What exactly is a user access review? In its simplest form, this review is a process that certifies that users’ (including vendors’) access within systems are appropriate and legitimate leveraging...
There’s been an interesting trend in the virtual CISO industry over the last several months. I've had conversations with three banks who were looking for a new virtual CISO due to their existing...
Tools to Check Out in the Cybersecurity Resource Guide
by Stephanie Goetz | Oct 14, 2022
Last week, we saw the Federal Financial Institutions Council (FFIEC) announce an update to its Cybersecurity Resource Guide. It was originally released in 2018 and intended to be a resource to...
Preparing for a Security Incident
by Vance Monical | Sep 23, 2022
The worst time to develop an Incident Response Plan for dealing with a security incident is during an actual incident. It’s not a matter of “if” but “when” your organization will be the victim of a...
5 Lessons I Learned From Interviewing A Crypto Expert
by Chris Bedel | Sep 16, 2022
Last week, I had the chance to interview Wes Spencer, from FifthWall Solutions, on cryptocurrency in community banking. We’ve had so much good feedback from that webinar – if you didn’t get the...
What Is A Strong Password in 2022?
by Brian Petzold | Sep 2, 2022
“How long should a password be?” “Should passwords even be used any longer?” These are questions that organizations have been grappling with as we enter the end of 2022. Each day, we are seeing...
Outsourcing IT
by Vance Monical | Aug 26, 2022
It’s common practice for financial institutions to outsource some or all of their Information Technology (IT) functions to a Managed Service Provider (MSP) to gain access to higher levels of...
Does It Align With Our Mission?
by Chris Bedel | Aug 19, 2022
We intend to change the way community banks manage cybersecurity. We intend to build an amazing company where our people can thrive. We intend to help those less fortunate than us. A while back, a...
Charging Dr. Ransomware
by Stephanie Goetz | Aug 12, 2022
Moises Luis Zagala Gonzalez, a 55-year-old Venezuelan cardiologist, has been charged with developing the Jigsaw v.2 and Thanos ransomware strains, which would make him one of the most productive...
Where Does Managing Aggregator Risk Belong?
by Brian Petzold | Aug 5, 2022
A little over a year ago, bank regulators published new proposed guidance on managing third-party risk. One of the more controversial topics in this guidance is whether a data aggregator needs to be...