POPIA and AI sovereignty: Local isn’t just lekker, it’s the law
Let's be honest, artificial intelligence is the ultimate productivity hack for South African businesses right now. By Rowen Pillai, CEO of LeanTechnovations and AIESA It drafts complex contracts, summarises board reports, and answers deep analytical queries in...
Can SA trust its ESG data?
Environmental, Social and Governance (ESG) considerations are now firmly embedded in investment decision-making, with 73% of global asset owners incorporating sustainable investment approaches, according to FTSE Russell's 2025 Global Asset Owner Survey. The stakes are...
NEC XON expands ISO 27701:2025 alignment
NEC XON has aligned its data protection (privacy) management framework with the latest requirements of ISO 27701:2025, strengthening the company's ability to protect customer data and support evolving governance expectations. "Privacy expectations have evolved...
ISO 42001 helps prepare for the realities of AI governance
Artificial intelligence (AI) is already embedded in many business environments through public tools like ChatGPT and through AI functionality built into existing software platforms. While adoption is accelerating, governance and regulation are still catching up. By...
CISOs are flying blind on AI agents – but POPIA won’t care why
Ask any South African CISO how many AI agents are running in their environment right now and most will be hard pressed to answer. This is the uncomfortable truth behind the local rush to deploy agentic AI, and it is happening while many of the same organisations are...
ISO 27001 is becoming a baseline requirement for doing business
Cyber threats are increasing in both frequency and sophistication, and organisations need a consistent way to manage information security. By Ryan Boyes, senior security administrator at Galix At the same time, businesses are increasingly being asked to prove how...
AI in the boardroom: the personal liability of the board
Company directors who delegate their fiduciary duties to an AI model or adopt its output as their own decision risk losing their Business Judgement Rule protection. “The King V Code, the Companies Act and common law all dictate that corporate decisions must be made by...
Cyber governance central to effective enterprise risk management
Across many organisations, cyber governance is still treated as a parallel discipline to enterprise risk management rather than a core component of it. By Ryan Boyes, senior security administrator at Galix This separation is difficult to sustain, as information...
Compliance becomes a cyber imperative
Regulatory compliance in cybersecurity is no longer an administrative chore that organisations can treat as an afterthought. By Avinash Gupta, head of Centre of Excellence at In2IT Technologies As digital ecosystems expand and threat actors leverage automation,...
Adapting to the new fraud reality
Digital fraud incidents are growing at an alarming rate, and traditional risk management solutions are no longer enough for financial services organisations to stay one step ahead of financial criminals. For that reason, financial institutions globally are moving...
The pitfalls of quick AI solutions for KYC processes
While artificial intelligence (AI) races ahead across the financial services sector, compliance specialists are warning that shortcuts in Know Your Customer (KYC) systems could expose companies to serious legal and regulatory risks. Desigan Naidoo, executive manager:...
SA can’t afford manual, fragmented systems in 2026
2026 is a defining year for South Africa's public procurement landscape. As compliance tightens under the Public Procurement Act (PPA), digital procurement is no longer a future ambition, it is fast becoming a governance requirement. For public institutions still...