<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>The Cyber and AI Governance Vault</title><description>Cybersecurity &amp; AI Governance insights for Financial Services by Gerard Louis</description><link>https://gerardlouis.org/</link><item><title>NY DFS 23 NYCRR 500 - What You Need to Know</title><link>https://gerardlouis.org/blog/ny-dfs-23-nycrr-500-what-you-need-to-know/</link><guid isPermaLink="true">https://gerardlouis.org/blog/ny-dfs-23-nycrr-500-what-you-need-to-know/</guid><description>A comprehensive breakdown of New York&apos;s landmark cybersecurity regulation for financial services — covering key requirements, the 2023 amendments, and practical steps for compliance.</description><pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate><category>Regulations</category><category>NY DFS</category><category>23 NYCRR 500</category><category>Compliance</category><category>Financial Services</category><category>Cybersecurity</category></item><item><title>The Convergence of Cyber and AI Governance in Financial Services</title><link>https://gerardlouis.org/blog/convergence-cyber-ai-governance/</link><guid isPermaLink="true">https://gerardlouis.org/blog/convergence-cyber-ai-governance/</guid><description>Why financial institutions can no longer treat cybersecurity and AI governance as separate disciplines, and how to build an integrated governance model.</description><pubDate>Wed, 05 Mar 2025 00:00:00 GMT</pubDate><category>Industry Analysis</category><category>Governance</category><category>AI</category><category>Cybersecurity</category><category>Strategy</category></item><item><title>EU AI Act — What Financial Institutions Need to Know in 2025</title><link>https://gerardlouis.org/blog/eu-ai-act-financial-institutions/</link><guid isPermaLink="true">https://gerardlouis.org/blog/eu-ai-act-financial-institutions/</guid><description>A breakdown of the EU AI Act&apos;s risk-based classification system and its direct implications for banks, insurers, and investment firms operating in or serving EU markets.</description><pubDate>Mon, 10 Feb 2025 00:00:00 GMT</pubDate><category>Regulations</category><category>EU AI Act</category><category>Compliance</category><category>Financial Services</category><category>Europe</category></item><item><title>NIST AI RMF 1.0 — A Practical Guide for Financial Services</title><link>https://gerardlouis.org/blog/nist-ai-rmf-practical-guide/</link><guid isPermaLink="true">https://gerardlouis.org/blog/nist-ai-rmf-practical-guide/</guid><description>Breaking down the NIST AI Risk Management Framework and how financial institutions can operationalize its core functions: Govern, Map, Measure, and Manage.</description><pubDate>Wed, 15 Jan 2025 00:00:00 GMT</pubDate><category>Frameworks</category><category>NIST</category><category>AI RMF</category><category>Risk Management</category><category>Financial Services</category></item></channel></rss>