<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet href="https://rss.buzzsprout.com/styles.xsl" type="text/xsl"?>
<rss version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:podcast="https://podcastindex.org/namespace/1.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:psc="http://podlove.org/simple-chapters" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <atom:link href="https://rss.buzzsprout.com/2310977.rss" rel="self" type="application/rss+xml" />
  <atom:link href="https://pubsubhubbub.appspot.com/" rel="hub" xmlns="http://www.w3.org/2005/Atom" />
  <title>Cash in the Cyber Sheets: Making Money From Being Secure &amp; Compliant</title>

  <lastBuildDate>Fri, 12 Jun 2026 09:32:45 -0400</lastBuildDate>
  <link>https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant</link>
  <language>en</language>
  <copyright>© 2026 Input Output, LLC</copyright>
  <podcast:locked>yes</podcast:locked>
    <podcast:guid>5bfb6a0d-4bc1-5c08-9f90-6b0bfa2c1351</podcast:guid>
  <podcast:txt purpose="verify">Info@InputOutput.com</podcast:txt>
  <itunes:author>James Bowers II</itunes:author>
  <itunes:type>episodic</itunes:type>
  <itunes:explicit>false</itunes:explicit>
  <description><![CDATA[      Shattering the myth that security and compliance are just necessary evils and profit-sucking business bottlenecks, “Cash in the Cyber Sheets” reveals how they’re actually launchpads for profit and how they lay the groundwork for golden opportunities. Dive between the spreadsheets with James Bowers II, CEO of Input Output each week as he unzips the secrets of turning obligatory fine print and security management into financial foreplay. It's time to make security, compliance, and risk management your business bedrock – turning them into strategic assets that aren't just about avoiding risks, but about creating value, sharpening your operations, and yes, padding your pockets.    ]]></description>
  <generator>Buzzsprout (https://www.buzzsprout.com)</generator>
  <itunes:owner>
    <itunes:name>James Bowers II</itunes:name>
    <itunes:email>Info@InputOutput.com</itunes:email>
  </itunes:owner>
  <image>
     <url>https://storage.buzzsprout.com/aohrijozsu6rg7ek0ebqnq93cb9n?.jpg</url>
     <title>Cash in the Cyber Sheets: Making Money From Being Secure &amp; Compliant</title>
     <link>https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant</link>
  </image>
  <itunes:image href="https://storage.buzzsprout.com/aohrijozsu6rg7ek0ebqnq93cb9n?.jpg" />
  <itunes:category text="Technology" />
  <itunes:category text="Business">
    <itunes:category text="Management" />
  </itunes:category>
  <itunes:category text="Business">
    <itunes:category text="Entrepreneurship" />
  </itunes:category>
  <podcast:person role="host">James F Bowers II</podcast:person>
  <item>
    <itunes:title>#77: The Digital Defense Playbook for Parents: How to Keep Kids Safe Online</itunes:title>
    <title>#77: The Digital Defense Playbook for Parents: How to Keep Kids Safe Online</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we’re trading ransomware for real parenting — because the biggest threat some families face isn’t just phishing emails, it’s predators hiding behind screens. This week, we’re talking about keeping your kids safe online without turning your home into a surveillance state or making every digital moment a standoff. You’ll get a practical, parent-tested playbook to reduce risk, build trust, and keep communication open. Here’s what we cover: How...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of <em>Cash in the Cyber Sheets</em>, we’re trading ransomware for real parenting — because the biggest threat some families face isn’t just phishing emails, it’s predators hiding behind screens.</p><p>This week, we’re talking about <strong>keeping your kids safe online</strong> without turning your home into a surveillance state or making every digital moment a standoff. You’ll get a practical, parent-tested playbook to reduce risk, build trust, and keep communication open.</p><p>Here’s what we cover:</p><ul><li><p>How to set <strong>clear rules and smart tech boundaries</strong> that grow with your child.</p></li><li><p>Why <strong>knowing your kids’ passwords</strong> could be the lifeline that saves them in an emergency — and how to balance that with privacy using the “family envelope” method.</p></li><li><p>Why <strong>family contracts</strong> aren’t lame — they’re structure, clarity, and accountability rolled into one.</p></li><li><p>The surprisingly effective <strong>“no devices in bedrooms” rule</strong> and why it might be your new favorite bedtime policy.</p></li><li><p>How to help kids <strong>spot predators, fake profiles, and bad actors</strong> before they get in too deep.</p></li><li><p>Creating an environment where your kids actually <strong>talk to you</strong> about what they see and experience online.</p></li></ul><p>We’ll also dig into the awkward but critical topics: body boundaries, consent, and how to talk about them without turning your kid’s face beet red.</p><p>As always, this episode is packed with real advice, relatable stories, and security smarts with a side of dry humor.</p><p>💡 <strong>Download the free eBook:</strong> <a class='decorated-link' target='_new' href='https://www.inputoutput.com/protecting-children-online'>Protecting Children Online<span class='ms-0.5 inline-block align-middle leading-none'> </span></a> — your full guide to raising safer, savvier digital citizens.</p><p>This is our <strong>last episode of the year</strong>, and we’re taking a short break to retool, refresh, and relaunch <em>Cash in the Cyber Sheets</em> in 2026 with a sharper, more interactive format. Stay tuned for what’s next — and in the meantime, stay safe, stay curious, and keep your kids’ devices out of the bedroom.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of <em>Cash in the Cyber Sheets</em>, we’re trading ransomware for real parenting — because the biggest threat some families face isn’t just phishing emails, it’s predators hiding behind screens.</p><p>This week, we’re talking about <strong>keeping your kids safe online</strong> without turning your home into a surveillance state or making every digital moment a standoff. You’ll get a practical, parent-tested playbook to reduce risk, build trust, and keep communication open.</p><p>Here’s what we cover:</p><ul><li><p>How to set <strong>clear rules and smart tech boundaries</strong> that grow with your child.</p></li><li><p>Why <strong>knowing your kids’ passwords</strong> could be the lifeline that saves them in an emergency — and how to balance that with privacy using the “family envelope” method.</p></li><li><p>Why <strong>family contracts</strong> aren’t lame — they’re structure, clarity, and accountability rolled into one.</p></li><li><p>The surprisingly effective <strong>“no devices in bedrooms” rule</strong> and why it might be your new favorite bedtime policy.</p></li><li><p>How to help kids <strong>spot predators, fake profiles, and bad actors</strong> before they get in too deep.</p></li><li><p>Creating an environment where your kids actually <strong>talk to you</strong> about what they see and experience online.</p></li></ul><p>We’ll also dig into the awkward but critical topics: body boundaries, consent, and how to talk about them without turning your kid’s face beet red.</p><p>As always, this episode is packed with real advice, relatable stories, and security smarts with a side of dry humor.</p><p>💡 <strong>Download the free eBook:</strong> <a class='decorated-link' target='_new' href='https://www.inputoutput.com/protecting-children-online'>Protecting Children Online<span class='ms-0.5 inline-block align-middle leading-none'> </span></a> — your full guide to raising safer, savvier digital citizens.</p><p>This is our <strong>last episode of the year</strong>, and we’re taking a short break to retool, refresh, and relaunch <em>Cash in the Cyber Sheets</em> in 2026 with a sharper, more interactive format. Stay tuned for what’s next — and in the meantime, stay safe, stay curious, and keep your kids’ devices out of the bedroom.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203745-77-the-digital-defense-playbook-for-parents-how-to-keep-kids-safe-online.mp3" length="12342769" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/awaqdza7yznf8n6jugu40kknwy6l?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149113181</guid>
    <pubDate>Thu, 13 Nov 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1022</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#76: Read The Fine Print: 3 Traps That Kill Cyber Insurance Claims</itunes:title>
    <title>#76: Read The Fine Print: 3 Traps That Kill Cyber Insurance Claims</title>
    <itunes:summary><![CDATA[        In this episode of Cash In The Cyber Sheets, we unpack three clauses that quietly decide whether your cyber insurance pays when it counts. No scare tactics, just the fine print you actually need to verify before a breach becomes a bill. First, waivers of subrogation. Your vendors love them. Your contracts team signs them. Your insurer may not. We explain what a waiver of subrogation does, why it can block your carrier’s right to recover from at-fault third parties, and how that can bo...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash In The Cyber Sheets, we unpack three clauses that quietly decide whether your cyber insurance pays when it counts. No scare tactics, just the fine print you actually need to verify before a breach becomes a bill.</p><p>First, waivers of subrogation. Your vendors love them. Your contracts team signs them. Your insurer may not. We explain what a waiver of subrogation does, why it can block your carrier’s right to recover from at-fault third parties, and how that can boomerang into reduced coverage or conflict with your policy conditions. We also walk through the practical fix: coordinating language between your vendor agreements and your policy so a well-intended waiver does not accidentally undermine the very coverage you bought. Think alignment, not after-the-fact apologies.</p><p>Second, acts of terrorism and acts of war. Two phrases that look similar on paper but can be treated very differently in your policy. We break down how carriers distinguish terrorism from war, why some policies reference government determinations, and how that impacts cyber events that have geopolitical fingerprints. The point is not to debate headlines. The point is to understand what your form says, so you know when you are covered, when you are excluded, and when you should push for clarifying endorsements before renewal.</p><p>Third, definitions. This is where companies get surprised, and where one organization recently saw a claim denied. Definitions drive everything from what counts as an “occurrence” to what qualifies as a “security failure.” If your loss lives outside those defined terms, coverage can evaporate. We outline a simple reading plan: print the definitions section, highlight any term that appears in insuring agreements or exclusions, and compare those meanings to how your team uses the same words in incident response plans and contracts. If the policy says “computer system” but carves out certain hosted environments, you need to know that now, not mid-investigation.