John Paul Tran John Paul Tran

Cybersecurity During the Holidays

It is difficult to quantify the exact number of hacks that occur during the holidays, as this can vary from year to year and depend on a variety of factors…

Read More
John Paul Tran John Paul Tran

CONTROL FREAKS! Internal Controls and how to make them.

Sorry, my fellow humanities friends, but this is not about the internal expression of your inner poet and deepest feelings! However, properly established and managed, internal controls will go a long way to protecting your organization, not to mention passing audits and maintaining those increasingly important security certifications.

Read More
John Paul Tran John Paul Tran

Certified? Congratulations! Now What?

Now that you have your SOC 2, ISO 27001 certification, or if you’re maintaining any control requirements in your organization, you can improve your performance and better protect your assets with a risk-first approach.

Read More

How to Lower Your Compliance Costs: Just Add Risk

Compliance is costly, time-consuming and often frustrates one or many in the company. It should not. Here are simple mistakes to avoid and processes to build that will help your company climb the compliance mountain with relative ease.

Read More

The FDIC Incident Reporting Rule is No Small Challenge for Financial Institutions

In one of the strictest cybersecurity incident management rulings to-date, starting May 1, banks in the U.S. will be required to notify their primary federal regulator of a cybersecurity incident within 36 hours. How is your company preparing to meet this requirement?

Read More

Business Resilience in Light of the OKTA Security Breach

With a public announcement last week, OKTA, a global leader in multi-factor authentication, acknowledged after several months, the exposure of over 350 clients to a security hack in January 2022.

Read More

Global Risk and Compliance: A Strategy

Today, we will evaluate successful global risk and compliance strategies. We will focus on a “DevOps” approach to risk management and the development of a risk scrum team that connects through an integrated risk management platform to continuously monitor and prioritize risk and mitigation. Are you scratching your head? Read on.

Read More

Build Your Risk Program: Start Here

Whether you are in the process of beginning build your risk program, formalizing it, or in the midst of maturing it, here are some factors for consideration. Organizations should not design risk management programs as a process set in stone. Risk is a river – a constant flow with changing currents, power, and directions.

Read More

A Steady State of Managed Risk

Today’s article focuses on best practices and governance principles for how to achieve a steady state of managed risk in your organization.

Read More