We regularly sit down with experts from within GRC International Group to get their insights on a technical topic or business area.
Here are all our Q&As to date, grouped by broad topic:
- AI
- Business continuity
- Cyber attacks and data breaches
- Cyber Essentials
- Cyber resilience
- Cyber security
- Data privacy
- DORA
- Europrivacy
- Incident response
- ISO 27001
- ITGP books
- PCI DSS
- PECR
- Security testing
- Supply chains
- Training
- Miscellaneous
To get new expert insights straight to your inbox, sign up to our weekly newsletter, the Security Spotlight.
Last updated: 15 January 2025. Interviews added: Andrew Pattison on DORA, how it compares to NIS 2, and how it’ll be regulated (DORA); Damian Garcia on transitioning to ISO 27001:2022 (ISO 27001); Louise Brooks on cookie audits (PECR); and Leon Teale on ethical hacking as a career (security testing).
AI
Camden Woollven on layering defences to safeguard sensitive data in AI systems
11 November 2024
How can you harness the transformative power of AI tools and systems while ensuring the privacy and security of your sensitive data? And how can organisations layer their security measures effectively? Head of AI product marketing Camden explains in this interview.
Bridget Kenyon on how to address AI risks with ISO 27001
12 September 2024
Bridget, lead editor for ISO 27001:2022 and author of ISO 27001 Controls, shares her concern over the quality of input data for LLMs (large language models). She also discusses how to conduct an exposure assessment or ‘AI penetration test’, behavioural economics and user education, how ISO 27001 can help address AI security risks, and more in this interview.
19 August 2024
Head of AI product marketing Camden takes us through the types and real-life examples of AI scams, the danger of multi-pronged attacks (using deepfakes, voice cloning, AI-generated text, social media manipulation, etc.), and how to identify and defend against AI scams in this interview.
Camden Woollven on privacy and ethical concerns around AI
22 May 2024
Head of AI product marketing Camden talks us through the ethical principles for guiding AI development, how those principles relate to data privacy, high-risk domains (such as healthcare), and why AI ethics requires a team effort in this interview.
Mark James on AI and data protection
11 April 2024
Privacy consultant Mark talks about the data protection risks of AI, the GDPR’s (General Data Protection Regulation) restrictions around automated decision-making, legal bases for processing personal data via AI systems, and how to address the risks from that type of processing in this interview.
23 February 2024
What is voice cloning, what are the associated risks, and what can organisations do to protect themselves? Privacy consultant Mark answers all these questions and more in this interview.
Business continuity
Andrew Pattison on business impact analysis
12 August 2024
Business impact analysis, or ‘BIA’, is a crucial activity when it comes to business continuity management. Andrew, our global head of GRC (governance, risk and compliance) and PCI DSS (Payment Card Industry Data Security Standard) consultancy, explains a practical approach to BIA in this interview.
Adam Seamons on lessons from the CrowdStrike outage
30 July 2024
On 19 July 2024, a faulty security update rolled out by CrowdStrike led to a global IT outage. Head of information security Adam explains the challenge of the fix, the risks of complex supply chains, how to secure your supply chain and ensure business continuity, turning black swan events into business opportunities, and more in this interview.
Cyber attacks and data breaches
Leon Teale on mega breach RockYou2024
10 July 2024
Senior penetration tester Leon explains the seriousness of ‘RockYou2024’ – a mega breach allegedly leaking nearly 10 billion plaintext passwords. He also explains how penetration testers use password compilations, how COMBs (compilations of many breaches) are formed, and how to protect yourself in this interview.
Leon Teale on the mother of all breaches
24 January 2024
Senior penetration tester Leon talks us through the implications of a historic 26-billion-records leak. Learn why even old credentials can cause a lot of damage, and how you can protect yourself in this interview.
Cyber Essentials
Ashley Brett on Cyber Essentials and ISO 27001
2 December 2024
Cyber security advisor and product evangelist Ashley talks us through some common Cyber Essentials misconceptions, key differences between Cyber Essentials and ISO 27001, the benefits of each, and things to consider if you’re implementing both in this interview.
Ashley Brett on the Cyber Essentials and Cyber Essentials Plus assessments
20 November 2024
Cyber security advisor and product evangelist Ashley talks us through the assessment process for Cyber Essentials and Cyber Essentials Plus, how you can prepare, the support to expect from an assessor, common pitfalls, and more in this interview.
