Loading
Regulatory and framework developments that actually change organizational decisions.
CISA now targets September 2026 to finalize the Cyber Incident Reporting for Critical Infrastructure Act rule -- more than 300,000 US critical infrastructure entities will need to report covered incidents within 72 hours.
Singapore's IMDA updated its Model AI Governance Framework for Agentic AI in May 2026, adding guidance on multi-agent systems, third-party agents, and automation bias -- a working benchmark other regulators are watching.