The Ultimate Guide to Risk & Compliance
A curated Asian edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Risk & Compliance.
What to know about Risk & Compliance
Risk & Compliance is a critical domain encompassing the strategies, tools, and frameworks organisations use to identify, manage, and mitigate risks while ensuring adherence to regulatory standards and internal policies. This area has grown increasingly complex with evolving technology landscapes and cyber threats, making it essential for businesses to stay informed and adaptive.
Recent developments highlight the dynamic nature of risk and compliance, including innovations like AI-powered suites enhancing governance, risk, and compliance (GRC) management, as well as emerging security challenges such as growing API vulnerabilities in financial sectors and the targeting of cloud resources by cyber-attacks. Organisations must navigate an expanding regulatory environment, with new standards and certifications marking benchmarks for data protection, operational resilience, and cybersecurity readiness.
Beyond technology, risk and compliance involve critical considerations around human factors, corporate governance, and the alignment of security practices with business objectives. Insights into cloud governance, supply chain security, and identity management demonstrate the multifaceted approach required to manage risks effectively in a digital-first world.
For readers, exploring stories tagged with Risk & Compliance offers valuable perspectives on cutting-edge solutions, regulatory changes, and strategic guidance. It is an essential resource for professionals aiming to understand and implement robust risk management frameworks, enhance cybersecurity posture, comply with evolving standards, and ultimately safeguard their organisations against the multifarious risks of today’s interconnected environment.
Asian Risk & Compliance News
Regional stories with direct local relevance
Why telecommunications subscriber records need zero standing privilege
Singapore regulators are pressing firms to stop using identity numbers for authentication as leaked telecom records can fuel years of impersonation fraud.
HSBC names Hong Kong stablecoin RedCoin after survey
Customer concerns over fraud and regulation are shaping a cautious rollout, with the bank planning to start on its own digital channels in Hong Kong.
Singapore shoppers embrace AI but baulk at checkout
AI shopping is already mainstream in Singapore, but only 29% of consumers are willing to let it complete a purchase for them.
Hexnode XDR adds macOS support & new response tools
Security teams can now isolate affected Macs as Hexnode extends XDR with auto remediation, threat intelligence and severity-based alert ranking.
StraitsX to launch SGD stablecoin on Monad blockchain
Users on Monad could gain access to the first native Singapore dollar stablecoin, while StraitsX expands into payments and settlement use cases.
Singapore firms face AI access gaps, Delinea finds
Almost all surveyed firms had AI rules on paper, but 98.8% reported tools or agents accessing sensitive data beyond their intended scope.
Analyst Insights
Research and market analysis connected to Risk & Compliance
Exabeam adds AI tools for agentic security operations
Plumery launches rescue plan for digital banking exits
Komodor launches agentic operations platform for SRE
NCC Group named in Forrester MDR services landscape
Omnissa appoints Amit Singh as Chief Executive Officer
Featured News
Interview: Cloudera says AI agents reshape zero trust
Enterprises must update identity controls as software agents generate more requests and need tightly time-limited access to sensitive systems.
VAST Data targets AI data sovereignty with DataEnclave
Enterprises and governments could run AI on sensitive data without exposing it, as the technology targets sovereignty rules across APAC.
UiPath: AI agents force rethink of junior tech roles
Routine junior tasks could soon be handed to AI agents, forcing firms to redeploy early-career staff towards strategic work, UiPath's CEO says.
Workiva: The secret compliance and reporting arms race
Driven by improved tooling, finance teams are meeting higher standards as regulators and analysts scrutinise disclosures faster.
Filigran: Does your CISO know enough?
CISOs are under pressure to answer boardroom questions on exposure in minutes, as Filigran pushes CTEM and open-source validation tools.
Exclusive: ABBYY says AI build costs will drive buying
Enterprises could cut AI spend by up to 80% by shifting document workflows away from custom builds and into standard platforms.
