</p>



<p>Another trend that has me stoked? AI’s increasing ability to help regional insurers structure their data. Smaller insurers, which know their local markets more than national players, have traditionally struggled to aggregate their numbers for digital marketplaces. But by better leveraging AI agents, we can now provide info to customers that was previously difficult to obtain, introducing them to insurance companies that are a better fit.</p>



<p>What’s behind my continued fascination with AI agents? Maybe it has something to do with our corporate culture at The Zebra, which emphasizes creativity, curiosity and fun – as exemplified by our obsession with Legos. Walk into our offices or attend a virtual meeting and you’ll see everyone clicking bricks together. We even commemorate exceptional company or career milestones by gifting Lego sets. These all-ages toys serve as a physical manifestation of a “Tinker mindset.” Legos have taught me that complex architectures are simply collections of tiny but well-defined parts you can remix inventively. When we launched <a href="https://www.linkedin.com/pulse/bricks-bots-vibe-coding-why-future-insurtech-built-daniel-herrington-qvdie/" rel="nofollow">Zebra Labs</a>, it dawned on me that “vibe coding” with AI is akin to playing with digital Legos: Snapping together prompts, models and APIs to construct a security triage agent calls for the same kind of foundational logic needed to assemble a <a href="https://www.lego.com/en-us/product/porsche-911-rsr-42096?consent-modal=show&amp;age-gate=grown_up" rel="nofollow">Lego Technic Porsche 911</a>. To me, this mindset makes AI development feel like an organic extension of how we already work.</p>



<h2 class="wp-block-heading">Navigating challenges ahead</h2>



<p>It’s natural to be optimistic about what’s just beyond the horizon. Still, the industry has to be careful about “AI slop” – using AI to build things too quickly without truly knowing where and how it fits. This is an especially slippery slope when it comes to licensing. Case in point: If you ask an off-the-shelf LLM which policy to purchase for a Porsche (the real, non-Lego kind), it could suggest one that violates licensing laws.</p>



<p>You also have to think ahead about hidden hazards when operating in a regulated financial space. In my previous job at Google, I worked on improving the efficiency of Waymo models; at The Zebra’s Austin headquarters, I constantly see these autonomous vehicles, which have taught me quite a bit about edge cases. A Waymo can spot a city stop sign completely obscured by overgrown leaves thanks to its LiDAR and internal maps, safely stopping the car and logging the danger. At our company, strict compliance rules represent those <a href="https://www.linkedin.com/pulse/seeing-stop-sign-through-trees-how-ai-evals-insurance-herrington-e0nbf/" rel="nofollow">hidden stop signs</a>. Imagine a generic LLM confidently advising a user to drop comprehensive coverage to save a few dollars; doing so means it is acting as an unlicensed advisor – a massive legal liability. The lesson here is that you can’t just give AI the keys, ask it to be professional and simply hope for the best.</p>



<p>To prevent this, I’m creating a digital sensor suite using strict evaluation platforms. This way, before an AI agent can interact with the customer, it has to survive a simulated gauntlet graded on three metrics: factuality (is the information correct?), compliance (did it avoid making a regulated recommendation?) and accuracy (did it hallucinate any features?).</p>



<p>I was recently in Nashville for the Insurance Innovators conference. The audience wanted to know where I’m placing my business bets for The Zebra. My answer was simple: “personalization agents.” I’m investing heavily in resources that evaluate colossal volumes of policy data that can supercharge our human advisors. By extracting the specific data points they require exactly when they need them, I can help eliminate administrative friction and ensure they receive the perfect coverage for their unique risk profiles.</p>



<p>But it’s important to prioritize jobs as we make this transition to more grounded LLMs. This sector isn’t ripe for disruption simply because you can decrease and automate costs by subtracting people from the equation. This next phase I foresee should produce a more synergistic partnership between AI and human beings – especially licensed advisors who make sure we apply hyper-personalization and avoid the kinds of mistakes AI is known for. Yet we also want to unlock an experience so precise that relying solely on human decision-making will eventually feel like an unnecessary risk.</p>



<p>This customer-focused and increasingly bespoke insurance experience I’m dreaming of requires moving beyond simple task automation to a point where data is efficiently structured, and both human and AI agents communicate effectively across platforms. We’re almost there, and everyone – from the policyholder to the underwriter – stands to benefit.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[How companies are racing to solve the AI token problem]]></title>
<description><![CDATA[Because generative AI (genAI) tools and services have become so ubiquitous (and popular), the costs of using them are going through the roof — leading to an insatiable appetite for tokens.



Tokens represent a common way to measure and price AI use. Much like letters and words in English, large ...]]></description>
<link>https://tsecurity.de/de/3606916/it-nachrichten/how-companies-are-racing-to-solve-the-ai-token-problem/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606916/it-nachrichten/how-companies-are-racing-to-solve-the-ai-token-problem/</guid>
<pubDate>Thu, 18 Jun 2026 09:17:43 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Because generative AI (genAI) tools and services have become so ubiquitous (and popular), the costs of using them are going through the roof — leading to an insatiable appetite for tokens.</p>



<p>Tokens represent a <a href="https://www.computerworld.com/article/4175277/the-world-of-ai-tokens-and-why-they-matter.html?utm=hybrid_search">common way to measure and price AI use</a>. Much like letters and words in English, large language models (LLMs) grasp a sentence or query by breaking words into tokens.</p>



<p>With the AI explosion well under way, tokens are now “the fundamental units of data our models process, many representing a problem being solved,” according to Google CEO Sundar Pichai. (Google, by the way, processes about 3.2 quadrillion tokens a month.)</p>



<p>But as the price of all those tokens adds up, business and IT execs are looking for ways to cut costs while keeping corporate productivity up. Uncontrolled token use has already landed one company with an <a href="https://www.axios.com/2026/05/28/ai-spending-roi-enterprise-costs" target="_blank" rel="noreferrer noopener">unexpected $500 million AI bill</a>. </p>



<p>There are a number of ways companies can rein in the price of AI at the model, infrastructure, silicon, and business levels. Here’s a look at how some of those savings might actually be achieved.</p>



<h2 class="wp-block-heading">Switch to lower-cost models</h2>



<p>One way of potentially saving money is by re-routing AI work to a cheaper model, Pichai said. At Google that would <a href="https://www.computerworld.com/article/4175283/google-is-focusing-on-autonomous-ai-agents-in-gemini-3-5-flash.html">Gemini 3.5 Flash</a>. It delivers “frontier-level capabilities at less than half the price of comparable frontier models.</p>



<p>“If companies use a mix of [Gemini 3.5] Flash and other frontier models, they could save a lot of money,” Pichai said.</p>



<p>Those kinds of models provide cheaper tokens, with reasoning that’s good enough for many users — if not as strong as mainstream Gemini 3.5 — to deliver useful results.</p>



<p>“There is sometimes overkill with the [LLMs],” said Deepak Seth, senior director analyst at Gartner. “I don’t always need a large language model which has been trained on the works of Charles Dickens and Shakespeare and <em>Harry Potter</em>.”</p>



<p>Hyperframe Research principal analyst Steven Dickens can’t stop using Amazon’s Quick, which costs $20 a month, for personal tasks. “It is great personal ROI as it has not only made tasks faster, but unlocked tasks I would never have even attempted previously,” Dickens said.</p>



<h2 class="wp-block-heading">Don’t forget the hardware and software part of the equation</h2>



<p>The token crisis isn’t new, said <a href="https://en.wikipedia.org/wiki/Dheeraj_Pandey" target="_blank" rel="noreferrer noopener">Dheeraj Pandey</a>, CEO of <a href="https://devrev.ai/" target="_blank" rel="noreferrer noopener">DevRev</a>, who likens what’s going on now in the AI market to the disruptions that emerged with the arrival of cloud computing and virtualization years ago. </p>



<p>“We let chaos reign and then we had to rein in the chaos,” Pandey said. “The word that people started using was server consolidation and virtualization.”</p>



<p>The answer to the token problem, he said, is the same: “Anything in systems can be solved with caching and indirection.”</p>



<p>DevRev, for example, is building a memory layer between AI agents and primary data sources, such as Salesforce or ERP records; that can cut token load and make data movement more efficient. The layer holds a knowledge graph with answers to common agent questions and runs on cheaper CPUs, avoiding more costly GPU cycles.</p>



<p>Sending agents straight at systems like ServiceNow and Salesforce “will burn a lot more tokens. It’s also not precise. And finally, it’s not safe enough where I can roll it back in case an agent has committed a mistake,” Pandey said.</p>



<p>Network automation firm NetBrains uses a different method: It uses conventional computing to map a network’s layout then feeds only key information to models for planning and reasoning, where AI excels. “So you don’t have to spend all the tokens,” said Netbrains CTO Sang Peng.</p>



<h2 class="wp-block-heading">Focus on prompt efficiency</h2>



<p>Staffing firm ManpowerGroup has found that prompt efficiency can be an effective tool for improving token use, both internally and externally for clients.</p>



<p>For example, users accessing its internal labor-market tool initially needed 10 follow-up questions to drill into a query. A year later, more efficient use of prompts has brought that number down to an average of four, said <a href="https://www.linkedin.com/in/maxleaming" target="_blank" rel="noreferrer noopener">Max Leaming</a>, head of data science and AI solutions at ManpowerGroup. </p>



<p>“They’re using fewer tokens and they’re simply more efficient,” he said. “And that in large part has to do with your ability to prompt efficiently.”</p>



<h2 class="wp-block-heading">Go local</h2>



<p>New AI hardware that generates free tokens at home could ease some of the cost crisis.</p>



<p>At <a href="https://www.nvidia.com/en-tw/gtc/taipei/" target="_blank" rel="noreferrer noopener">GTC Taipei</a> earlier this month, Nvidia and Microsoft unveiled RTX Spark, an agentic AI desktop PC that runs agents and 120-billion-parameter models locally on Windows. The goal is “to deliver unmetered intelligence to every home and every desk with Windows,” <a href="https://nvidianews.nvidia.com/news/nvidia-microsoft-windows-pcs-agents-rtx-spark" target="_blank" rel="noreferrer noopener">Microsoft CEO Satya Nadella said in a statement</a>.</p>



<p>Some companies are looking to reduce cloud AI costs by putting their own hardware in data centers, with vendors such as HPE and Dell providing servers installed in independent facilities. (On-premise AI is gaining ground amid sovereign AI and geopolitical concerns, including the recent conflict in the Middle East, where large data centers were struck with missiles.)</p>



<p>“There are local, region-specific and multiple vendor AI solutions. All of those things can help mitigate the risk. But they’re not going to eliminate it,” said Max Goss, senior director analyst at Gartner.</p>



<h2 class="wp-block-heading">Use forward-deployed engineers</h2>



<p>Reducing token costs is something that may fall to <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">forward-deployed engineers</a> (FDEs) in customer environments, said <a href="https://www.linkedin.com/in/taimurrashid" target="_blank" rel="noreferrer noopener">Taimur Rashid</a>, managing director of AWS’s Generative AI Innovation Center.</p>



<p>“I expect these teams to be able to architect systems that have those cost requirements in mind, whether it’s use a different model or a different use case that doesn’t increase the per-token cost,” Rashid said.</p>



<p>Companies may spend heavily on token consumption, “but if you’re generating revenue, as long as the economics work out, then you’re at peace,” Rashid said.</p>



<p>The use of FDEs is gaining ground as IT decision-makers look to both <a href="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html?utm=hybrid_search">rollout successful AI deployments while also keeping an eye on costs</a>.</p>



<h2 class="wp-block-heading">Change the measure of success from tokens to outcomes</h2>



<p>Even with the current emphasis on reducing token use to save money, the metrics used to measure AI success are likely to shift, Gartner’s Seth said. At some point, token-based pricing will move more toward an outcome-based model, where the unit of value is outcomes, not fragments of words.</p>



<p>“Some companies are moving towards outcome-based pricing,” Seth said. “When people start realizing the real cost of tokens, then companies will start looking at token efficiency.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Train Your Team Or Fall Behind]]></title>
<description><![CDATA[Author: Security Weekly - A CRA Resource - Bewertung: 1x - Views:12 Jason ABQ argues that organizations often prioritize nonstop productivity at the expense of professional development. His recommendation: teams should intentionally reserve time for training, certifications, leadership developmen...]]></description>
<link>https://tsecurity.de/de/3606129/it-security-video/train-your-team-or-fall-behind/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3606129/it-security-video/train-your-team-or-fall-behind/</guid>
<pubDate>Wed, 17 Jun 2026 23:18:25 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Security Weekly - A CRA Resource - Bewertung: 1x - Views:12 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/SS8ArExDecA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Jason ABQ argues that organizations often prioritize nonstop productivity at the expense of professional development. His recommendation: teams should intentionally reserve time for training, certifications, leadership development, and learning new technologies.<br />
<br />
As AI tools and workflows rapidly evolve, employees may struggle to keep up if learning only happens after hours. Matt Alderman adds that many emerging AI capabilities could improve efficiency, but teams need dedicated time to experiment and understand how those tools fit into their jobs. Without structured learning time, organizations risk creating teams that are busy but increasingly outdated.<br />
<br />
The discussion reframes training as operational necessity rather than optional career development.<br />
<br />
Should organizations formally allocate part of the workweek to training and AI experimentation, even if short-term productivity slows down?<br />
<br />
Subscribe to our podcasts: https://securityweekly.com/subscribe<br />
<br />
#Leadership #SecurityWeekly #Cybersecurity #InformationSecurity #AI #InfoSec<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Finally some good news]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 74x - Views:892 Reduce your response time to credential compromise with Flare @ https://go.lowlevel.tv/flareflow

🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://...]]></description>
<link>https://tsecurity.de/de/3605492/it-security-video/finally-some-good-news/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3605492/it-security-video/finally-some-good-news/</guid>
<pubDate>Wed, 17 Jun 2026 18:33:42 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 74x - Views:892 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/cX3G0cPRJiA?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>Reduce your response time to credential compromise with Flare @ https://go.lowlevel.tv/flareflow<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Jamf CEO: ‘AI is happening whether organizations know it or not’]]></title>
<description><![CDATA[Beth Tschida, who became Jamf CEO in May after serving as CTO and as interim CEO, is the first woman to lead the company in its near 25-year history. I spoke with her this week at the London Jamf Nation event, where the company introduced its new AI Governance solution.



How the transition to C...]]></description>
<link>https://tsecurity.de/de/3605483/it-nachrichten/jamf-ceo-ai-is-happening-whether-organizations-know-it-or-not/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3605483/it-nachrichten/jamf-ceo-ai-is-happening-whether-organizations-know-it-or-not/</guid>
<pubDate>Wed, 17 Jun 2026 18:33:01 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p><a href="https://www.computerworld.com/article/4174165/beth-tschida-takes-over-at-jamf-as-ai-transforms-apple-in-the-enterprise.html">Beth Tschida, who became Jamf CEO in May</a> after serving as CTO and as interim CEO, is the first woman to lead the company in its near 25-year history. I spoke with her this week at the London Jamf Nation event, where the company introduced its new AI Governance solution.</p>



<h2 class="wp-block-heading"><strong>How the transition to CEO is going </strong></h2>



<p>“It’s been a great privilege and an adjustment,” she said. “Jamf has always been a company deeply focused on culture, which is exactly why I love being here. Having the ability to influence and improve that culture from this role is something I feel very supported in doing.”</p>



<p>The last few years have seen a variety of changes at Jamf, which was briefly a public company. “We’ve come through a period of change, not all of it easy,” Tschida said. “But we now have a great partnership with Francisco Partners. We’re private, we’re focused on solving customer problems, and we’re finding ways to lean into what we’re good at.”</p>



<h2 class="wp-block-heading"><strong>Women in tech and mentorship</strong></h2>



<p>Tschida is a good choice to lead a software engineering company, as she’s an engineer herself. She originally joined Jamf as vice president for software engineering in 2018, moving up to CTO in 2022. She’s also one of the few women in leadership positions in tech. (To Jamf’s credit, the company also has <a href="https://www.computerworld.com/article/1627364/jamf-cio-apple-will-be-the-no-1-enterprise-endpoint-by-2030.html">CIO Linh Lam</a> on its team.)</p>



<p>“I think it’s important for women to stay deep in the tech, build their skills and find their voice confidently,” Tschida said. “You’ll never know all the technology out there. Nobody does. What matters is the ability to keep adapting and evolving.”</p>



<p>Tschida stressed the importance of mentorship. “I feel very honored to have a chance to be a role model for other women,” she said. “I had women who forged a path for me, including a female CIO early in my career who I asked to mentor me and learned an enormous amount from. I’m certainly not the first woman in tech, but I do want to play my part in helping others grow in their careers.</p>



<p>“Ultimately, I want to be respected for what I do, not for my gender. That’s how everyone should be judged.”</p>



<h2 class="wp-block-heading"><strong>AI Governance</strong></h2>



<p>Tschida’s product focus means she knows what matters to Jamf. “If you focus on the problems customers have and how your product can help fix them, that’ll take you to where you want to go.”</p>



<p>For many in the enterprise, both in and beyond the Apple space, the next big problem is AI — how to deploy it, how to manage it, and how to regulate it.</p>