Ashley Brett on Cyber Essentials solutions
21 February 2024
Cyber security advisor and product evangelist Ashley provides a simple overview of the Cyber Essentials scheme. He also talks us through various Cyber Essentials solutions to help you choose the right one in this interview.
Cyber resilience
Damian Garcia on cyber resilience and defence in depth
16 December 2024
With cyber incidents a matter of ‘when’, not ‘if’, implementing cyber resilience and layering your defences is vital. Head of GRC consultancy Damian explains in more detail – as well as the links to risk management, and how it’s helpful to combine ISO 27001 with ISO 22301 – in this interview.
Adam Seamons on cyber defence in depth
19 April 2024
What is defence in depth, why is it important and how does it work? Head of information security Adam answers all these questions and more, giving practical, expert insight into defending against malware in multiple layers, with details on the purpose of each, in this interview.
Alan Calder on cyber resilience
24 November 2023
Information security management expert Alan gives us a quick overview of his award-winning book: Cyber Resilience – Defence-in-depth principles. He also explains why defence in depth is so important in this interview.
Cyber security
Damian Garcia on the insider threat
13 November 2024
Head of GRC consultancy Damian explains the insider threat and shares real-life examples. He also explains why it’s an issue, the scale of the threat, the importance of security culture and staff awareness, how to detect the insider threat, and more in this interview.
James Pickard on how to safeguard against malicious insiders
16 October 2024
When an insider turns malicious, they can significantly damage your organisation. How big is this threat? Head of security testing James elaborates, along with tips for how you can defend against the insider threat (malicious insiders) in this interview.
Damian Garcia on how to mitigate information security risk
5 September 2024
In a follow-up to the interview below (where to start with risk management), head of GRC consultancy Damian explains how to mitigate information security or cyber security risks once you’ve identified them. He covers risk appetite, risk responses, monitoring and reviewing risks, and more in this interview.
Damian Garcia on where to start with cyber security risk management
29 August 2024
Head of GRC consultancy Damian explains where to begin with cyber security risk management: establishing a common vocabulary. He gives his expert insight into how to clearly define likelihood, impact and risk levels, so you can ensure a consistent approach across the organisation, in this interview.
Damian Garcia on 5 cyber security and ISO 27001 myths
1 August 2024
Head of GRC consultancy Damian talks us through 5 common cyber security and ISO 27001 misconceptions, including that ‘a cyber attack/data breach will never happen to me’, ‘my data isn’t worth anything’, ‘cyber security is an IT problem’, and more in this interview.
James Pickard on security trends for 2024 and beyond
28 June 2024
Head of security testing James explains what trends in cyber security he’s seeing. This includes the rise of AI and how it’s changing cyber security, particularly in terms of social engineering; ransomware trends; and data leaks becoming more common and bigger in this interview.
Vanessa Horton on ransomware trends
7 June 2024
Cyber incident responder Vanessa shares ransomware trends, why they’re worrying, and what organisations can do about them. She also explains how to decide whether to pay the ransom, what to do if you suffer an exfiltration attack to mitigate the damage, and how to prevent future attacks in this interview.
Leon Teale on secure remote working
31 May 2024
Senior penetration tester Leon shares how to secure remote infrastructure; the risks of working in public areas and using public Wi-Fi, and how to remain secure; the pros and cons of different VPN (virtual private network) technologies; and his top 10 tips for secure remote working at home and in public in this interview.
Leon Teale on zero-day exploits
24 April 2024
What are zero-day exploits and who is most at risk? How can we detect zero-day vulnerabilities and attacks, and protect ourselves from them? Plus, how much of an outlier was the MOVEit Transfer breach? We put all these questions and more to senior penetration tester Leon in this interview.
Adam Seamons on zero-trust architecture
5 January 2024
Head of information security Adam gives us a short history lesson about how networks have evolved, and the security consequences of that evolution. In particular, he highlights the risks of Cloud infrastructure and the merits of zero-trust architecture in this interview.
Data privacy
Louise Brooks on practical GDPR compliance
13 December 2024
Numerous misunderstandings surround complying with the GDPR. As a principles- and risk-based law, there aren’t prescribed dos and don’ts – the Regulation simply provides a framework for compliance. Furthermore, compliance can be a business enabler, not a ‘necessary evil’. Head of consultancy at DQM GRC Louise explains further in this interview.
