Skip to main content
Cybersecurity & Information Security
Latest
Article

Inside the SCCE/FBI Corporate Compliance Professional Outreach Event

By both

This spring, 50 compliance professionals were selected to participate in the SCCE/FBI Corporate Compliance Professional Outreach Event, a unique two-day experience designed to strengthen the relationship between compliance professionals and federal law enforcement. Hosted at FBI Headquarters in Wash…

Article Training & Education Cybersecurity & Information Security Regulatory Enforcement
View More →
Article

The Due Diligence Gap in Vendor Fraud: What Investigators Find After the Damage Is Done

By Julia Blokhina

By the time a fraud investigator walks into an organization, the money is usually gone. Wire transfers move within hours. Funds are routed through two or three intermediary accounts before the victim has finished their first call with the bank. What the investigator spends most of …

Article Fraud & False Claims Third-Party & Vendor Risk Cybersecurity & Information Security
View More →
Article

Navigating Data Privacy and Compliance Challenges in Digital Transformation

By Gowtham Krishna Sibbala

Digital transformation is no longer optional; organizations across industries are adopting cloud platforms, automation, and AI-driven tools to improve efficiency, customer experiences, and competitiveness. While these innovations bring significant business advantages, the…

Article Privacy & Data Protection HIPAA & Health Information Privacy Cybersecurity & Information Security
View More →
Article

Compliance Without Validation Is a False Sense of Security

By Dharmesh Acharya

I’ve worked with compliance teams that passed every audit, maintained clean documentation, and still felt unsure about their real risk exposure. That disconnect shows up more often than we admit. In fact, 68% of organizations have experienced breaches through third-party risks,…

Article Cybersecurity & Information Security Third-Party & Vendor Risk Auditing, Monitoring & Testing
View More →
Article

When Identity Becomes Fragile: The Compliance Risks of a Post-Quantum World

By Galaxia Martin

, author of Quantum & AI: The Awakening of Cyber Defense For decades, digital identity has been protected by cryptographic systems that most organizations trust implicitly. Encryption underpins how we verify who someone is, how we protect personal data, and how we maintain trust ac…

Article Privacy & Data Protection Cybersecurity & Information Security Corporate Governance
View More →
Article

HITRUST vs. Other Frameworks: What Sets It Apart in Cybersecurity

By Nikhil Raj Singh

 By Nikhil Raj Singh When it comes to protecting sensitive data, organizations often turn to established security frameworks like ISO 27001, NIST Cybersecurity Framework, PCI DSS, or SOC 2. Each of these has its strengths but managing them individually can be time-consuming and resource heavy. This…

Article Cybersecurity & Information Security HIPAA & Health Information Privacy Privacy & Data Protection
View More →
Podcast

Marti Arvin on Business Associates and the Close-Out Process [Podcast]

By Adam Turteltaub

Things are a bit out of balance when it comes to Business Associates (BAs) in healthcare.  Organizations invest a great deal of time and resources in vetting these third parties to make sure that they will safely handle data from the covered entity.  But, when the relationship e…

Podcast Privacy & Data Protection HIPAA & Health Information Privacy Cybersecurity & Information Security
View More →
Podcast

Jonathan Armstrong on The General Purpose AI Code of Practice [Podcast]

By Adam Turteltaub

On July 10, 2025 the European Commission posted The General-Purpose AI Code of Practice.  Unlike the EU AI Act, this new Code of Practice is not compulsory, at least not yet. Still, it seems prudent to start understanding what it says and what expectations are being laid, as well…

Podcast Artificial Intelligence & Automated Decision-Making Cybersecurity & Information Security
View More →