Kyle Daun

Kyle Daun

Kyle Daun is AVP of IT Audit with Compass IT Compliance. In this role, Kyle works with organizations across all vertical markets to help them assess their information security program and cybersecurity initiatives to identify potential weaknesses and build a plan to help them mitigate their risks. He currently holds the PCI Qualified Security Assessor (QSA), CMMC Registered Practitioner (RP), and CISA certifications, and was a graduate of the New England Institute of Technology with a Bachelor of Science degree in Cybersecurity. Additionally, he's a member of ISACA and InfraGard.

Posts by Kyle Daun

Self-Assessment Questionnaire (SAQ) P2PE Changes in PCI DSS v4.0

PCI DSS v3.2.1 to v4.0 SAQ P2PE Changes

Right around this time last year, the Payment Card Industry Security Standards Council (PCI SSC) published version 4.0 of the PCI Data Security Standard (PCI DSS). PCI DSS v4.0 replaces version 3.2.1 to address emerging threats and technologies and enable innovative methods to combat …

Read Story

Self-Assessment Questionnaire (SAQ) A Changes in PCI DSS v4.0

Self-Assessment Questionnaire (SAQ) A Changes in PCI DSS v4.0

With the recent updates to the Payment Card Industry Data Security Standard (PCI DSS) requirements, many organizations that are currently PCI compliant in accordance with version 3.2.1 may become noncompliant with version 4.0.

Read Story

PCI DSS v4.0 Released – What Changes Were Made?

A man holds a credit card while working on a laptop

On January 1st, 2019, the Payment Card Industry Data Security Standard (PCI DSS) v3.2.1 came into effect replacing v3.2 which had been in place since October 31st, 2016. Many changes have occurred since January of 2019, one of which being the worldwide shut down in the first half of 2 …

Read Story

The Greatest Vulnerability Still Remains – End Users

The Greatest Vulnerability Still Remains – End Users

Recently, I had the opportunity to attend the Boston Cyber Security Summit. One of the most common topics discussed at the event was organizations’ information being compromised by the end user.

Read Story

An Introduction to CMMC Compliance

An Introduction to CMMC Compliance

On January 31st, 2020, the Department of Defense (DoD) announced the release of the Cybersecurity Maturity Model Certification (CMMC), a framework aimed at assessing and enhancing the cybersecurity posture of the Defense Industrial Base (DIB), as it relates to Controlled Unclassified …

Read Story

Taking a Proactive Approach to Consumer Data Privacy

Taking a Proactive Approach to Consumer Data Privacy

Given the current pandemic circumstances, nearly everyone in the world is using the internet in some capacity. However, online privacy concerns may not be at the forefront of everyone’s minds. Many states and countries have implemented privacy regulations to help protect consumer’s in …

Read Story

Subscribe by email