<p><a href="https://www.applemust.com/jamf-brings-powerful-ai-governance-solution/" target="_blank" rel="noreferrer noopener">AI Governance is a new Jamf solution</a> that has been developed in response to those pain points. Countless surveys, <a href="https://www.businesswire.com/news/home/20260615806745/en/Jamf-Survey-finds-AI-incident-rates-rise-as-organizations-deepen-AI-integration" target="_blank" rel="noreferrer noopener">including Jamf’s own data</a>, show that AI is being widely used across every company, but IT lacks visibility into its use. It’s hard to know what data is being shared with AI tools, which services are being used, and how to report on that use effectively — particularly in regulated industries.</p>



<p>AI Governance is designed to make it possible for anyone managing an Apple fleet to get granular insight into AI use across their Mac, iPhone, and iPad devices. It uses telemetrics to shed light on that use, offers governance and management tools to help IT gain better oversight and control over it, and provides highly comprehensive reporting tools suitable for internal or regulatory review.</p>



<p>“AI is happening whether organizations know it or not,” said Tschida. “That’s the problem. You can try to block it, but that’s very hard to do well. It’s far better to build visibility and governance around it.”</p>



<p>The offering makes it possible for companies to enable the AI use they already know is taking place while protecting corporate interests and enabling fast and accurate reporting. You can <a href="https://www.jamf.com/solutions/ai-governance" target="_blank" rel="noreferrer noopener">find out more details here</a>.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/Screenshot-2026-06-15-at-3.34.26-PM.png?w=881" alt="Jamf AI Governance reporting" class="wp-image-4186291" width="881" height="1025" sizes="auto, (max-width: 881px) 100vw, 881px"></figure><a href="http://www.jamf.com/" target="_blank" class="imageCredit" rel="noopener">Jamf</a></div>



<h2 class="wp-block-heading"><strong>Empowering better AI</strong></h2>



<p>Jamf’s approach is focused on endpoint management. AI Governance means IT can see what’s running on a device, categorize it, and understand what AI tools and models are in use. “If you know how people are running AI on your fleet, you can open it up safely. Then all of your customers and employees can find their way to figure out how AI is going to optimize their workforce,” she said.</p>



<p>What does that look like in practice? Think of it as an orchestration layer. IT can define different AI configurations for different teams: HR might use one set of models, engineers another. And admins can apply opinionated postures per group: what models are permitted, what cloud services they connect to, what’s visible to IT versus the CISO versus the CFO. “It’s an extension of what Jamf has always done, it just now applies to AI endpoints too.”</p>



<p>What about regulatory complexity across geographies? “A lot of governance controls are shared across regulations; a good base set is a healthy way to run regardless. But each regulation has its own twists. Our mission is to make sure customers operating in different markets can expand on that base and fit the specific models and regulations they need, getting the right configurations to the right devices.”</p>



<h2 class="wp-block-heading"><strong>Managers must prepare for AI cost challenges</strong></h2>



<p>There’s a second dimension beyond management — cost. The industry is developing quickly, with new AI models appearing almost every week. Yesterday’s leading LLM is tomorrow’s fading star, even while the cost of AI infrastructure goes through the roof. As that churn slows, investors will want to start seeing returns on their bets, which is why token costs — the price of running AI services, at least in the cloud — <a href="https://www.economist.com/business/2026/06/14/companies-are-scrambling-to-curtail-soaring-ai-costs" target="_blank" rel="noreferrer noopener">are climbing fast</a>.  </p>



<p>As costs become more realistic, that’s going to change the nature of AI deployment from the laissez-faire, anything goes approach to a more strategic management of such use. “Models keep dropping fast, but token costs are only going to go up,” said Tschida. </p>



<p>“Organizations will need to decide: just because you can build something with AI, should you? What’s the right model for what work? We’re helping customers move from, ‘We’ll just block it’ or ‘We’ll turn it on and hope for the best,’ toward a place where they have a real viewpoint and can manage and change that viewpoint over time.”</p>



<p>The ever-changing AI world is also prompting Jamf to make more of its APIs externally available. “We’re used across every industry and every geography, at every scale,” said Tschida. “There’s no way we can build every workflow every customer needs, we’d never get to all of them.”</p>



<p>Embracing openness also helps build future foundations. “Thinking about where we’re heading next — agentic endpoint management — having platform APIs allows our customers to build things they can imagine, that we can learn from, in a way that solves their specific problems.”</p>



<h2 class="wp-block-heading"><strong>Apple, WWDC, and the enterprise</strong></h2>



<p>Tschida’s comments come shortly after WWDC 2026, where Apple introduced a raft of AI advances that formed a strong foundation for its future, improvements that matter to Jamf. “When Apple innovates, Jamf celebrates,” she said.</p>



<p>“Apple is doing great things in their AI ecosystem, revamping Siri, expanding their AI capabilities, making Apple the platform people want to run AI on because those machines simply perform better. Our job is to take what Apple builds and bring it into the enterprise in the way that enterprises actually need it.”</p>



<p>Most of the industry recognizes that Apple’s enterprise story has changed dramatically as its products see accelerating use, and momentum is not slowing. Tschida reflected on how just a few years ago, Apple in the enterprise was an option in employee choice programs. “Now it’s becoming the clear choice,” she said. “We expect that trend to continue. And the more Apple invests in AI running natively on device, the stronger that argument gets.”</p>



<h2 class="wp-block-heading"><strong>Where is Jamf going?</strong></h2>



<p>AI Governance is a unique answer to an increasingly important set of questions that are now beginning to affect the IT management of Apple’s platforms. (It’s not clear whether anything as sophisticated exists for other platforms at al, but as the need to manage AI grows, demand for such solutions will grow.)</p>



<p>Ultimately, the company’s latest move reflects Jamf’s inherent strategy under its new CEO. “Focus on customers, listen to them, solve their problems, and don’t throw tech at it. Ask: what’s the problem? Can we solve it? That focus is what takes you where you need to go. </p>



<p>“We’re on a good trajectory, customers stay with us, and the culture has always underpinned us. Now we’re finding ways to lean into it even further,” she said.</p>



<p><em>You can follow me on social media! Join me on <a href="https://bsky.app/profile/jonnyevanssays.bsky.social" target="_blank" rel="noreferrer noopener">BlueSky</a>,  <a href="http://www.linkedin.com/in/jonnyevans" target="_blank" rel="noreferrer noopener">LinkedIn</a>, <a href="https://social.vivaldi.net/@jonnyevans" target="_blank" rel="noreferrer noopener">Mastodon</a> and subscribe to <a href="https://thecorenews.substack.com/p/welcome-to-the-core?r=5l3lg" target="_blank" rel="noreferrer noopener">The Core</a>.</em></p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Top tips for launching a career at the intersection of tech and sustainability]]></title>
<description><![CDATA[For those who want a career that encompasses all that is positive about the technology space and that leaves the world a more equitable place, Industry 4.0 is a gamechanger.
Read more: Top tips for launching a career at the intersection of tech and sustainability]]></description>
<link>https://tsecurity.de/de/3604812/it-nachrichten/top-tips-for-launching-a-career-at-the-intersection-of-tech-and-sustainability/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604812/it-nachrichten/top-tips-for-launching-a-career-at-the-intersection-of-tech-and-sustainability/</guid>
<pubDate>Wed, 17 Jun 2026 14:48:05 +0200</pubDate>
<content:encoded><![CDATA[<p>For those who want a career that encompasses all that is positive about the technology space and that leaves the world a more equitable place, Industry 4.0 is a gamechanger.</p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/careers/top-tips-launching-career-ntersection-tech-sustainability-industry40">Top tips for launching a career at the intersection of tech and sustainability</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[UFC 6 review: a bloody, brilliant MMA fighting game]]></title>
<description><![CDATA[PlayStation 5, Xbox Series X/S; EA Vancouver/Electronic ArtsMicromanaging your fighter is a little tedious, but the action is thrilling in this authentically detailed sporting simulationBecoming a professional fighter takes years of repetition, drilling techniques and training footwork until ever...]]></description>
<link>https://tsecurity.de/de/3604231/it-nachrichten/ufc-6-review-a-bloody-brilliant-mma-fighting-game/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3604231/it-nachrichten/ufc-6-review-a-bloody-brilliant-mma-fighting-game/</guid>
<pubDate>Wed, 17 Jun 2026 11:32:25 +0200</pubDate>
<content:encoded><![CDATA[<p><strong>PlayStation 5, Xbox Series X/S; EA Vancouver/Electronic Arts<br></strong>Micromanaging your fighter is a little tedious, but the action is thrilling in this authentically detailed sporting simulation</p><p>Becoming a professional fighter takes years of repetition, drilling techniques and training footwork until everything is instinctual. Your body needs an automatic answer for every limb, from every angle. In MMA, which encompasses every martial art, it’s even harder.</p><p>EA Sports’ UFC 6 realistically captures the grind of this brutal discipline. Throw on Career Mode and you spend most of your time working on combos and techniques. It’s all about making the complex controls feel second nature, increasing the effectiveness of every strike thrown by your fighter. With simulated six-week-long training camps between bouts, you can sometimes spar 12 times before a fight that could be over in a matter of seconds.</p> <a href="https://www.theguardian.com/games/2026/jun/17/ufc-6-review-mma-fighting-game-ea-sports">Continue reading...</a>]]></content:encoded>
</item>
<item>
<title><![CDATA[HPR4663: The hallway track at T-DOSE]]></title>
<description><![CDATA[This show has been flagged as Clean by the host.
T-DOSE

TDOSE 2027


Mark you calendars #TDOSE 2027 on 5 and 6 June '27 in the Weeffabriek, Geldrop.




T-DOSE
Info Booth
Hackalot
Laptop Revive
Free Software Foundation Europe
Doeidag and Banray
Debian
Angry Nerds Podcast
Freie Software Freunde -...]]></description>
<link>https://tsecurity.de/de/3603360/podcasts/hpr4663-the-hallway-track-at-t-dose/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3603360/podcasts/hpr4663-the-hallway-track-at-t-dose/</guid>
<pubDate>Wed, 17 Jun 2026 02:02:25 +0200</pubDate>
<content:encoded><![CDATA[<p>This show has been flagged as Clean by the host.</p>
<h1>T-DOSE</h1>

<h2>TDOSE 2027</h2>

<p>
Mark you calendars #TDOSE 2027 on 5 and 6 June '27 in the Weeffabriek, Geldrop.
</p>

<ul>

<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#TDOSE" rel="noopener noreferrer" target="_blank">T-DOSE</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#InfoBooth" rel="noopener noreferrer" target="_blank">Info Booth</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#Hackalot" rel="noopener noreferrer" target="_blank">Hackalot</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#LaptopRevive" rel="noopener noreferrer" target="_blank">Laptop Revive</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#FSFE" rel="noopener noreferrer" target="_blank">Free Software Foundation Europe</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#DoeidagBanray" rel="noopener noreferrer" target="_blank">Doeidag and Banray</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#Debian" rel="noopener noreferrer" target="_blank">Debian</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#AngryNerdsPodcast" rel="noopener noreferrer" target="_blank">Angry Nerds Podcast</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#FYMT" rel="noopener noreferrer" target="_blank">Freie Software Freunde - Free Your Model Train</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#HPR" rel="noopener noreferrer" target="_blank">Hacker Public Radio: The community Podcast</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#UBports" rel="noopener noreferrer" target="_blank">UBports</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#Adfinis" rel="noopener noreferrer" target="_blank">Adfinis</a></li>
<li><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#credit" rel="noopener noreferrer" target="_blank">Credits</a></li>
</ul>

<h2>The Technical Dutch Open Source Event (T-DOSE)</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=40.000000,283.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=40.000000,283.720000" type="audio/mpeg">
</audio>
</p>
<p>
In <a href="https://hackerpublicradio.org/eps/hpr4641/index.html" rel="noopener noreferrer" target="_blank">
hpr4641 :: Technical Dutch Open Source Event (T-DOSE)</a>
, Ken interviewed Peter van Ginneken about the <a href="https://t-dose.org/" rel="noopener noreferrer" target="_blank">
T-DOSE</a>
conference.</p>

<blockquote>
The Technical Dutch Open Source Event (T-DOSE) is a free conference to promote the use and development of Open Source software. This event has is organised yearly since 2006 in the Brainport region, near Eindhoven, The Netherlands. During this event, Open Source projects, developers and visitors can exchange ideas and knowledge.</blockquote>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_1.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_1_tn.jpeg">
</a>

</p>

<p>
Peter van Ginneken Opens the Event.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_2.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_2_tn.jpeg">
</a>

</p>

<p>
We catch up with him at the start of Day 2.</p>

<h2>
Info Booth</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=283.720000,639.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=283.720000,639.720000" type="audio/mpeg">
</audio>
</p>

<p>
The backbone of any event is the Info booth and catering.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_3.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_3_tn.jpeg">
</a>

</p>

<p>
Here we talk to Nick Hibma who when not serving on the Info Booth is treasurer of the T-DOSE organisation.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_4.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_4_tn.jpeg">
</a>

</p>

<p>
Ready to serve sandwitches, sell T-Shirts, Magic Mugs, and <a href="https://www.club-mate.de/en/" rel="noopener noreferrer" target="_blank">
club-mate</a>

</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_5.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_5_tn.jpeg">
</a>

</p>

<p>
T-Shirts</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_6.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_6_tn.jpeg">
</a>

</p>

<p>

<a href="https://www.club-mate.de/en/" rel="noopener noreferrer" target="_blank">
club-mate</a>

</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_7.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_7_tn.jpeg">
</a>

</p>

<p>
Magic Mugs</p>

<h2>Hackalot</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=639.720000,1320.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=639.720000,1320.720000" type="audio/mpeg">
</audio>
</p>



<p>
Hackalot is the Eindhoven and surrounding area hackerspace. A hackerspace is a place where hackers can work on their own or collaborative projects. You can work and talk together, but you can also do your own thing. Together we can also purchase a lot of cooler tools such as lasercutters and 3d printers. Often there is no suitable place for equipment at home. So if you know someone, you are either an electronics/computer/technical hobby that got out of hand, come on by!</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_8.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_8_tn.jpeg">
</a>

</p>

<p>
Boekenwuurm at the Hackalot stand.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_9.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_9_tn.jpeg">
</a>

</p>

<p>
The Hackalot stand.</p>

<ul>

<li>

<a href="https://hsnl.social/@boekenwuurm" rel="noopener noreferrer" target="_blank">
Boekenwuurm@hsnl.social</a>

</li>

<li>

<a href="https://boekenwuurm.nl/" rel="noopener noreferrer" target="_blank">
boekenwuurm.nl</a>

</li>

<li>

<a href="https://hackalot.nl/" rel="noopener noreferrer" target="_blank">
Hackalot</a>

</li>

</ul>

<h2>Laptop Revive</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=1320.720000,1824.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=1320.720000,1824.720000" type="audio/mpeg">
</audio>
</p>

<p>
Laptop Revive collects discarded laptops, that are still working. We then install Linux Mint to provide a working laptops to students who cannot afford laptops. We are socially involved, sustainable and open.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_10.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_10_tn.jpeg">
</a>

</p>

<p>
Alex Kok Laptop Revive</p>

<ul>

<li>

<a href="https://www.laptoprevive.nl/" rel="noopener noreferrer" target="_blank">
Laptop Revive</a>

</li>

</ul>

<h2>Free Software Foundation Europe</h2>

<p>
Free Software Foundation Europe (FSFE) information booth, with information material, stickers and merchandise.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_11.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_11_tn.jpeg">
</a>

</p>

<p>
Nico was so busy that we were unable to snag an interview this time. However check out our talk with him at the <a href="https://hackerpublicradio.org/eps/hpr4639/index.html" rel="noopener noreferrer" target="_blank">
NLUUG Spring Conference 2026</a>
.</p>

<ul>

<li>

<a href="https://fsfe.org/index.en.html" rel="noopener noreferrer" target="_blank">
Free Software Foundation Europe</a>

</li>

</ul>

<h2>Doeidag and Banray</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=1824.720000,2330.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=1824.720000,2330.720000" type="audio/mpeg">
</audio>
</p>

<p>
We also interviewed Geert-Jan Meewisse in <a href="https://hackerpublicradio.org/eps/hpr4639/index.html" rel="noopener noreferrer" target="_blank">
hpr4639 :: NLUUG Spring Conference 2026</a>
but this time he is here talking about <a href="https://banray.eu/en/index.html" rel="noopener noreferrer" target="_blank">
banray.eu</a>

</p>

<blockquote>
In 2025, Meta sold over seven million pairs of camera-equipped glasses that look like regular Ray-Bans. The person wearing them looks like anyone else. But these people are now products, as is everyone they interact with.</blockquote>

<p>
He then also mentioned the <a href="https://doeidag.nl/" rel="noopener noreferrer" target="_blank">
Doeidag</a>
project where they encourage people to drop one service at a time on the first Sunday of the month</p>

<ul>

<li>

<a href="https://doeidag.nl/" rel="noopener noreferrer" target="_blank">
https://doeidag.nl/</a>

</li>

<li>

<a href="https://banray.eu/en/index.html" rel="noopener noreferrer" target="_blank">
https://banray.eu/</a>

