Executive Cyber Intelligence

Cyber Risk
Analysis for
Security Leaders

Authoritative briefings on regulatory compliance, board-level risk reporting, and emerging cyber threats — written for CISOs, not analysts.

NIS2
Full compliance guide for EU sectors
DORA
Financial ICT resilience requirements
SEC
Cyber disclosure rules & CISO liability
FAIR
Quantified risk for board reporting

Featured Analysis

Regulatory Update

NIS2 Directive: The CISO's Compliance Roadmap by Sector

What CISOs must implement under the EU's NIS2 Directive — sector-specific obligations, board accountability requirements, and the cost of non-compliance.

All Recent Analysis

View all →
Risk Analysis

Cyber Insurance in 2026 — What CISOs Need to Know Before Renewal

The cyber insurance market has hardened significantly. Insurers are scrutinising security controls more closely than ever, exclusions are expanding, and the gap between policy wording and actual coverage is catching organisations off-guard. What every CISO needs to understand before the next renewal.

Regulatory Update

NIS2 Directive: The CISO's Compliance Roadmap by Sector

What CISOs must implement under the EU's NIS2 Directive — sector-specific obligations, board accountability requirements, and the cost of non-compliance.

Risk Analysis

How to Present Cyber Risk to the Board: A Framework That Works

Moving beyond FUD to quantified risk. How CISOs can use FAIR methodology, key risk indicators, and business-aligned language to secure meaningful board engagement.

Risk Analysis

The True Cost of a Ransomware Incident in 2026

Beyond the ransom: a comprehensive breakdown of ransomware incident costs including downtime, legal exposure, regulatory fines, and long-term reputational damage.

Briefing

Vendor Risk Management When Adopting AI Tools

A practical framework for CISOs evaluating AI tool vendors: data residency requirements, model security considerations, and the contractual controls that protect your organization.

Regulatory Update

DORA: ICT Risk Management Requirements for Financial Entities

A CISO's guide to the Digital Operational Resilience Act — what financial institutions must implement, how DORA interacts with NIS2, and the oversight regime for critical third-party providers.

Regulatory Update

SEC Cybersecurity Disclosure Rules: What CISOs Must Know in 2026

Material incident reporting timelines, annual cybersecurity disclosures, and the CISO's role in SEC compliance — including personal liability considerations for public company security leaders.