Make compliance work for, not against you


Hey there,

Compliance is so often looked at in security circles as a burden. It’s a thing to do. It’s expensive. It’s not equating to actual security.

Those are just a few of the many reasons that security teams are typically not the biggest fans of compliance.

This week’s article focuses on how you can get the most out of compliance so it can actually help your business instead of hamper your team’s resources and energy levels. If you’re leading a security team or involved in the day-to-day operations work and constantly getting pulled into compliance work, this one is for you.

Helpful resources for you to check out

This section breaks down some relevant resources across the web for you to check out.

👉 Article:Security As A Business Enabler” A recent Forbes article that explores another angle on compliance as a business enabler and why it’s worth giving it your best effort.

👉 YouTube Video: "Make Compliance Suck Less" A quick overview by John Strand with some actionable tips on how to make your compliance work easier and less headache inducing.


Action Item

Map it out:

This week, check out the assessment tools referenced in John Strand’s short video and roll up your sleeves on how compliance can be a touch easier in your organization. Take advantage of the cross-mapping and focus in on those critical controls only…not all the nuance in your NIST 800-53 docs.


If you appreciate this content, please take a minute and share it on social media or forward it to a colleague.

Keep growing,

- Rob & Frank

Soft Side of Cyber

LinkedIn | YouTube

https://www.softsideofcyber.com

113 Cherry St #92768, Seattle, WA 98104-2205
Unsubscribe · Preferences

Soft Side of Cyber

Empowering cybersecurity professionals with the non-technical skills they need to thrive.

Read more from Soft Side of Cyber

How often have you been in a room full of cybersecurity people, only to observe them mocking those who are "social" or "non-technical" in their skills? We don't train on it. We don't seem to value it. So why bother talking about emotional intelligence and social skills? It's because we believe it's at the core of actually getting things done in cybersecurity. It's the intangible yet valued things that separate the effective from the ineffective. In this week's article, Frank explores...

Hey there, Are you aspiring to climb the ladder in your cybersecurity career but unsure where to start? Whether it’s the prestigious CISO role you’re eyeing or a leap into a more strategic position, understanding the intricacies of career advancement is crucial. Our latest article, "So You Want to Get Promoted in Cybersecurity?", is a treasure trove of insights tailored just for you. It delves into the different pathways you can take in the field, whether it’s the individual contributor or...

Hey there, First off, Happy New Year! We hope you all had a terrific holiday stretch, and we're excited to be back this year with all new refreshed content to help you make an outsized positive impact in cybersecurity. Stay tuned because we'll be resuming our regular blog posts, podcasts, and video content in this new year. We've also got some exciting training opportunities, both in-person and virtual, coming soon. Let's get into it! This week, we're rolling out the welcome mat for our new...