The Real Path to CMMC Certification: Time, Cost, and Common Misconceptions

With insights from Jesse Jarvie and Eric Volbrecht Estimated read time: 8 minutes Once leadership decides Cybersecurity Maturity Model Certification (CMMC) may be worth pursuing, the next question is practical: what does certification actually take? The answer is not a single checklist or one technology project. It is a structured readiness process involving scope, technical […]
Is CMMC Worth It? The Business Case

With insights from Jesse Jarvie and Eric Volbrecht Estimated read time: 8 minutes Cybersecurity Maturity Model Certification (CMMC) should be evaluated as a business decision, not a compliance reflex. The question for leadership is straightforward: does certification protect enough revenue, reduce enough risk, or create enough opportunity to justify the investment? For some organizations, certification […]
CMMC Paused: What the DoW’s Announcement Actually Means

With insights from Jesse Jarvie, Eric Volbrecht, and Nathan Austin Estimated read time: 8 minutes Cybersecurity Maturity Model Certification (CMMC) should be evaluated as a business decision, not a compliance reflex. The question for leadership is straightforward: does certification protect enough revenue, reduce enough risk, or create enough opportunity to justify the investment? For some […]
4 Steps to Improve Your Cybersecurity

When it comes to improving your organization’s cybersecurity, momentum is your greatest challenge. Without momentum, it’s easy to say “good enough” and put off further improvements – or make purchasing decisions instinctively, based on the wrong criteria (read more about those criteria in our article, “4 Reasons that Organizations Finally Invest in Cybersecurity”). As a […]
Cybersecurity is a Process, Not a Project

You’re finally ready to take a deeper dive into meeting your organization’s IT security goals. There are many reasons for the change – we explored some of them in our article “4 Reasons Businesses (Finally) Invest in Cybersecurity” – but no matter your big-picture security needs, it takes a lot of work for an organization […]
Service Alert: Microsoft Authenticator Implementing New Policy

Multi-factor authentication is one of the most powerful tools in your cybersecurity arsenal, so making sure it works properly is essential. If you use Microsoft’s MFA tool (Microsoft Authenticator), you may be affected by a change Microsoft is making to the way you authenticate. Microsoft recently announced that, starting on May 8th, it will be […]
4 Reasons That Organizations (Finally) Invest in Cybersecurity

Cyberattacks skyrocketed in 2020, and have continued to grow ever since. As the threat landscape gets more complicated each year, cybersecurity becomes more important for every business. The question is no longer if, but when you will be targeted…no matter your organization’s size (learn more by reading our blog “It’s a Net, not a Harpoon […]
What are EDR, MDR, and XDR? Which One Do I Need?

Endpoint Detection & Response (EDR), Managed Detection & Response (MDR), and Extended Detection & Response (XDR) are hot topics right now. And there’s a good reason why. With cyberattacks at an all-time high, the legacy security tools you’ve used for decades are no longer sufficient on their own. As attackers find ways to circumvent these […]
Should I Pay Ransomware? What to Consider in a Crisis

Ransomware is getting worse, and the odds of getting hit are increasing. The frequency of successful ransomware attacks nearly doubled across 2021, and every organization is a potential target – even small businesses are at risk! The cost of the ransom is bad, and the cost of downtime is often even worse. If you can’t […]
Security Alert: Phishing vulnerability ‘Follina’ in Office files

A newly-discovered malicious exploit for Microsoft Office files has made headlines over the weekend: the “Follina” MSDT attack uses programs like Microsoft Word to execute malicious code when a prepared file is accessed, allowing an attacker significant access to a device, where they can then deploy further exploits and do even greater damage. As of […]
