Duffy Compliance 2023 Logo
  • Home
  • About
  • Services
    • Assessments
    • CMMC Compliance
    • Fractional CISO
    • Fractional Compliance Officer
  • MSPs
  • Free Resources
    • Case Studies
    • Cybersecurity Self-assessment
    • FTC Safeguards Rule Checklist
    • Incident Response Checklist
  • Blog
  • Contact
Schedule A Call

Careers

Why Ransomware Isn’t Slowing Down and What Businesses Can Do About It

Why Ransomware Isn’t Slowing Down and What Businesses Can Do About It

by Shawn Duffy | Jan 21, 2026 | Cybersecurity, Blog, Incidence Response, Risk Management

If it feels like ransomware should be on the decline by now, you’re not alone. We all see the headlines: law enforcement takedowns of major operations, new regulations, advanced security tools. However, what we actually see is ransomware incidents continuing to rise....
Are You Ready for a Cyber Incident? How to Enhance Your Incident Response Capabilities Before It’s Too Late

Are You Ready for a Cyber Incident? How to Enhance Your Incident Response Capabilities Before It’s Too Late

by Shawn Duffy | Jul 17, 2025 | Cybersecurity, Blog, Incidence Response, Security Awareness Training

In today’s digital environment, cyber incidents aren’t a distant possibility—they’re a certainty. Whether it’s a ransomware attack, a phishing compromise, a rogue insider, or a misconfigured cloud setting, your organization is going to face a security incident....
Incident Response Plan: Planning for SMBs

Incident Response Plan: Planning for SMBs

by Shawn Duffy | Jun 27, 2024 | Incidence Response, Blog, Cybersecurity

Recently, Duffy partnered with RTS. I was asked to be interviewed to help them write a blog regarding Incident Response Planning.  I offered my help and they set up an interview to talk about the subject matter. After a few weeks, they sent me a draft to review and I...
CMMC Level 2 – It can be less complex than you think

CMMC Level 2 – It can be less complex than you think

by Shawn Duffy | Sep 9, 2022 | CMMC 2.0, Assessments, Blog, CMMC, Compliance, Featured, Incidence Response, Risk assessment, Security Awareness Training

If you’re a defense industrial base (DIB) contractor, you’re already aware you need to meet compliance requirements in the new CMMC system, which goes live May 2023.  Most government contractors are required to meet CMMC Level 2 requirements. When in...
Cybersecurity Awareness Month – Incidence Preparedness and Response

Cybersecurity Awareness Month – Incidence Preparedness and Response

by Dawn Shuler | Oct 29, 2021 | Blog, Cybersecurity, Incidence Response

We continue our Cybersecurity Awareness Month series to provide resources, tips, articles, and checklists to help you and your organization raise awareness and be more secure. This week, we’re focusing on Incidence Preparedness and Response. #BeCyberSmart As...

Recent Articles

  • AI vs. Human Support: What Small Defense Contractors Really Need 
  • 5 Reasons Why Going Cheap with CMMC May Not Be the Cheapest Solution
  • The Cyber Risk Hidden Inside GovCon M&A Deals
  • The Security Gap MSPs Are Being Asked to Fill
  • Why GovCon Companies Can’t Afford to Skip a Fractional CISO During CMMC Readiness

Featured Articles

  • Interview on WBAL-TV: Hackers Steal Sensitive Info From Baltimore SAO
  • Why Experts Hire Fractional CISOs
  • Shawn Duffy Featured in Discover Frederick: Leading Cybersecurity with National Impact
  • How to spot check where you are with DFARS / CMMC
  • How to Reduce Risk
  • Prepare for Compliance

Categories

Archives

  • About
  • Services
  • Fractional CISO
  • Fractional Compliance Officer
  • MSPs
  • Blog
  • In the News
  • Careers
  • Contact

What We Do

IT GovCons can’t compete when they struggle to meet government cybersecurity requirements.

Duffy Compliance makes it easy for them to exceed requirements and stand out in the market.

Schedule A Call
Duffy Compliance Logo

Duffy Compliance Services, LLC
New Market, MD 21774-6266
Info@duffycompliance.com
www.DuffyCompliance.com
301-865-0345

  • Follow
  • Follow

From the Blog

  • AI vs. Human Support: What Small Defense Contractors Really Need 
  • 5 Reasons Why Going Cheap with CMMC May Not Be the Cheapest Solution
  • The Cyber Risk Hidden Inside GovCon M&A Deals
  • The Security Gap MSPs Are Being Asked to Fill
  • Why GovCon Companies Can’t Afford to Skip a Fractional CISO During CMMC Readiness

© 2026 Duffy Compliance Services | All Rights Reserved | Privacy Policy | Accessibility Statement | Web Development by Design Formare Inc.