by Shawn Duffy | Mar 18, 2026 | Cybersecurity, Blog, Risk Management, Security, Vulnerability
Last month I wrote about “Quiet Warning Signs Most Organizations Miss.” I want to continue that topic by covering some of the mistakes we make as well, even with the best intentions. Many small businesses believe cybersecurity problems happen to larger...
by Shawn Duffy | Feb 11, 2026 | Cybersecurity, Blog, CMMC, DFARS, MSP, Penetration Testing, Risk assessment, Risk Management, Security, Security Awareness Training, Vulnerability
When people think about cybersecurity breaches, they usually picture a sudden, dramatic moment where the screen goes dark, the ransom note appears, and the phones light up, amplifying the disaster. More times than not, most breaches don’t start that way. They begin...
by Shawn Duffy | May 16, 2025 | Blog, Security
Security policies are the foundation of a strong cybersecurity program. However, they only work if they are well written, actively used, and regularly maintained. At Duffy Compliance Services, we’ve worked with many organizations over the years that thought their...
by Shawn Duffy | May 7, 2025 | Artificial Intelligence AI, Blog, Cybersecurity, Security, Vulnerability
I have witnessed several transitions in technology and in security over the 3 decades of commercial cybersecurity. The latest shiny object is Artificial Intelligence (AI). And like any good innovation of the past (e.g., VPN, IDS, IPv6, Wi-Fi), it looks like this one...
by Shawn Duffy | Apr 24, 2025 | CISO, Blog, Cybersecurity, Featured, Security
Organizations, especially government contractors, manufacturers, and IT service providers must adhere to strict regulatory frameworks. However, hiring a full-time Chief Information Security Officer (CISO) can be expensive, challenging, and often unnecessary for small...
by Shawn Duffy | Mar 19, 2025 | Cybersecurity, Blog, Data Protection, Risk assessment, Security, Vulnerability
Cybersecurity is more than just a necessity; it is a strategic investment. With cyber threats constantly evolving, businesses of all sizes are at risk of data breaches, ransomware attacks, and regulatory penalties. The rise in remote work, cloud computing, and...