</p><p>If you have a renewal coming up or a vendor insisting on broad waivers, this episode is your quiet nudge to pause, read, and confirm. Your future self, accountant, and caffeine budget will thank you.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash In The Cyber Sheets, we unpack three clauses that quietly decide whether your cyber insurance pays when it counts. No scare tactics, just the fine print you actually need to verify before a breach becomes a bill.</p><p>First, waivers of subrogation. Your vendors love them. Your contracts team signs them. Your insurer may not. We explain what a waiver of subrogation does, why it can block your carrier’s right to recover from at-fault third parties, and how that can boomerang into reduced coverage or conflict with your policy conditions. We also walk through the practical fix: coordinating language between your vendor agreements and your policy so a well-intended waiver does not accidentally undermine the very coverage you bought. Think alignment, not after-the-fact apologies.</p><p>Second, acts of terrorism and acts of war. Two phrases that look similar on paper but can be treated very differently in your policy. We break down how carriers distinguish terrorism from war, why some policies reference government determinations, and how that impacts cyber events that have geopolitical fingerprints. The point is not to debate headlines. The point is to understand what your form says, so you know when you are covered, when you are excluded, and when you should push for clarifying endorsements before renewal.</p><p>Third, definitions. This is where companies get surprised, and where one organization recently saw a claim denied. Definitions drive everything from what counts as an “occurrence” to what qualifies as a “security failure.” If your loss lives outside those defined terms, coverage can evaporate. We outline a simple reading plan: print the definitions section, highlight any term that appears in insuring agreements or exclusions, and compare those meanings to how your team uses the same words in incident response plans and contracts. If the policy says “computer system” but carves out certain hosted environments, you need to know that now, not mid-investigation.</p><p>If you have a renewal coming up or a vendor insisting on broad waivers, this episode is your quiet nudge to pause, read, and confirm. Your future self, accountant, and caffeine budget will thank you.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203746-76-read-the-fine-print-3-traps-that-kill-cyber-insurance-claims.mp3" length="13371563" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/thu8pr2jhfpk52ooqyrx0dleehut?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149109391</guid>
    <pubDate>Thu, 06 Nov 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1108</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#75: The Two Email DNS Gotchas Costing You Deliverability</itunes:title>
    <title>#75: The Two Email DNS Gotchas Costing You Deliverability</title>
    <itunes:summary><![CDATA[        This shorter episode gets right to the point. We cover two high-impact issues we keep finding when helping clients clean up email deliverability. First, DKIM selectors. Too many teams set up one selector for one sending platform and forget the rest. Then messages from a marketing tool, ticketing system, billing platform, or CRM either fail to authenticate or limp by with soft fails that chip away at the domain’s reputation. Second, explicit subdomain records. For years many providers ...]]></itunes:summary>
    <description><![CDATA[        <p>This shorter episode gets right to the point. We cover two high-impact issues we keep finding when helping clients clean up email deliverability. First, DKIM selectors. Too many teams set up one selector for one sending platform and forget the rest. Then messages from a marketing tool, ticketing system, billing platform, or CRM either fail to authenticate or limp by with soft fails that chip away at the domain’s reputation. Second, explicit subdomain records. For years many providers accepted a single set of records at the apex and quietly inherited them across subdomains. That is no longer a safe assumption. More vendors now expect explicit SPF, DKIM, and DMARC at the exact subdomain that sends, which means domains like mail.example.com, marketing.example.com, or help.example.com each need their own entries.</p><p>We explain how to verify all required DKIM selectors, how to name and rotate them safely, and how to map each sender to the right selector. You will hear practical tips for 2048-bit keys, long TXT handling, and what to do when you have multiple senders behind the same envelope. We also outline why DMARC alignment depends on the right selector and how a missing record can make your alignment look wrong even when the signature is technically present.</p><p>On subdomains, we walk through the common inheritance myths, when to set an explicit SPF with proper includes, when to publish subdomain DKIM keys and how to avoid copy and paste mistakes, and how to deploy a subdomain specific DMARC policy that respects your global policy while giving you the data you need. We share telltale signs that a subdomain needs its own records, such as vendor error messages, mixed alignment in DMARC reports, or inconsistent pass rates between platforms.</p><p>Before you send the next campaign, run a quick audit using our free tool: <strong><a target='_new' class='decorated-link' href='https://www.inputoutput.com/email-deliverability-tool'>https://www.inputoutput.com/email-deliverability-tool<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></strong>. It checks the basics and gives you a clear path to fixes you can implement in minutes.</p><p>If you are a business owner, MSP, or the unofficial email firefighter on your team, this episode helps you prevent false spam flags, reduce bounces, and protect brand reputation. Fewer surprises in the DNS layer means more messages in the inbox, fewer headaches, and a friendlier relationship with your marketing calendar. Short, sharp, and very fixable.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>This shorter episode gets right to the point. We cover two high-impact issues we keep finding when helping clients clean up email deliverability. First, DKIM selectors. Too many teams set up one selector for one sending platform and forget the rest. Then messages from a marketing tool, ticketing system, billing platform, or CRM either fail to authenticate or limp by with soft fails that chip away at the domain’s reputation. Second, explicit subdomain records. For years many providers accepted a single set of records at the apex and quietly inherited them across subdomains. That is no longer a safe assumption. More vendors now expect explicit SPF, DKIM, and DMARC at the exact subdomain that sends, which means domains like mail.example.com, marketing.example.com, or help.example.com each need their own entries.</p><p>We explain how to verify all required DKIM selectors, how to name and rotate them safely, and how to map each sender to the right selector. You will hear practical tips for 2048-bit keys, long TXT handling, and what to do when you have multiple senders behind the same envelope. We also outline why DMARC alignment depends on the right selector and how a missing record can make your alignment look wrong even when the signature is technically present.</p><p>On subdomains, we walk through the common inheritance myths, when to set an explicit SPF with proper includes, when to publish subdomain DKIM keys and how to avoid copy and paste mistakes, and how to deploy a subdomain specific DMARC policy that respects your global policy while giving you the data you need. We share telltale signs that a subdomain needs its own records, such as vendor error messages, mixed alignment in DMARC reports, or inconsistent pass rates between platforms.</p><p>Before you send the next campaign, run a quick audit using our free tool: <strong><a target='_new' class='decorated-link' href='https://www.inputoutput.com/email-deliverability-tool'>https://www.inputoutput.com/email-deliverability-tool<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></strong>. It checks the basics and gives you a clear path to fixes you can implement in minutes.</p><p>If you are a business owner, MSP, or the unofficial email firefighter on your team, this episode helps you prevent false spam flags, reduce bounces, and protect brand reputation. Fewer surprises in the DNS layer means more messages in the inbox, fewer headaches, and a friendlier relationship with your marketing calendar. Short, sharp, and very fixable.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203790-75-the-two-email-dns-gotchas-costing-you-deliverability.mp3" length="8944424" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/2ultjbs3840jiv92sp756ihjmkle?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149106259</guid>
    <pubDate>Thu, 30 Oct 2025 10:00:00 -0400</pubDate>
    <itunes:duration>739</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#74: No Breach, Big Trouble: FCA Risks in Healthcare</itunes:title>
    <title>#74: No Breach, Big Trouble: FCA Risks in Healthcare</title>
    <itunes:summary><![CDATA[        Cybersecurity headlines love a good hack story. This week, we talk about something far sneakier that can cost you plenty even when nothing gets “hacked.” On Cash in the Cyber Sheets, we unpack how the False Claims Act can bite health care organizations and vendors when their compliance story does not match reality. Translation: you can be on the hook for big dollars without a single compromised record if your security attestations, certifications, or program claims are inaccurate. Tha...]]></itunes:summary>