Exclusive: ABBYY launches hybrid AI document models
Enterprises under pressure to curb AI risk and cost are being given a hybrid option that blends generative models with OCR and rules-based extraction.
Docusign's next move: Own the contract, not just the signature
Rapid adoption as Docusign's IAM platform cuts contract delays and turns signed agreements into AI-driven workflows.
AI transforming physical security into enterprise data solution
AI and cloud tools are turning cameras into live operational data sources, helping firms cut costs, spot errors and manage fleets centrally.
Future of AI is distributed infrastructure built on open source
Rising AI demand is exposing cloud bottlenecks, as firms eye in-house open source systems to cut costs and limit vendor lock-in.
Exclusive: Cloudera builds Hadoop-free future platform
Existing customers get six years of support as Cloudera shifts new AI and analytics workloads to a Hadoop-free platform due in November.
Mimecast CEO: Agentic AI threat novel but not entirely new
Hidden AI risks are already widespread in workplaces, with Mimecast saying users are driving shadow tools and most exposure still starts with people.
Trusted identity cuts across physical and logical systems
Unified identity systems can cut admin overhead and shrink attack surfaces as remote work and cyber threats blur physical and digital access.
AI will fade, says Dell Technologies' ephemeral Chief AI Officer
Dell says agentic AI should shift routine tasks below the machine line, freeing staff for expert work while making the role temporary.
Schrodinger's ERP both dead and alive, says Rimini Street
Businesses can avoid costly ERP rip-and-replace projects by layering AI and automation onto existing systems, Rimini Street says.
Network segmentation - you can't attack what you can't see
Fast-moving exploits are shrinking patch windows to hours, making network segmentation vital for protecting cameras, medical devices and other connected assets.
Lumana's focus on vertical applications for AI video surveillance platform
Lumana's Principal Product Manager says its camera-agnostic AI platform is expanding beyond security into retail, healthcare and smart cities.
CrowdStrike report: AI is rewriting rules of cybersecurity
Organisations now have just 48 hours to patch most flaws, as AI helps attackers weaponise vulnerabilities far faster than before.
Cohesity mitigating shadow AI by empowering staffers
Approved AI tools are cutting shadow use by staff, but Cohesity warns the bigger risk is corrupted enterprise knowledge and weak governance.
Manufacturers strengthen OT security as threats intensify
Production line shutdowns and safety risks are pushing manufacturers to invest in OT defences built for ageing industrial systems.
Resilience over prevention as AI reshapes security landscape
Rising ransomware speed is pushing ANZ firms to increase spending on recovery strategies as AI gives attackers new ways in.
Check Point: Be the best, or get out the way
Rising AI-driven attacks are compel security buyers to cut vendor sprawl, though Check Point warns over-consolidation can still raise risk.
Check Point: Hackers are already in. Act accordingly
Hackers are exploiting vulnerabilities in hours or minutes, leaving many organisations compromised before defenders spot the breach.
Agentic rollout creates new identity security challenge
Poor governance is leaving many AI agents stuck out of production, while those that run can expose firms to legal and security risks.
OnBoard says board AI policy key, but lags behind in adoption
Most boards are using AI, but formal guidelines are still missing as adoption races ahead of governance, OnBoard's survey found.
John Margerison on the new class of employee: AI managers
Businesses should treat AI like a new hire, as weak oversight could expose sensitive data and leave staff needing fresh skills to stay relevant.
Expert Columns
Why telecommunications subscriber records need zero standing privilege
Fluent is not factual: Why AI needs verified data in APAC
Trust Before Technology: Why Council ERP Programs Fail Before Go-Live
B2B E-commerce Is Going Digital. Are APAC Businesses Ready?
The next eCommerce interface may not be a screen
Integrated video security - a must for modern preschools
Stop saying AI hacked the system
Engineering for operations: going from security to insight
Some AI risks more subtle than others
How businesses can avoid widespread harm from cloud outages
Interviews
Interviews and video coverage from the networkRecent Risk & Compliance News
KPMG survey finds AI shift to governance & security
As AI budgets rise to USD $210 million, firms are tightening oversight on security, governance and returns to keep deployments under control.