</li>

</ul>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_12.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_12_tn.jpeg">
</a>

</p>

<p>
Geert-Jan Meewisse Doeidag and Banray</p>

<h2>Debian</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=2330.720000,2660.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=2330.720000,2660.720000" type="audio/mpeg">
</audio>
</p>

<p>
The Debian Project is an association of Free Software developers who volunteer their time and effort in order to produce the completely free operating system Debian.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_13.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_13_tn.jpeg">
</a>

</p>

<p>
Ken Talks to Joost van Baal Llić from the Debian Project</p>

<p>

<a href="https://www.debian.org/" rel="noopener noreferrer" target="_blank">
Debian</a>

</p>

<h2>Angry Nerds Podcast</h2>

<p>
Angry Nerds, met extra cyber!</p>

<p>
The Angry Nerds is a Dutch Language podcast about privacy and security</p>

<p>
It's a live show that is topical and often humorous tech podcast where a group of enthusiastic nerds discusses current technology, IT and cybersecurity topics. The hosts combine technical depth with background conversations, humor and the occasionally a good dose of cynicism. Expect conversations about everything from network infrastructures to software development, from privacy issues to bizarre tech trends.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_14.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_14_tn.jpeg">
</a>

</p>

<p>
Ken on the Angry Nerds Podcast</p>

<p>You can listen to the recording at <a href="https://makertube.net/w/6M6VumLCH99mN3y1dZjRz9?start=1h16m11s">Angry Nerds op T-DOSE 2026 deel 2 (prikkelarme versie)</a>.</p>

<ul>

<li>

<a href="https://angrynerdspodcast.nl/" rel="noopener noreferrer" target="_blank">
Angry Nerds Podcast</a>

</li>

</ul>

<h2>Freie Software Freunde - Free Your Model Train</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=2660.720000,3279.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=2660.720000,3279.720000" type="audio/mpeg">
</audio>
</p>

<p>
We are a non-profit organization. We are committed to Free Software and Open Standards. Software is not just technology, it's an important part of our daily life.</p>

<p>
We want to raise awareness of the importance of Free Software and Open Standards. That is why we are concerned with topics outside of technology: politics, education, ethics, psychology, ecology and economics, licenses, ... One of our projects is "Free your model train". Our goal is to raise awareness of the benefits of open standards.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_15.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_15_tn.jpeg">
</a>

</p>

<p>
Birgit Hücking (@akkolady) standing at the <a href="http://freie-software.org/" rel="noopener noreferrer" target="_blank">
freie-software.org</a>

</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_16.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_16_tn.jpeg">
</a>

</p>

<p>
The <a href="http://freie-software.org/" rel="noopener noreferrer" target="_blank">
freie-software.org</a>
table with two large train loops, a smaller internal one. Two knitted Tux Mascots. And a lot of information.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_17.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_17_tn.jpeg">
</a>
Close up of the two knitted Tux Mascot.</p>

<ul>
<li><a href="https://chaos.social/@akkolady" rel="noopener noreferrer" target="_blank">@akkolady@chaos.social</a></li>
<li><a href="https://mastodon.social/@FreieSoftwareFreunde" rel="noopener noreferrer" target="_blank">@FreieSoftwareFreunde@mastodon.social</a></li>
<li><a href="https://freie-software.org/" rel="noopener noreferrer" target="_blank">Freie Software Freunde</a></li>
<li><a href="https://freie-software.org/?Projekte___Free_Your_Model_Train" rel="noopener noreferrer" target="_blank">Free Your Model Train</a></li>
<li><a href="https://fymt.de/" rel="noopener noreferrer" target="_blank">https://fymt.de</a></li>

</ul>

<h2>Hacker Public Radio: The community Podcast</h2>

<blockquote>
Hacker Public Radio is a technology focused podcast that releases shows every weekday Monday to Friday. Our shows are created by people like you, and can be on any topic that is of interest to hackers, hobbyists, makers, etc. We are a welcoming community that offers positive feedback and encourages respectful debate. This is our 21st year of operation, and we will release our 5,000th show in August. Everything we do is released under a Free Culture License. We do not vet, edit, moderate or in any way censor any of the audio you submit, we trust you to do that. We will be available to guide you in sharing your knowledge with the community. Having had a stand at FOSDEM (BE), OggCamp(UK), Linux Fest North West(US), Spectrum (FR), we are available to show you how easy podcasting can be. We will be answering your questions, and conducting interviews with anyone with anything interesting to say.</blockquote>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_18.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_18_tn.jpeg">
</a>

</p>

<p>
The HPR booth.</p>

<ul>

<li>

<a href="https://hackerpublicradio.org/" rel="noopener noreferrer" target="_blank">
Hacker Public Radio</a>

</li>

</ul>

<h2>UBports</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=3279.720000,4060.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=3279.720000,4060.720000" type="audio/mpeg">
</audio>
</p>

<blockquote>
We are developing an open source Linux mobile OS built to be your daily driver... ...and we'd like to welcome you to our community.</blockquote>

<p>
Next up is a chat with Sander Klootwijk about UBports and Ubuntu Touch. Their website has a list of <a href="https://devices.ubuntu-touch.io/" rel="noopener noreferrer" target="_blank">
supported devices</a>
.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_19.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_19_tn.jpeg">
</a>

</p>

<p>
We talk with Sander Klootwijk</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_20.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_20_tn.jpeg">
</a>

</p>

<p>
Proof it's running on actual hardware</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_21.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_21_tn.jpeg">
</a>

</p>

<p>
Yumi The UBports Installer Mascot was not available for comment.</p>

<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_22.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_22_tn.jpeg">
</a>

</p>

<p>
Ubuntu Touch on a Fairphone</p>

<ul>

<li>

<a href="https://mastodon.social/@BallonQuartier@mastodon.nl" rel="noopener noreferrer" target="_blank">
@BallonQuartier@mastodon.nl</a>

</li>

<li>

<a href="https://ubports.com/en/" rel="noopener noreferrer" target="_blank">
UBports</a>

</li>

<li>

<a href="https://devices.ubuntu-touch.io/" rel="noopener noreferrer" target="_blank">
https://devices.ubuntu-touch.io/</a>

</li>

</ul>

<h2>Adfinis</h2>
<p>
<audio controls="" preload="none">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.ogg#t=4060.720000,4688.720000" type="audio/ogg">
<source src="https://hub.hackerpublicradio.org/ccdn.php?filename=/eps/hpr4663/hpr4663.mp3#t=4060.720000,4688.720000" type="audio/mpeg">
</audio>
</p>

<blockquote>
Accelerate your business with open source-driven automation, security, cloud, and DevSecOps solutions from Adfinis, your end-to-end partner for robust, flexible IT that drives growth and innovation at any scale. Welcome to Our World Full of Open Source</blockquote>

<blockquote>
At Adfinis, we believe in the transformative power of open source technology to foster innovation, transparency, and collaboration. We are committed to providing solutions free from vendor lock-in, ensuring our clients retain full control and flexibility over their systems. Digital sustainability lies at the heart of our approach, as we strive to create technologies that not only serve the present but also support a long-term, environmentally responsible future. Additionally, we champion digital sovereignty, empowering organizations and communities to own and control their data, infrastructure, and technological destiny. These principles drive us to build a more open, sustainable, and inclusive digital world.</blockquote>

<p>
Finally we chat to <a href="mailto:Coen.hamers@adfinis.com" rel="noopener noreferrer" target="_blank">
Coen hamers</a>
, <a href="mailto:Robert.debock@adfinis.com" rel="noopener noreferrer" target="_blank">
Robert de Bock</a>
, and <a href="mailto:annebelle.vanwaardenburg@adfinis.com" rel="noopener noreferrer" target="_blank">
Annebelle van Waardenburg</a>
from <a href="https://www.adfinis.com/" rel="noopener noreferrer" target="_blank">
Adfinis</a>
whose sponsorship made the event possible.</p>
<p>
</p><ul>
<li><a href="https://www.adfinis.com/en/solutions" rel="noopener noreferrer" target="_blank">https://www.adfinis.com/en/solutions</a></li>
<li><a href="https://www.adfinis.com/en/career" rel="noopener noreferrer" target="_blank">https://www.adfinis.com/en/career</a></li>
</ul>


<p>

<a href="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_23.jpeg">
<img src="https://hackerpublicradio.org/eps/hpr4663/hpr4663_image_ext_23_tn.jpeg">
</a>

</p>

<h2>Credits</h2>

<ul>
<li><a href="https://freesound.org/people/jzielke011/sounds/439690/">Record Needle Rip</a></li>
<li><a href="https://archive.org/details/FreeSoftwareSong_131">Free Software Song</a></li>
</ul>


<p><a href="https://hackerpublicradio.org/eps/hpr4663/index.html#comments">Provide <strong>feedback</strong> on this episode</a>.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Interview: Ashwin Ballal, CIO, Freshworks]]></title>
<description><![CDATA[After a career in marketing, engineering, product and operations, a CIO role seemed unlikely for Ashwin Ballal – until he tried it]]></description>
<link>https://tsecurity.de/de/3601649/it-nachrichten/interview-ashwin-ballal-cio-freshworks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3601649/it-nachrichten/interview-ashwin-ballal-cio-freshworks/</guid>
<pubDate>Tue, 16 Jun 2026 13:33:09 +0200</pubDate>
<content:encoded><![CDATA[After a career in marketing, engineering, product and operations, a CIO role seemed unlikely for Ashwin Ballal – until he tried it]]></content:encoded>
</item>
<item>
<title><![CDATA[A personal journey to the next era of 10X]]></title>
<description><![CDATA[Over the past two decades, I’ve had the opportunity not only to witness the evolution of enterprise software development, but also to help shape parts of it firsthand. Throughout that journey, one objective has remained remarkably consistent across every wave of innovation: reducing the distance ...]]></description>
<link>https://tsecurity.de/de/3601368/it-security-nachrichten/a-personal-journey-to-the-next-era-of-10x/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3601368/it-security-nachrichten/a-personal-journey-to-the-next-era-of-10x/</guid>
<pubDate>Tue, 16 Jun 2026 12:09:59 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Over the past two decades, I’ve had the opportunity not only to witness the evolution of enterprise software development, but also to help shape parts of it firsthand. Throughout that journey, one objective has remained remarkably consistent across every wave of innovation: reducing the distance between an idea and a working solution.</p>



<p>Today, we are entering another major shift. AI coding agents, vibe coding and AI-orchestrated development workflows are changing not only how software gets written, but how large portions of the software development lifecycle are executed. AI is no longer limited to generating snippets of code or assisting with isolated developer tasks. Increasingly, it is helping define requirements, generate workflows, build integrations, refine user experiences, support testing and coordinate deployment activities.</p>



<p>For many organizations, this shift can feel sudden or even disruptive. From my perspective, however, it is the natural continuation of a much longer trend toward accelerating innovation at scale. The destination has remained largely the same. What continues to evolve are the tools, interfaces and operating models that help organizations get there faster.</p>



<p>Over time, enterprise software evolved from traditional coding to visual development platforms, then from visual development to low-code and no-code environments. Each stage compressed the software lifecycle while expanding the number of people capable of participating in innovation. Yet despite those advances, software creation remained relatively centralized and technical. Users still had to understand workflows, data models, governance frameworks, integrations and platform-specific logic. We reduced complexity, but we had not fundamentally changed who could participate in building operational systems.</p>



<p>That distinction matters because the true bottleneck in enterprise innovation has never been coding capacity alone. More often, it has been an organization’s ability to translate ideas into operational execution quickly enough to keep pace with change.</p>



<h2 class="wp-block-heading">Expanding the innovation surface area</h2>



<p>One of the earliest inflection points I experienced was the rise of workflow and business process management platforms. These technologies introduced visual ways to design and automate processes that previously required extensive custom development. For the first time, organizations could model workflows graphically instead of building everything manually through code.</p>



<p>Low-code platforms accelerated that momentum by abstracting much of the complexity involved in application creation. Teams could reuse components, streamline integrations and deliver systems in months instead of years. Much of my career has centered around advancing these kinds of platforms, but the ambition was always broader than improving developer productivity. The real goal was helping organizations respond to business needs faster and with greater flexibility.</p>



<p>The emergence of true no-code platforms expanded innovation even further by bringing business users directly into the development process. Citizen development evolved from an aspirational concept into something operationally viable inside the enterprise. More teams could experiment, more workflows could be digitized and more ideas could move from whiteboard discussions into production far faster than before.</p>



<p>At the same time, organizations realized that democratization alone was not enough. Enterprises still needed governance, operational standards, methodologies and trust in how applications were being built and maintained at scale. That challenge ultimately led me to co-author the <em>No-code Playbook</em> and later the <em>No-code Toolkit</em>, both focused on helping organizations operationalize no-code successfully across the enterprise.</p>



<p>Sustainable acceleration has always depended on balancing empowerment with structure.</p>



<h2 class="wp-block-heading">What AI changes this time</h2>



<p>What feels different about the current AI wave is that it does not simply accelerate one layer of software creation; it changes the interaction model altogether.</p>



<p>Previous generations of platforms still required users to learn the language of the system. Even in low-code and no-code environments, people had to think in terms of workflows, logic models and application architecture. AI-native development begins to reverse that dynamic.</p>



<p>Instead of forcing people to adapt themselves to the tooling, platforms are increasingly learning the language of the user. Intent becomes the interface. A business user can describe a process conversationally. A developer can outline an architectural goal. A product leader can upload requirements, diagrams or workflows. AI can then help translate those inputs into applications, automations, integrations and operational systems collaboratively and iteratively.</p>



<p>For the first time, software creation is becoming conversational, adaptive and context-driven in ways that dramatically reduce the barrier between identifying a problem and operationalizing a solution.</p>



<p>Importantly, this is not just about generating code faster. AI is beginning to accelerate the broader software development lifecycle itself — from requirements gathering and workflow generation to testing, documentation, optimization and deployment preparation. We are moving beyond AI-assisted coding toward AI-orchestrated software delivery.</p>



<p>As AI takes on more implementation mechanics, the role of humans also evolves. People shift further toward defining intent, guiding outcomes, orchestrating systems and applying business context and governance. In many ways, AI amplifies human expertise rather than replacing it.</p>



<h2 class="wp-block-heading">From applications to innovation systems</h2>



<p>AI is also changing expectations around enterprise platforms themselves.</p>



<p>For the past two decades, SaaS applications largely evolved around predefined modules, user-based licensing, workflow limitations and incremental customization. Those models made sense in an era where software creation remained constrained and highly specialized.</p>



<p>But AI-native development changes both the economics and expectations of innovation. Organizations increasingly want platforms that support continuous experimentation, rapid automation, AI agents and operational adaptability without introducing artificial limits around workflows, users or application boundaries. Increasingly, the enterprise platform is evolving from a static application suite into something closer to an innovation operating system.</p>



<p>This reflects a broader shift in how organizations think about software itself. Traditional enterprise systems were largely designed from the inside out, reflecting how organizations structured themselves and broke down processes functionally. But customers, employees and partners increasingly expect experiences that adapt to how they want to engage and operate. As expectations evolve faster than internal systems can change, organizations need platforms flexible enough to support continuous adaptation rather than rigid process enforcement.</p>



<p>Historically, scale was closely tied to headcount and software access. More users typically meant more work could be completed. But as AI agents and automation become embedded throughout operational workflows, scale increasingly depends on how effectively organizations coordinate people, systems and intelligent automation together.</p>



<p>The future enterprise will not simply operate faster. It will operate differently.</p>



<p>Organizations that succeed in this environment will not necessarily be the ones with the largest development teams or the most rigid technology standards. They will be the ones capable of turning ideas into operational reality continuously while adapting systems and workflows as quickly as business conditions evolve.</p>



<h2 class="wp-block-heading">The next era of 10X innovation</h2>



<p>Looking back, the broader pattern becomes clear. Every major evolution in enterprise software development has focused on reducing friction between ideas and execution. Visual workflows abstracted complexity. Low-code accelerated delivery. No-code expanded participation. AI-native development now accelerates orchestration itself.</p>



<p>What feels different today is the scale of the transformation. Traditional boundaries are beginning to blur — between developer and business user, between tool and collaborator, and increasingly between design and execution. AI agents are evolving from passive assistants into collaborative execution partners embedded throughout enterprise workflows and development systems.</p>



<p>The future is not simply about AI writing code, but about AI helping organizations orchestrate software creation and operational innovation end-to-end. And that shift has implications far beyond engineering productivity alone. It changes how organizations experiment, how they operationalize ideas and how quickly they can evolve in response to changing markets and customer expectations.</p>



<p>For years, enterprise software innovation focused primarily on making development faster. What AI-native systems introduce is something broader: the ability to expand who can innovate, how rapidly organizations can operationalize ideas and how continuously businesses can evolve.</p>



<p>In many ways, that is the larger transformation now underway. The future of enterprise software will not be defined solely by better applications, but by how effectively organizations turn ideas into operational reality at scale</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Q&A: A look at forward-deployed engineers, AWS style]]></title>
<description><![CDATA[Hot AI companies can’t stop talking about forward-deployed engineers (FDEs), which are now very much in vogue. 



