Security Awareness Training is No Joke!
by Derek Boczenowski on June 23, 2015 at 9:51 AM
Without a doubt, almost every type of IT audit contains a section on security awareness training. And in many companies, it is a weakness that can be exploited easier than trying to hack a firewall or compromise a server. In many cases, it can be as easy as sending an email or making …
Security Awareness Training: The First Line of Defense
by Adam Cravedi on June 3, 2015 at 10:29 AM
Compass IT security auditors are often asked if there is a single “most important” factor involved in safeguarding a business’s data assets.
Cybersecurity Insurance: Think You're Covered?
by Geoff Yeagley on May 28, 2015 at 9:46 AM
IT security breaches have become so commonplace in recent years that they barely seem to raise an eyebrow anymore: Target, Bank of America, I.R.S., the list goes on. With that rise, the claims on Cybersecurity Insurance have risen as well.
IT Auditing - Why It's a Smart Investment
by Geoff Yeagley on May 21, 2015 at 8:58 AM
We have all heard the term "Audit" and most of the time it makes us cringe. The first thing that we think of is someone in a suit coming into our organization and poking holes in our Technology, People and Processes that we have built based on the needs of our company and business. Ho …
Your PCI Risk Assessment: Security vs. Compliance
by Geoff Yeagley on May 14, 2015 at 8:58 AM
Most people often think that security and compliance are the same thing, especially when looking at conducting a PCI Risk Assessment. Truth is, these are two very different topics yet are interchanged very frequently. A good place for us to start is to define these terms so that we kn …