John Paul Tran John Paul Tran

Why / What You Should Know About the Proposed NYDFS 500 Regulatory Updates

The New York Department of Financial Services (NYDFS) will soon be updating the NYDFS 500 requirement. The proposed changes stand to have significant impact on all risk management programs beyond the Finance industry, as the SEC, FTC and the Attorney General’s Office are all following suit and adopting the same/similar requirements.

Read More
John Paul Tran John Paul Tran

Managing Risk Through a Hiring Freeze?

We are all aware of the significant number of layoffs occurring, in particular in technology firms. Beyond this, many if not most companies are currently holding back and implementing a hiring freeze

Read More
John Paul Tran John Paul Tran

Continuous Risk Monitoring

Last week we discussed the value of an independent risk assessment, today we focus on the next layer of risk management - Continuous risk monitoring…

Read More
John Paul Tran John Paul Tran

The Value of an Independent Risk Assessment

Risk assessment is an essential component of any business, making sure that operations are running smoothly and ensuring that the organization is meeting safety and regulatory standards...

Read More
John Paul Tran John Paul Tran

Cybersecurity During the Holidays

It is difficult to quantify the exact number of hacks that occur during the holidays, as this can vary from year to year and depend on a variety of factors…

Read More
John Paul Tran John Paul Tran

CONTROL FREAKS! Internal Controls and how to make them.

Sorry, my fellow humanities friends, but this is not about the internal expression of your inner poet and deepest feelings! However, properly established and managed, internal controls will go a long way to protecting your organization, not to mention passing audits and maintaining those increasingly important security certifications.

Read More
John Paul Tran John Paul Tran

Certified? Congratulations! Now What?

Now that you have your SOC 2, ISO 27001 certification, or if you’re maintaining any control requirements in your organization, you can improve your performance and better protect your assets with a risk-first approach.

Read More