FDEs, in case you haven’t heard, are hired by companies looking (hoping?) to successfully deploy AI tools and services. It’s one of the hotter professions in a world still trying to ...]]></description>
<link>https://tsecurity.de/de/3600932/ai-nachrichten/qa-a-look-at-forward-deployed-engineers-aws-style/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600932/ai-nachrichten/qa-a-look-at-forward-deployed-engineers-aws-style/</guid>
<pubDate>Tue, 16 Jun 2026 09:18:29 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Hot AI companies <a href="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html" data-type="link" data-id="https://www.computerworld.com/article/4180088/ai-vendor-fdes-key-considerations-and-concerns.html">can’t stop talking about forward-deployed engineers</a> (FDEs), which are now very much in vogue. </p>



<p>FDEs, in case you haven’t heard, are hired by companies looking (hoping?) to successfully deploy AI tools and services. It’s <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html" data-type="link" data-id="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">one of the hotter professions</a> in a world still trying to understand the impact of AI on careers.</p>



<p>So, what exactly are FDEs — are they techy lone rangers like the ones OpenAI, Google and Microsoft are hiring? Turns out it’s not so much about individual engineers who swoop in to design and roll out AI deployments; it’s more about a team of engineers working together at customer sites.</p>



<p>At least, that’s the view at Amazon Web Services (AWS).</p>



<p>In fact, according to <a href="https://www.linkedin.com/in/taimurrashid" data-type="link" data-id="https://www.linkedin.com/in/taimurrashid" target="_blank" rel="noreferrer noopener">Taimur Rashid</a>, managing director of the AWS Generative AI Innovation Center, the FDE concept pre-dates the current generative AI (genAI) gold rush. The same kinds of engineering teams were needed for the earlier machine-learning and cloud eras to help companies with deployments.</p>


<div class="extendedBlock-wrapper block-coreImage undefined"><figure class="wp-block-image size-large"><img loading="lazy" decoding="async" src="https://b2b-contenthub.com/wp-content/uploads/2026/06/Taimur-Rashid-Director-GenAI-Innov-Delivery.jpg?quality=50&amp;strip=all&amp;w=1024" alt="AWS's Taimur Rashid" class="wp-image-4185215" width="1024" height="683" sizes="auto, (max-width: 1024px) 100vw, 1024px"><figcaption class="wp-element-caption"><p><a href="https://www.linkedin.com/in/taimurrashid" rel="noreferrer noopener" target="_blank">Taimur Rashid</a>, managing director of the AWS Generative AI Innovation Center,</p>
</figcaption></figure><p class="imageCredit">AWS</p></div>



<p>Rashid recently talked about how AWS sees FDEs as a profession in a conversation with <em>Computerworld</em>. And he weighed in on the desired job skills the company seeks in this increasingly AI-centric era.</p>



<p><strong>What is an FDE? </strong>“We view it as a team. It’s a cross-functional team that has engineers, scientists, strategists, and folks that can piece technology and business together. In some cases, we do have to have security engineers in there, too. </p>



<p>“I see them as anesthesiologists. They have to prep so many things, monitor things throughout. We see ourselves as a frontier deployment team helping customers adopt all forms of AI, whether it’s genAI, agentic AI, even emerging trends like physical AI. We’re helping these companies become frontier themselves.”</p>



<p><strong>How does an FDE engagement begin, and how is it structured? “</strong>Where we see the forward deployed model is when customers come in — for example, we have our executive briefing center in Seattle and in Arlington, VA. When customers share what they’re trying to do, very quickly a customer’s like, “What’s the quickest way I can go and build something with you?” </p>



<p>“We’ll forward deploy our people in, we’ll embed them in your business and we’ll go through these 45-day sprints that we typically design. Through those successive sprints, we’re building stuff together, we’re proving value, and then they can expand that to a much broader engagement.</p>



<p><strong>Where do FDEs actually sit? Client side, internally, or in-between? </strong>“It’s mixed, and it largely depends on what the customer’s preference is. We’ve seen models where the customer has been very adamant that, ‘We want your teams with us in our business.’  In those cases, we forward deploy the majority of the teams on site. </p>



<p>“We have models where customers are fine with you being wherever you’re based, as long as you’re still embedded virtually. And then there’s a hybrid. We deploy anywhere from five to seven people. Sometimes, the baseline is actually three.”</p>



<p><strong>Will cost savings be the job of an FDE, or someone else on the team? “</strong>I expect these teams to be able to architect systems that have those cost requirements in mind, whether it’s use a different model for a different use case that doesn’t increase the per-token cost…or think about ways where you can use semantic caching. I personally think you may have a high spend in token consumption, but if you’re generating revenue, as long as the economics work out, then you’re at peace.”</p>



<p><strong>What challenges have you gone through deploying FDEs in the real world? </strong>“One of the challenges worth highlighting is when customers get really excited about us forward deploying resources, what they end up realizing is [that] they’re not set up to absorb that right away. They realize they have to go through … process-related things, security access — all those operational things. </p>



<p>“One very good example is the Commonwealth Bank of Australia. They said: “Prioritization’s a big thing, and if you forward deploy and you’re 100% dedicated, how do we ensure that our teams are also equally 100% dedicated?’ When you’re sitting in your office, you’re distracted by your day-to-day. So they said, ‘Why don’t we create a neutral ground in Seattle? You fly your people, we’ll fly our people. We’ll give them three weeks of dedicated time so they have no distractions.’”</p>



<p><strong>Have you gone into projects where they want AI but have no security or governance ready? “</strong>I’ve been through this before, certainly. We do see customers that have security processes and capabilities, but it’s not as tight as it should be in the age of AI. Governance is the biggest area where customers right now have the biggest gap. I’m talking governance around agents. In the past two months, almost 100% of the conversation around agents is not about capability. It’s all about governance. </p>



<p>“That is a big area right now where forward deploy teams are helping with governance education, and building the scaffolding for that.”</p>



<p><strong>How does software engineering fit into the FDE model? </strong>“One of the greatest learnings is that as we forward deploy resources and get customers to take AI and integrate it into their systems, the knowledge of software engineering is so important. Today, a customer can use one of the Claude models and scan their code base and look at vulnerabilities. </p>



<p>“The tough part is not assessing those vulnerabilities, it’s remediating [them]. Remediating [them] requires software engineering experience, because you have got to merge code, test it, deploy it. We largely see that the frontier software development teams are smaller and they’re managing agents that are doing various tasks across the software development lifecycle.”</p>



<p><strong>AWS has many models at your scale, open source, closed — it’s more complex than what other AI vendors offer.  How do you nail down the talent? </strong>“It’s massive, and when you look at not only scale, it’s the complexity of the stack. We take an approach where we fundamentally do three important things: No. 1, we want to ensure people understand concepts; they have to understand pre-training, post-training, reinforcement, fine-tuning. </p>



<p>“Secondly, we make sure that our teams are well versed in their first-party services. The third thing is that by design, AWS has always been about choice. We say, ‘Let’s do 80-20 here. What is 20% of those specialties that we need to have, which can cover 80% of what most customers are trying to do?’”</p>



<p><strong>What skills should software developers learn to move into FDE work — the top three or four things? “</strong>We look at three categories. First category is entirely functional. Are they more engineering specific? Are they science specific? Are they security specific? Our litmus test is not only knowledge of the function, but the actual hands-on work that they can do with it. Secondly is around domain. I focus on what is their domain understanding across the whole AI lifecycle? The third thing is cultural. We are looking for folks that are okay at dealing with ambiguity, being good at stakeholder management, and having that startup mindset. </p>



<p>“This AI transformation’s not for the faint of heart.”</p>



<p><strong>There’s a rush for FDEs from OpenAI, Google, and others. What’s different about what you look for? “</strong>I don’t know entirely what the others are looking for, but I’ll tell you what we have been looking for in the past. When we hired solution architects, it was about systems level understanding. But what I see more and more is hands-on experience, cultural mindset, all these things are very important. If I had to pick one thing that is going to be very important in the talent that we either upskill or future talent that we hire, it has to be the application of AI towards software engineering and system integration tasks.</p>



<p><strong>You’re upskilling AWS talent as well? “</strong>We do. You will see some publications coming out in the next couple of weeks around how do we do this across our software teams and how does that translate to customer-facing roles.”</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[The Art of Taking Notes]]></title>
<description><![CDATA[How To Effectively Take Notes That Not Only Boost Your Memory But Also Make Others Worth ReadingWhether you are in any technical, non-technical, financial, or medical field, you must have taken notes, whether for your career or yourself.And if you haven’t created your own notes, believe me, after...]]></description>
<link>https://tsecurity.de/de/3600901/hacking/the-art-of-taking-notes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600901/hacking/the-art-of-taking-notes/</guid>
<pubDate>Tue, 16 Jun 2026 09:09:16 +0200</pubDate>
<content:encoded><![CDATA[<figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*qn1U1UFVOPnskJ2tSYULYg.png"></figure><h4>How To Effectively Take Notes That Not Only Boost Your Memory But Also Make Others Worth Reading</h4><p>Whether you are in any technical, non-technical, financial, or medical field, you must have taken notes, whether for your career or yourself.</p><p>And if you haven’t created your own notes, believe me, after this blog, you will surely start making your own notes.</p><h3>Why Take Notes?</h3><p>Before understanding <strong>“<em>How to Take Notes Effectively</em>”,</strong> we have to understand “<strong><em>Why Even Take Notes in the First Place?”</em></strong></p><p>The main objective of taking any notes depends upon your own intentions.</p><ul><li>Whether you want to publish them</li><li>Whether you want to share them with your friends, colleagues, classmates or professors</li><li>Whether you keep them private for yourself</li><li>Whether you want to keep remembering specific details and topics</li><li>Whether you want to make a summary or brief point downs</li></ul><p><strong>[ One Thing will be common ]</strong></p><p>Which is your intention/objective. This small thing can even increase your notes' effectiveness from 2x to 4x times.</p><blockquote>Your Objective Answers “Why Your Notes Exist”</blockquote><h3>How to Improve Your Notes? (Avoid common mistakes)</h3><p>Let’s go straight forward towards improving your notes.</p><p>To improve your notes, the first step is</p><h4>[1] Identify What to Note?</h4><ul><li>Not every word, every line should be noted in the notes. It’s just like if you were highlighting almost every line on a page while reading a book.</li><li><strong>Solution</strong>: You should select specific line or words that gives the meaning or fulfils the purpose of the concept you are making notes on.</li></ul><h4><strong>[2] How to Note?</strong></h4><ul><li>Many people don’t really fully understand the concept. They read or understand one line and write a note, and then another line and so on.</li><li><strong>Solution</strong>: You first have to learn the whole concept, and then should abstract it and make notes.</li></ul><h4>[3] Avoid Common Mistake</h4><ul><li><strong>Avoid Unstructured Notes: </strong>Always make notes in a structured way. (i.e. Index, Aim, Concept, Description, Summary). It depends on the objective of the note.</li><li><strong>Avoid Too Many Highlights in Notes: </strong>Not many words need to be highlighted or bold from each line. Highlighting many words makes it hard to grasp concepts.</li><li><strong>Avoid Copy/Paste:</strong> Many of you have at least “<strong><em>copy and paste</em></strong>” as it is in the notes. Instead, you should take notes in your own language as you were explaining it to someone. This will make your notes highly understandable and help you retain information in the long term.</li><li><strong>Avoid Taking Notes on Note-Taking Apps: </strong>If you were taking notes on simple applications (i.e. Google Notes, Notepad, Notepad++, Sticky Notes, etc). It’s time to move on to other applications.</li></ul><h3>Note-Taking Applications</h3><p>The Note-Taking applications are specifically designed to make the note-taking process faster, easier and more effective.</p><p>Google Notes is quite good, but only for making short notes. If you are making very large notes, you should avoid Google Notes, as there are some better options available.</p><p>There are plenty of applications available in the market. And I have used many applications to test whether they’re user-friendly and convenient.</p><p>I won’t assume that you only use laptops and desktops for taking notes. Instead, I will assume that you can take and review your notes whenever you want, whether you only have your laptop, your computer, or your mobile.</p><p>So, once you make notes, you can also access them from different devices.</p><p>Some of the best tools I have used,</p><figure><img alt="" src="https://cdn-images-1.medium.com/max/817/1*XzcegPk0YpLQf2MOAYvoXA.png"></figure><h4><a href="https://www.notion.com/">[1] Notion</a></h4><p>The reason I put Notion on no. 1 is simple. Its features, UI, and Integrations.</p><ul><li>Notion’s beginner-friendly UI makes the note-taking process easy.</li><li>Notion’s suite helps you map your activity and notes synchronizly. (i.e. Notion, Notion Calendar, Notion Mail)</li><li>It integrates with many applications.</li><li>It also supports integrated Notion AI.</li><li>It is cross-platform.</li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*0eJ4OS3AcJJsb4kE1MMahQ.png"></figure><h4><a href="https://obsidian.md/">[2] Obsidian</a></h4><p>Obsidian is also very popular among note-taking apps. It is known for</p><ul><li>Its awesome UI and theme.</li><li>cross-platform.</li><li>Canvas, Graphs and Links.</li><li>Publications.</li><li>Integrated features and plugins.</li></ul><figure><img alt="" src="https://cdn-images-1.medium.com/max/1024/1*1hvdnc9wGYpOcYFPKPwCwQ.png"></figure><h4><a href="https://www.microsoft.com/en-in/microsoft-365/onenote/digital-note-taking-app">[3] OneNote from Microsoft</a></h4><p>OneNote is one of the most popular for</p><ul><li>Cross-platform</li><li>Cloud storing notes</li><li>Integrated Copilot</li><li>Collaboration</li><li>Advanced Features (i.e. Sketch, voice transcription)</li></ul><p>You may use any of these tools as per your convenience.</p><h3>Conclusion</h3><p>Making good and effective notes helps you recall things, tracking your progress, day-to-day activity, planning and preparation.</p><p>Using good software helps you increase your efficiency &amp; effectiveness of the notes. Not only softwares, but how you make notes decides how deeply you understan the concept and how effectively you can explain it to other (Skilling up: Grasping + Presentation).</p><p>Like and share this to your friends and colleagues. Help them improve because the better you make notes, the better you will understand the concept.</p><p>Also let me know in the comments,</p><ul><li><strong>Have you used or currently using one of these applications before for taking notes?</strong></li><li><strong>What features of them do you like the most?</strong></li><li><strong>What other note-taking app do you use?</strong></li></ul><p>See you in the next blog.</p><p><strong><em>Keep Learning — Keep Growing</em></strong></p><img src="https://medium.com/_/stat?event=post.clientViewed&amp;referrerSource=full_rss&amp;postId=ff5208fa13eb" width="1" height="1" alt=""><hr><p><a href="https://infosecwriteups.com/the-art-of-taking-notes-ff5208fa13eb">The Art of Taking Notes</a> was originally published in <a href="https://infosecwriteups.com/">InfoSec Write-ups</a> on Medium, where people are continuing the conversation by highlighting and responding to this story.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[The First Domino Has Fallen...]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 157x - Views:1831 🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEYBOARD
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard

🔥CO...]]></description>
<link>https://tsecurity.de/de/3600135/it-security-video/the-first-domino-has-fallen/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3600135/it-security-video/the-first-domino-has-fallen/</guid>
<pubDate>Mon, 15 Jun 2026 22:04:31 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 157x - Views:1831 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/gDpuFDCLvBc?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Letzte Börsen-Transaktionen von Dirk Hacker | MarketScreener Deutschland]]></title>
<description><![CDATA[Dirk Hacker · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></description>
<link>https://tsecurity.de/de/3599262/hacking/letzte-boersen-transaktionen-von-dirk-hacker-marketscreener-deutschland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3599262/hacking/letzte-boersen-transaktionen-von-dirk-hacker-marketscreener-deutschland/</guid>
<pubDate>Mon, 15 Jun 2026 15:24:22 +0200</pubDate>
<content:encoded><![CDATA[Dirk <b>Hacker</b> · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></content:encoded>
</item>
<item>
<title><![CDATA[As 'Disclosure Day' Premieres, Steven Spielberg Says He Believes Aliens Really Have Visited Earth]]></title>
<description><![CDATA[Steven Spielberg grants that his 1977 UFO film Close Encounters was "speculative," writes the Associated Press, but "Disclosure Day, he insists, is the real deal."

"It's my first film that will be considered science fiction that I do not consider to be science fiction," Spielberg said in a recen...]]></description>
<link>https://tsecurity.de/de/3597598/it-security-nachrichten/as-disclosure-day-premieres-steven-spielberg-says-he-believes-aliens-really-have-visited-earth/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3597598/it-security-nachrichten/as-disclosure-day-premieres-steven-spielberg-says-he-believes-aliens-really-have-visited-earth/</guid>
<pubDate>Sun, 14 Jun 2026 22:22:20 +0200</pubDate>
<content:encoded><![CDATA[Steven Spielberg grants that his 1977 UFO film Close Encounters was "speculative," writes the Associated Press, but "Disclosure Day, he insists, is the real deal."