Andrew Snow on 3 common GDPR challenges
12 December 2024
DPO (data protection officer) and data privacy trainer Andrew explains 3 common GDPR challenges – getting management support, knowing where to start with data protection, and understanding what being a data privacy lead really means – and how to overcome them in this interview.
Kirsten Craig on legitimate interests under the GDPR
27 November 2024
Legitimate interest is one of six lawful bases under the GDPR. But what exactly is a legitimate interest? And when can you rely on it? Data privacy lawyer Kirsten explains in this interview.
Andrew Snow on transatlantic data transfers under the GDPR
26 November 2024
DPO and data privacy trainer Andrew explains the most common safeguards for transatlantic personal data transfers under the GDPR – specifically, the DPF (Data Privacy Framework), SCCs (standard contractual clauses) and BCRs (binding corporate rules) – in this interview.
Andrew Snow on securing board support for a GDPR compliance project
11 November 2024
For any GDPR compliance project to be successful, you need buy-in from the board. How can data privacy leads secure it? DPO and data privacy trainer Andrew shares his tips for this, and explains the rewards of GDPR compliance, in this interview.
Andrew Snow on lawful data processing under the GDPR
4 November 2024
Problems around processing personal data are common, largely due to an over-reliance on consent. Furthermore, lawful bases aren’t an open-ended ticket – they need time limits and relevance (i.e. storage and purpose limitation). DPO and data privacy trainer Andrew explains these and other common GDPR ‘pain points’, and how to address them, in this interview.
Andrew Snow on accountability under the GDPR
8 October 2024
Accountability is more than just another GDPR requirement – done well, it transforms GDPR compliance from a box-ticking exercise into a catalyst to improve the way you operate as a business. DPO and data privacy trainer Andrew explains a simple way of showing accountability, and shares his ROPA (record of processing activities) template, in this interview.
Judith Eis on how to navigate privacy and data protection challenges in 2025
3 October 2024
Regulations are constantly changing or being developed, and new technologies are emerging. Both create new challenges. DPO consultant Judith talks us through them, and how organisations can navigate them, in this interview.
Dr Loredana Tassone on the DSA and DMA, and how they interact with the GDPR
25 September 2024
Managing consultant at GRCI Law Loredana explains what the DSA (Digital Services Act) and DMA (Digital Markets Act) are, their respective scopes, how they interact with the GDPR, and next steps for organisations in this interview.
Andrew Snow on streamlining GDPR compliance with ROPAs, data flow maps and DPIAs
8 August 2024
Few people like spreadsheets. Fewer still like multiple spreadsheets. Similarly, few people enjoy complex compliance, with documentation scattered in many places. DPO and data privacy trainer Andrew explains how you can streamline GDPR compliance with ROPAs, data flow maps and DPIAs (data protection impact assessments) in this interview.
Andrew Snow on GDPR Article 28 contracts
9 July 2024
Contracts aren’t just a GDPR requirement. Doing your due diligence can save your organisation a lot of money, avoiding not just GDPR fines, but also operational disruption and liability for something that was your contractor’s fault. DPO and data privacy trainer Andrew explains further in this interview.
Andrew Snow on simplifying GDPR compliance with ROPAs
4 July 2024
DPO and data privacy trainer Andrew talks us through how ROPAs tend to be overcomplicated, and how creating good ROPAs simplifies GDPR compliance. He explains their benefits, common pitfalls, and how they interact with various other GDPR requirements in this interview.
Dr Loredana Tassone on 6 years of the GDPR
25 June 2024
Managing consultant at GRCI Law Loredana talks us through the GDPR achievements and criticisms as the Regulation turned six. She also explains how organisations can maintain GDPR compliance, and how the GDPR and privacy will likely evolve in this interview.
Louise Brooks on the GDPR’s lawful bases and data subject rights
3 June 2024
What are the 6 lawful bases for processing under the GDPR, why should consent be a last resort, what are the conditions for consent, and how can you document it? What about the 8 data subject rights under the GDPR – what are they, and how can organisations accommodate them? Head of consultancy at DQM GRC Louise talks us through the above in this interview.
17 May 2024
In the US, expectations are – cautiously – rising that we could see a landmark single federal privacy standard enacted into law: the APRA (American Privacy Rights Act). Data privacy lawyer Kirsten takes us through what it is, its requirements, its interplay with state-specific laws, its scope, and the next steps in this interview.
