John Paul Tran John Paul Tran

Continuous Risk Monitoring

Last week we discussed the value of an independent risk assessment, today we focus on the next layer of risk management - Continuous risk monitoring…

Read More
John Paul Tran John Paul Tran

The Value of an Independent Risk Assessment

Risk assessment is an essential component of any business, making sure that operations are running smoothly and ensuring that the organization is meeting safety and regulatory standards...

Read More
John Paul Tran John Paul Tran

Cybersecurity During the Holidays

It is difficult to quantify the exact number of hacks that occur during the holidays, as this can vary from year to year and depend on a variety of factors…

Read More
John Paul Tran John Paul Tran

CONTROL FREAKS! Internal Controls and how to make them.

Sorry, my fellow humanities friends, but this is not about the internal expression of your inner poet and deepest feelings! However, properly established and managed, internal controls will go a long way to protecting your organization, not to mention passing audits and maintaining those increasingly important security certifications.

Read More
John Paul Tran John Paul Tran

Certified? Congratulations! Now What?

Now that you have your SOC 2, ISO 27001 certification, or if you’re maintaining any control requirements in your organization, you can improve your performance and better protect your assets with a risk-first approach.

Read More

How to Lower Your Compliance Costs: Just Add Risk

Compliance is costly, time-consuming and often frustrates one or many in the company. It should not. Here are simple mistakes to avoid and processes to build that will help your company climb the compliance mountain with relative ease.

Read More

The FDIC Incident Reporting Rule is No Small Challenge for Financial Institutions

In one of the strictest cybersecurity incident management rulings to-date, starting May 1, banks in the U.S. will be required to notify their primary federal regulator of a cybersecurity incident within 36 hours. How is your company preparing to meet this requirement?

Read More

Business Resilience in Light of the OKTA Security Breach

With a public announcement last week, OKTA, a global leader in multi-factor authentication, acknowledged after several months, the exposure of over 350 clients to a security hack in January 2022.

Read More

Global Risk and Compliance: A Strategy

Today, we will evaluate successful global risk and compliance strategies. We will focus on a “DevOps” approach to risk management and the development of a risk scrum team that connects through an integrated risk management platform to continuously monitor and prioritize risk and mitigation. Are you scratching your head? Read on.

Read More