"It's my first film that will be considered science fiction that I do not consider to be science fiction," Spielberg said in a recent interview. "It's much more reflective of the world as it is evolving and discoveries that are being made as we speak." Spielberg, at 79, is trying to revive and reconsider the alien wonder that's long lingered in his mind, from "E.T." to "War of the Worlds." "Disclosure Day," Spielberg's first summer movie in a decade, is already being hailed as one of his best in years. But this time, Spielberg is testing whether he can conjure some of his trademark movie magic less with imagination than with conviction. "I've been a believer since I made 'Close Encounters' 50 years ago," Spielberg says. "But I would always say: Until I've seen a UAP or a UFO with my own eyes, I'm not going to categorically state that life from out there has come here. But I've changed that," he adds. "I'm now willing to change my mind because of the circumstantial evidence which is overwhelming..." 


Spielberg, having long followed reports of alleged alien encounters, was inspired by the 2023 House Subcommittee on National Security hearing on UAPs: Unidentified Anomalous Phenomena. Among the witnesses was whistleblower and former Air Force intelligence officer David Grusch, who testified that the government concealed a program investigating UAPs. The Pentagon then denied it... Those 2023 testimonies and others so fueled Spielberg that he produced a 50-page treatment on what would become "Disclosure Day." During the writing process with Koepp, he texted him more notes, he says, "than I've ever sent to anyone in my life." 
"There was a period in there where I believe he re-read the script every single day for a year," Koepp says. "We'd be in different time zones and I would wake up to 30 or 35 texts from his most current reading of the script. When the leader of the project has that level of commitment, it tends to bring along everyone. You up your game." 
The article calls it "a grand bookend for one of the most cosmically-minded moviemakers of our time." But the man who filmed some of the world's first summer blockbusters also shared his thoughts on the future of movies. "Even though the numbers are still not pre-COVID level numbers for any films being released now, it's more robust than it has been for many years. The audience gives me belief that people still want to congregate in a dark space in the company of strangers to share an experience of a film made by storytellers. And that gives me faith to continue making films." 

Rolling Stone wrote that "There's a lot to love in Disclosure Day." Though they also offer this pithy summary of its plot. "Remember when Steven Spielberg digitally replaced the guns in the hands of government agents for the 20th anniversary of E.T., then expressed regret about the decision? Imagine that he not only restored the weapons but crafted an entire two-and-a-half-hour feature around that one sequence as a mea culpa. That's Disclosure Day."


The filmmaker may be staging a pulpy campaign with this sci-fi throwback, but he sincerely seems to believe the truth is out there — and will set us free... [W]hile the quality of his output can vary wildly when you look at the big picture of his career, there's still a baseline of love — for filmmaking, for storytelling through images, for giving people an experience that pushes emotional buttons and taps adrenal glands — that gives his work a sense of vitality and displays the sensibility of an artist at work... 
There's also a weird full-circle feel to it, and not just because he's returning to the fertile ground of Close Encounters and his other science fiction spectacles. You can see traces of everything from Duel to Minority Report show up, to the point where this almost doubles as a career retrospective in miniature... Yes, Spielberg does believe that we are not the only game running in the cosmos. But he also believes that our better angels have not left the building, and that movies still have the power to communally blow minds and open hearts. 

The Associated Press calls it "a grand bookend for one of the most cosmically-minded moviemakers of our time" and "a distant answer to the final notes of Close Encounters."<p></p><div class="share_submission">
<a class="slashpop" href="http://twitter.com/home?status=As+'Disclosure+Day'+Premieres%2C+Steven+Spielberg+Says+He+Believes+Aliens+Really+Have+Visited+Earth%3A+https%3A%2F%2Fentertainment.slashdot.org%2Fstory%2F26%2F06%2F14%2F208255%2F%3Futm_source%3Dtwitter%26utm_medium%3Dtwitter"><img src="https://a.fsdn.com/sd/twitter_icon_large.png"></a>
<a class="slashpop" href="http://www.facebook.com/sharer.php?u=https%3A%2F%2Fentertainment.slashdot.org%2Fstory%2F26%2F06%2F14%2F208255%2Fas-disclosure-day-premieres-steven-spielberg-says-he-believes-aliens-really-have-visited-earth%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook"><img src="https://a.fsdn.com/sd/facebook_icon_large.png"></a>



</div><p><a href="https://entertainment.slashdot.org/story/26/06/14/208255/as-disclosure-day-premieres-steven-spielberg-says-he-believes-aliens-really-have-visited-earth?utm_source=rss1.0moreanon&amp;utm_medium=feed">Read more of this story</a> at Slashdot.</p>]]></content:encoded>
</item>
<item>
<title><![CDATA[How to Find Bugs with AI]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 19x - Views:292 🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEYBOARD
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard

🔥COME...]]></description>
<link>https://tsecurity.de/de/3596330/it-security-video/how-to-find-bugs-with-ai/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3596330/it-security-video/how-to-find-bugs-with-ai/</guid>
<pubDate>Sun, 14 Jun 2026 02:02:48 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 19x - Views:292 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/viUnx5Nzzf0?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Letzte Börsen-Transaktionen von Adam Hacker | MarketScreener Deutschland]]></title>
<description><![CDATA[Adam Hacker · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></description>
<link>https://tsecurity.de/de/3596299/hacking/letzte-boersen-transaktionen-von-adam-hacker-marketscreener-deutschland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3596299/hacking/letzte-boersen-transaktionen-von-adam-hacker-marketscreener-deutschland/</guid>
<pubDate>Sun, 14 Jun 2026 01:08:14 +0200</pubDate>
<content:encoded><![CDATA[Adam <b>Hacker</b> · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></content:encoded>
</item>
<item>
<title><![CDATA[Letzte Börsen-Transaktionen von Hacker Georg | MarketScreener Deutschland]]></title>
<description><![CDATA[Hacker Georg · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></description>
<link>https://tsecurity.de/de/3595403/hacking/letzte-boersen-transaktionen-von-hacker-georg-marketscreener-deutschland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3595403/hacking/letzte-boersen-transaktionen-von-hacker-georg-marketscreener-deutschland/</guid>
<pubDate>Sat, 13 Jun 2026 12:23:28 +0200</pubDate>
<content:encoded><![CDATA[<b>Hacker</b> Georg · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></content:encoded>
</item>
<item>
<title><![CDATA[Letzte Börsen-Transaktionen von Larry Hacker | MarketScreener Deutschland]]></title>
<description><![CDATA[Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></description>
<link>https://tsecurity.de/de/3594768/hacking/letzte-boersen-transaktionen-von-larry-hacker-marketscreener-deutschland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3594768/hacking/letzte-boersen-transaktionen-von-larry-hacker-marketscreener-deutschland/</guid>
<pubDate>Sat, 13 Jun 2026 02:22:44 +0200</pubDate>
<content:encoded><![CDATA[Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></content:encoded>
</item>
<item>
<title><![CDATA[AI Did This.]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 111x - Views:1512 ZTNA gives you the control you want in your network. Try it today with Threatlocker @ https://go.lowlevel.tv/threatlocker2026

https://depthfirst.com/research/21-zero-days-in-ffmpeg
https://blog.cloudflare.com/cyber-frontier-models/

🏫 MY COURSES
S...]]></description>
<link>https://tsecurity.de/de/3593621/it-security-video/ai-did-this/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3593621/it-security-video/ai-did-this/</guid>
<pubDate>Fri, 12 Jun 2026 15:34:21 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 111x - Views:1512 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/QGC40AfmgY0?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>ZTNA gives you the control you want in your network. Try it today with Threatlocker @ https://go.lowlevel.tv/threatlocker2026<br />
<br />
https://depthfirst.com/research/21-zero-days-in-ffmpeg<br />
https://blog.cloudflare.com/cyber-frontier-models/<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Industry 4.0: Free and inexpensive upskilling courses]]></title>
<description><![CDATA[It takes significant upskilling to stay abreast of changes along the Industry 4.0 career path, but courses don’t have to cost an arm, a leg and all of your time. 
Read more: Industry 4.0: Free and inexpensive upskilling courses]]></description>
<link>https://tsecurity.de/de/3593448/it-nachrichten/industry-40-free-and-inexpensive-upskilling-courses/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3593448/it-nachrichten/industry-40-free-and-inexpensive-upskilling-courses/</guid>
<pubDate>Fri, 12 Jun 2026 14:34:22 +0200</pubDate>
<content:encoded><![CDATA[<p>It takes significant upskilling to stay abreast of changes along the Industry 4.0 career path, but courses don’t have to cost an arm, a leg and all of your time. </p>
<p>Read more: <a rel="nofollow" href="https://www.siliconrepublic.com/careers/industry-40-skills-free-inexpensive-course-education-learning-research">Industry 4.0: Free and inexpensive upskilling courses</a></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI is the new cloud — and we’re repeating the same mistakes]]></title>
<description><![CDATA[A few years ago, I sat through countless meetings where leaders debated whether their organizations were ready for cloud computing. Security teams worried about risk. Executives worried about cost. Engineers worried about migration complexity. Everyone was focused on the technology.



Today, I h...]]></description>
<link>https://tsecurity.de/de/3593245/it-security-nachrichten/ai-is-the-new-cloud-and-were-repeating-the-same-mistakes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3593245/it-security-nachrichten/ai-is-the-new-cloud-and-were-repeating-the-same-mistakes/</guid>
<pubDate>Fri, 12 Jun 2026 13:07:38 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>A few years ago, I sat through countless meetings where leaders debated whether their organizations were ready for cloud computing. Security teams worried about risk. Executives worried about cost. Engineers worried about migration complexity. Everyone was focused on the technology.</p>



<p>Today, I hear many of the same conversations about AI.</p>



<p>The technology has changed. The underlying problem has not.</p>



<p>Over the course of my career, I’ve helped lead modernization efforts across military, government and enterprise environments, including cloud migrations, enterprise application transformations and operational technology programs. Those experiences taught me that technology is rarely the hardest part of transformation. One lesson has remained remarkably consistent: technology is rarely the hardest part of transformation.</p>



<p>People are.</p>



<p>Processes are.</p>



<p>Operations are.</p>



<p>That’s why I believe many organizations are approaching AI from the wrong direction. They’re treating it as a technology initiative when it’s actually an operational transformation.</p>



<p>Much like the early cloud era, organizations are racing to evaluate models, pilots and vendors. Yet many have spent surprisingly little time examining the workflows, decision paths and organizational structures those technologies will ultimately support.</p>



<p>As CIOs learned during previous platform shifts, technology alone doesn’t create transformation. Operational readiness does. In many ways, today’s AI discussions remind me of CIO’s article, <em>“</em><a href="https://www.cio.com/article/4103247/your-cloud-provider-is-a-single-point-of-failure.html?utm_source=chatgpt.com"><em>Your cloud provider is a single point of failure</em></a><em>.”</em> The technology decision may be important, but the operational dependency it creates is often far more significant.</p>



<h2 class="wp-block-heading">Most organizations don’t have an AI problem. They have an operational readiness problem</h2>



<p>When AI initiatives struggle, the first instinct is often to blame the model.</p>



<p>Maybe the outputs aren’t accurate enough. Maybe the prompts need improvement. Maybe the organization selected the wrong vendor.</p>



<p>In my experience, those issues are rarely the primary reason initiatives stall.</p>



<p>The real obstacles tend to be much less exciting:</p>



<ul class="wp-block-list">
<li>Unclear ownership</li>



<li>Poorly defined business processes</li>



<li>Inconsistent data sources</li>



<li>Lack of trust in outputs</li>



<li>Undefined approval authorities</li>



<li>Competing organizational priorities</li>
</ul>



<p>During one large-scale modernization effort, I watched teams spend months debating infrastructure choices while spending almost no time redesigning the operational processes the infrastructure would support. The technology worked exactly as intended. Adoption became the bottleneck.</p>



<p>What has struck me recently is that the conversation has become remarkably similar across organizations. Regardless of industry, leaders are asking many of the same questions: Where does AI fit? Who owns it? How do we introduce it without disrupting critical operations?.</p>



<p>In other words, many organizations want AI. Far fewer are operationally ready for it.  One reason this readiness gap concerns me is that many organizations are approaching AI as though it were a standalone capability. In reality, AI sits atop everything that already exists. It depends on data, processes, governance structures, security controls and organizational trust.</p>



<p>I’ve spent much of my career working in environments where technology changes cannot simply be pushed into production and evaluated later. Systems support real business operations, regulatory requirements and mission outcomes. Even relatively small changes often require coordination across technical teams, security stakeholders, business owners and leadership.</p>



<p>AI introduces an additional layer of complexity by influencing how decisions are made. That means organizations need to think beyond implementation and consider adoption, accountability and oversight from the beginning.</p>



<p>For example, if an AI capability recommends a course of action, who is responsible when that recommendation is accepted? What happens when the recommendation conflicts with established procedures? How should organizations document decisions that were influenced by AI? These questions often emerge after deployment, but they should be addressed before deployment.</p>



<p>The organizations making the most progress with AI are not necessarily the ones moving the fastest. In many cases, they are the ones spending time upfront to understand how AI will fit into existing operational models. They recognize that success depends not only on what the technology can do, but also on whether the organization is prepared to use it responsibly and consistently.</p>



<p>Organizations spend enormous energy evaluating capabilities while investing far less effort in understanding how decisions are actually made inside their organizations. The latest <a href="https://www.mckinsey.com/capabilities/quantumblack/our-insights/the-state-of-ai" rel="nofollow">McKinsey State of AI</a> research continues to show that while AI experimentation is widespread, many organizations still struggle to generate sustained business value from those investments.</p>



<p>Before deploying AI, leaders should be able to answer some basic questions:</p>



<p>Who owns the process being automated?</p>



<p>How are decisions currently made?</p>



<p>Where does human oversight belong?</p>



<p>What happens when the AI recommendation is wrong?</p>



<p>If those questions cannot be answered clearly, AI will not solve the underlying problem.</p>



<p>In fact, AI may simply help the organization execute a broken process faster.</p>



<h2 class="wp-block-heading">Governance is necessary, but it isn’t enough</h2>



<p>As someone who has spent significant time working in regulated environments, I understand why governance has become a major focus of AI discussions.</p>



<p>Frameworks such as the <a href="https://www.nist.gov/itl/ai-risk-management-framework" rel="nofollow">NIST AI Risk Management Framework</a> provide valuable guidance for managing risk and establishing accountability. But governance alone does not create operational readiness.</p>



<p>This is where many organizations get stuck.</p>



<p>Governance is frequently treated as a separate activity performed by legal teams, compliance offices or security organizations. Operational teams often view governance as something that happens after the real work is complete.</p>



<p>That approach rarely succeeds.</p>



<p>In successful transformations, governance becomes part of the operational process itself.</p>



<p>If an AI system is generating recommendations that influence decisions, organizations should already know:</p>



<ul class="wp-block-list">
<li>Who reviews those recommendations</li>



<li>What authority that person has</li>



<li>How decisions are documented</li>



<li>How exceptions are handled</li>



<li>How errors are identified and corrected</li>
</ul>



<p>Those aren’t primarily technical questions.</p>



<p>They’re operational questions.</p>



<p>In many ways, AI governance resembles change management more than software engineering. Success depends on creating clear roles, responsibilities and decision paths that people understand and trust.</p>



<p>The organizations that integrate governance directly into operational workflows will move much faster than those that treat governance as a separate layer of oversight.</p>



<p>That challenge becomes even more important as organizations begin experimenting with increasingly autonomous systems. As CIO explored in <em>“</em><a href="https://www.cio.com/article/4146677/the-ai-revolution-getting-culture-right-for-ai-success.html"><em>The AI revolution: Getting culture right for AI success</em></a><em>,”</em> technology adoption ultimately succeeds or fails based on culture, trust and organizational alignment rather than technical capability alone.</p>



<h2 class="wp-block-heading">The next generation of AI leaders will be operators</h2>



<p>Much of today’s AI conversation focuses on technical expertise.</p>



<p>Technical expertise matters. Organizations need talented engineers, data scientists and architects.</p>



<p>But I believe the next wave of AI leadership will come from operators.</p>



<p>The leaders who create lasting value from AI will be the people who understand how work actually gets done inside complex organizations. They will understand organizational behavior, risk management, accountability and decision-making. They will know where automation creates value and where human judgment remains essential.</p>



<p>Most importantly, they will recognize that technology alone rarely transforms anything.</p>



<p>I’ve seen organizations struggle with ERP deployments, cloud migrations and enterprise modernization efforts. In almost every case, the limiting factor wasn’t the technology itself. It was the organization’s ability to adapt its processes, responsibilities and ways of working.</p>



<p>AI will be no different.  One lesson I’ve learned from previous technology transformations is that organizational patience often runs out before organizational readiness arrives. Leaders feel pressure to demonstrate progress, employees worry about disruption and technology teams are asked to move faster than the surrounding processes can support.</p>



<p>AI is creating similar pressures today. The excitement is understandable. The opportunities are real. But organizations that focus exclusively on deployment metrics may find themselves struggling with adoption, trust and accountability later.</p>



<p>In my experience, sustainable transformation happens when leaders are willing to invest as much effort in operational preparation as they do in technology selection.</p>



<p>The organizations that succeed won’t necessarily have the most advanced models.</p>



<p>They’ll have the clearest ownership, the strongest operational discipline and the highest levels of trust.</p>



<p>That’s why I increasingly view AI not as a technology challenge, but as an operational one.</p>



<p>We already know how technology transformations fail. Many of us have watched it happen before.</p>



<p>The organizations that remember those lessons will have a significant advantage as AI moves from experimentation into everyday operations.</p>



<p><strong>This article is published as part of the Foundry Expert Contributor Network.</strong><br><strong><a href="https://www.cio.com/expert-contributor-network/">Want to join?</a></strong></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[AI has finally reached The Rock and 'after taking a hard look at it,' he's got an 'extraordinary f-ing workout' and might be rethinking his Presidential aspirations]]></title>
<description><![CDATA[Dwayne (The Rock) Johnson finally found AI, and it's already given him a great workout and thoughts on a possible second (or is it third?) career.]]></description>
<link>https://tsecurity.de/de/3591925/it-nachrichten/ai-has-finally-reached-the-rock-and-after-taking-a-hard-look-at-it-hes-got-an-extraordinary-f-ing-workout-and-might-be-rethinking-his-presidential-aspirations/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3591925/it-nachrichten/ai-has-finally-reached-the-rock-and-after-taking-a-hard-look-at-it-hes-got-an-extraordinary-f-ing-workout-and-might-be-rethinking-his-presidential-aspirations/</guid>
<pubDate>Fri, 12 Jun 2026 00:02:26 +0200</pubDate>
<content:encoded><![CDATA[Dwayne (The Rock) Johnson finally found AI, and it's already given him a great workout and thoughts on a possible second (or is it third?) career.]]></content:encoded>
</item>
<item>
<title><![CDATA[Letzte Börsen-Transaktionen von German Hacker | MarketScreener Deutschland]]></title>
<description><![CDATA[German Hacker · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></description>
<link>https://tsecurity.de/de/3591577/hacking/letzte-boersen-transaktionen-von-german-hacker-marketscreener-deutschland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3591577/hacking/letzte-boersen-transaktionen-von-german-hacker-marketscreener-deutschland/</guid>
<pubDate>Thu, 11 Jun 2026 20:39:32 +0200</pubDate>
<content:encoded><![CDATA[German <b>Hacker</b> · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></content:encoded>
</item>
<item>
<title><![CDATA[AI vendor FDEs: Key considerations and concerns]]></title>
<description><![CDATA[When it comes to AI deployments, IT leaders are often caught in an awkward middle space, trying to reconcile conflicting directives from senior management with constantly changing AI models, capabilities, and costs; data governance and security needs; and the limitations of their own team.



