John Paul Tran John Paul Tran

A Wake-Up Call: What the Change Healthcare Breach Teaches Us About GRC

The Change Healthcare data breach in early 2024 stands out as one of the largest in U.S. history, affecting over 100 million individuals and exposing vast amounts of sensitive health data. It’s a sobering reminder of the risks organizations face when security investments lag behind business operations…

Read More
John Paul Tran John Paul Tran

Understanding the CrowdStrike Crash: Investor Insights

Last week, CrowdStrike faced a significant issue involving their Falcon platform for Windows systems. On July 19, 2024, a faulty content update intended for Windows systems caused numerous crashes and blue screens of death (BSOD) on millions of customer machines.

Read More
John Paul Tran John Paul Tran

Why Vendor Management is Critical

Vendor management is crucial in today's interconnected business landscape. As organizations increasingly rely on external vendors to provide essential services and technology solutions, the need to ensure their reliability and security becomes paramount.

Read More
John Paul Tran John Paul Tran

Women in Cybersecurity and Legal Services

For our latest podcast, All About Risk, our CEO Lily is joined by a selection of the greatest female minds managing GRC programs for leading US Law Firms. Today’s podcast covers…

Read More
John Paul Tran John Paul Tran

Cybersecurity Spend Grows as Part of IT Budgets

According to research from Gartner, IT security accounted for just 5.2% of IT budgets in 2022, indicating a relatively small portion. However, this percentage represents an improvement from the previous year, driven by the objective of risk reduction.

Read More
John Paul Tran John Paul Tran

How a Powerful GRC Platform Can Save Millions

In today's fast-paced business world, staying ahead of risks and compliance challenges is crucial for multi-million dollar organizations. That's where a robust Governance, Risk, and Compliance (GRC) platform comes into play.

Read More
John Paul Tran John Paul Tran

We are Living in a Control Jungle

So many organizations today are lost in a deep, dark jungle of control inertia. The word ‘Control’ is being used too loosely, and is a confusing term at best, in particular when applied out of context.

Read More
John Paul Tran John Paul Tran

A letter to WiCys, Women in Cybersecurity

Our CEO, Lily Yeoh, recently spoke at the National Women in Cybersecurity Conference (WiCys) in Denver, with more than 160 attendees for her session on Integrated Risk Management.

Read More
John Paul Tran John Paul Tran

Why / What You Should Know About the Proposed NYDFS 500 Regulatory Updates

The New York Department of Financial Services (NYDFS) will soon be updating the NYDFS 500 requirement. The proposed changes stand to have significant impact on all risk management programs beyond the Finance industry, as the SEC, FTC and the Attorney General’s Office are all following suit and adopting the same/similar requirements.

Read More
John Paul Tran John Paul Tran

Managing Risk Through a Hiring Freeze?

We are all aware of the significant number of layoffs occurring, in particular in technology firms. Beyond this, many if not most companies are currently holding back and implementing a hiring freeze

Read More