The Ultimate Guide to Risk & Compliance
A curated Asian edition of TechDay news, analysis, interviews, reviews, job moves, and related resources for Risk & Compliance.
What to know about Risk & Compliance
Risk & Compliance is a critical domain encompassing the strategies, tools, and frameworks organisations use to identify, manage, and mitigate risks while ensuring adherence to regulatory standards and internal policies. This area has grown increasingly complex with evolving technology landscapes and cyber threats, making it essential for businesses to stay informed and adaptive.
Recent developments highlight the dynamic nature of risk and compliance, including innovations like AI-powered suites enhancing governance, risk, and compliance (GRC) management, as well as emerging security challenges such as growing API vulnerabilities in financial sectors and the targeting of cloud resources by cyber-attacks. Organisations must navigate an expanding regulatory environment, with new standards and certifications marking benchmarks for data protection, operational resilience, and cybersecurity readiness.
Beyond technology, risk and compliance involve critical considerations around human factors, corporate governance, and the alignment of security practices with business objectives. Insights into cloud governance, supply chain security, and identity management demonstrate the multifaceted approach required to manage risks effectively in a digital-first world.
For readers, exploring stories tagged with Risk & Compliance offers valuable perspectives on cutting-edge solutions, regulatory changes, and strategic guidance. It is an essential resource for professionals aiming to understand and implement robust risk management frameworks, enhance cybersecurity posture, comply with evolving standards, and ultimately safeguard their organisations against the multifarious risks of today’s interconnected environment.
Asian Risk & Compliance News
Regional stories with direct local relevance
Manulife promotes Andy Bruce to Chief Information Officer
The promotion underscores Manulife's push to simplify systems and expand AI across Asia as insurers race to modernise ageing technology.
FOMO Pay partners Sumsub to boost compliance checks
The move should help FOMO Pay tighten onboarding and fraud checks as it expands across markets with diverging rules and rising scam pressure.
Why telecommunications subscriber records need zero standing privilege
Singapore regulators are pressing firms to stop using identity numbers for authentication as leaked telecom records can fuel years of impersonation fraud.
HSBC names Hong Kong stablecoin RedCoin after survey
Customer concerns over fraud and regulation are shaping a cautious rollout, with the bank planning to start on its own digital channels in Hong Kong.
Singapore shoppers embrace AI but baulk at checkout
AI shopping is already mainstream in Singapore, but only 29% of consumers are willing to let it complete a purchase for them.
Hexnode XDR adds macOS support & new response tools
Security teams can now isolate affected Macs as Hexnode extends XDR with auto remediation, threat intelligence and severity-based alert ranking.
Analyst Insights
Research and market analysis connected to Risk & Compliance
DigiCert launches Quantum Central for post-quantum shift
Smart Communications boosts AI migration for enterprises
SAS launches AI Navigator for enterprise governance
Exabeam adds AI tools for agentic security operations
Plumery launches rescue plan for digital banking exits
Featured News
Interview: Cloudera says AI agents reshape zero trust
Enterprises must update identity controls as software agents generate more requests and need tightly time-limited access to sensitive systems.
VAST Data targets AI data sovereignty with DataEnclave
Enterprises and governments could run AI on sensitive data without exposing it, as the technology targets sovereignty rules across APAC.
UiPath: AI agents force rethink of junior tech roles
Routine junior tasks could soon be handed to AI agents, forcing firms to redeploy early-career staff towards strategic work, UiPath's CEO says.
Workiva: The secret compliance and reporting arms race
Driven by improved tooling, finance teams are meeting higher standards as regulators and analysts scrutinise disclosures faster.
Filigran: Does your CISO know enough?
CISOs are under pressure to answer boardroom questions on exposure in minutes, as Filigran pushes CTEM and open-source validation tools.
Exclusive: ABBYY says AI build costs will drive buying
Enterprises could cut AI spend by up to 80% by shifting document workflows away from custom builds and into standard platforms.
Exclusive: ABBYY launches hybrid AI document models
Enterprises under pressure to curb AI risk and cost are being given a hybrid option that blends generative models with OCR and rules-based extraction.
Docusign's next move: Own the contract, not just the signature
Rapid adoption as Docusign's IAM platform cuts contract delays and turns signed agreements into AI-driven workflows.
AI transforming physical security into enterprise data solution
AI and cloud tools are turning cameras into live operational data sources, helping firms cut costs, spot errors and manage fleets centrally.
Future of AI is distributed infrastructure built on open source
Rising AI demand is exposing cloud bottlenecks, as firms eye in-house open source systems to cut costs and limit vendor lock-in.
Exclusive: Cloudera builds Hadoop-free future platform
Existing customers get six years of support as Cloudera shifts new AI and analytics workloads to a Hadoop-free platform due in November.
Mimecast CEO: Agentic AI threat novel but not entirely new
Hidden AI risks are already widespread in workplaces, with Mimecast saying users are driving shadow tools and most exposure still starts with people.
Trusted identity cuts across physical and logical systems
Unified identity systems can cut admin overhead and shrink attack surfaces as remote work and cyber threats blur physical and digital access.
AI will fade, says Dell Technologies' ephemeral Chief AI Officer
Dell says agentic AI should shift routine tasks below the machine line, freeing staff for expert work while making the role temporary.
Schrodinger's ERP both dead and alive, says Rimini Street
Businesses can avoid costly ERP rip-and-replace projects by layering AI and automation onto existing systems, Rimini Street says.
Network segmentation - you can't attack what you can't see
Fast-moving exploits are shrinking patch windows to hours, making network segmentation vital for protecting cameras, medical devices and other connected assets.
Lumana's focus on vertical applications for AI video surveillance platform
Lumana's Principal Product Manager says its camera-agnostic AI platform is expanding beyond security into retail, healthcare and smart cities.
