Free Cyber Security Course Options for 2026: A US Practitioner’s Guide
ISC2 closes enrollment in its One Million Certified in Cybersecurity program on May 20, … Read more
Cyber risk stopped being a technology topic the moment regulators started asking boards to evidence oversight of it. The hard part is no longer knowing that NIST CSF exists. It is deciding which of the six overlapping frameworks and four supervisory regimes on your desk actually applies, and how to avoid running the same assessment four times.
The emphasis here is therefore comparative and practical: what changed between CSF 1.1 and 2.0 and how to transition, how NIST CSF and ISO 27001 differ in use, whether SOC 2 or ISO 27001 is the right certification to pursue, where DORA and NIS2 overlap, and walkthroughs of the FFIEC assessment tool, the FTC Safeguards Rule and 23 NYCRR 500. Quantification gets real treatment too, including the FAIR model applied in financial services.
Pair this with information security management systems, third-party risk and governance, risk and compliance.
ISC2 closes enrollment in its One Million Certified in Cybersecurity program on May 20, … Read more
Key Takeaways A cyber risk assessment is the structured process of identifying cyber threats … Read more
The numbers behind cybersecurity hiring are stark. ISC2 puts the global shortage of cybersecurity … Read more
Phishing risk assessment is essential in today’s digital landscape, where cyber threats continue to … Read more
The adoption of the ISO 27001:2022 standard, a globally acknowledged benchmark for information security … Read more
ISO 27001:2022 is an international standard for information security management systems (ISMS) that systematically … Read more
In February 2024, Change Healthcare — the largest medical claims clearinghouse in the United … Read more
On February 21, 2024, Change Healthcare’s systems were locked by BlackCat ransomware, paralyzing the … Read more
In October 2024, a US-headquartered asset manager with $48 billion under management rated its … Read more
Information security risk assessment, a pivotal component of an organization’s IT risk management strategy, … Read more
A cybersecurity risk assessment is essential for organizations to identify and evaluate potential risks … Read more
Key Takeaways # Takeaway 1 Technology risk is the potential that technology failures, cyber … Read more