ANYbotics adds door access for ANYmal inspection robots
The upgrade lets inspection robots reach critical plant assets behind locked doors, cutting manual work while keeping security and fire controls intact.
Forrester says AI is reshaping cloud strategy for 2026
Rising AI costs and governance risks are forcing enterprises to rethink where workloads sit, as cloud strategy becomes tied to AI deployment.
Cybersecurity gap widens in access control controllers
More organisations are treating access control controllers as strategic infrastructure, even as missing cybersecurity features rise to 32% of systems.
BT International wins UBS cloud trader voice overhaul
The bank has begun replacing 20 trading voice platforms with a single cloud system, aiming to cut complexity while meeting strict compliance rules.
Lumicent launches decision platform for industrial risk
Industrial operators could curb downtime and focus maintenance where it matters most as Lumicent links asset data to business risk.
KnowBe4 adds browser extension to curb shadow AI use
The browser add-on gives security teams real-time ways to warn or block staff from sending company data to unsanctioned AI tools.
Keeper & SailPoint link up to automate access control
The link should cut manual offboarding and audit work for security teams by tying SailPoint approvals directly to Keeper-managed privileges.
Alibaba Cloud expands global footprint with new AI tools
The move brings computing closer to customers as firms race to localise AI workloads and meet regional data rules.
LexisNexis launches AI fraud tool that adapts to attacks
Businesses face rising losses as the new model cuts false positives by more than 80% and adapts scoring as fraud tactics shift.
Rockwell finds life sciences manufacturers push AI & cyber
Most life sciences manufacturers now see digital transformation as essential, with 54% reporting a cyberattack in the past year and many eyeing AI.
Dataiku launches cross-platform AI agent management tool
It aims to close a governance gap as firms struggle to track AI agents across multiple cloud and software platforms and assess their risks.
OpenAI launches dots AI assistants for ChatGPT users
The rollout starts with Pro, Business Premium and Enterprise users, as OpenAI aims to let persistent agents handle tasks across 4,000 apps.
Agoda finds AI agents spreading across SEA software teams
Wider use of AI agents is lifting developer productivity in Southeast Asia, but most teams still require human checks before production.
Bitdefender launches AI Guardian beta for Mac agents
Mac developers using autonomous agents now get a free beta tool that blocks risky actions before tools, files or credentials are exposed.
Asia Pacific leads the world in wealth AI adoption
Firms in the region are moving beyond pilots, with 84% expecting AI to redefine roles and operations across their businesses.
V2 AI wins AWS agentic AI competency in Asia Pacific
The accreditation could help regulated firms in Asia Pacific choose a partner for deploying agentic AI on AWS with stronger governance and security.
Companies warned of inherited cyber risks in acquisitions
Buyers may inherit unpatched systems and monitoring gaps unless cyber checks are done before a deal closes, Quest Technology Management says.
Most organisations lack mature 24x7 security operations
Many firms are still exposed to faster AI-driven attacks, with Logicalis finding 64 per cent lack mature round-the-clock security operations.
Retail AI leaks sensitive data to unauthorised users
Nearly one in 10 AI security alerts in retail involved systems exposing protected customer data to users without access, research found.
Job Moves
Revolut names Singapore advisory board to aid Asia push
QuikBot names Howie Lau as Board Adviser for strategy
QBE names Andy Tsui to lead Hong Kong underwriting
QBE names Reuben Lee to lead Asia transactional liability
QBE Re names Soichiro Tanaka Head of Southeast Asia
QBE names Carles Tondo Head of Property for Asia
NAVEX names Nick Mitsuya as Japan Country Manager to drive growth
Lendela appoints new CFO & CTO to drive APAC expansion
Proofpoint appoints JP Yu to lead operations in SAK region