“Ve...]]></description>
<link>https://tsecurity.de/de/3590315/it-nachrichten/ai-vendor-fdes-key-considerations-and-concerns/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590315/it-nachrichten/ai-vendor-fdes-key-considerations-and-concerns/</guid>
<pubDate>Thu, 11 Jun 2026 13:17:52 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>When it comes to AI deployments, IT leaders are often caught in an awkward middle space, trying to reconcile conflicting directives from senior management with constantly changing AI models, capabilities, and costs; data governance and security needs; and the limitations of their own team.</p>



<p>“Very few real benefits can be attained by simply purchasing an AI product and giving it to employees. Vendors have been overselling that fallacy for the past three years,” said <a href="https://www.gartner.com/en/experts/nader-henein" target="_blank" rel="noreferrer noopener">Nader Henein</a>, a Gartner VP analyst.</p>



<p>“The reality is that strong AI value and consistent ROI are almost always a result of deep and intentional integration of AI capabilities into existing workflows. For that you need specialized teams, which do not come cheap, and organizations have been recruiting those teams in a variety of ways,” Heinen said.</p>



<p>Among the options available to IT leaders looking for help with AI deployments are traditional IT consultancies, AI-specific consultancies, and independent contractors. Large enterprises with deep pockets can consider acquiring an AI firm and integrating its technology and expert staff. The use of open source to reduce vendor lock-in is a strategy that can sit on top of those others, <a href="https://www.cio.com/article/4019828/how-capital-one-drives-returns-on-its-ai-investments.html" target="_blank">an approach that Capital One has used</a>. </p>



<p>But the option that has been getting the most attention recently is bringing in <a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html">forward-deployed engineers</a> (FDEs), teams of experts from AI vendors that embed with a customer’s in-house engineers to oversee AI rollouts within the enterprise environment. Both <a href="https://www.cio.com/article/4169759/openais-new-ai-consulting-offering-raises-questions-of-trust-strategy.html" target="_blank">OpenAI</a> and <a href="https://www.cio.com/article/4167981/anthropics-financial-agents-expose-forward-deployed-engineers-as-new-ai-limiting-factor.html" target="_blank">Anthropic</a> have recently announced FDE offerings, for example, and <a href="https://www.computerworld.com/article/4176398/microsoft-ey-to-spend-1-billion-on-helping-customers-buy-agentic-ai-2.html" target="_blank">Microsoft</a> is partnering with consulting giant EY in a new FDE program for agentic AI deployments.</p>



<p>Engineering teams employed by AI vendors have key strengths, such as understanding their models better than anyone else, having experience integrating those models into different types of enterprise environments, and knowing about upcoming model capabilities before they’re announced. But they also have the obvious drawback of vendor lock-in. Even if future rollouts are not within their contracted deliverables, those vendor employees could subtly influence a client’s future AI efforts. </p>



<p><a href="https://www.linkedin.com/in/fvillanustre/" target="_blank" rel="noreferrer noopener">Flavio Villanustre</a>, CISO for LexisNexis Risk Solutions, cautions IT executives to move into FDE programs carefully. </p>



<p>FDEs “are financially incentivized to grow customers’ use of a vendor’s AI products and to create stickiness with that vendor’s services,” he said. “While FDEs may be a reasonable value-added service by the AI vendor, customers should always find other unbiased expert opinions that can evaluate competitive solutions across multiple vendors.”</p>



<p>This is particularly important at a time when “investor-subsidized AI token business models are starting to show cracks,” Villanustre said. “Also, in the current rapid pace of innovation in this field where AI vendors are constantly leapfrogging each other, retaining the agility to move from one vendor to the next could create significant competitive advantages.”</p>



<p>Analysts, consultants, and other industry experts who spoke with <em>Computerworld</em> about FDEs echoed Villanustre’s caution, citing concerns around hidden costs, confidentiality, observability, and vendor lock-in.</p>



<h2 class="wp-block-heading">Long-term costs and vendor lock-in</h2>



<p>A key issue that IT executives need to consider is how long the FDE teams will be needed. The enterprise will likely need an ongoing series of AI deployments synced with the current AI model(s). If help is needed today, why would that change tomorrow?</p>



<p>Enterprises tend to overlook those longer-term costs, said <a href="http://www.linkedin.com/in/sangyeob/" target="_blank" rel="noreferrer noopener">John Sangyeob Kim</a>, an AI engineer at software development vendor Solidroad.</p>



<p>“Deployment is maybe 20% of the total cost. The other 80% is keeping the system running through model upgrades, data drift, and edge cases that only appear after months in production,” Kim said. “Most contracts price the first part and assume the rest. Deployment isn’t the hard part of enterprise AI anymore. The next eighteen months are.”</p>



<p>And whether it’s intentional or not, FDEs will naturally favor their own product portfolio — it’s what they know best.</p>



<p>“FDEs from model labs are good at making their own models work in your environment. They are less suited for multi-model systems, because their incentive is to keep you inside their ecosystem,” Kim said.</p>



<p><a href="https://greyhoundresearch.com/svg/" target="_blank" rel="noreferrer noopener">Sanchit Vir Gogia</a>, chief analyst at Greyhound Research, said IT leaders should look at the FDE model as a strategy involving ongoing operational power. </p>



<p>“Whoever shapes the deployment pattern shapes the enterprise’s future muscle memory. Whoever owns the evaluation layer owns the truth layer. Whoever controls the integration logic controls the dependency map,” Gogia said. “This is why the FDE model matters. It is not just another delivery option. It is the frontier AI vendor moving closer to the customer’s workflow, operating model, and decision architecture.”</p>



<p>That proximity cuts both ways, Gogia noted. “FDEs are embedded inside the customer’s [environment], but they are also connected to the vendor’s commercial center of gravity. Their instinct will be to build around the model family, tooling assumptions, deployment patterns, and product roadmap they know best. This is perfectly natural. It is also precisely why CIOs must be cautious,” he said.</p>



<p>Allowing AI vendor employees an outsized say in enterprise deployment decisions could lock in model vendor dependency, which in turn will fuel high prices that can’t be fought effectively.</p>



<p>“FDEs can accelerate deployment and deepen dependency at the same time,” Gogia said. “Frontier AI vendors are no longer content to sell access to models. They increasingly want to shape how enterprises deploy intelligence. That is a larger prize.”</p>



<h2 class="wp-block-heading">What happens when the FDE team leaves?</h2>



<p>FDE post-departure risks are severe and often underappreciated, according to <a href="https://acceligence.com/talent/profiles/justin-greis/" target="_blank" rel="noreferrer noopener">Justin Greis</a>, CEO of consulting firm Acceligence and former head of the North American cybersecurity practice at McKinsey.</p>



<p>For one thing, the FDE team learns a massive number of operational details from the enterprise deployment. Although NDAs and confidentiality contracts protect any data accessed, they often don’t regulate observed processes and procedures. </p>



<p>“The learnings are absolutely going to be taken from client to client,” Greis said. “Whoever helps deploy AI will learn far more than what appears in the statement of work. They will learn the real workflows, the undocumented exceptions, the data-quality gaps, the approval bottlenecks, the security workarounds, and the places where the business depends on a few people knowing what to do when the process breaks. That knowledge may be as sensitive and precious as the data itself.”</p>



<p>Another critical but often overlooked issue is how much meaningful control will IT have over the project if and when the FDE team leaves.</p>



<p>“The danger is not using outside help. Most companies will need outside help,” Greis said. “The danger is using outside help in a way that leaves the enterprise less capable and more dependent when the engagement is over.”</p>



<p>It is precisely those operational decisions that IT often neglects, said Solidroad’s Kim.</p>



<p>“The best predictor of success is not the vendor. It is whether one internal engineer truly understands the system before the implementer leaves. What matters is who owns the evaluation loop after the demo,” Kim said.</p>



<p>“What happens to our prompts, scorers, and guardrails when the model version changes? If we paused this engagement tomorrow, what would actually stop working, by design or by accident?” Kim asked. “Where do you want the enterprise’s AI learning, control, and dependency to live after the engagement is over?”</p>



<p>Kim argues that <a href="https://www.cio.com/article/4083537/observability-for-the-modern-enterprise-bridging-it-security-and-business-kpis.html" target="_blank">observability</a> — the ability to understand and manage all elements of a complex enterprise environment — is a critical function to which IT often gives insufficient attention. Determining whether the project uses the enterprise’s observability stack or the vendor’s observability stack is crucial.</p>



<p>“If the implementer is using <em>their</em> observability stack, that is fine during the build, but you need a plan to migrate it to something you own before they leave; otherwise the visibility walks out of the door with them,” Kim said. “If they are using <em>yours</em>, that is the best case. It means they are working inside the system your team will operate long-term.”</p>



<p>A major problem crops up when they are using neither the enterprise’s nor the vendor’s observability stack. “<em>Neither</em> means they are building the system without any production observability layer at all, and you inherit a system you cannot see into. The first time something breaks in production, you have no traces, no failure history, and no way to tell whether the issue is a model regression, a data problem, or a code bug,” Kim said.</p>



<p>“If observability was not a priority during the build, evals and regression testing usually weren’t either, so you are inheriting a system you cannot measure and cannot safely change. That’s the worst possible handoff position,” he said.</p>



<h2 class="wp-block-heading">Weighing the alternatives</h2>



<p>While the FDE approach is not new, it is just now beginning a surge in popularity, and there are a finite number of such specialists available. That means not all companies even have the option of using FDEs.</p>



<p>This availability disconnect is especially prominent for non-US deployments, where on-site FDEs are rarer, said Gartner’s Henein. “Where is the development happening? There may not be FDEs available in that region,” he said. </p>



<p>There are plenty of other places enterprises can turn to for AI help. <a href="https://www.linkedin.com/in/ishraqkhann/" target="_blank" rel="noreferrer noopener">Ishraq Khan</a>, CEO of coding productivity tool vendor Kodezi, encourages IT executives to consider a wide range of options but notes that all approaches have major drawbacks.</p>



<p>“Traditional consultancies are usually stronger at governance, process, compliance, and organizational coordination. They know how large enterprises operate politically and structurally. The downside is that many move slower and often lack deep frontier AI specialization,” Khan said.</p>



<p>Gogia from Greyhound Research put it more colorfully: Traditional IT consulting firms “know how to get legal, risk, security, finance, HR, and business units into the same room without anybody setting fire to the carpet. For regulated enterprises, that matters,” he said.</p>



<p>Specialized AI consultancies have a different set of strengths, Khan said. “AI-native consultancies move much faster and are often more technically current, but many are still immature operationally. Some can build impressive demos without fully understanding long-term maintainability, governance, or production reliability.”</p>



<p>Greis from Acceligence commented on two other options for bringing in outside AI help. Using an independent contractor “can be great for eval design, architecture reviews, red teaming, agent design, or getting a stalled team unstuck,” he said, but it can increase the risk of “key-person dependency,” where a single external person is the only one who understands the system.</p>



<p>As for purchasing an AI firm and onboarding its employees, a practice known as “acquihiring,” Greis said it can work well when the AI capability and expertise being brought in are truly strategic for the acquiring enterprise. But there is a risk that the acquired team will be smothered by the parent company’s bureaucracy: “You buy a speedboat, bolt it to an aircraft carrier, and then wonder why it stopped moving,” he said.</p>



<p>Finally, an open-source strategy can give companies flexibility and reduce vendor dependence, but “many companies underestimate the operational burden that comes with it,” Kodezi’s Khan said. “Open source only helps if the organization has the internal talent and discipline to maintain it properly.”</p>



<p>Bottom line: enterprises need to define their true objectives before deciding on an approach. Khan offered several key questions for CIOs to consider: “Who owns the deployment after implementation? Can we move providers later without rebuilding everything? What happens if the vendor relationship changes or disappears? Are we optimizing for short-term deployment speed or long-term operational resilience?”</p>



<p>In any scenario where outside firms have direct access to enterprise systems, IT needs to be kept fully in the loop. “The worst outcome is when an enterprise successfully deploys AI but no longer fully understands how its own systems operate underneath,” Khan said.</p>



<h3 class="wp-block-heading">External help for AI deployments: 6 options</h3>



<figure class="wp-block-table"><div class="overflow-table-wrapper"><table class="has-fixed-layout"><tbody><tr><td></td><td><strong>Pros</strong></td><td><strong>Cons</strong></td></tr><tr><td><strong>AI vendor FDEs</strong></td><td><strong>+  </strong>Best expertise on the main model being used</td><td><strong>–  </strong>Vendor lock-in<br><br><strong>–  </strong>Operational detail leaks</td></tr><tr><td><strong>Traditional IT consultancies</strong></td><td><strong>+  </strong>Best understanding of change management, legacy integration, global rollout, governance, and operating-model redesign</td><td><strong>–  </strong>Can be too slow, too expensive, or too generic</td></tr><tr><td><strong>AI consulting firms</strong></td><td><strong>+  </strong>More practical AI deployment experience than traditional consultants<br><br><strong>+  </strong>Less vendor lock-in than model-provider FDEs</td><td><strong>–  </strong>May not sufficiently understand enterprise-grade requirements: security, identity, auditability, compliance, incident response, cost controls, and long-term maintainability</td></tr><tr><td><strong>Independent contractors</strong></td><td><strong>+  </strong>Useful for precision tasks: eval design, architecture reviews, red teaming, agent design, or getting a stalled team unstuck</td><td><strong>–  </strong>Risk of ‘key-person dependency’</td></tr><tr><td><strong>‘Acquihiring’ an AI firm</strong></td><td><strong>+  </strong>Works when the acquired capability is truly strategic</td><td><strong>–  </strong>Acquired team can be smothered inside existing bureaucracy</td></tr><tr><td><strong>Deploying open-source products</strong></td><td><strong>+  </strong>Reduces dependency on one model vendor<br><br><strong>+  </strong>Attractive for data sovereignty, control over enterprise systems, cost efficiencies, and regulated environments</td><td><strong>–  </strong>Enterprise takes on full responsibility for security, patching, evaluation, deployment, monitoring, and lifecycle management</td></tr></tbody></table> </div><figcaption class="wp-element-caption"><em>Source: Acceligence</em></figcaption></figure>



<p><strong>Related reading:</strong></p>



<ul class="wp-block-list">
<li><a href="https://www.computerworld.com/article/4171867/heres-one-career-emerging-from-the-ai-shift-forward-deployed-engineers.html" target="_blank">Here’s one career emerging from the AI shift: ‘forward-deployed engineers’</a></li>



<li><a href="https://www.cio.com/article/4118737/the-forward-deployed-engineer-why-talent-not-technology-is-the-true-bottleneck-for-enterprise-ai.html" target="_blank">The forward-deployed engineer: Why talent, not technology, is the true bottleneck for enterprise AI</a></li>