    <description><![CDATA[        <p>Cybersecurity headlines love a good hack story. This week, we talk about something far sneakier that can cost you plenty even when nothing gets “hacked.” On Cash in the Cyber Sheets, we unpack how the False Claims Act can bite health care organizations and vendors when their compliance story does not match reality. Translation: you can be on the hook for big dollars without a single compromised record if your security attestations, certifications, or program claims are inaccurate. That is not a typo. No breach. Still massive exposure.</p><p>We walk through real enforcement patterns where the government alleged false attestations tied to federal health program dollars. Think Meaningful Use incentive attestations about doing a proper security risk analysis, or software certification claims about logging and controls, or contract compliance certifications around cybersecurity safeguards. In each theme, the common thread is simple. Money flows only when specific conditions are met. If you certify that boxes are checked when they are not, the False Claims Act turns into a very expensive compliance teacher.</p><p>For medical practices, this is especially relevant. Many assume HIPAA risk equals “what happens if we have a breach.” Important, yes, but incomplete. The bigger blind spot is whether your documentation and certifications accurately reflect the controls you say you run. Do you actually conduct and review your risk analysis at the depth required, or is it a quick once over with a template? Are your technical controls implemented as described in policies and vendor attestations, or are there gaps that would make those statements misleading? Are you relying on your EHR and other vendors to carry the compliance water without verifying their claims and your obligations as a program participant or contractor?</p><p>We break this into practical takeaways you can act on. How to scope and document your risk analysis so it is more than a checkbox. What to ask vendors about certifications and test conditions before you trust their marketing. How to align policy words with operational reality so your attestations are truthful, specific, and defensible. We also cover how to prepare for auditors and investigators who will request evidence, not adjectives. No scare tactics, just straight talk, clear steps, and our usual professionally playful commentary to keep the compliance caffeine flowing.</p><p>Bottom line for this episode. False Claims Act exposure can arise even when no breach occurs. Your best defense is disciplined documentation, controls that actually run, and attestations grounded in verifiable evidence. Bring your compliance team, your practice manager, and yes, your EHR rep. Everyone has homework after this one.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Cybersecurity headlines love a good hack story. This week, we talk about something far sneakier that can cost you plenty even when nothing gets “hacked.” On Cash in the Cyber Sheets, we unpack how the False Claims Act can bite health care organizations and vendors when their compliance story does not match reality. Translation: you can be on the hook for big dollars without a single compromised record if your security attestations, certifications, or program claims are inaccurate. That is not a typo. No breach. Still massive exposure.</p><p>We walk through real enforcement patterns where the government alleged false attestations tied to federal health program dollars. Think Meaningful Use incentive attestations about doing a proper security risk analysis, or software certification claims about logging and controls, or contract compliance certifications around cybersecurity safeguards. In each theme, the common thread is simple. Money flows only when specific conditions are met. If you certify that boxes are checked when they are not, the False Claims Act turns into a very expensive compliance teacher.</p><p>For medical practices, this is especially relevant. Many assume HIPAA risk equals “what happens if we have a breach.” Important, yes, but incomplete. The bigger blind spot is whether your documentation and certifications accurately reflect the controls you say you run. Do you actually conduct and review your risk analysis at the depth required, or is it a quick once over with a template? Are your technical controls implemented as described in policies and vendor attestations, or are there gaps that would make those statements misleading? Are you relying on your EHR and other vendors to carry the compliance water without verifying their claims and your obligations as a program participant or contractor?</p><p>We break this into practical takeaways you can act on. How to scope and document your risk analysis so it is more than a checkbox. What to ask vendors about certifications and test conditions before you trust their marketing. How to align policy words with operational reality so your attestations are truthful, specific, and defensible. We also cover how to prepare for auditors and investigators who will request evidence, not adjectives. No scare tactics, just straight talk, clear steps, and our usual professionally playful commentary to keep the compliance caffeine flowing.</p><p>Bottom line for this episode. False Claims Act exposure can arise even when no breach occurs. Your best defense is disciplined documentation, controls that actually run, and attestations grounded in verifiable evidence. Bring your compliance team, your practice manager, and yes, your EHR rep. Everyone has homework after this one.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203791-74-no-breach-big-trouble-fca-risks-in-healthcare.mp3" length="11907309" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/789pz93szxty6oe92j66m3ot2xej?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149103353</guid>
    <pubDate>Thu, 23 Oct 2025 10:00:00 -0400</pubDate>
    <itunes:duration>986</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#73: Cyber Insurance Review For Real Life</itunes:title>
    <title>#73: Cyber Insurance Review For Real Life</title>
    <itunes:summary><![CDATA[        Think your cyber insurance has you covered? This episode pokes at the fine print that turns big promises into small payouts. We spotlight the exclusions that quietly gut claims, the sublimits that disappear faster than you can say “forensic invoice,” and the vendor clauses that spread your limits across more parties than you bargained for. What we tease out: The exclusions that look routine but erase coverage when it counts. How “shared” limits get sliced among you, vendors, and assoc...]]></itunes:summary>
    <description><![CDATA[        <p>Think your cyber insurance has you covered? This episode pokes at the fine print that turns big promises into small payouts. We spotlight the exclusions that quietly gut claims, the sublimits that disappear faster than you can say “forensic invoice,” and the vendor clauses that spread your limits across more parties than you bargained for.</p><p>What we tease out:</p><ul><li><p>The exclusions that look routine but erase coverage when it counts.</p></li><li><p>How “shared” limits get sliced among you, vendors, and associates.</p></li><li><p>A quick, practical way to ballpark how much coverage you may actually need.</p></li><li><p>What subrogation can do to your vendor relationships after a payout.</p></li></ul><p>You will hear plain-English takeaways you can act on during your next renewal. Expect clear examples, simple checks you can run in under an hour, and a few dry laughs at the expense of legalese. The goal is simple. Stop paying for coverage that vanishes at claim time. Start asking the questions that turn your policy into a real financial backstop.</p><p>Listen if you sign renewals, answer to a CFO, support clients as an MSP, or just prefer not to discover gaps during an incident. Bring your policy schedule and a highlighter. Leave with a sharper view of what you actually have and what to fix before someone says, “We thought that was covered.”</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Think your cyber insurance has you covered? This episode pokes at the fine print that turns big promises into small payouts. We spotlight the exclusions that quietly gut claims, the sublimits that disappear faster than you can say “forensic invoice,” and the vendor clauses that spread your limits across more parties than you bargained for.</p><p>What we tease out:</p><ul><li><p>The exclusions that look routine but erase coverage when it counts.</p></li><li><p>How “shared” limits get sliced among you, vendors, and associates.</p></li><li><p>A quick, practical way to ballpark how much coverage you may actually need.</p></li><li><p>What subrogation can do to your vendor relationships after a payout.</p></li></ul><p>You will hear plain-English takeaways you can act on during your next renewal. Expect clear examples, simple checks you can run in under an hour, and a few dry laughs at the expense of legalese. The goal is simple. Stop paying for coverage that vanishes at claim time. Start asking the questions that turn your policy into a real financial backstop.</p><p>Listen if you sign renewals, answer to a CFO, support clients as an MSP, or just prefer not to discover gaps during an incident. Bring your policy schedule and a highlighter. Leave with a sharper view of what you actually have and what to fix before someone says, “We thought that was covered.”</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203792-73-cyber-insurance-review-for-real-life.mp3" length="16836908" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/jlja5yfoc3qoowio8g16v13pymnl?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149099280</guid>
    <pubDate>Thu, 16 Oct 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1397</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#72: False Claims Act Meets Cybersecurity Compliance</itunes:title>
    <title>#72: False Claims Act Meets Cybersecurity Compliance</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we’re talking about something that should make every contractor, healthcare provider, and federally funded business sit up straight: the False Claims Act (FCA) is officially part of cybersecurity enforcement. Long used to combat fraud, the FCA is now being leveraged by the Department of Justice to go after companies that claim to meet cybersecurity requirements, but don’t. Whether it’s defense contractors missing DFARS controls or healthcar...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of <em>Cash in the Cyber Sheets</em>, we’re talking about something that should make every contractor, healthcare provider, and federally funded business sit up straight: the <strong>False Claims Act (FCA)</strong> is officially part of cybersecurity enforcement.</p><p>Long used to combat fraud, the FCA is now being leveraged by the <strong>Department of Justice</strong> to go after companies that claim to meet cybersecurity requirements, but don’t. Whether it’s defense contractors missing DFARS controls or healthcare organizations failing security audits, the stakes have never been higher.</p><p>We discuss two recent cases that illustrate how serious this trend is becoming:</p><ul><li><p>The <strong>Humana case</strong>, where whistleblower won <strong>$26 million</strong> and sparked questions about how far the FCA can stretch into compliance territory.</p></li><li><p>The <strong>$4.6 million DOJ fine</strong> against a defense contractor for cybersecurity noncompliance, a “warning shot” to the entire industry.</p></li></ul><p>This episode isn’t about legal jargon; it’s about <strong>what this means for your business</strong>. If you accept federal contracts, reimbursements, or grants, you’re now playing in the FCA arena. Failing to meet security obligations can be viewed as <strong>deception</strong>, not just negligence.</p><p>We explore how this shift affects:</p><ul><li>Whistleblower incentives and reporting risks.</li><li>The DOJ’s expanding Cyber-Fraud Initiative.</li><li>Compliance frameworks like NIST 800-171 and FTC Safeguards.</li><li>The real-world financial consequences of “checkbox compliance.”