Looking for the latest information security and privacy insights from EXTEND? Follow us on LinkedIn.

Author name: Katie Allen

Cybersecurity Audit Documentation: What You Need to Demonstrate Compliance and Effectiveness

Cybersecurity Audit Documentation: What You Need to Demonstrate Compliance and Effectiveness

Documenting your information security program is critical because it serves as evidence of your organization’s cyber maturity and preparedness for a cybersecurity audit. While many organizations excel at producing documents, having records on file does not necessarily mean you are compliant. Before considering an audit, you should step back and ask: Is our organization legally […]

Cybersecurity Audit Documentation: What You Need to Demonstrate Compliance and Effectiveness Read More »

business board meeting with cybersecurity advisor presenting to a group

Choosing a Cybersecurity Advisor for Your Board

Cybersecurity has become a critical governance issue that demands strategic oversight from the board. While directors aren’t expected to be cybersecurity experts, they are still responsible for understanding and overseeing the organization’s cybersecurity program to: Understand the investments required to mitigate cyber risk; Comply with regulatory requirements, such as SEC cybersecurity reporting; Ensure the organization

Choosing a Cybersecurity Advisor for Your Board Read More »

ISO/IEC 27001:2022 Certification. Photo of business man pointing to ISO and other information security icons.

EXTEND Resources Secures ISO/IEC 27001:2022 Certification

EXTEND Resources proudly announces its achievement of ISO/IEC 27001:2022 certification, a globally recognized standard for information security management systems (ISMS). Seventh Consecutive Year of Certification Highlights Information Security Leadership The company first achieved ISO 27001:2013 certification in 2019. With the adoption of the 2022 version of the ISO 27001 standard, EXTEND demonstrates that it meets

EXTEND Resources Secures ISO/IEC 27001:2022 Certification Read More »

Group of business people looking at a computer monitor while sitting at a desk

10 Red Flags to Consider When Vetting a CMMC Consultant

The main objective of the Cybersecurity Maturity Model Certification (CMMC) program is to create a framework for auditing and certifying organizations within the Defense Industrial Base (DIB) to safeguard sensitive data that could compromise national security. Introduced in 2020, CMMC was updated in November 2021 to CMMC 2.0, streamlining the number of cybersecurity compliance levels

10 Red Flags to Consider When Vetting a CMMC Consultant Read More »

Dark blue graphic with red padlock and the words privacy, security, and identity.

New Report Highlights Tribal Sector Cybersecurity Threats and Leaders’ Concerns

82% of Tribal Sector organizations use an information security framework. Yet, the average cybersecurity maturity score among Tribal Sector organizations is only 3.76 on a 1-7 scale – a grade of about 54%. A new report from the Center for Internet Security (CIS) and the Multi-State Information Sharing and Analysis Center (MS-ISAC) highlights these statistics.

New Report Highlights Tribal Sector Cybersecurity Threats and Leaders’ Concerns Read More »

REPORT: Cyber threats facing Tribal Organizations

A new cybersecurity report, released by the Center for Internet Security (CIS) and the Multi-State Information Sharing and Analysis Center (MS-ISAC), offers valuable insights for Tribal Organizations and their IT and cybersecurity leaders. Based on data collected from January 2023 to June 2024, the report provides a comprehensive overview of the cyber threats facing Tribal

REPORT: Cyber threats facing Tribal Organizations Read More »

Scroll to Top
Skip to content