Raising the Bar for HIPAA Risk Analysis and Risk Management

Raising the Bar for HIPAA Risk Analysis and Risk Management

Introduction As my readers know, I have an affinity for risk analysis and risk management, which I often pose in the form of this question: How will you make informed, intelligent decisions about what safeguards you should invest in and implement until you understand...
Elevating the Role of the C-Suite and Board in Cybersecurity

Elevating the Role of the C-Suite and Board in Cybersecurity

“As the world is increasingly interconnected, everyone shares the responsibility of securing cyberspace.” ― Newton Lee “And it starts with C-suite and board accountability.” ― Bob Chaput Introduction In today’s rapidly evolving digital landscape, enterprise cyber risk...
Rethinking ECRM Funding to Enhance Cybersecurity Outcomes

Rethinking ECRM Funding to Enhance Cybersecurity Outcomes

ignment of business strategy and risk appetite should minimize the firm’s exposure to large and unexpected losses. In addition, the firm’s risk management capabilities need to be commensurate with the risks it expects to take. —Jerome Powell Introduction...
The Courts Are Picking Up the Cyber Pace: A New Era of Accountability for Boards of Directors

The Courts Are Picking Up the Cyber Pace: A New Era of Accountability for Boards of Directors

There is a higher court than courts of justice and that is the court of conscience. It supersedes all other courts. —Mahatma Gandhi Introduction In recent years, the legal landscape around cybersecurity and data breaches has shifted significantly, placing increasing...