</li></ul><p>Cybersecurity isn’t just about data anymore—it’s about dollars, defense, and doing what you said you’d do.</p><p>👉 Stay ahead of enforcement trends with our monthly newsletter, <strong>iO™ SecCom Monthly</strong>, where we break down real-world cybersecurity and compliance news in plain English:<br/> <a target='_new' class='decorated-link' href='https://www.inputoutput.com/newsletters/io-seccom-monthly'>https://www.inputoutput.com/newsletters/io-seccom-monthly<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of <em>Cash in the Cyber Sheets</em>, we’re talking about something that should make every contractor, healthcare provider, and federally funded business sit up straight: the <strong>False Claims Act (FCA)</strong> is officially part of cybersecurity enforcement.</p><p>Long used to combat fraud, the FCA is now being leveraged by the <strong>Department of Justice</strong> to go after companies that claim to meet cybersecurity requirements, but don’t. Whether it’s defense contractors missing DFARS controls or healthcare organizations failing security audits, the stakes have never been higher.</p><p>We discuss two recent cases that illustrate how serious this trend is becoming:</p><ul><li><p>The <strong>Humana case</strong>, where whistleblower won <strong>$26 million</strong> and sparked questions about how far the FCA can stretch into compliance territory.</p></li><li><p>The <strong>$4.6 million DOJ fine</strong> against a defense contractor for cybersecurity noncompliance, a “warning shot” to the entire industry.</p></li></ul><p>This episode isn’t about legal jargon; it’s about <strong>what this means for your business</strong>. If you accept federal contracts, reimbursements, or grants, you’re now playing in the FCA arena. Failing to meet security obligations can be viewed as <strong>deception</strong>, not just negligence.</p><p>We explore how this shift affects:</p><ul><li>Whistleblower incentives and reporting risks.</li><li>The DOJ’s expanding Cyber-Fraud Initiative.</li><li>Compliance frameworks like NIST 800-171 and FTC Safeguards.</li><li>The real-world financial consequences of “checkbox compliance.”</li></ul><p>Cybersecurity isn’t just about data anymore—it’s about dollars, defense, and doing what you said you’d do.</p><p>👉 Stay ahead of enforcement trends with our monthly newsletter, <strong>iO™ SecCom Monthly</strong>, where we break down real-world cybersecurity and compliance news in plain English:<br/> <a target='_new' class='decorated-link' href='https://www.inputoutput.com/newsletters/io-seccom-monthly'>https://www.inputoutput.com/newsletters/io-seccom-monthly<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203793-72-false-claims-act-meets-cybersecurity-compliance.mp3" length="10741032" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/cwh7v4htgvvfsqa6dn3huqivakup?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149096031</guid>
    <pubDate>Thu, 09 Oct 2025 10:00:00 -0400</pubDate>
    <itunes:duration>889</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#71: Incident Response Plan Essentials</itunes:title>
    <title>#71: Incident Response Plan Essentials</title>
    <itunes:summary><![CDATA[        Welcome back to Cash in the Cyber Sheets, where we talk about the messy, practical, and sometimes painfully honest side of cybersecurity. In this episode, we’re tackling a challenge that every organization faces sooner or later: creating and managing an Incident Response Plan (IRP). On paper, an IRP is simple. It’s your guidebook for what to do when, not if, a cyber incident occurs. But in reality, too many organizations stall out before they even get one in place. Why? Because they t...]]></itunes:summary>
    <description><![CDATA[        <p>Welcome back to <strong>Cash in the Cyber Sheets</strong>, where we talk about the messy, practical, and sometimes painfully honest side of cybersecurity. In this episode, we’re tackling a challenge that every organization faces sooner or later: creating and managing an <strong>Incident Response Plan (IRP).</strong></p><p>On paper, an IRP is simple. It’s your guidebook for what to do when, not if, a cyber incident occurs. But in reality, too many organizations stall out before they even get one in place. Why? Because they try to make it perfect from day one. They load it with every possible scenario, every escalation path, and every technical control, until the whole thing collapses under its own complexity. The tragic irony is that while chasing perfection, they end up with nothing. And when ransomware hits, “nothing” is not the strategy you want to be stuck with.</p><p>This episode challenges that mindset. Instead of shooting for the flawless IRP, we explore how focusing on <strong>just a few quick hits</strong> can set the foundation you actually need. Think of it as building your IRP in layers. Start with the essentials: Who’s on the response team? How do you contact them? What’s the first step when malware shows up or a phishing attack lands? If you can answer those questions, you already have a plan that’s better than the blank page staring back at you.</p><p>From there, the plan grows organically. You test it. You add detail. You refine as you learn. But even the “bare bones” version can guide you through those first chaotic hours of an incident. It might not be perfect, but it’s practical, and practicality is what saves businesses in the real world.</p><p>We also discuss why <strong>momentum matters more than perfection</strong>. By starting small, you create confidence. You give your team something they can use, and you avoid the paralysis that kills so many initiatives. Over time, the plan becomes more robust, but from day one, you’re already better prepared.</p><p>If you’ve been stuck in IRP limbo, this episode is your roadmap out. You’ll hear why less can truly be more, and how to avoid letting “perfect” be the enemy of “good enough to get started.” We’ll leave you with actionable advice and a nudge to finally put pen to paper, because even a short, imperfect plan can help steer your business through the storm.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Welcome back to <strong>Cash in the Cyber Sheets</strong>, where we talk about the messy, practical, and sometimes painfully honest side of cybersecurity. In this episode, we’re tackling a challenge that every organization faces sooner or later: creating and managing an <strong>Incident Response Plan (IRP).</strong></p><p>On paper, an IRP is simple. It’s your guidebook for what to do when, not if, a cyber incident occurs. But in reality, too many organizations stall out before they even get one in place. Why? Because they try to make it perfect from day one. They load it with every possible scenario, every escalation path, and every technical control, until the whole thing collapses under its own complexity. The tragic irony is that while chasing perfection, they end up with nothing. And when ransomware hits, “nothing” is not the strategy you want to be stuck with.</p><p>This episode challenges that mindset. Instead of shooting for the flawless IRP, we explore how focusing on <strong>just a few quick hits</strong> can set the foundation you actually need. Think of it as building your IRP in layers. Start with the essentials: Who’s on the response team? How do you contact them? What’s the first step when malware shows up or a phishing attack lands? If you can answer those questions, you already have a plan that’s better than the blank page staring back at you.</p><p>From there, the plan grows organically. You test it. You add detail. You refine as you learn. But even the “bare bones” version can guide you through those first chaotic hours of an incident. It might not be perfect, but it’s practical, and practicality is what saves businesses in the real world.</p><p>We also discuss why <strong>momentum matters more than perfection</strong>. By starting small, you create confidence. You give your team something they can use, and you avoid the paralysis that kills so many initiatives. Over time, the plan becomes more robust, but from day one, you’re already better prepared.</p><p>If you’ve been stuck in IRP limbo, this episode is your roadmap out. You’ll hear why less can truly be more, and how to avoid letting “perfect” be the enemy of “good enough to get started.” We’ll leave you with actionable advice and a nudge to finally put pen to paper, because even a short, imperfect plan can help steer your business through the storm.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203794-71-incident-response-plan-essentials.mp3" length="13260859" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/0hva8d7pl7dvr381etffithcegah?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149093435</guid>
    <pubDate>Thu, 02 Oct 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1099</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#70: Top 5 Reasons SPF, DKIM, and DMARC Fail</itunes:title>
    <title>#70: Top 5 Reasons SPF, DKIM, and DMARC Fail</title>
    <itunes:summary><![CDATA[        Cash in the Cyber Sheets is where small and midsize business owners finally get the straight talk on cybersecurity without the jargon, the scare tactics, or the thousand-page compliance manuals. Each week, we pull back the curtain on the hidden forces that make or break your business online, from email deliverability to data protection, and give you simple, actionable steps you can use right now. Email is still the front door of every business and attackers know it. Spoofing, phishing...]]></itunes:summary>
    <description><![CDATA[        <p><strong>Cash in the Cyber Sheets</strong> is where small and midsize business owners finally get the straight talk on cybersecurity without the jargon, the scare tactics, or the thousand-page compliance manuals. Each week, we pull back the curtain on the hidden forces that make or break your business online, from email deliverability to data protection, and give you simple, actionable steps you can use right now.</p><p>Email is still the front door of every business and attackers know it. Spoofing, phishing, and spam aren’t just annoyances, they’re direct threats to your sales pipeline, your customer relationships, and your reputation. That’s why we spend time breaking down the three most important email authentication protocols you need to understand: <strong>SPF (Sender Policy Framework), DKIM (DomainKeys Identified Mail), and DMARC (Domain-based Message Authentication, Reporting &amp; Conformance).</strong></p><p>But here’s the thing: setting them up once isn’t enough. Every week, we see small businesses losing revenue because of common mistakes, missing DNS records, too many SPF lookups, expired DKIM keys, or misaligned domains that silently break authentication. In our episodes, we don’t just explain <em>what SPF, DKIM, and DMARC are,</em> we explain why they fail, how to spot the problems early, and what you can do to fix them before they wreck your deliverability.</p><p>We keep it practical, with clear analogies and business-owner-friendly examples: SPF is your guest list, DKIM is your digital wax seal, and DMARC is your rulebook that ties them together. Whether you’re sending invoices, running email campaigns, or just trying to keep phishing out of your client inboxes, these protocols matter and we make them simple.</p><p>👉 Want to check if your setup is solid? Use our free tools:</p><ul><li><p>SPF Record Check: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/spf-checker'>https://www.inputoutput.com/spf-checker</a></p></li><li><p>DKIM Record Check: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/dkim-checker'>https://www.inputoutput.com/dkim-checker<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><p>DMARC Check: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/email-audit'>https://www.inputoutput.com/email-audit<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li></ul><p>👉 Ready to go further? Get started with <strong>iO™ DMARC</strong> today:<br/><span><a href='https://www.inputoutput.com/offers/opCLAKo8/checkout'>https://www.inputoutput.com/offers/opCLAKo8/checkout</a> </span></p><p>If you’re tired of losing deals to spam folders, if you’re done with spoofers damaging your brand, and if you want cybersecurity advice that speaks your language, subscribe now. It’s time to protect your inbox, boost your deliverability, and cash in the cyber sheets.</p>      ]]></description>
