Blog library

A collection of Protiviti blogs. 

No Audio

Blogs

June 24, 2026
6 min read

Vulnerability Management After Claude Mythos: How to Prioritise, Patch, and Reduce Exposure When Findings Spike

Within just a few weeks, Mythos has completely shifted how we talk about vulnerabilities. Instead of asking “How many new findings are there?” we’re now wrestling with a much more practical challenge: “When vulnerability reports start flooding in with increasing complexity, how do we maintain smart prioritisation, effective patching, and solid exposure management...
These days, it’s easy to get caught up in the routine of risk assessments, planning, fieldwork, and reporting during the audit lifecycle. Microsoft’s Copilot for M365 is changing the game for internal audit teams across Australia. By automating repetitive tasks, enhancing analysis, and simplifying documentation, Copilot not only saves time but also helps organisations uncover deeper insights and achieve better audit…
Over the past 18 months, in every COO conversation I’ve had in financial services, AI has moved from buzzword to boardroom priority. But in our highly regulated UK market, where the FCA and PRA keep a keen eye on risk and efficiency, it’s not enough to be optimistic about AI’s potential. You must be relentlessly pragmatic.
With governments around the world looking to promote the growth of their economies, financial services regulators in the US, Europe and elsewhere are looking at ways to support growth by encouraging greater innovation, bolstering competitiveness and reducing “burdensome” regulation. Today, it was the FCA’s chance to let us know how it plans to address this challenge as it published its strategy for 2025 to 2030.
The FCA has set out four priority areas in its 2025-2030 Strategy. Here we explain the first one – becoming a “smarter regulator”, and what it could mean for regulated firms.
Economic conditions and inflationary pressures, followed by cyber threats and rising labour costs, are the top near-term concerns for finance chiefs, according to the 2025 Executive Perspectives on Top Risks global survey.
The International Standard on Sustainability Assurance, or ISSA 5000, developed by the International Auditing and Assurance Standards Board (IAASB) in late 2024, is widely expected to be the global benchmark for sustainability assurance, influencing the future of sustainability audits. As regulatory mandates for sustainability reporting increase, organisations seeking to enhance the credibility of their reports are…
While the EU’s Corporate Sustainability Reporting Directive (CSRD) that took effect in January 2023 is primarily disclosure-oriented, the EU’s Corporate Sustainability Due Diligence Directive (CSDDD) is all about action.
On 14th November 2024, the Chancellor announced the Government’s National Payments Vision (NPV or Vision) in her Mansion House Speech. The Vision sets forth a strategic framework aimed at enhancing the UK's stature as a global leader in the payments sector, structured around three main pillars: innovation, security, and competition.
Operational resilience – the ability for firms to prevent, adapt, respond to, recover and learn from operational disruptions – is a common concern for clients, leading to questions such as: Which management information should firms report against? Or, how can organisations advance testing beyond tabletop scenarios? While the answers often depend on specific contexts, leveraging available data across the business can…
The U.K. Online Safety Act (OSA) is part of a suite of new online-safety and consumer-protection regulations aimed at safeguarding users from harmful content on digital platforms. Its implementation is planned in three phases from 2025 to 2026.
Loading...