#security awareness

Security awareness tips, industry news, and product updates.

Hospital staff working at computer workstations subject to HIPAA Security Rule requirements
Security Awareness TipsCompliance & Regulations

HIPAA Security Rule Update Slips to 2027: Now What?

HHS has pushed final action on the proposed HIPAA Security Rule overhaul to July 2027, and more than 100 hospital systems want it withdrawn entirely. But the current rule remains actively enforced, including its security awareness training requirement. Relaxing now is the wrong lesson.

Natalie Hoffmann·9/1/2026·5 min read
Engineer working in a defense manufacturing facility preparing for CMMC Level 2 assessment
Compliance & RegulationsFor MSPs & Partners

CMMC Phase 2 Countdown: Level 2 Audits From November

On November 10, 2026, CMMC Phase 2 begins: DoD contracts involving CUI can require third-party Level 2 certification instead of self-assessment. With roughly 80,000 companies needing certification and only about 80 authorized assessors, the countdown is very real.

Elena Vasquez·8/30/2026·5 min read
Executives in a boardroom discussing the management cybersecurity training duty under Section 38 BSIG
Security Awareness TipsCompliance & Regulations

Section 38 BSIG: German Managers Must Train on Cyber Risk

Germany's new BSIG makes cybersecurity training a personal, non-delegable duty for the management of regulated entities, backed by personal liability for oversight failures. The BSI has now spelled out what the training must cover and recommends an annual cadence.

Thomas Eriksson·8/22/2026·5 min read
Financial services professionals reviewing digital operational resilience requirements in a meeting
Compliance & Regulations

DORA: Security Awareness and Training Requirements

DORA is best known for ICT risk and incident reporting, but it also makes security awareness training a compulsory module for staff and management. Here is what financial entities must do, and how to evidence it.

Sarah Mitchell·7/8/2026·6 min read
New employee being welcomed and onboarded on their first day in the office
Security Awareness Tips

Security Onboarding: Protect New Hires From Day One

New hires are eager to please, unfamiliar with the norms, and disproportionately targeted by BEC and impersonation scams. Their first 90 days are the riskiest. Here is how to build security into onboarding from day one.

Elena Vasquez·6/11/2026·7 min read
« Previous12Next »