    <content:encoded><![CDATA[        <p><strong>Cash in the Cyber Sheets</strong> is where small and midsize business owners finally get the straight talk on cybersecurity without the jargon, the scare tactics, or the thousand-page compliance manuals. Each week, we pull back the curtain on the hidden forces that make or break your business online, from email deliverability to data protection, and give you simple, actionable steps you can use right now.</p><p>Email is still the front door of every business and attackers know it. Spoofing, phishing, and spam aren’t just annoyances, they’re direct threats to your sales pipeline, your customer relationships, and your reputation. That’s why we spend time breaking down the three most important email authentication protocols you need to understand: <strong>SPF (Sender Policy Framework), DKIM (DomainKeys Identified Mail), and DMARC (Domain-based Message Authentication, Reporting &amp; Conformance).</strong></p><p>But here’s the thing: setting them up once isn’t enough. Every week, we see small businesses losing revenue because of common mistakes, missing DNS records, too many SPF lookups, expired DKIM keys, or misaligned domains that silently break authentication. In our episodes, we don’t just explain <em>what SPF, DKIM, and DMARC are,</em> we explain why they fail, how to spot the problems early, and what you can do to fix them before they wreck your deliverability.</p><p>We keep it practical, with clear analogies and business-owner-friendly examples: SPF is your guest list, DKIM is your digital wax seal, and DMARC is your rulebook that ties them together. Whether you’re sending invoices, running email campaigns, or just trying to keep phishing out of your client inboxes, these protocols matter and we make them simple.</p><p>👉 Want to check if your setup is solid? Use our free tools:</p><ul><li><p>SPF Record Check: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/spf-checker'>https://www.inputoutput.com/spf-checker</a></p></li><li><p>DKIM Record Check: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/dkim-checker'>https://www.inputoutput.com/dkim-checker<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><p>DMARC Check: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/email-audit'>https://www.inputoutput.com/email-audit<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li></ul><p>👉 Ready to go further? Get started with <strong>iO™ DMARC</strong> today:<br/><span><a href='https://www.inputoutput.com/offers/opCLAKo8/checkout'>https://www.inputoutput.com/offers/opCLAKo8/checkout</a> </span></p><p>If you’re tired of losing deals to spam folders, if you’re done with spoofers damaging your brand, and if you want cybersecurity advice that speaks your language, subscribe now. It’s time to protect your inbox, boost your deliverability, and cash in the cyber sheets.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203795-70-top-5-reasons-spf-dkim-and-dmarc-fail.mp3" length="12256016" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/2mnxqy7n4dy5makqtl5aazutaq62?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149091006</guid>
    <pubDate>Thu, 25 Sep 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1015</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#69: SPF, DKIM &amp; DMARC Explained for Small Business</itunes:title>
    <title>#69: SPF, DKIM &amp; DMARC Explained for Small Business</title>
    <itunes:summary><![CDATA[        Have you ever sent an important business email and wondered if it actually made it to your client’s inbox? Or worse, discovered later that your emails were quietly landing in spam? You’re not alone. Every day, small and mid-sized businesses lose money, opportunities, and credibility because of one simple issue: email authentication. In this episode of Cash in the Cyber Sheets, we’re breaking down the three most important protocols you need to know: SPF (Sender Policy Framework), DKIM ...]]></itunes:summary>
    <description><![CDATA[        <p>Have you ever sent an important business email and wondered if it actually made it to your client’s inbox? Or worse, discovered later that your emails were quietly landing in spam? You’re not alone. Every day, small and mid-sized businesses lose money, opportunities, and credibility because of one simple issue: email authentication.</p><p>In this episode of <strong>Cash in the Cyber Sheets</strong>, we’re breaking down the three most important protocols you need to know: <strong>SPF (Sender Policy Framework), DKIM (DomainKeys Identified Mail), and DMARC (Domain-based Message Authentication, Reporting &amp; Conformance)</strong>. Don’t worry, we’ll cut through the jargon and explain these in plain English so you can finally understand what they do, why they matter, and how to check if your domain is set up correctly.</p><p>Here’s what we cover in this 15-minute crash course:</p><ul><li><p>What email authentication is and why it’s essential for inbox deliverability.</p></li><li><p>How SPF works like a “guest list” for your email servers.</p></li><li><p>How DKIM acts like a digital wax seal to prevent tampering.</p></li><li><p>How DMARC enforces the rules and protects your brand from spoofing.</p></li><li><p>The top three mistakes SMBs make when setting these up.</p></li><li><p>Quick wins you can use to improve deliverability immediately.</p></li></ul><p> </p><p>👉 Want to see if your email domain is properly set up? Check out our free tools and resources:</p><ul><li><p>Tool: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/spf-checker'>SPF Record Checker<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><p>Tool: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/dkim-checker'>DKIM Checker<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><p>Blog: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/blog/how-to-setup-dmarc'>How to Setup DMARC (Blog Guide)<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><span class='ms-0.5 inline-block align-middle leading-none'>Blog: <a href='https://www.inputoutput.com/blog/setting-up-multiple-spf-includes'>How to Setup Multiple SPF Includes for Your Domain</a></span></li></ul><p>For deeper help, grab a free <strong><a target='_new' class='decorated-link' href='https://www.inputoutput.com/email-audit'>Email Audit<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></strong> and discover if your emails are actually reaching inboxes.</p><p>If you’ve been struggling with deliverability (emails going to spam, bouncing, or disappearing) this episode is for you. By the end, you’ll understand how SPF, DKIM, and DMARC work together, what happens when they’re missing, and how to take the first steps toward securing your domain.</p><p>Cybersecurity doesn’t have to be complicated. Sometimes, it’s just about learning how to spell out the acronyms that keep your business safe. So sit back, grab a coffee, and let’s unlock the secrets behind the protocols running quietly in the background of every email you send.</p><p>🎧 Listen now and take control of your email deliverability.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Have you ever sent an important business email and wondered if it actually made it to your client’s inbox? Or worse, discovered later that your emails were quietly landing in spam? You’re not alone. Every day, small and mid-sized businesses lose money, opportunities, and credibility because of one simple issue: email authentication.</p><p>In this episode of <strong>Cash in the Cyber Sheets</strong>, we’re breaking down the three most important protocols you need to know: <strong>SPF (Sender Policy Framework), DKIM (DomainKeys Identified Mail), and DMARC (Domain-based Message Authentication, Reporting &amp; Conformance)</strong>. Don’t worry, we’ll cut through the jargon and explain these in plain English so you can finally understand what they do, why they matter, and how to check if your domain is set up correctly.</p><p>Here’s what we cover in this 15-minute crash course:</p><ul><li><p>What email authentication is and why it’s essential for inbox deliverability.</p></li><li><p>How SPF works like a “guest list” for your email servers.</p></li><li><p>How DKIM acts like a digital wax seal to prevent tampering.</p></li><li><p>How DMARC enforces the rules and protects your brand from spoofing.</p></li><li><p>The top three mistakes SMBs make when setting these up.</p></li><li><p>Quick wins you can use to improve deliverability immediately.</p></li></ul><p> </p><p>👉 Want to see if your email domain is properly set up? Check out our free tools and resources:</p><ul><li><p>Tool: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/spf-checker'>SPF Record Checker<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><p>Tool: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/dkim-checker'>DKIM Checker<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><p>Blog: <a target='_new' class='decorated-link' href='https://www.inputoutput.com/blog/how-to-setup-dmarc'>How to Setup DMARC (Blog Guide)<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><span class='ms-0.5 inline-block align-middle leading-none'>Blog: <a href='https://www.inputoutput.com/blog/setting-up-multiple-spf-includes'>How to Setup Multiple SPF Includes for Your Domain</a></span></li></ul><p>For deeper help, grab a free <strong><a target='_new' class='decorated-link' href='https://www.inputoutput.com/email-audit'>Email Audit<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></strong> and discover if your emails are actually reaching inboxes.</p><p>If you’ve been struggling with deliverability (emails going to spam, bouncing, or disappearing) this episode is for you. By the end, you’ll understand how SPF, DKIM, and DMARC work together, what happens when they’re missing, and how to take the first steps toward securing your domain.</p><p>Cybersecurity doesn’t have to be complicated. Sometimes, it’s just about learning how to spell out the acronyms that keep your business safe. So sit back, grab a coffee, and let’s unlock the secrets behind the protocols running quietly in the background of every email you send.</p><p>🎧 Listen now and take control of your email deliverability.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203796-69-spf-dkim-dmarc-explained-for-small-business.mp3" length="13259624" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/3619lauop5a4tkmnk04ujzarrfj5?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149087913</guid>
