Category: Compliance
Page 2View all articles
-
ComplianceAugust 12, 2026
Healthcare Orgs Warned About Gunra Ransomware Attacks
CISA, the FBI, and international partners issued a joint advisory warning healthcare organizations about the Gunra ransomware-as-a-service operation.
-
ComplianceAugust 7, 2026
SOX Compliance Checklist for IT General Controls
A SOX compliance checklist for IT general controls: scoping, access management, change management, operations, and the evidence your auditor will test.
-
ComplianceAugust 6, 2026
Google Workspace HIPAA Compliance: Gmail, Chat, Drive, Meet
Yes, Google Workspace HIPAA compliant email is possible. Learn which services the Google BAA covers, how to accept it, and the settings HIPAA requires.
-
ComplianceAugust 6, 2026
CMMC Level 2 Requirements: The Complete 2026 Guide
CMMC Level 2 requirements for 2026: all 110 NIST 800-171 controls, SPRS scoring, POA&M rules, C3PAO vs self-assessment, and the DFARS phase-in timeline.
-
ComplianceAugust 4, 2026
CISA Issues Updated Guidance on Minimum Elements of an SBOM
CISA has published updated guidance establishing the minimum elements required for a software bill of materials (SBOM), developed with the FBI.
-
ComplianceAugust 4, 2026
HIPAA Compliant Password Managers Guide
What makes a HIPAA compliant password manager? BAA availability, Security Rule access controls, and the policies your practice needs, explained step by step.
-
ComplianceJuly 30, 2026
How Much Does CMMC Certification Cost in 2026?
What CMMC certification really costs in 2026: DoD published assessment estimates by level, the costs those numbers leave out, and how to budget for it.
-
ComplianceJuly 30, 2026
What DoD Instruction Implements the DoD CUI Program?
Learn how DoDI 5200.48 implements the DoD CUI program and what defense contractors must do: CUI marking, NIST SP 800‑171 safeguards, and CMMC alignment.
-
ComplianceJuly 28, 2026
GAO Report Flags Duplicative Cyber Reporting Requirements
A GAO analysis finds potentially duplicative cyber incident reporting requirements as the U.S. standardizes reporting across critical sectors.
-
ComplianceJuly 25, 2026
DevMan RaaS Portal Centralizes Payload Builds and Payouts
The DevMan ransomware-as-a-service portal consolidates payload builds, victim management, and affiliate payouts into a single criminal platform.
-
ComplianceJuly 24, 2026
Patient Data Exposed at Ohio Revenue Cycle Management Firm
Patient data exposure at an Ohio revenue cycle management company shows why healthcare vendors need HIPAA-aligned monitoring and rapid breach response.
-
ComplianceJuly 24, 2026
CMMC Level 3 Is the Quietest Land Grab in Defense Contracting
CMMC Level 3 adds 24 NIST SP 800-172 requirements to Level 2. See the DoD cost estimates, why early movers win, and ComplianceArmor(R) readiness From ,500.