Skip to main content

Phillip Lee

Showing posts by Phillip Lee.

What to Do After Getting Your Risk Assessment Report

So, your security team or risk management consultants have finalized your risk assessment report, calling out the organization's risks and opportuniti…

Read more

Who Should Be Interviewed During the Risk Assessment?

If you have read one of our previous posts around risk assessments, you probably have a good idea of why a risk assessment matters. You’re probably al…

Read more

Who Should Be On Your Information Risk Council

The Information Risk Council (IRC), also known as the Risk Governance Council or Security Steering Committee, is a key component of an effective secur…

Read more

Developing a Master Asset Inventory for SaaS Organizations

Whether you are pursuing an ISO 27001 certification or a SOC 2 report, a robust asset inventory is going to be key to addressing compliance requiremen…

Read more

Advice for Taking the CISA Exam in the COVID-era

Everything you need to know to pass with flying colors. Studying for the CISA exam can be tough, but it is also a great opportunity to understand the …

Read more

SOC 2 Trust Services Criteria That Apply to Your Business

A guide to the Trust Services Criteria Knowing when to include the various SOC 2 Trust Services Criteria (TSC) (also, criteria) can seem like a daunti…

Read more

Tags

See all