    <pubDate>Thu, 18 Sep 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1098</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#68: Cash in the Cyber Sheets - AI Policy Development</itunes:title>
    <title>#68: Cash in the Cyber Sheets - AI Policy Development</title>
    <itunes:summary><![CDATA[        Welcome to Cash in the Cyber Sheets, a channel dedicated to helping organizations understand and strengthen their information security programs. Hosted by James from Input Output, we provide practical insights into policies, compliance, risk management, and the real-world challenges of securing technology in business environments. Artificial intelligence is transforming how companies operate, but it also introduces new risks that must be managed responsibly. This channel highligh...]]></itunes:summary>
    <description><![CDATA[        <p>Welcome to <strong>Cash in the Cyber Sheets</strong>, a channel dedicated to helping organizations understand and strengthen their information security programs. Hosted by James from Input Output, we provide practical insights into policies, compliance, risk management, and the real-world challenges of securing technology in business environments.</p><p>Artificial intelligence is transforming how companies operate, but it also introduces new risks that must be managed responsibly. This channel highlights the importance of structured policies and controls that address both the opportunities and threats posed by AI.</p><p>Recent episodes focus on the development of an improved AI policy, shaped by input from multiple organizations, subject matter experts, an advisor to the FBI, the ISO 42001 standard, and penetration testing exercises. The result is a set of proposed controls that organizations can adapt and implement within their security frameworks. These include:</p><ul><li><p><strong>AI Usage and Risk Management</strong><br/> Establish practices to ensure AI is used securely, ethically, and in compliance with regulations.</p></li><li><p><strong>Acceptable AI Use</strong><br/> Define and communicate policies outlining what employees can and cannot do when using AI systems.</p></li><li><p><strong>Personal Account Restrictions</strong><br/> Prohibit the use of non-corporate AI accounts to protect organizational information from being disclosed or retained outside approved environments.</p></li><li><p><strong>Protection Against Exploitation</strong><br/> Implement safeguards against prompt injection and malicious manipulation that could compromise data integrity or confidentiality.</p></li><li><p><strong>Data Retention and Deletion</strong><br/> Define rules for storing and deleting data processed by AI, ensuring compliance with regulatory and contractual requirements.</p></li><li><p><strong>Legal Discovery Considerations</strong><br/> Incorporate AI into legal discovery processes to support data preservation, retrieval, and production when required.</p></li><li><p><strong>Training Restrictions</strong><br/> Prevent organizational data from being used to train or fine-tune AI models without explicit approval and safeguards.</p></li><li><p><strong>Role-Based Access Controls</strong><br/> Enforce access restrictions so employees and AI systems only process the minimum information necessary.</p></li></ul><p>The goal of this channel is to make cybersecurity policy and compliance actionable for businesses of all sizes. Whether you manage IT, own a business, or oversee compliance, you will find guidance here to strengthen your security posture and align with modern risks.</p><p>If your organization needs assistance developing or improving its policies, visit <a target='_new' class='decorated-link' href='https://www.inputoutput.com/information-security-policies'>Input Output<span class='ms-0.5 inline-block align-middle leading-none'> </span></a>to learn how we can help.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Welcome to <strong>Cash in the Cyber Sheets</strong>, a channel dedicated to helping organizations understand and strengthen their information security programs. Hosted by James from Input Output, we provide practical insights into policies, compliance, risk management, and the real-world challenges of securing technology in business environments.</p><p>Artificial intelligence is transforming how companies operate, but it also introduces new risks that must be managed responsibly. This channel highlights the importance of structured policies and controls that address both the opportunities and threats posed by AI.</p><p>Recent episodes focus on the development of an improved AI policy, shaped by input from multiple organizations, subject matter experts, an advisor to the FBI, the ISO 42001 standard, and penetration testing exercises. The result is a set of proposed controls that organizations can adapt and implement within their security frameworks. These include:</p><ul><li><p><strong>AI Usage and Risk Management</strong><br/> Establish practices to ensure AI is used securely, ethically, and in compliance with regulations.</p></li><li><p><strong>Acceptable AI Use</strong><br/> Define and communicate policies outlining what employees can and cannot do when using AI systems.</p></li><li><p><strong>Personal Account Restrictions</strong><br/> Prohibit the use of non-corporate AI accounts to protect organizational information from being disclosed or retained outside approved environments.</p></li><li><p><strong>Protection Against Exploitation</strong><br/> Implement safeguards against prompt injection and malicious manipulation that could compromise data integrity or confidentiality.</p></li><li><p><strong>Data Retention and Deletion</strong><br/> Define rules for storing and deleting data processed by AI, ensuring compliance with regulatory and contractual requirements.</p></li><li><p><strong>Legal Discovery Considerations</strong><br/> Incorporate AI into legal discovery processes to support data preservation, retrieval, and production when required.</p></li><li><p><strong>Training Restrictions</strong><br/> Prevent organizational data from being used to train or fine-tune AI models without explicit approval and safeguards.</p></li><li><p><strong>Role-Based Access Controls</strong><br/> Enforce access restrictions so employees and AI systems only process the minimum information necessary.</p></li></ul><p>The goal of this channel is to make cybersecurity policy and compliance actionable for businesses of all sizes. Whether you manage IT, own a business, or oversee compliance, you will find guidance here to strengthen your security posture and align with modern risks.</p><p>If your organization needs assistance developing or improving its policies, visit <a target='_new' class='decorated-link' href='https://www.inputoutput.com/information-security-policies'>Input Output<span class='ms-0.5 inline-block align-middle leading-none'> </span></a>to learn how we can help.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203797-68-cash-in-the-cyber-sheets-ai-policy-development.mp3" length="12361219" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/j8ethxz9eiabkufet77tm9g38o87?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149084491</guid>
    <pubDate>Thu, 11 Sep 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1024</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#67: Cash in the Cyber Sheets - SPF Blunders</itunes:title>
    <title>#67: Cash in the Cyber Sheets - SPF Blunders</title>
    <itunes:summary><![CDATA[        Welcome to Cash in the Cyber Sheets, the podcast where we cut through the noise of cybersecurity and talk about the things that actually hit your business where it hurts — your bottom line. In this episode, we dive into one of the most deceptively simple yet frequently botched pieces of email security: your SPF record. On paper, Sender Policy Framework (SPF) sounds easy enough. You publish a DNS record that tells the world which servers are allowed to send emails on behalf of your dom...]]></itunes:summary>
    <description><![CDATA[        <p>Welcome to <strong>Cash in the Cyber Sheets</strong>, the podcast where we cut through the noise of cybersecurity and talk about the things that actually hit your business where it hurts — your bottom line. In this episode, we dive into one of the most deceptively simple yet frequently botched pieces of email security: your SPF record.</p><p>On paper, Sender Policy Framework (SPF) sounds easy enough. You publish a DNS record that tells the world which servers are allowed to send emails on behalf of your domain. Done, right? Not so fast. In practice, most organizations end up with SPF records that resemble Frankenstein’s monster — stitched together with copy-paste errors, forgotten senders, and design flaws that guarantee your emails will be banished to spam folders.</p><p>Here’s what we cover in today’s episode:</p><ol><li><p><strong>The Human Factor</strong> — typos and copy-paste disasters that silently break authentication.</p></li><li><p><strong>Forgetting Key Sending Sources</strong> — from CRMs to marketing platforms, the usual suspects people leave out.</p></li><li><p><strong>Bad SPF Design Choices</strong> — multiple SPF records, exceeding the 10-lookup limit, and the cardinal sin of using “+all.”</p></li><li><p><strong>Maintenance Failures</strong> — when vendors update their infrastructure but you don’t update your record.</p></li><li><p><strong>Misunderstanding SPF Behavior</strong> — the myths around “From” headers, forwarding, and DMARC’s magical powers.</p></li></ol><p>If you’re thinking, <em>“Uh oh, that sounds like my setup,”</em> you’re not alone. Nine out of ten businesses have email authentication issues that cost them leads, clients, and credibility. The good news is that these problems are fixable once you know where to look.</p><p>We’ve put together some resources to help you clean this up before your next marketing campaign dies in the spam folder:</p><ul><li><p><a target='_new' class='decorated-link' href='https://www.inputoutput.com/blog/how-to-improve-email-deliverability?utm_source=chatgpt.com'>How to Improve Email Deliverability<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><p><a target='_new' class='decorated-link' href='https://www.inputoutput.com/blog/setting-up-multiple-spf-includes?utm_source=chatgpt.com'>Setting Up Multiple SPF Includes Without Breaking Everything<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li></ul><p>If you want to <strong>check your current email setup right now</strong>, run it through our free <a href='https://www.inputoutput.com/spf-checker'>iO™ DMARC SPF Checker</a>. It will show you exactly what’s working, what’s broken, and where you’re most vulnerable.