Ryan Peeney on ROPAs (records of processing activities)
9 May 2024
ROPAs are an explicit legal requirement in Article 30 of both the UK and EU GDPR. But what exactly are they? Why are they important, and what are their benefits? And how can you create and maintain them? We put all these questions and more to DPO consultant Ryan in this interview.
11 April 2024
DPO consultant Ola talks us through biometric data – what is it, and how do the GDPR’s principles and requirements apply to it? She also explains the importance of DPIAs and data protection by design in this interview.
22 March 2024
Privacy consultant Mark explains what data seeding is, why it’s such an unintrusive measure, and when and how to use it in this interview.
Louise Brooks on staff monitoring
4 March 2024
How much and what type(s) of staff monitoring is too much? How can organisations monitor staff while remaining compliant with privacy laws? Head of consultancy at DQM GRC Louise gives us the answers in this interview.
Alan Calder on maintaining GDPR compliance
16 February 2024
Information security management expert Alan takes us through what data privacy and GDPR compliance trends he foresees in 2024. He also gives us his 5 top tips for remaining compliant in this interview.
Andrew Snow on a landmark GDPR ruling
12 January 2024
The ECJ (European Court of Justice) issued a landmark GDPR ruling in December 2023. Data privacy and cyber security trainer Andrew takes us through the details, and explains why this ruling is so important in this interview.
Andrew Snow on the UK–US data bridge
6 November 2023
The UK and US received an adequacy decision enforced in October 2023. Data privacy and cyber security trainer Andrew talks us through the practical implications, how organisations can take advantage, and alternative mechanisms for UK–US data transfers in this interview.
DORA
Andrew Pattison on DORA, how it compares to NIS 2, and how it’ll be regulated
6 January 2025
What is DORA? How does it differ – or overlap – with NIS 2 (Network and Information Security Systems Directive)? How will DORA be regulated? Will DORA actually be enforced? And will non-EU organisations have to comply with it? We put these questions to global head of GRC and PCI DSS consultancy Andrew in this interview.
Andrew Pattison on simplifying DORA compliance with ISO 27001
16 December 2024
ISO 27001 can be used to simplify compliance with DORA. Global head of GRC and PCI DSS consultancy Andrew explains how – as well as how ISO 22301 can help, and the difference between operational resilience and business continuity – in this interview.
Andrew Pattison on DORA’s proportionality principle
18 November 2024
Global head of GRC and PCI DSS consultancy Andrew explains what DORA’s (Digital Operational Resilience Act) proportionality is, how you know whether what you’re doing is proportionate, and whether proportionality offers a ‘get out of jail free’ card in this interview.
Andrew Pattison on DORA roles, responsibilities and competences
26 August 2024
Global head of GRC and PCI DSS consultancy Andrew explains the core DORA requirements, how they overlap with ISO 27001, DORA roles and responsibilities, and how DORA training can address competence shortcomings in this interview.
Cliff Martin on streamlining DORA compliance
18 December 2023
DORA’s requirements aren’t too dissimilar to that of other legislation and standards. Head of cyber incident response Cliff explains how to streamline DORA compliance in this interview.
Alan Calder on DORA supply chain security
11 December 2023
Information security management expert Alan explains why supply chain security – a key DORA pillar – is so important, and how organisations can secure their supply chain in this interview.
Cliff Martin on DORA incident response
28 November 2023
Head of cyber incident response Cliff takes us through DORA’s incident response requirements – another pillar of the Regulation – in this interview.
Andrew Pattison on DORA risk management
13 November 2023
Global head of GRC and PCI DSS consultancy Andrew explains the most important DORA pillar: ICT risk management. He talks us through the Regulation’s requirements and how organisations can meet them in this interview.
Europrivacy
Alice Turley on the Europrivacy scheme and certification
26 April 2024
What is Europrivacy™/®, who can apply for certification, and what are the benefits? How do the scheme and certification work? And what must applicants consider when choosing a consulting company? Senior privacy and GRC consultant Alice answers all these questions in this interview.
Incident response
Vanessa Horton on cyber incident response
24 May 2024
Cyber incident responder Vanessa gives us a complete, practical overview of cyber incident response. She talks us through common misconceptions and errors, threat types, protection, detection, cyber incident response plans, training, digital forensics and the incident response process. She also covers real-life examples in this interview.
