LIVE · cybersecurity feed
Live wire
aicritical

AI Training Critical as Governance Challenges Grow

Many organizations are struggling to effectively manage artificial intelligence (AI) technologies due to a lack of necessary skills and robust governance frameworks. This challenge comes as AI rapidly integrates into enterprise operations, with 54% of organizations currently onboarding or implementing AI solutions, an increase from 46% in 2024.

ZeroDay News ·

Source: Infosecurity Magazine

Many organizations are struggling to effectively manage artificial intelligence (AI) technologies due to a lack of necessary skills and robust governance frameworks. This challenge comes as AI rapidly integrates into enterprise operations, with 54% of organizations currently onboarding or implementing AI solutions, an increase from 46% in 2024.

In response to this growing skills gap, ISACA, a training and certification body, is set to launch an AI governance certification in early 2027. This new credential, currently in its beta phase, will complement ISACA's existing suite of AI-focused certifications, which include Advanced in AI Audit (AAIA), Advanced in AI Security Management (AAISM), and Advanced in AI Risk (AAIR).

ISACA's research indicates a significant deficit in AI governance, with only 32% of digital trust professionals believing their organizations adequately address AI-related risks such as privacy, bias, and security, despite the widespread adoption of AI in the workplace.

Chris Dimitriadis, ISACA's chief global strategy officer, emphasized the importance of the governance certification, describing it as an "umbrella" for professionals across various domains, including cybersecurity, audit, and risk management. He stated that the goal is to help individuals control and govern AI rather than allowing it to operate unchecked.

Uptake for ISACA's AI training programs has been positive, particularly in regions like Europe, the US, and Asia, which are at the forefront of AI adoption. However, a 2025 ISACA AI Pulse Poll, which surveyed over 3,000 digital trust professionals, revealed that 32% of organizations provide no AI training to their employees.

Dimitriadis underscored the need for more specialized and holistic AI training across various professional roles, including auditors, cyber professionals, risk managers, project managers, and IT managers involved in AI governance. He highlighted the importance of incorporating soft skills to ensure professionals can succeed in their roles.

ISACA's 2026 research predicts that AI will increasingly handle technical and orchestration tasks, allowing professionals to focus on activities requiring context, intuition, and communication. These critical human-centric tasks include governance, AI configuration and monitoring, and final decision-making. The report also identified key security skills needed, such as threat detection and response, identity and access management, vulnerability management, data security, and incident response.

ai
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerability

Anthropic Fast-Tracks AI Bug Reports to OSS Maintainers, Taps 11 Firms for OT Security

Anthropic has reportedly initiated a program to fast-track AI-generated vulnerability reports to open-source software (OSS) maintainers. This new system, dubbed "OSS Scanner," is designed to automatically generate and dispatch bug reports. The reports are sent directly to maintainers who have opted into the program, raising questions about the review process for these AI-generated findings.

ai

Major AI Firms Pledge Data Protection Changes Following UK Privacy Watchdog Push

Ten prominent AI companies have committed to enhancing their data protection practices in the UK following a push from the Information Commissioner's Office (ICO), the country's privacy watchdog. Amazon, Anthropic, Apple, Cohere, DeepSeek, Google, Meta, Microsoft, OpenAI, and Stability AI are among the firms that have pledged to implement changes, which include improving transparency,…

security

Product showcase: SimpleLogin keeps your email address private with aliases

SimpleLogin, an email alias service developed by Proton, allows users to create unique, disposable email addresses that forward messages to a primary inbox. This system is designed to enhance privacy by limiting the exposure of a user's main email address across various online services.

nation-statecritical

US Disrupts Chinese State-Sponsored Hacking Tools

The United States government has reportedly disrupted a set of hacking tools attributed to Chinese state-sponsored advanced persistent threat (APT) groups, including one known as Flax Typhoon. These tools, identified as MicroScan and FishHub, were reportedly employed in campaigns targeting critical infrastructure within the U.S. and other nations. The disruption aims to mitigate ongoing…

vulnerabilitycritical

Citrix warns admins to patch new NetScaler RCE flaw immediately

Citrix has issued an urgent advisory to administrators regarding a new critical vulnerability, tracked as CVE-2026-107406, affecting its NetScaler ADC networking appliances and NetScaler Gateway secure remote access solutions. The company is urging immediate patching to mitigate the risk of remote code execution (RCE) or denial-of-service (DoS) attacks.

security

Co-creator of Empire Market dark web marketplace given 40-year sentence

Raheim Hamilton, a co-creator of the dark web marketplace Empire Market, has been sentenced to 40 years in federal prison for his role in operating the platform. The 30-year-old Virginia native pleaded guilty earlier this year to a drug conspiracy charge and was ordered by U.S. District Judge Steven Seeger to forfeit over $100 million in Bitcoin and several properties in Virginia, in addition…