Governance, Risk & Compliance

Aligning Cybersecurity and Third-Party Risk Management with Business Goals
In the cybersecurity risk world, we often encounter the issue of not speaking the same language as the business. This […] ...

Rethinking Risk: ICS & OT Security with Purdue 2.0 and GRC
The rise of the extended Internet of Things (XIoT) across industrial (IIoT), healthcare (IoMT), commercial (OT, BMS/EMS/ACS/iBAS/FMS), and other sectors […] ...

Proactive Security: Navigating HIPAA’s Proposed Risk Analysis Updates
NOTE: This article discusses proposed changes to existing regulations. These changes are not in effect as of this article’s date […] ...

Proposed Changes from the HHS to HIPAA Security Rule
Author’s Note: This article discusses proposed changes to existing regulations. These changes are not in effect as of the date of this […] ...

CMMC Is Here – Are You Ready? (Better Late Than Never)
Well, the day(s) some people said would never come are here: 32 CFR Part 170, the Cybersecurity Maturity Model Certification […] ...

Understanding and Taking Advantage of the NYDFS Risk Assessment Requirement
As organizations prepare for the coming year those affected by NYDFS may struggle to efficiently include the requirements in their […] ...

Building and Enhancing OT/ICS Security Programs Through Governance, Risk, and Compliance (GRC)
Operational Technology (OT) and Industrial Control Systems (ICS) are critical components of many industries, especially those within the 16 critical […] ...

NIST CSF 2.0 Is Here: How Will You Adapt?
The new NIST Cybersecurity Framework (CSF) 2.0 framework comes with multiple important and long-awaited updates. It won’t be easy to […] ...
The Critical Role of Governance, Risk Management, and Compliance in Operational Technology (OT) in Critical Infrastructure Organizations
As the industrial sector rapidly evolves through Industry 4.0, integrating digital technologies into operational environments becomes increasingly complex. For C-level […] ...
CMMC On Fast Track to Becoming Law
What is the latest? The Cybersecurity Maturity Model Certification (CMMC) 2.0 Proposed Rule, 32 CFR 170, was announced on December […] ...