CrowdStrike report: AI is rewriting rules of cybersecurity
Organisations now have just 48 hours to patch most flaws, as AI helps attackers weaponise vulnerabilities far faster than before.
Cohesity mitigating shadow AI by empowering staffers
Approved AI tools are cutting shadow use by staff, but Cohesity warns the bigger risk is corrupted enterprise knowledge and weak governance.
Manufacturers strengthen OT security as threats intensify
Production line shutdowns and safety risks are pushing manufacturers to invest in OT defences built for ageing industrial systems.
Resilience over prevention as AI reshapes security landscape
Rising ransomware speed is pushing ANZ firms to increase spending on recovery strategies as AI gives attackers new ways in.
Check Point: Be the best, or get out the way
Rising AI-driven attacks are compel security buyers to cut vendor sprawl, though Check Point warns over-consolidation can still raise risk.
Check Point: Hackers are already in. Act accordingly
Hackers are exploiting vulnerabilities in hours or minutes, leaving many organisations compromised before defenders spot the breach.
Agentic rollout creates new identity security challenge
Poor governance is leaving many AI agents stuck out of production, while those that run can expose firms to legal and security risks.
Expert Columns
Seven Cyber Controls Businesses Can No Longer Afford to Overlook
How to Choose the Right Email Verification API: A Buyer's Guide
SOCtoberfest Kickoff: The 7 Deadly Sins of Cybersecurity Meet CISA's Core Steps
Should cybersecurity be nationalised?
Why telecommunications subscriber records need zero standing privilege
Fluent is not factual: Why AI needs verified data in APAC
Trust Before Technology: Why Council ERP Programs Fail Before Go-Live
B2B E-commerce Is Going Digital. Are APAC Businesses Ready?
The next eCommerce interface may not be a screen
Integrated video security - a must for modern preschools
Interviews
Interviews and video coverage from the networkRecent Risk & Compliance News
Bitget study says tokenised stocks cut margin needs
Capital tied up in trading accounts could fall sharply, as Bitget's study found tokenised shares cut margin needs by nearly 49% in a model portfolio.
MathWorks adds new variant, inspection & test tools
The update aims to cut manual verification work for teams building software-defined products, with new testing and inspection tools added.
Middle managers want humans in security AI decisions
That caution could slow adoption, as 46% of middle managers want a human involved in security-sensitive AI decisions, versus 24% of executives.
Stakk completes USD $63 million ParaScript acquisition
The enlarged group now serves more than 300 enterprise customers and processes over 110 billion digital interactions a year across four regions.
Noah raises USD $38 million to scale stablecoin payments
The seed round will fund a New York office and expansion across 150 markets as businesses shift to stablecoin-based cross-border payments.
Failed cross-border payments cost banks USD $2.2 million
For a bank handling 10,000 cross-border payments a day, failed transactions can drain about USD $2.2 million a year and drive customers away.
CIOs shoulder AI workforce redesign as governance lags
Most CIOs now oversee workforce redesign rather than infrastructure, as 88% say AI is outpacing governance and accountability remains unclear.
OutSystems opens Agent Experience to third-party AI agents
Large firms in regulated sectors can now use third-party AI coding agents inside OutSystems while retaining governance, auditability and deployment control.
Netskope launches AgentSkope marketplace for teams
The new marketplace lets customers manage AI agents in one console, easing procurement bottlenecks and helping overstretched security teams triage alerts faster.
Sphera launches AI tools to link sustainability to decisions
The tools aim to help firms turn scattered environmental data into decisions on capital, procurement and product design as rules tighten.
Abnormal AI expands security suite with five products
The expansion gives security teams clearer oversight of staff and autonomous agents as businesses rush to embed generative AI in daily work.
Jamf unveils AI governance tools for Apple devices
The new controls aim to help employers monitor AI use on managed Apple fleets and reduce compliance risk as adoption spreads.
Most firms still cannot keep up with third-party risk
With supplier numbers rising, most security teams still cannot assess third parties as often or as thoroughly as needed, Drata found.
RiskProfiler launches MCP connector for AI threat hunts
Security teams could speed up external threat investigations as RiskProfiler's new connector lets authorised users query its platform through AI assistants.
Infor says Australian firms lead Asia-Pacific AI adoption
Australian enterprises have emerged as the region's most mature AI users, with 42% already at full-scale deployment, according to Infor research.
GitLab unveils governed software factory tools for AI
The new tools are meant to help large organisations control AI-driven coding, security and deployment as software moves from idea to production.
New Relic launches AI Evaluation for production safety
The tool aims to help engineers catch unsafe or inaccurate AI outputs before they reach customers, as firms push generative systems into production.
Hitachi Vantara wins Common Criteria storage certification
The accreditation gives government and regulated buyers independent assurance that the VSP One Block platform has met recognised security requirements.
SailPoint adds cloud identity tools & IdentityIQ 9.0
Large enterprises could get faster access reviews and tighter compliance checks as SailPoint updates its cloud platform and IdentityIQ 9.0.
Rocket expands mainframe EVA AI platform with PlanGuard
A security layer is now meant to stop AI agents on mainframes from straying beyond approved tasks, as firms face a shortage of specialist staff.
Job Moves
Manulife promotes Andy Bruce to Chief Information Officer
Revolut names Singapore advisory board to aid Asia push
QuikBot names Howie Lau as Board Adviser for strategy
QBE names Andy Tsui to lead Hong Kong underwriting
QBE names Reuben Lee to lead Asia transactional liability
QBE Re names Soichiro Tanaka Head of Southeast Asia
QBE names Carles Tondo Head of Property for Asia
NAVEX names Nick Mitsuya as Japan Country Manager to drive growth
Lendela appoints new CFO & CTO to drive APAC expansion