</p><p>And if you’re ready to take control of your email security and deliverability once and for all, explore our <a href='https://www.inputoutput.com/email-deliverability-tool'>iO™ DMARC email deliverability tool</a>. It’s built to keep your messages out of the spam folder and in front of your clients, where they belong.</p><p>Because in the world of cybersecurity, protecting your inbox isn’t just about security — it’s about making sure your business actually gets paid.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Welcome to <strong>Cash in the Cyber Sheets</strong>, the podcast where we cut through the noise of cybersecurity and talk about the things that actually hit your business where it hurts — your bottom line. In this episode, we dive into one of the most deceptively simple yet frequently botched pieces of email security: your SPF record.</p><p>On paper, Sender Policy Framework (SPF) sounds easy enough. You publish a DNS record that tells the world which servers are allowed to send emails on behalf of your domain. Done, right? Not so fast. In practice, most organizations end up with SPF records that resemble Frankenstein’s monster — stitched together with copy-paste errors, forgotten senders, and design flaws that guarantee your emails will be banished to spam folders.</p><p>Here’s what we cover in today’s episode:</p><ol><li><p><strong>The Human Factor</strong> — typos and copy-paste disasters that silently break authentication.</p></li><li><p><strong>Forgetting Key Sending Sources</strong> — from CRMs to marketing platforms, the usual suspects people leave out.</p></li><li><p><strong>Bad SPF Design Choices</strong> — multiple SPF records, exceeding the 10-lookup limit, and the cardinal sin of using “+all.”</p></li><li><p><strong>Maintenance Failures</strong> — when vendors update their infrastructure but you don’t update your record.</p></li><li><p><strong>Misunderstanding SPF Behavior</strong> — the myths around “From” headers, forwarding, and DMARC’s magical powers.</p></li></ol><p>If you’re thinking, <em>“Uh oh, that sounds like my setup,”</em> you’re not alone. Nine out of ten businesses have email authentication issues that cost them leads, clients, and credibility. The good news is that these problems are fixable once you know where to look.</p><p>We’ve put together some resources to help you clean this up before your next marketing campaign dies in the spam folder:</p><ul><li><p><a target='_new' class='decorated-link' href='https://www.inputoutput.com/blog/how-to-improve-email-deliverability?utm_source=chatgpt.com'>How to Improve Email Deliverability<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li><li><p><a target='_new' class='decorated-link' href='https://www.inputoutput.com/blog/setting-up-multiple-spf-includes?utm_source=chatgpt.com'>Setting Up Multiple SPF Includes Without Breaking Everything<span class='ms-0.5 inline-block align-middle leading-none'> </span></a></p></li></ul><p>If you want to <strong>check your current email setup right now</strong>, run it through our free <a href='https://www.inputoutput.com/spf-checker'>iO™ DMARC SPF Checker</a>. It will show you exactly what’s working, what’s broken, and where you’re most vulnerable.</p><p>And if you’re ready to take control of your email security and deliverability once and for all, explore our <a href='https://www.inputoutput.com/email-deliverability-tool'>iO™ DMARC email deliverability tool</a>. It’s built to keep your messages out of the spam folder and in front of your clients, where they belong.</p><p>Because in the world of cybersecurity, protecting your inbox isn’t just about security — it’s about making sure your business actually gets paid.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203798-67-cash-in-the-cyber-sheets-spf-blunders.mp3" length="11834253" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/44z2z18umbcgiwc5ncy5evgsluns?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149081841</guid>
    <pubDate>Thu, 04 Sep 2025 10:00:00 -0400</pubDate>
    <itunes:duration>980</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#66: InfoSec Program Pillars | Plan, Do, Check, Act</itunes:title>
    <title>#66: InfoSec Program Pillars | Plan, Do, Check, Act</title>
    <itunes:summary><![CDATA[        In this shorter solo episode of Cash in the Cyber Sheets, James breaks down the four core structures often referred to as the Plan Do Check Act cycle that serve as the foundation of a successful information security program. While “pillars of security” might sound like something only a compliance consultant would get excited about (guilty as charged), the reality is these four steps are what keep your program from feeling like an endless game of whack a mole. We explore what it means ...]]></itunes:summary>
    <description><![CDATA[        <p>In this shorter solo episode of <em>Cash in the Cyber Sheets</em>, James breaks down the four core structures often referred to as the Plan Do Check Act cycle that serve as the foundation of a successful information security program. While “pillars of security” might sound like something only a compliance consultant would get excited about (guilty as charged), the reality is these four steps are what keep your program from feeling like an endless game of whack a mole.</p><p>We explore what it means to <strong>PLAN</strong> your program with intention, <strong>DO</strong> the actual work of implementation, <strong>CHECK</strong> to ensure controls are functioning as expected, and <strong>ACT</strong> on findings to continuously improve. This simple cycle is more than a framework. It is a way to create rhythm and repeatability so your security program does not collapse under the weight of its own policies.</p><p>James also shares why approaching your program through the PDCA lens makes managing security not only easier but more strategic. If you are pursuing a certification such as ISO 27001 or PCI DSS or trying to align with frameworks like NIST or the FTC Safeguards Rule, applying this cycle ensures you are in a strong position when the auditors come knocking. Even if you are not certification bound, PDCA gives you clarity. It helps you understand where you stand today, where you are falling short, and how to fix it without wasting resources.</p><p>By the end of this episode, you will walk away with a clearer picture of how to <strong>implement, manage, and review</strong> your security program in a way that feels less like chaos and more like controlled progress. Whether you are a business owner wearing the accidental CISO hat or an IT lead trying to get leadership buy in, these four pillars can help you build confidence, streamline your efforts, and stay ahead of both threats and compliance headaches.</p><p>So grab your coffee (or something stronger,... no judgment) and join James for a practical, no fluff breakdown of why PDCA should be your new best friend in cybersecurity.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this shorter solo episode of <em>Cash in the Cyber Sheets</em>, James breaks down the four core structures often referred to as the Plan Do Check Act cycle that serve as the foundation of a successful information security program. While “pillars of security” might sound like something only a compliance consultant would get excited about (guilty as charged), the reality is these four steps are what keep your program from feeling like an endless game of whack a mole.</p><p>We explore what it means to <strong>PLAN</strong> your program with intention, <strong>DO</strong> the actual work of implementation, <strong>CHECK</strong> to ensure controls are functioning as expected, and <strong>ACT</strong> on findings to continuously improve. This simple cycle is more than a framework. It is a way to create rhythm and repeatability so your security program does not collapse under the weight of its own policies.</p><p>James also shares why approaching your program through the PDCA lens makes managing security not only easier but more strategic. If you are pursuing a certification such as ISO 27001 or PCI DSS or trying to align with frameworks like NIST or the FTC Safeguards Rule, applying this cycle ensures you are in a strong position when the auditors come knocking. Even if you are not certification bound, PDCA gives you clarity. It helps you understand where you stand today, where you are falling short, and how to fix it without wasting resources.</p><p>By the end of this episode, you will walk away with a clearer picture of how to <strong>implement, manage, and review</strong> your security program in a way that feels less like chaos and more like controlled progress. Whether you are a business owner wearing the accidental CISO hat or an IT lead trying to get leadership buy in, these four pillars can help you build confidence, streamline your efforts, and stay ahead of both threats and compliance headaches.</p><p>So grab your coffee (or something stronger,... no judgment) and join James for a practical, no fluff breakdown of why PDCA should be your new best friend in cybersecurity.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203799-66-infosec-program-pillars-plan-do-check-act.mp3" length="10008448" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/9ddyzsv5qwjp4jpg3dizz4k9b95z?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149076345</guid>
    <pubDate>Thu, 21 Aug 2025 10:00:00 -0400</pubDate>
    <itunes:duration>827</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#65: The Hidden Dangers of Personal AI in the Workplace</itunes:title>
    <title>#65: The Hidden Dangers of Personal AI in the Workplace</title>
    <itunes:summary><![CDATA[        Artificial Intelligence is everywhere — from helping us write emails faster to predicting our next snack craving. But when it comes to workplace security and compliance, “everywhere” isn’t always a good thing. In Episode 65 of Cash in the Cyber Sheets, we pull back the curtain on a growing problem we’ve been seeing during audits and with multiple clients: employees using their own personal AI accounts for business purposes. On the surface, it might seem harmless — after all, they’re j...]]></itunes:summary>
