22 Sep ISO 27001 Certification | Category - Pivot Point Security Why the New COSO Enterprise Risk Management Framework is Important to Your ISO 27001 Certification January 12, 2024 By John Verry Recently, the Committee of Sponsoring Organizations (COSO) released a long-awaited exposure draft update to its Enterprise Risk Managem... Continue reading
15 Sep ISO 27001 Certification | Category - Pivot Point Security Achieving NIST 800-171 Compliance Using an ISO 27001 ISMS January 18, 2024 By John Verry Pivot Point Security has recently seen a lot of interest in NIST 800-171, with the biggest question being; “How do we get NIST 800-171 ... Continue reading
02 Aug InfoSec Strategies | Category - Pivot Point Security A Scary Story about an Attorney Who Didn’t Comply with His Firm’s InfoSec Policies January 18, 2024 By Richard Barrus The other day I heard from a client in the legal vertical seeking advice. Some attorneys in his firm had proved to be less than enthusi... Continue reading
19 Jul ISO 27001 Certification | Category - Pivot Point Security How to Make Ongoing InfoSec Decisions in Compliance with ISO 27001:2013 January 19, 2024 By Richard Barrus A client’s IT Infrastructure Manager recently asked me if a change to their remote access controls would jeopardize their compliance wi... Continue reading
12 Jul ISO 27001 Certification | Category - Pivot Point Security Why Perfect is the Enemy of Progress in Information Security January 14, 2024 By John Verry I got an email from a good client yesterday that had been quiet for a while. “Just wanted to update you on where we are and why we have... Continue reading