Vanessa Horton on anti-forensics
2 February 2024
Criminals use anti-forensics techniques to try to remain undetected and/or mask their actions. Cyber incident responder Vanessa explains further, and provides examples of anti-forensics techniques as well as advice for how organisations can protect themselves, in this interview.
ISO 27001
Damian Garcia on transitioning to ISO 27001:2022
14 January 2025
Organisations with ISO 27001:2013 certification must transition to the 2022 Standard by 31 October 2025. Head of GRC consultancy Damian explains how to best go about this, and what challenges to look out for with the new control set in this interview.
Damian Garcia on selecting effective information security controls
9 December 2024
A key part of an ISO 27001 ISMS (information security management system) is to mitigate information security risks through effective control selection (or another form of risk mitigation). But how do you choose effective controls while staying on budget? Head of GRC consultancy Damian explains in this interview.
Damian Garcia on how to overcome 3 common ISO 27001 implementation challenges
10 October 2024
Head of GRC consultancy Damian explains three common ISO 27001 implementation challenges – assuming you won’t suffer a security incident, writing but not enforcing policies, and the outsourcing trap – and how to overcome them in this interview.
Matthew Peers on ISO 27001:2022 transition challenges and how to use ISO 27002
18 July 2024
GRC consultant Matthew talks us through what ISO 27001:2022 transitioning challenges he’s been seeing, the importance of documenting your processes, what documentation is and isn’t required under ISO 27001, treating ISO 27002 as a “good ideas book”, and more in this interview.
Matthew Peers on ISO 27001 and physical security
15 May 2024
When we hear ‘information security’ or ‘ISO 27001’, we usually think ‘cyber security’. However, physical security is also an important aspect of information security. In fact, in ISO 27001:2022, ‘physical’ is one of just four control themes. GRC consultant Matthew explains why, and talks us through physical access control, physical security monitoring, CCTV, and more in this interview.
Alan Calder on transitioning to ISO 27001:2022
10 April 2024
ISO 27001 pioneer Alan explains why ISO 27001 and ISO 27002 were updated in 2022. He also talks us through key changes and transition dates, and how to approach your transition project in this interview.
Alan Calder on ISO 27001 and defence in depth
20 March 2024
ISO 27001 pioneer Alan explains how ISO 27001 and defence in depth intersect, and the importance of each. He also talks us through the ISO 27000 family of standards, and how ISO 27001 can help organisations meet their regulatory requirements in this interview.
Alan Calder on the ISO 27001:2022 addendum and ISO 27006 update
15 March 2024
ISO 27006 was recently updated. An ISO 27001:2022 addendum was also recently released. ISO 27001 pioneer Alan gives us the highlights of both updates, as well as an overview of the business benefits and regulatory value of ISO 27001, in this interview.
Andrew Pattison on pragmatic ISO 27001 risk assessments
8 March 2024
ISO 27001 fundamentally takes a risk-based approach. Global head of GRC and PCI DSS consultancy Andrew gives us his tips on how to keep your risk assessments simple and manageable in this interview.
Alan Calder and a quick overview of ISO 27001
6 March 2024
ISO 27001 pioneer Alan gives us a quick overview of the business benefits of ISO 27001. He also talks us through how the Standard can aid regulatory compliance, and offers tips on risk assessment and continual improvement in this interview.
ITGP books
Richard Bingley on combatting cyber terrorism and tips for authors
11 October 2024
Richard is the author of Combatting Cyber Terrorism – a finalist for the Cyber Book of the Year award at The Real Cyber Awards 2024! He talks us through why it’s important to raise awareness of cyber terrorism, and gives advice on how to approach writing multiple books and choose strong book topics in this interview.
Claire Agutter on the publishing process and SIAM
25 September 2024
Claire, a service management trainer, consultant and author, has published 13 books for ITGP (IT Governance Publishing) so far. She talks about her journey as an author, discusses the publishing process and gives advice for aspiring authors. She also explains what SIAM (service integration and management) is and its benefits in this interview.
22 March 2024
Softcover, PDF eBook or ePub? Publications manager Nicola explains the difference between each to help you choose the right written book format for you in this interview.
Andreas Chrysostomou on audiobooks
10 January 2024
Publishing relations manager Andreas explains the audiobook format – including its pros and cons, how audiobooks are developed, and more – in this interview.
