Solutions: Penetration Testing

Michelle Drolet

Cybersecurity has generally kept pace with the growing sophistication of threats. It has evolved from firewall and antivirus to next-gen firewalls, comprehensive endpoint security suites and intelligence-driven approaches such as EDR, XDR and MDR—solutions based on the assumption that systems behave predictably and that risks can be mapped, monitored and mitigated within specific guardrails. But even

Michelle Drolet

In December last year, a shooting incident at Brown University saw two students lose their lives, and left nine injured. And on March 12, an active shooter killed an ROTC instructor at Old Dominion. Tragically, it seems like such disturbing news from university campuses is becoming normalized. Federal authorities have opened an investigation into Brown, digging into the ‘how’ of

Michelle Drolet

A security incident is all but inevitable for nearly every organization. By “incident” we mean a cyberattack that successfully accesses enterprise resources or somehow puts the finances, operations, and reputation of an organization at risk. A major breach can drive a company out of business. To fight back, every organization needs a cohesive incident response (IR) strategy, backed by a well-trained team

Janelle Drolet

10) Aim to prevent costly downtime. Risk assessments help you spot weak points that can halt operations. Costs of business downtime are in the billions each year. 9) Clean up hidden weak spots from spaghetti IT. Systems bolted together over time create gaps; conducting a risk assessment will surface those loose webs. The goal is to streamline

Michelle Drolet

Approximately 1 in 3 SMBs were hit by a cyberattack last year—some costing upward of $7 million. The need to prioritize cybersecurity has never been greater. Let’s explore nine cybersecurity elements that organizations must prioritize for 2025. 1. Put Someone In Charge Just like you have an expert in charge of looking after your company’s finances, it’s

Janelle Drolet

If you’re in charge of payment card data at your company, you’ve probably come across the term PCI DSS. No, it’s not some secret code; it stands for Payment Card Industry Data Security Standard. Basically, it’s a set of rules designed to keep your customers’ card info safe from cyber crooks. Here to tackle today’s

Michelle Drolet

Just in time for the 2024 U.S. elections, cyberattacks and malicious activities are ramping up. For numerous reasons, elections are the perfect time for opportunistic cybercriminals to target businesses: • High visibility: Elections provide an ideal platform for nation-states and hacktivists looking for ways to undermine democracies, destabilize elections, damage reputations and steal campaign data. Since elections

Michelle Drolet

About 63% of organizations worldwide have partially or fully implemented a zero-trust strategy. For those who don’t know what zero trust means, it’s basically a security model that enforces strict verification for every user and device that is trying to access applications or other company assets. So why is zero trust suddenly so popular? There are several

Michelle Drolet

Critical infrastructure and public sector organizations such as governments and municipalities, manufacturing units, communication networks, transportation services, and power and water treatment plants have been battling a growing wave of breaches and cyberattacks. Three main reasons exist why critical infrastructure is being targeted: • Opportunity for real-world disruption. Attacks on railways, ports or air control systems can create shortages