<li><a href="https://www.infoworld.com/article/4171983/the-new-ai-lock-in.html" target="_blank">The new AI lock-in</a></li>
</ul>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[heise-Angebot: gamescom jobs & career 2026: Recruiting-Messe und Fachkonferenz]]></title>
<description><![CDATA[In Halle 10.1 treffen Arbeitgeber, Fachkräfte und Nachwuchstalente aufeinander. Die gamescom jobs & career Area bietet Recruiting, Networking und Vorträge.]]></description>
<link>https://tsecurity.de/de/3590129/it-nachrichten/heise-angebot-gamescom-jobs-career-2026-recruiting-messe-und-fachkonferenz/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3590129/it-nachrichten/heise-angebot-gamescom-jobs-career-2026-recruiting-messe-und-fachkonferenz/</guid>
<pubDate>Thu, 11 Jun 2026 12:18:13 +0200</pubDate>
<content:encoded><![CDATA[In Halle 10.1 treffen Arbeitgeber, Fachkräfte und Nachwuchstalente aufeinander. Die gamescom jobs &amp; career Area bietet Recruiting, Networking und Vorträge.]]></content:encoded>
</item>
<item>
<title><![CDATA[Letzte Börsen-Transaktionen von Tom Hacker | MarketScreener Deutschland]]></title>
<description><![CDATA[Tom Hacker · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></description>
<link>https://tsecurity.de/de/3589935/hacking/letzte-boersen-transaktionen-von-tom-hacker-marketscreener-deutschland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3589935/hacking/letzte-boersen-transaktionen-von-tom-hacker-marketscreener-deutschland/</guid>
<pubDate>Thu, 11 Jun 2026 11:05:55 +0200</pubDate>
<content:encoded><![CDATA[Tom <b>Hacker</b> · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></content:encoded>
</item>
<item>
<title><![CDATA[CISA Sets 72-Hour Patch Window for Federal Systems Facing Highest Cyber Risks]]></title>
<description><![CDATA[The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has introduced a new risk-based approach to vulnerability remediation, requiring federal civilian agencies to patch the most dangerous cyber vulnerabilities within 72 hours. Announced through Binding Operational Directive (BOD) 26-0...]]></description>
<link>https://tsecurity.de/de/3589618/it-security-nachrichten/cisa-sets-72-hour-patch-window-for-federal-systems-facing-highest-cyber-risks/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3589618/it-security-nachrichten/cisa-sets-72-hour-patch-window-for-federal-systems-facing-highest-cyber-risks/</guid>
<pubDate>Thu, 11 Jun 2026 08:12:18 +0200</pubDate>
<content:encoded><![CDATA[<p><img width="1536" height="1024" src="https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive.webp" class="attachment-post-thumbnail size-post-thumbnail wp-post-image" alt="CISA vulnerability management directive" decoding="async" srcset="https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive.webp 1536w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-300x200.webp 300w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-1024x683.webp 1024w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-768x512.webp 768w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-600x400.webp 600w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-150x100.webp 150w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-750x500.webp 750w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-1140x760.webp 1140w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive.webp 1536w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-300x200.webp 300w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-1024x683.webp 1024w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-768x512.webp 768w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-600x400.webp 600w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-150x100.webp 150w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-750x500.webp 750w, https://thecyberexpress.com/wp-content/uploads/CISA-vulnerability-management-directive-1140x760.webp 1140w" sizes="(max-width: 1536px) 100vw, 1536px" title="CISA Sets 72-Hour Patch Window for Federal Systems Facing Highest Cyber Risks 1"></p>The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has introduced a new risk-based approach to vulnerability remediation, requiring federal civilian agencies to patch the most dangerous cyber vulnerabilities within 72 hours. Announced through Binding Operational Directive (BOD) 26-04, the new CISA vulnerability management directive replaces older remediation requirements with a framework designed to prioritize vulnerabilities that pose the greatest risk to government systems.

The move comes as cybersecurity officials warn that <a href="https://thecyberexpress.com/future-proof-career-artificial-intelligence-era/" target="_blank" rel="noopener">artificial intelligence</a> is helping threat actors identify and exploit security flaws faster than ever before. The directive aims to improve federal <a href="https://thecyberexpress.com/why-government-cisos-are-near-breaking-point/" target="_blank" rel="noopener">cyber resilience</a> while ensuring agencies focus resources on threats most likely to be exploited.
<h3><strong>New Risk-Based Model for Vulnerability Remediation</strong></h3>
Under the directive, federal civilian agencies must evaluate vulnerabilities against <a href="https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk" target="_blank" rel="nofollow noopener">four key criteria</a>:
<ul>
 	<li>Asset exposure to the public <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-internet/" title="internet" data-wpil-keyword-link="linked" data-wpil-monitor-id="28658">internet</a></li>
 	<li>Inclusion in CISA's <a href="https://thecyberexpress.com/vmware-vcenter-cve-2024-37079-exploited/" target="_blank" rel="noopener">Known Exploited Vulnerabilities (KEV) </a>catalog</li>
 	<li>Whether exploitation can be automated</li>
 	<li>The level of control an attacker could gain after exploitation</li>
</ul>
According to CISA officials, <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-are-vulnerabilities/" title="vulnerabilities" data-wpil-keyword-link="linked" data-wpil-monitor-id="28655">vulnerabilities</a> meeting three of these four conditions will face accelerated remediation deadlines.

The strictest requirement applies to vulnerabilities that are actively exploited, can be automated, and affect internet-facing systems. Agencies must patch such vulnerabilities within 72 hours.

In cases where exploitation could allow attackers to gain complete control of a system, agencies are also required to investigate whether a compromise has already occurred before applying <a class="wpil_keyword_link" href="https://thecyberexpress.com/" title="security" data-wpil-keyword-link="linked" data-wpil-monitor-id="28653">security</a> updates.

For vulnerabilities that meet similar risk criteria but cannot be exploited automatically, agencies will have up to 14 days to complete remediation, provided attackers have not already achieved full system control.

Federal agencies have been given 180 days to update their internal policies and adopt the new timelines.
<h3><strong>CISA Vulnerability Management Directive Responds to AI-Driven Cyber Threats</strong></h3>
A key driver behind the CISA <a class="wpil_keyword_link" href="https://thecyberexpress.com/firewall-daily/vulnerabilities/" title="vulnerability" data-wpil-keyword-link="linked" data-wpil-monitor-id="28651">vulnerability</a> management directive is the growing concern that artificial intelligence is reducing the time between the release of a security patch and active exploitation by threat actors.

CISA noted that cybercriminals are increasingly leveraging<a href="https://thecyberexpress.com/ai-powered-bots-create-governance-challenges/" target="_blank" rel="noopener"> AI-powered tools</a> to discover, analyze, and exploit vulnerabilities more efficiently. As a result, defenders have less time to respond once a vulnerability becomes public.

The agency said the new framework reflects today's threat environment by considering not only the vulnerability itself but also attacker capabilities, exploitability, asset exposure, and the potential consequences of a successful attack.

By combining these factors, CISA aims to help agencies make informed remediation decisions without overwhelming IT teams with unnecessary patching activities.
<h3><strong>Directive Consolidates Existing Federal Requirements</strong></h3>
The new directive harmonizes and updates requirements from two previous federal <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-cybersecurity/" title="cybersecurity" data-wpil-keyword-link="linked" data-wpil-monitor-id="28656">cybersecurity</a> mandates:
<ul>
 	<li>BOD 19-02, which focused on vulnerability remediation for internet-accessible systems</li>
 	<li>BOD 22-01, which addressed <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-are-risks-in-cybersecurity/" title="risks" data-wpil-keyword-link="linked" data-wpil-monitor-id="28654">risks</a> associated with Known Exploited Vulnerabilities (KEV)</li>
</ul>
Rather than treating all vulnerabilities equally, the updated approach prioritizes those most likely to be weaponized by attackers.

Acting CISA Director Nick Andersen <a href="https://www.cisa.gov/news-events/news/cisa-issues-new-directive-improving-how-federal-agencies-prioritize-mitigation-cyber-vulnerabilities" target="_blank" rel="nofollow noopener">said</a> the directive is intended to help agencies focus on areas of highest risk while improving transparency, predictability, and resource planning for remediation efforts.

The agency also encouraged organizations outside the federal government to adopt similar risk-based <a class="wpil_keyword_link" href="https://cyble.com/knowledge-hub/what-is-vulnerability-management/" target="_blank" rel="noopener" title="vulnerability management" data-wpil-keyword-link="linked" data-wpil-monitor-id="28657">vulnerability management</a> practices.
<h3><strong>Agencies Must Check for Compromise Before Patching</strong></h3>
One of the most significant additions in the new directive is the requirement for agencies to determine whether a vulnerable system has already been compromised before applying patches.

<a href="https://thecyberexpress.com/?s=CISA" target="_blank" rel="noopener">CISA</a> emphasized that installing a security update does not automatically remove attackers who may already have gained access to a network.

As a result, agencies must assess when and how a compromise occurred and conduct appropriate investigations before remediation. This requirement reflects growing concerns that attackers often maintain persistence inside networks even after vulnerabilities are patched.

The agency described compromise assessment as a critical component of effective cybersecurity <a class="wpil_keyword_link" href="https://thecyberexpress.com/what-is-risk-management/" title="risk management" data-wpil-keyword-link="linked" data-wpil-monitor-id="28652">risk management</a>, particularly for vulnerabilities already known to be exploited in the wild.
<h3><strong>Strengthening Federal Cybersecurity Readiness</strong></h3>
The CISA vulnerability management directive aligns with broader U.S. government efforts to strengthen cybersecurity and secure federal information systems against increasingly sophisticated threats.

The directive supports objectives outlined in the Executive Order on Promoting Advanced Artificial Intelligence Innovation and Security, which calls for enhanced protection of civilian federal networks.

As agencies implement the new requirements, CISA will monitor compliance, track progress, and provide support where necessary. The agency said the initiative represents an important step toward reducing cybersecurity risk across the federal enterprise while ensuring faster responses to the vulnerabilities most likely to be targeted by attackers.]]></content:encoded>
</item>
<item>
<title><![CDATA[Letzte Börsen-Transaktionen von Thomas T. Hacking | MarketScreener Deutschland]]></title>
<description><![CDATA[Thomas T. Hacking · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></description>
<link>https://tsecurity.de/de/3588801/hacking/letzte-boersen-transaktionen-von-thomas-t-hacking-marketscreener-deutschland/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3588801/hacking/letzte-boersen-transaktionen-von-thomas-t-hacking-marketscreener-deutschland/</guid>
<pubDate>Wed, 10 Jun 2026 22:06:40 +0200</pubDate>
<content:encoded><![CDATA[Thomas T. <b>Hacking</b> · Latest insider transactions · Estimated holdings · Related news feed · Professional network · Career timeline.]]></content:encoded>
</item>
<item>
<title><![CDATA[Five questions for the duo behind The Pelley Minutes]]></title>
<description><![CDATA[Websites are so back! Today's website worth visiting is The Pelley Minutes, a clever project that puts the career of longtime 60 Minutes correspondent Scott Pelley into perspective. The show may only be 60 minutes long, but Pelley racked up nearly 37,000 minutes in his 37-year long career, report...]]></description>
<link>https://tsecurity.de/de/3587886/it-nachrichten/five-questions-for-the-duo-behind-the-pelley-minutes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3587886/it-nachrichten/five-questions-for-the-duo-behind-the-pelley-minutes/</guid>
<pubDate>Wed, 10 Jun 2026 16:19:23 +0200</pubDate>
<content:encoded><![CDATA[Websites are so back! Today's website worth visiting is The Pelley Minutes, a clever project that puts the career of longtime 60 Minutes correspondent Scott Pelley into perspective. The show may only be 60 minutes long, but Pelley racked up nearly 37,000 minutes in his 37-year long career, reporting on almost everything humanity has put […]]]></content:encoded>
</item>
<item>
<title><![CDATA[Please Remove AI From the Lasagna #cyber #coding #chatgpt]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 64x - Views:530 🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEYBOARD
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard

🔥COME...]]></description>
<link>https://tsecurity.de/de/3587794/it-security-video/please-remove-ai-from-the-lasagna-cyber-coding-chatgpt/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3587794/it-security-video/please-remove-ai-from-the-lasagna-cyber-coding-chatgpt/</guid>
<pubDate>Wed, 10 Jun 2026 15:33:36 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 64x - Views:530 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/zYS7N4vOblU?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Is A.I. affecting your career? We want to hear from you.]]></title>
<description><![CDATA[The New York Times wants to talk to workers about what they think artificial intelligence will mean for their careers, and how they are navigating this uncertain period.]]></description>
<link>https://tsecurity.de/de/3587518/ai-nachrichten/is-ai-affecting-your-career-we-want-to-hear-from-you/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3587518/ai-nachrichten/is-ai-affecting-your-career-we-want-to-hear-from-you/</guid>
<pubDate>Wed, 10 Jun 2026 13:48:54 +0200</pubDate>
<content:encoded><![CDATA[The New York Times wants to talk to workers about what they think artificial intelligence will mean for their careers, and how they are navigating this uncertain period.]]></content:encoded>
</item>
<item>
<title><![CDATA[The lean AI plan for action at VietBank]]></title>
<description><![CDATA[As a veteran of IT leadership, and just over two years into his current role as VietBank CIO, NghiaTran has rebuilt a strategic engine by not trying to out-spend the competition but by investing in AI-driven customer intelligence, like behavioral analytics and CRM integration. And since sensitive...]]></description>
<link>https://tsecurity.de/de/3587266/it-nachrichten/the-lean-ai-plan-for-action-at-vietbank/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3587266/it-nachrichten/the-lean-ai-plan-for-action-at-vietbank/</guid>
<pubDate>Wed, 10 Jun 2026 12:18:10 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>As a veteran of IT leadership, and just over two years into his current role as VietBank CIO, NghiaTran has rebuilt a strategic engine by not trying to out-spend the competition but by investing in AI-driven customer intelligence, like behavioral analytics and CRM integration. And since sensitive banking data can’t leave the building, flagship AI innovations, like their smart office tracking system (SOTs) and intelligent management system (IMS), were built entirely in-house using open-source components including a self-hosted LLM, rather than tools procured from enterprise vendors.</p>



<p>Delivered in just a few months on a lean budget, says Tran, SOTs cut document approval cycles by 35%, earned VietBank a CIO ASEAN Innovation Award in 2025, and drew an invitation from the Vietnamese government to present at last year’s National Digital Governance Conference.</p>



<p>From conceiving and building AI initiatives in-house to urgently deploying AI instead of waiting for perfect data, Tran has a vision of how to progress that makes the most sense to the business. “If we keep waiting for perfect data, we fall behind our competitors,” he says. The means by which to measure success, he adds, is through culture, in that even when hardware costs are skyrocketing as AI chip demand surges globally and business units feel the strain, giving people autonomy and room to grow make their work and place worth sticking around for. </p>



<p>What Tran is building at VietBank with a lean team, a clear plan, and an insistence for action, is a reminder that clarity and execution matter more than immediate and impatient scaling.</p>



<p>“My professional focus is on building a resilient technology foundation, advancing cyber maturity, and aligning with the complex IT ecosystem with business strategy and regulatory expectation,” he says. “My role is to ensure technology isn’t only innovative, but also secure, scalable, and directly tied to business value.”</p>



<p>Tran also details cybersecurity as the sector’s most underappreciated risk, keeping pace with neobanks, and adapting to change. Watch the full video below for more insights, and be sure to subscribe to the monthly Center Stage newsletter by clicking <a href="https://www.cio.com/newsletters/signup/">here</a>.</p>



<figure class="wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio"><div class="wp-block-embed__wrapper youtube-video">

</div></figure>



<p><strong>On AI enabling diversification: </strong>I deployed agentic AI for the bank, which helps to automate and optimize critical processes such as document processing, approvals, and reporting to leadership with reduced manual operation, increased transparency, and greater data security within the internal environment.</p>



<p>Our IT targets value across efficiency, control, security, and scalability, and that’s my role. My target for IT support for the business is to improve information retrial, and write the quality and consistency of internal reporting and decision support. And from that, I and my team try to develop the technology that’s enables the business to function, and to help them to maximize their efforts.</p>



<p>The more we understand customers, the better we can serve them. And we can redeem a lot of value-added service, confidence, safety, and security with AI.</p>



<p><strong>On inward-facing AI: </strong>Data accountability is a very important principle in banking, considering all the sensitive information, security files, and finance statements. So material must remain fully within the bank’s control. For me, AI is of great value so we chose to develop in-house with a native model. We could make the banking provide intelligence and trust, and a smart office system was designed so documents and the entire model stay within the bank environment, which protects confidence, avoids external token costs, and aligns with state regulations about the data profession.</p>



<p>This approach gives us the flexibility to innovate while maintaining full control over our data and architecture. The smart office tracking system (SOT) we deployed, after only a few months and using a small amount of budget, keeps sensitive information on-prem. Using agents, SOT can summarize and optimize documentation, while IMS is multifaceted and we have an internal assistant to look up the regulation procedure, support the operation, and mitigate data-related risk. We apply it to process management, like automation, approval process management, and asset control management, integrating a holistic ecosystem.</p>



