Blog

Auditor Tips: Know Your PHI’s Lifecycle

Fully understanding all the PHI you have, where it is stored, what processes touch it, and how it is used in your organization is critical to enabling a business to properly handle and secure PHI.

Auditor Tips: Conduct an Accurate and Thorough Risk Analysis

Yet a complete and thorough risk analysis is one of the best ways for you and your organization to make intelligent and informed business decisions

What’s New with the SAQ A-EP

The SAQ A-EP PCI assessment is for merchants who have an e-commerce card data flow that is not entirely outsourced to a PCI validated third-party service provider.

The SecurityMetrics HIPAA Guide Simplifies HIPAA Guidelines

HIPAA laws and cybersecurity are not simple. The 2023 HIPAA Guide breaks down HIPAA guidelines into actionable steps and easy-to-understand information so that your healthcare staff can be fully educated on data privacy and protection.

How to Start a Career in Cybersecurity

If you have a knack for solving problems, good organizational skills, and attention to detail, cybersecurity might be a good fit for you.

Five Ways to Make Security Training Memorable

One of the easiest ways to make cybersecurity training more interesting is by making it fun. Here are five tips for making workforce security training fun and memorable.

How Can You Tell if an App is Secure?

This blog explains how to do a quick risk assessment on an app in the app store or one that you’ve downloaded on your phone to determine if an app is secure.

Performing an SAQ P2PE version 4.0 Self-Assessment

This blog will discuss changes made to the SAQ P2PE version 4.0 and will review the process of performing a self-assessment using the SAQ P2PE.

SecurityMetrics vs. Other PCI Program Providers

What should you look for in a PCI program and how will you know which PCI program is right for you?

Firewalls 101 - What is a Firewall?

Firewalls 101 - What is a Firewall? Tune in this week as Noah Pack and Kaden Payne give you the basics on all things firewalls .

Best Sites to Learn Cybersecurity

The vast field of Cybersecurity can be very intimidating for a newcomer. Tune in this week as Noah Pack gives the best sites to learn cybersecurity and tools to get you building your skills in infosec.

Changes and Updates to the 4.0 SAQ

This blog will discuss changes to the PCI DSS 4.0 SAQ questionnaires and is based on our Webinar "PCI DSS 4.0: What's New and How It Affects You."

Rising Vishing Scams - Apple Malware - Twitter Breach - Slack Leak

Tune in this week as Heff and Jared give you the latest in this week's cyber news! rising vishing scams, Apple malware and more!

3 Projects to Get You Into Info Security

The vast field of InfoSec can be very intimidating for a newcomer wanting to get into the trade. Tune in this week as Noah Pack gives his top 3 recommended projects to get your foot into cybersecurity.

TikTok - T-Mobile Settlement - Twitter Breach - Uber Breach

TikTok, T-Mobile breach settlement, Discord hacking, Uber breach and more!

PCI DSS Version 4.0 SAQ Changes

There are some key changes to the PCI DSS 4.0 SAQ questionnaires you will want to be aware of.

Amazon Scams - Disney Hack - Fake Cisco Tech - Honda Car Hack

Amazon Scams - Disney Hack - Drone Hack - Fake Cisco Tech - Honda Car Hack

Performing an SAQ D Service Provider version 4.0 Self-Assessment

Performing an SAQ D Service Provider version 4.0 Self-Assessment: Updates and changes in the new 4.0 standard.

10 Misconceptions About Security Audits

10 misconceptions about security audits and questions you should ask when getting audited. The focus of this blog will be how to have better data security and compliance technology so that you can avoid data breaches, costly fines, slow downs, and hindrances to your business.

Top 10 Fatal Flaws in SMB Networks

We picked the top 10 most common flaws in SMB networks we see when setting up and managing firewalls for our customers.

Achieving lift-off with PCI DSS v4.0

With March 31, 2025 as a target destination, managed security service providers and enterprises from across the digital commerce chain are taking a measured approach to implementing PCI DSS version 4.0.

Performing an SAQ C-VT version 4.0 Self-Assessment

This post will highlight changes made to the SAQ C-VT version 4.0 and provide guidance on how to comply with newly added requirements.

Internet Explorer, Apple M1, Russia Cyber War

Internet Explorer, Apple M1, and the Russia Cyber War.

The SecurityMetrics PCI DSS Compliance Guide Wins “Most Innovative Cybersecurity Book” Award

The SecurityMetrics PCI DSS Compliance Guide Wins “Most Innovative Cybersecurity Book” Award.