AWS European Sovereign Cloud: What Six Months and One Live Test Actually Show
A reality check from a live account: what the sovereign AWS cloud can do today, where it hits its limits, and what that means for CIOs and CISOs in the DACH market.
10 posts tagged with #cloud-security
A reality check from a live account: what the sovereign AWS cloud can do today, where it hits its limits, and what that means for CIOs and CISOs in the DACH market.
We knew shadow IT. Now comes shadow code: production code that AI agents write past IT, security, and compliance. 79 percent of organisations have no overview of the agents running in their environment. Four risks that get bought along unnoticed, and an audit in three steps.
Around 95 percent of enterprise GenAI pilots show no measurable impact. Why the step from pilot to production is the hardest one of all — and what the few exceptions do differently. From my own experience building a product with AI agents over five months.
A field report from one of AWS’ newest AI-driven security services - from setup to findings to verdict.
AWS launched Amazon Bedrock AgentCore Payments with Coinbase and Stripe. This is not just a feature update. It is the moment agents move from planners to actors with financial impact. What that means for architects and CISOs.
67 percent of security leaders do not know which AI models and agents are running in their organisation. That is the core finding of the Pentera 2026 Report. And while Gartner projects that 40 percent of all enterprise apps will have AI agents built in by end of 2026, both curves are moving in the wrong direction.
Greenfield cloud projects are the exception in 2026. The rest of us live in brownfield. And very few have a strategy for it. Three patterns I see repeatedly in AWS assessments - and why the next major discipline in cloud work is not innovation, but remediation.
When people hear Cloud Security Architect, most imagine someone who writes firewall rules all day. In practice, the majority of the work is something entirely different. An honest description of the job, for everyone who looks at it from the outside.
79 percent of organisations are deploying or testing Agentic AI. Only 21 percent have a mature governance model for it. That is not a surprise - it is the consequence of governance always lagging behind technology. Three core questions every CISO team needs to answer now.
The BSI has published C5:2026. 168 criteria instead of 121, new mandatory areas, machine-readable for the first time. Anyone who considered C5:2025-readiness sufficient is starting over. Here is what changes and what organisations need to do now.