PCI DSS
Stephen Hancock on PCI DSS SAQ SPoC
30 October 2023
QSA (Qualified Security Assessor) consultant Stephen gives us an overview of the latest PCI DSS SAQ (self-assessment questionnaire): SAQ SPoC (software-based PIN entry on COTS). He explains which organisations qualify and how SPoC solutions work in this interview.
PECR
Louise Brooks on cookie audits
10 January 2025
Head of consultancy at DQM GRC Louise explains what cookies are, how they relate to personal data, the key steps involved in – and the benefits of – a cookie audit, and where consent and the GDPR come into cookies and the PECR (Privacy and Electronic Communications Regulations 2003) in this interview.
Louise Brooks on cookie compliance
19 January 2024
Head of consultancy at DQM GRC Louise shares how organisations can improve their cookie banners without hampering their business objectives, and common mistakes around obtaining valid consent, in this interview.
Louise Brooks on the ICO’s ultimatum on cookies
4 December 2023
The ICO (Information Commissioner’s Office) gave the UK’s top websites an ultimatum: get your cookies compliant, or risk enforcement action. Head of consultancy at DQM GRC Louise gives her insights into this ICO statement and ICO enforcement more generally, and advice on how organisations can best meet their cookie requirements, in this interview.
Security testing
Leon Teale on ethical hacking as a career
13 January 2025
Senior penetration tester Leon shares the skills and knowledge you need as a penetration tester, a typical day for him, what opportunities for innovation and specialisation penetration testers get, and more in this interview.
Hilmi Tin on simulated phishing attacks
27 November 2024
The insider threat – like staff falling for phishing – remains organisations’ biggest security risk. And while many can identify phishing in a training setting, when your psychology is being hacked, a real-world situation is a different matter. Penetration tester Hilmi explains further, and elaborates on the value of social engineering penetration tests, in this interview.
Leon Teale on the penetration testing process and types
25 November 2024
Senior penetration tester Leon talks us through the penetration testing process, and gives us an overview of the different types of penetration test. He also explains the types of vulnerabilities penetration testers look for and the importance of layers of security in this interview.
James Pickard on objective-based penetration testing
6 November 2024
Head of security testing James talks us through various types of penetration testing, including objective-based, grey box, white box and black box tests, as well as red team assessments. He also explains the benefits of manual vs automated penetration testing in this interview.
9 February 2024
The CVSS (Common Vulnerability Scoring System) is now at v4.0. Senior penetration tester Leon explains what the CVSS is, how it works, when to use it, its limitations, and the key changes introduced in CVSS v4.0 in this interview.
Supply chains
Bridget Kenyon on strategies for securing your supply chain
23 October 2024
‘Supply chains’ are really ‘supply loops’ now, which makes them challenging to secure. What strategies can you use for conducting your due diligence, and how can ISO 27001 help? Bridget Kenyon, lead editor for ISO 27001:2022 and author of ISO 27001 Controls, explains in this interview.
Andrew Pattison on simplifying supply chain risk management
5 April 2024
Global head of GRC and PCI DSS consultancy Andrew explains the importance of keeping risk assessments and supply chain risk management simple, and how DORA might change how organisations manage risk. He also talks us through considerations around risk when outsourcing, e.g. to a Cloud provider, in this interview.
Training
4 April 2024
Cyber security specialist and instructor Soji gives us a complete overview of CISM (Certified Information Security Manager), talking us through its topics, intended audience, career opportunities, alternatives, and more in this interview.
Damian Garcia on ransomware elearning
7 February 2024
Head of GRC consultancy Damian recently updated our Ransomware Staff Awareness E-learning Course. He explains why this course is so important, the key topics covered, its top take-aways, and more in this interview.
Miscellaneous
Sophie Sayer on our partner programme
14 February 2024
Sales director Sophie talks us through our partner programme, and the benefits of partnering with us, in this interview.
Sam McNicholls-Novoa on CyberComply
20 December 2023
CyberComply is a Cloud-based, end-to-end solution that simplifies compliance with a range of cyber security and data privacy standards and laws. Product marketing manager Sam talks us through some of the software’s benefits and features in this interview.
Get the latest expert insights straight to your inbox
If you like our weekly interviews, you’ll love our free weekly newsletter, the Security Spotlight.
Every Wednesday, you’ll get a 4-minute email with:
- Interviews with our experts, sharing their insights and expertise;
- Our latest research and news;
- Free useful resources; and
- Upcoming webinars.

We first published a version of this blog in March 2024.