Some content on this site was created with AI assistance
Blog

Security

16 articles

Security

Security

An AI compliance checklist for SMEs — 10 points to close out in August

On 2 August 2026 the transparency provisions of the EU AI Act (Article 50) enter into application. If July went by on other priorities, the checklist below will let you close the topic in August without chaos. Ten points. Each with a short explanation of why it exists and how to check it's done. Tick them off one by one.

2026-08-05 Reading time: 5 min
#EU AI Act#checklista#compliance
Read more →
Security

Chatbots and AI content in your company — Article 50 transparency obligations in practice

From 2 August 2026 the transparency obligations under Article 50 of the EU AI Act stop being theory. Many companies already know THAT they must label chatbots and AI-generated content. Far fewer know HOW to do it correctly. So we take apart the three most common SME scenarios: a chatbot on the website, marketing content and email communication.

2026-07-29 Reading time: 5 min
#EU AI Act#art. 50#chatbot
Read more →
Security

EU AI Act: what your company actually has to do before 2 August 2026

On 2 August 2026 the provisions of the EU Artificial Intelligence Act (AI Act) that matter most to the majority of companies enter into application, including the transparency obligations under Article 50. If your company runs a chatbot, generates content with AI or uses AI tools in customer communication, this deadline applies to you directly.

2026-07-22 Reading time: 6 min
#EU AI Act#art. 50#compliance
Read more →
Security

Automating Security Incident Response with AI — SOAR and Playbooks

The average time from detecting a security breach to containment is many hours or even days for many organizations. AI-enhanced SOAR platforms reduce this to minutes by automating repetitive response steps and allowing analysts to focus on decisions requiring human judgment.

2026-05-25 Reading time: 7 min
#incident response#SOAR#SIEM
Read more →
Security

KRIs in IT Security — How to Measure Risk Before It Becomes an Incident

Key Risk Indicators (KRIs) are a tool that enables security departments to move from reactive firefighting to proactive threat management. Learn how to define, measure, and visualize KRIs in a way that is useful for the board.

2026-05-19 Reading time: 6 min
#KRI#risk management#IT security
Read more →
Security

DevSecOps and Shift-Left Security — How to Build Security into the Software Development Process

Detecting a security vulnerability after production deployment statistically costs 30 times more than fixing it at the design stage. Shift-left security moves security testing to the earliest stages of the development lifecycle.

2026-05-13 Reading time: 7 min
#DevSecOps#shift-left#SAST
Read more →
Security

Zero Trust in Practice — How to Implement the Never Trust, Always Verify Security Model

Zero Trust is not a product to buy but a security architecture based on the principle that no connection — internal or external — is trusted by default. Implementation requires a coherent strategy encompassing identity, devices, network, and data.

2026-05-11 Reading time: 8 min
#zero trust#network security#microsegmentation
Read more →
Security

API Security in Enterprise Environments — OAuth2, Rate Limiting, WAF

APIs have become the primary attack vector for enterprise systems — according to industry reports, they account for over 90 percent of data breach incidents. A comprehensive approach to API security requires multi-layered protection from authentication to anomaly monitoring.

2026-05-07 Reading time: 7 min
#API security#OAuth2#WAF
Read more →
Security

Privacy by Design — How to Build Systems with Data Protection from the Ground Up

Privacy protection cannot be a patch applied after deployment — it must be embedded in system architecture from the very first line of code. Learn how Privacy by Design principles translate into concrete architectural decisions and how automated data anonymization transforms the approach to compliance.

2026-04-20 Reading time: 7 min
#privacy by design#data protection#architecture
Read more →
Security

The AI Act in Practice — What Every Enterprise Deploying AI Needs to Know

The European regulation on artificial intelligence (AI Act) is now in force and imposes specific obligations on providers and deployers of AI systems. Learn what it means for your business and how to prepare.

2026-04-15 Reading time: 8 min
#AI Act#EU regulation#compliance
Read more →
Security

Privileged Access Management and Data Leak Prevention

Insider threats account for the majority of serious security incidents in enterprises. PAM and DLP are two pillars of protection against data leaks — both intentional and accidental.

2026-04-07 Reading time: 7 min
#PAM#DLP#privileged access
Read more →
Security

GDPR in Practice — Data Anonymization and Pseudonymization Step by Step

GDPR has been in effect since 2018, yet many companies still do not understand the difference between anonymization and pseudonymization. A practical guide to data protection techniques with concrete applications in European business reality.

2026-04-02 Reading time: 7 min
#GDPR#RODO#anonymization
Read more →
Security

AI-Powered Data Anonymization — How to Protect Personal Data in the Age of Automation

AI systems process tens of thousands of documents containing personal data — and GDPR makes no exceptions. Learn how intelligent PII anonymization protects privacy while preserving the full analytical value of data.

2026-03-23 Reading time: 7 min
#anonymization#GDPR#PII
Read more →
Security

IT Security Audit: From Pentests to 24/7 SOC

A comprehensive guide to cybersecurity auditing. Penetration testing, vulnerability scanning, SIEM, SOC, and privileged access management — what they are and when to implement them.

2026-03-13 Reading time: 7 min
#cybersecurity#audit#SOC
Read more →
Security Featured

NIS2, GDPR, and AI Act: Preparing Your Business for 2025–2027 Regulations

Three key regulations shaping digital security in Europe. A practical guide to NIS2, GDPR, and AI Act — what you need to know, implement, and how to avoid penalties.

2026-03-09 Reading time: 7 min
#NIS2#GDPR#AI Act
Read more →
Security Featured

Enterprise AI Security: From OWASP to Defense in Depth

AI systems process sensitive data at scale, making security non-negotiable. Here's how ESKOM.AI implements defense-in-depth — from antivirus scanning and PII anonymization to OWASP compliance and full audit trails.

2026-03-06 Reading time: 7 min
#security#OWASP#GDPR
Read more →