Tag

Risk Management

Learn how to identify, assess, and mitigate cybersecurity risks that threaten your organization's data, systems, and operations. Our risk management articles cover frameworks, threat modeling, vulnerability prioritization, and strategies for building a resilient security posture.

posts

NIST Cybersecurity Framework

NIST Cybersecurity Framework: A Practical Guide for 2026

The Framework 87% of Organizations Claim to Follow — But Most Get Wrong When the Change Healthcare breach exposed the records of over 100 million people in 2024, investigators found something familiar: the organization had a cybersecurity program on paper. What it lacked was disciplined execution against a proven structure. That

Carl B. Johnson Nov 04, 2020 7 min read
NIST Standards

NIST Standards: A Practical Guide for Real-World Security

When Change Healthcare suffered its catastrophic ransomware attack in early 2024 — disrupting pharmacy operations across the United States for weeks — investigators found a familiar culprit: stolen credentials and no multi-factor authentication on a critical system. The company's parent, UnitedHealth Group, eventually disclosed the breach affected roughly 100 million

Carl B. Johnson Feb 02, 2019 7 min read