<p><strong>On cybersecurity: </strong>Banking tech is very serious about cybersecurity, and the way I approach it is to have a multi-layer and proactive approach to defense. We have a red team testing inside and outside for vulnerabilities, and we have a blue team to operate with the National Cybersecurity Agency. We also have a consulting team to stay on top of new trends. With AI, you can assess cybersecurity very easily, but we have to be proactive, especially when attackers use AI to attack the system, most notably in Vietnam, which is one of the top global target for cyberattacks.AI-powered threats are moving faster than legacy security architectures can handle. My approach is multi-layered, but a broader concern is systemic since a supply chain attack on one bank can cascade throughout the entire financial system.</p>



<p><strong>On vision 2028: </strong>I see the same questions will be asked in many disciplines and panels. We’re waiting for the perfect data platform, or how to run AI, because some will say that data must be well structured before it’s run through AI. For me, I make choices based on the business case. If an AI approach is successful, scalable, and we receive good feedback, we can deploy for the whole bank. That’s the safe approach for banking. I used to work in consulting so I always advise that if you have enough money and resources, you should do the analysis and AI transformation smartly.</p>



<p>With budgets and finance, hardware costs have dramatically increased and this could greatly impact your strategy, especially when it comes to investment to enhance and modernize infrastructure. HR will also be crucial. You develop talent but refining the way to keep it for the long term is very difficult. With teamwork, you have a team for people to study. Let them use that to develop their career path.</p>
</div></div></div></div>]]></content:encoded>
</item>
<item>
<title><![CDATA[Tim Cook Calls Leading Apple His Greatest Honor Of A Lifetime]]></title>
<description><![CDATA[During the closing moments of the recent developer conference, Tim Cook took a moment to reflect on a long career. The event showcased big software updates, but it also marked a personal milestone for him. Delivering his final keynote speech before stepping down, he shared his heartfelt thoughts ...]]></description>
<link>https://tsecurity.de/de/3585292/ios-mac-os/tim-cook-calls-leading-apple-his-greatest-honor-of-a-lifetime/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3585292/ios-mac-os/tim-cook-calls-leading-apple-his-greatest-honor-of-a-lifetime/</guid>
<pubDate>Tue, 09 Jun 2026 19:10:36 +0200</pubDate>
<content:encoded><![CDATA[During the closing moments of the recent developer conference, Tim Cook took a moment to reflect on a long career. The event showcased big software updates, but it also marked a personal milestone for him. Delivering his final keynote speech before stepping down, he shared his heartfelt thoughts about his time guiding the company. He explained how much he truly enjoyed seeing everyday developers use new tools to build amazing things.



The chief executive shares a personal goodbye with developers



The keynote presentation at WWDC 2026 was packed with new software details, but the very end of the show focused strictly on the people. Tim Cook closed the event by delivering a special message to the crowd. As he gets ready to leave his role, he wants to thank the community that builds apps for Apple. He explained that the company always aims to make products that improve daily life, and it relies heavily on developers to make that happen.



Because Tim Cook is stepping down as Apple CEO, John Ternus is taking over the top job soon. This made his final words at the conference very meaningful for the audience watching.



He shared the following complete message right before the video ended:




“On a personal note, some of the greatest highlights of my time as CEO have been events like this. Sharing powerful new tools with all of you and then seeing what you create with them has been a constant reminder that imagination has no limits.



Over the years, you have helped people connect, create, learn, and experience the world in extraordinary new ways. And with the incredible capabilities we introduced today, and so many more still to come, I truly believe the best is still ahead.



At Apple, creating the best products in the world to deliver experiences that enrich people's lives has always been our North Star.



It's been the honor of a lifetime to help advance that mission with teams whose creativity, care, and conviction continue to make a lasting difference in people's lives.



Thank you all for joining us. Let's have a great WWDC!“




It was a quiet and personal way to wrap up a massive tech event. After spending so many years guiding the brand, he leaves knowing the developer community will keep pushing the limits of what phones and computers can do.]]></content:encoded>
</item>
<item>
<title><![CDATA[AI Should Never Touch Authentication]]></title>
<description><![CDATA[Author: Low Level - Bewertung: 58x - Views:443 AI in account security? No Thank you

#linux #hacking #cybersecurity #cyber

🏫 MY COURSES
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy

🧙‍♂️ HACK YOUR CAREER
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io

⌨️ KEY...]]></description>
<link>https://tsecurity.de/de/3585256/it-security-video/ai-should-never-touch-authentication/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3585256/it-security-video/ai-should-never-touch-authentication/</guid>
<pubDate>Tue, 09 Jun 2026 19:03:27 +0200</pubDate>
<content:encoded><![CDATA[<p>Author: Low Level - Bewertung: 58x - Views:443 <br/></p><p><iframe id="ytplayer" loading="lazy" type="text/html" width="100%" height="auto" src="https://www.youtube.com/embed/jEvYWZRp_78?autoplay=1&origin=http://tsecurity.de" frameborder="0"></iframe></p><p>AI in account security? No Thank you<br />
<br />
#linux #hacking #cybersecurity #cyber<br />
<br />
🏫 MY COURSES<br />
Sign-up for my FREE 3-Day C Course: https://lowlevel.academy<br />
<br />
🧙‍♂️ HACK YOUR CAREER<br />
Wanna learn to hack? Join my new CTF platform: https://stacksmash.io<br />
<br />
⌨️ KEYBOARD<br />
Like what you hear? Grab a Q5 at https://go.lowlevel.tv/keyboard<br />
<br />
🔥COME HANG OUT   <br />
Check out my other stuff: https://lowlevel.tv<br/></p>]]></content:encoded>
</item>
<item>
<title><![CDATA[Alex Vindman Survived Trump’s Retaliation Machine. Now He’s Running for Senate]]></title>
<description><![CDATA[In 2019, Alex Vindman testified during President Trump’s first impeachment trial–a decision that ended his military career. Now he wants to challenge the president from the halls of Congress.]]></description>
<link>https://tsecurity.de/de/3584159/it-nachrichten/alex-vindman-survived-trumps-retaliation-machine-now-hes-running-for-senate/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3584159/it-nachrichten/alex-vindman-survived-trumps-retaliation-machine-now-hes-running-for-senate/</guid>
<pubDate>Tue, 09 Jun 2026 12:32:36 +0200</pubDate>
<content:encoded><![CDATA[In 2019, Alex Vindman testified during President Trump’s first impeachment trial–a decision that ended his military career. Now he wants to challenge the president from the halls of Congress.]]></content:encoded>
</item>
<item>
<title><![CDATA[Oxford University discloses data breach after careers platform hack]]></title>
<description><![CDATA[The University of Oxford disclosed a new data breach last week after being informed by its third-party provider, Group GTI, that its CareerConnect career services platform had been compromised. [...]]]></description>
<link>https://tsecurity.de/de/3581236/it-security-nachrichten/oxford-university-discloses-data-breach-after-careers-platform-hack/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3581236/it-security-nachrichten/oxford-university-discloses-data-breach-after-careers-platform-hack/</guid>
<pubDate>Mon, 08 Jun 2026 13:23:30 +0200</pubDate>
<content:encoded><![CDATA[The University of Oxford disclosed a new data breach last week after being informed by its third-party provider, Group GTI, that its CareerConnect career services platform had been compromised. [...]]]></content:encoded>
</item>
<item>
<title><![CDATA[Enterprise network teams are falling behind as AI raises the stakes]]></title>
<description><![CDATA[Enterprise network operations teams are struggling to keep pace with the demands placed on them, and the challenge is growing as enterprises prepare their networks and observability tools for AI workloads.



Roughly 31% of IT professionals surveyed for an Enterprise Management Associates (EMA) b...]]></description>
<link>https://tsecurity.de/de/3581076/it-security-nachrichten/enterprise-network-teams-are-falling-behind-as-ai-raises-the-stakes/</link>
<guid isPermaLink="true">https://tsecurity.de/de/3581076/it-security-nachrichten/enterprise-network-teams-are-falling-behind-as-ai-raises-the-stakes/</guid>
<pubDate>Mon, 08 Jun 2026 12:23:55 +0200</pubDate>
<content:encoded><![CDATA[<div>
		<div class="grid grid--cols-10@md grid--cols-8@lg article-column">
					  <div class="col-12 col-10@md col-6@lg col-start-3@lg">
						<div class="article-column__content">
<section class="wp-block-bigbite-multi-title"><div class="container"></div></section>



<p>Enterprise network operations teams are struggling to keep pace with the demands placed on them, and the challenge is growing as enterprises prepare their networks and observability tools for AI workloads.</p>



<p>Roughly 31% of IT professionals surveyed for an Enterprise Management Associates (EMA) benchmarking study said their organization’s network operations strategy is completely successful, a figure that decreased from 42% two years ago. That is one of the findings of EMA’s <a href="https://www.enterprisemanagement.com/press_release/ema-research-identifies-key-network-operations-challenges-in-the-era-of-ai-and-hybrid-cloud/" target="_blank" rel="noreferrer noopener">Network Management Megatrends 2026</a> report, based on a survey of 352 IT professionals across North America and Europe. The report confirms that network teams today face multiple pressures: a talent shortage, tool sprawl, hybrid and multi-cloud complexity, and AI workloads on networks that weren’t built to manage them.</p>



<p>“Network operators clearly know they need to do better, but they aren’t getting the support they need,” said Shamus McGillicuddy, EMA’s vice president of research for network infrastructure and operations, in a <a href="https://www.enterprisemanagement.com/press_release/ema-research-identifies-key-network-operations-challenges-in-the-era-of-ai-and-hybrid-cloud/" target="_blank" rel="noreferrer noopener">statement</a>. “They need budget to fill empty seats on their teams. They need better tools. They need more automation. They need more influence over modern architectures, like hybrid and multi-cloud networks. CIOs need to step up and give network operators the support they deserve, especially if those CIOs want to succeed with AI transformation. Networks will make or break those projects.”</p>



<h2 class="wp-block-heading">The state of the NOC</h2>



<p>Tool sprawl remains a chronic condition for network operations teams. The typical IT organization uses four to ten monitoring and troubleshooting tools to manage its network, a number that EMA said has barely moved in more than a decade. Yet EMA found no significant correlation between the size of a toolset and operational success.</p>



<p>The data shows how much room for improvement exists, regardless of how many tools a team has:</p>



<ul class="wp-block-list">
<li>58% of network problems are detected proactively before users experience their impact</li>



<li>Only 37% of alerts generated by network monitoring tools are indicative of a real problem</li>



<li>Manual administrative errors cause 28% of network problems</li>



<li>29% of the average network professional’s day is spent troubleshooting</li>
</ul>



<p>“IT pros believe that 53% of the network problems that they are dealing with on a day-to-day basis could be prevented with better tools, so that gives you some color around why only 31% of the people we surveyed felt like they are completely successful with network operations strategy,” McGillicuddy explained on a <a href="https://www.enterprisemanagement.com/product/network-management-megatrends-2026-automation-hybrid-and-multi-cloud-networks-and-ai-transformation/">webinar about the study results</a>. “Tool replacement is widespread. Seventy-three percent of the people we surveyed said they are likely to replace, at least somewhat likely to replace, a network observability or network monitoring tool within the next two years.”</p>



<h2 class="wp-block-heading">Megatrend #1: The talent crisis is getting worse</h2>



<p>The share of organizations that find it somewhat or very difficult to hire network technology experts has risen from 26% in 2022 to 41% in 2024 to 52% today. According to EMA, the shortage is most apparent at the senior and mid-career levels, where cloud, security, and automation skills are most needed.</p>



<p>“We’re being asked to do more with less,” a monitoring architect with a Fortune 500 entertainment company said in the EMA report. “What used to be done by a 25-person team, management now wants us to do with a ten-person team.”</p>



<p>The talent gap is also driving the urgency to successfully deploy <a href="https://www.networkworld.com/article/4172391/netops-teams-look-to-ai-to-automate-day-2-operations.html">automation</a>. Short-staffed teams need tools that handle more routine work automatically, so that the engineers they do have on staff can operate at a higher level, according to EMA. The skills gap itself can be the biggest barrier to achieving that automation, according to EMA. Teams often lack the people who know how to build and maintain the automation pipelines. Network teams shared their top barriers to automation, including:</p>



<ul class="wp-block-list">
<li>Skills gaps within the team: 46%</li>



<li>Tool limitations or lack of integration: 36.4%</li>



<li>Insufficient data quality or visibility: 31.8%</li>



<li>Risk aversion or governance constraints: 31.8%</li>



<li>Budget constraints: 29.8%</li>



<li>Organizational resistance to change: 27.3%</li>



<li>Lack of trust in automation: 25%</li>
</ul>



<h2 class="wp-block-heading">Megatrend #2: The push to automate day-two operations</h2>



<p>Network automation has meant provisioning and configuration, considered day-zero and day-one work. The new priority is <a href="https://www.networkworld.com/article/4172391/netops-teams-look-to-ai-to-automate-day-2-operations.html">day-two operations</a>: the ongoing detection, triage, diagnosis, and remediation of network problems in production. Seventy-nine percent of respondents rate automating these tasks as a high or very high priority, according to the EMA report.</p>



<p>Organizations are looking for AI-driven, agentic automation: tools capable of reasoning about network conditions and taking autonomous or semi-autonomous action. The report found that 55% of respondents say AI features are a requirement when evaluating new tools, and AI-driven insights and automation is the top reason they would replace an incumbent. The day-two tasks organizations most want to automate:</p>



<ul class="wp-block-list">
<li>Security response and containment: 54.3%</li>



<li>Capacity and performance optimization: 49.7%</li>



<li>Incident remediation and self-healing: 44.3%</li>



<li>Configuration optimization: 40.3%</li>



<li>Event correlation/alert noise reduction: 37.5%</li>



<li>Change validation and rollback: 26.4%</li>
</ul>



<p>EMA found that an emerging enabler is Model Context Protocol (MCP) support, which gives AI agents a standard interface to interact with multiple network management tools. Successful NetOps organizations were more likely to prioritize MCP support for agentic AI access to tools, according to EMA.</p>



<p>“The MCP access points become like an abstraction layer across your tool sprawl,” McGillicuddy said.</p>



<h2 class="wp-block-heading">Megatrend #3: Hybrid and multi-cloud networks remain ungoverned</h2>



<p>Nearly seven in ten (69%) surveyed organizations operate hybrid cloud environments, and 66% are multi-cloud. Yet only 36% say they are completely effective at managing their cloud networks, a gap that reflects both technical complexity and cultural friction between network teams and cloud engineering groups.</p>



<p>EMA found the core challenges are familiar: proprietary networking constructs that vary across providers, inconsistent telemetry, skills gaps on the network team, and limited end-to-end visibility across cloud and on-premises environments. </p>



<p>“I still talk to network observability vendors that haven’t got feature parity across the big three cloud providers yet,” McGillicuddy said. “They might be good at collecting and analyzing data from AWS, but they’re still kind of far behind on things with Google Cloud Platform, and they haven’t even thought about some of the secondary ones yet.”</p>



<p>Organizations that have managed to integrate IP address management and extend network observability tools across hybrid environments report better overall outcomes, EMA said, but both remain works in progress for most.</p>



<h2 class="wp-block-heading">Megatrend #4: AI networks need managing, and few tools are ready</h2>



<p>Nearly half of respondents (47.7%) said AI training or inference workloads are already deployed on their networks. Most of the rest expect to deploy within the next two years. But only 35% say their current network observability tools are completely ready to manage those workloads.</p>



<p>The performance concerns are specific to AI infrastructure: isolating problems across networks, applications, and GPU clusters simultaneously; managing inference tail latency; and gaining visibility into GPU utilization as a network signal. The tool enhancements teams most want to close the gap:</p>



<ul class="wp-block-list">
<li>AI-powered troubleshooting and remediation: 51.3%</li>



<li>Proactive alerting for AI-related performance risks: 49.3%</li>



<li>AI workload awareness via real-time packet analysis: 46.9%</li>



<li>Real-time streaming telemetry to replace polling intervals: 40.2%</li>



<li>Correlation of GPU, application, and network performance metrics: 34.3%</li>
</ul>



<h2 class="wp-block-heading">What successful teams are doing differently</h2>



<p>EMA’s research also identified the practices separating successful organizations from those falling short.</p>



<p>The research firm found that successful teams hold network observability data to a strict accuracy standard. They have moved beyond scripts and runbooks to AI-driven and agentic management tools, and they prioritize integration over consolidation, focusing on security insights, workflow integration, and data sharing across their toolset rather than trying to reduce its size. And the successful organizations are building unified visibility and security controls that span both on-premises and cloud infrastructure, according to EMA.</p>



<p>“AI networking, or networks for AI, is going to require some retooling. I recommend you talk to your vendors about whether they’re thinking about this. Most of them aren’t, probably because they’re not hearing from you,” McGillicuddy said.</p>



<p></p>
</div></div></div></div>]]></content:encoded>
</item>
</channel>
</rss>
<!-- Generated in 3,10ms -->