Posted inBest Practices

China’s “Mythos moment” is coming. Its release gate is already built.

China’s “Mythos moment” is coming. Its release gate is already built. Washington spent June 2026 governing Mythos-level models for the first time: Systems whose autonomous cyber and agentic capabilities register as national security consequences. The label borrows from Anthropic’s Mythos 5, restricted that month; the government’s attention also reached OpenAI’s GPT-5.6. No Chinese lab has […]

Posted inBest Practices

Beyond breaching privacy: The compliance risks of workplace surveillance

When organizations implement workplace surveillance tools, the conversation often begins with privacy. Questions about employee consent, data collection, retention periods, and legal compliance are essential. But as workplace monitoring technologies become more sophisticated, focusing exclusively on privacy risks often overlooks a much larger challenge.

Posted inBest Practices

The inference gap: Auditing the AI risk no framework requires you to see

When external regulation lags, internal audit becomes the only line of defense. AIโ€™s environmental footprint is a live governance exposure, and right now, almost no one is auditing it. A company can run an AI product billions of times a day with no obligation to measure what it consumes: No requirement to report the energy […]

Posted inBest Practices

AI demands a new risk operating model. Are risk leaders up to the task?

For years, risk, compliance, and internal audit functions have been asked to absorb and integrate new technologies and ways of working while facing off against increased business expectations without fundamentally changing the risk management operating model that underpins them. Capabilities such as continuous controls monitoring, dynamic risk assessments, and new reporting requirements have been layered […]

Verify your email

We'll send a verification code to .

Gift this article