    <description><![CDATA[        <p>Artificial Intelligence is everywhere — from helping us write emails faster to predicting our next snack craving. But when it comes to workplace security and compliance, “everywhere” isn’t always a good thing. In Episode 65 of <em>Cash in the Cyber Sheets</em>, we pull back the curtain on a growing problem we’ve been seeing during audits and with multiple clients: employees using their own personal AI accounts for business purposes.</p><p>On the surface, it might seem harmless — after all, they’re just asking a chatbot to draft a report or summarize meeting notes. But when that “help” comes from an account outside company control, you’re stepping onto a compliance landmine. Personal AI usage can easily trigger:</p><ul><li><p><strong>Compliance Violations</strong> — Think FTC Safeguards Rule, HIPAA, GDPR, CCPA… pick your acronym.</p></li><li><p><strong>Data Incidents</strong> — Sensitive client data could slip into the training pool of a third-party AI without your consent.</p></li><li><p><strong>Contractual Breaches</strong> — Your agreements with clients, partners, and suppliers often forbid sharing certain information outside approved channels.</p></li><li><p><strong>Reputation Damage</strong> — One careless AI query can make your company look reckless, untrustworthy, or even incompetent.</p></li></ul><p>We’ll explore the real-world risks, how they manifest during audits, and the subtle ways this behavior undermines your organization’s compliance posture. We’ll also talk about what these incidents cost — not just in potential fines or legal action, but in the long-term erosion of trust with your stakeholders and the market at large.</p><p>You’ll walk away with practical insights on:</p><ul><li><p>Spotting the warning signs of unapproved AI use in your organization.</p></li><li><p>Implementing policies to control and monitor AI usage without stifling productivity.</p></li><li><p>Educating employees on why “just using my personal account this one time” can be a very expensive mistake.</p></li></ul><p>Whether you’re a business owner, IT leader, compliance manager, or just someone curious about how AI can go from futuristic helper to security nightmare, this episode is for you.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Artificial Intelligence is everywhere — from helping us write emails faster to predicting our next snack craving. But when it comes to workplace security and compliance, “everywhere” isn’t always a good thing. In Episode 65 of <em>Cash in the Cyber Sheets</em>, we pull back the curtain on a growing problem we’ve been seeing during audits and with multiple clients: employees using their own personal AI accounts for business purposes.</p><p>On the surface, it might seem harmless — after all, they’re just asking a chatbot to draft a report or summarize meeting notes. But when that “help” comes from an account outside company control, you’re stepping onto a compliance landmine. Personal AI usage can easily trigger:</p><ul><li><p><strong>Compliance Violations</strong> — Think FTC Safeguards Rule, HIPAA, GDPR, CCPA… pick your acronym.</p></li><li><p><strong>Data Incidents</strong> — Sensitive client data could slip into the training pool of a third-party AI without your consent.</p></li><li><p><strong>Contractual Breaches</strong> — Your agreements with clients, partners, and suppliers often forbid sharing certain information outside approved channels.</p></li><li><p><strong>Reputation Damage</strong> — One careless AI query can make your company look reckless, untrustworthy, or even incompetent.</p></li></ul><p>We’ll explore the real-world risks, how they manifest during audits, and the subtle ways this behavior undermines your organization’s compliance posture. We’ll also talk about what these incidents cost — not just in potential fines or legal action, but in the long-term erosion of trust with your stakeholders and the market at large.</p><p>You’ll walk away with practical insights on:</p><ul><li><p>Spotting the warning signs of unapproved AI use in your organization.</p></li><li><p>Implementing policies to control and monitor AI usage without stifling productivity.</p></li><li><p>Educating employees on why “just using my personal account this one time” can be a very expensive mistake.</p></li></ul><p>Whether you’re a business owner, IT leader, compliance manager, or just someone curious about how AI can go from futuristic helper to security nightmare, this episode is for you.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203800-65-the-hidden-dangers-of-personal-ai-in-the-workplace.mp3" length="12372501" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/vqeffzecyeklz7eekemm4bmygqpt?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149073685</guid>
    <pubDate>Thu, 14 Aug 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1025</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#64: Writing Security Policies That Work for Business</itunes:title>
    <title>#64: Writing Security Policies That Work for Business</title>
    <itunes:summary><![CDATA[        So you've got frameworks, regulatory requirements, client expectations, and a million checkboxes to tick... but how do you actually write policies that make sense, get followed, and don’t make your staff cry? That’s exactly what we’re tackling in this solo episode of Cash in the Cyber Sheets. In this episode, James pulls back the curtain on one of the most common pain points organizations face—translating a mess of compliance obligations into clear, useful, and auditable information s...]]></itunes:summary>
    <description><![CDATA[        <p>So you&apos;ve got frameworks, regulatory requirements, client expectations, and a million checkboxes to tick... but how do you <em>actually</em> write policies that make sense, get followed, and don’t make your staff cry? That’s exactly what we’re tackling in this solo episode of <em>Cash in the Cyber Sheets</em>.</p><p>In this episode, James pulls back the curtain on one of the most common pain points organizations face—translating a mess of compliance obligations into clear, useful, and auditable information security policies.</p><p>You’ll hear about:</p><ul><li><p>The disconnect between frameworks and real-world implementation</p></li><li><p>How to stop chasing “perfect” policies and focus on <em>practical</em> ones</p></li><li><p>The simple method we use at Input Output to create policy sets that are easy to build, communicate, implement, and audit</p></li></ul><p>Whether you&apos;re working with NIST, ISO, CMMC, HIPAA, GLBA/FTC Safeguards Rule, or a Frankenstein mix of frameworks, James walks you through a refreshingly human (and slightly irreverent) approach to solving your policy puzzle. You’ll hear how we bridge the gap between checkbox compliance and operational reality—with strategies that even non-technical stakeholders can wrap their heads around.</p><p>You’ll also get a glimpse of how this approach supports ongoing audits, internal reviews, and policy updates <em>without</em> starting from scratch every time someone sneezes near a new regulation.</p><p>So if you’ve ever stared at a blank “Acceptable Use Policy” and wondered where to start—or if you’ve inherited a pile of legacy policies that are 18 pages too long and 5 years out of date—this one’s for you.</p><p>🧠 Practical. 🔐 Secure. 📝 Scalable.<br/> Tune in and learn how to write policies that work for <em>your</em> business, not just the auditor.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>So you&apos;ve got frameworks, regulatory requirements, client expectations, and a million checkboxes to tick... but how do you <em>actually</em> write policies that make sense, get followed, and don’t make your staff cry? That’s exactly what we’re tackling in this solo episode of <em>Cash in the Cyber Sheets</em>.</p><p>In this episode, James pulls back the curtain on one of the most common pain points organizations face—translating a mess of compliance obligations into clear, useful, and auditable information security policies.</p><p>You’ll hear about:</p><ul><li><p>The disconnect between frameworks and real-world implementation</p></li><li><p>How to stop chasing “perfect” policies and focus on <em>practical</em> ones</p></li><li><p>The simple method we use at Input Output to create policy sets that are easy to build, communicate, implement, and audit</p></li></ul><p>Whether you&apos;re working with NIST, ISO, CMMC, HIPAA, GLBA/FTC Safeguards Rule, or a Frankenstein mix of frameworks, James walks you through a refreshingly human (and slightly irreverent) approach to solving your policy puzzle. You’ll hear how we bridge the gap between checkbox compliance and operational reality—with strategies that even non-technical stakeholders can wrap their heads around.</p><p>You’ll also get a glimpse of how this approach supports ongoing audits, internal reviews, and policy updates <em>without</em> starting from scratch every time someone sneezes near a new regulation.</p><p>So if you’ve ever stared at a blank “Acceptable Use Policy” and wondered where to start—or if you’ve inherited a pile of legacy policies that are 18 pages too long and 5 years out of date—this one’s for you.</p><p>🧠 Practical. 🔐 Secure. 📝 Scalable.<br/> Tune in and learn how to write policies that work for <em>your</em> business, not just the auditor.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203801-64-writing-security-policies-that-work-for-business.mp3" length="11511855" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/t5pv0aalgdblv2no5t9793o35mvo?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149070694</guid>
    <pubDate>Thu, 07 Aug 2025 10:00:00 -0400</pubDate>
    <itunes:duration>953</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#63: Lockouts, Cold Storage Fails &amp; Upgrade Pitfalls</itunes:title>
    <title>#63: Lockouts, Cold Storage Fails &amp; Upgrade Pitfalls</title>
    <itunes:summary><![CDATA[        Ever had that heart-stopping moment when you can’t get into your password manager? In this episode of Cash in the Cyber Sheets, we’re back with Bryan Barnhart from Infiltration Labs to talk about exactly that—because it almost happened to both of us. We unpack the nightmare scenario of getting locked out of your own encrypted vault, the ripple effects it can have on your digital life, and why your carefully planned “secure” setup may not be as resilient as you think. From there, we di...]]></itunes:summary>
    <description><![CDATA[        <p>Ever had that heart-stopping moment when you can’t get into your password manager? In this episode of <em>Cash in the Cyber Sheets</em>, we’re back with Bryan Barnhart from Infiltration Labs to talk about exactly that—because it almost happened to both of us. We unpack the nightmare scenario of getting locked out of your own encrypted vault, the ripple effects it can have on your digital life, and why your carefully planned “secure” setup may not be as resilient as you think.</p><p>From there, we dive into <strong>multi-factor authentication (MFA) alternatives</strong>—specifically YubiKeys and other hardware tokens—and how they compare to traditional app-based MFA. Spoiler: physical keys can save you, but they also introduce new risks you might not have considered.</p><p>We also dig into the messy world of <strong>cold storage for encryption keys</strong>. On paper, it sounds like the ultimate security solution. In reality, it can leave you stranded if anything goes wrong—lost keys, corrupted backups, or just simple human error.</p><p>But that’s not all. We vent about <strong>planned obsolescence</strong>—how updates and “improvements” often make devices and software slower, harder to use, and more time-consuming to manage. As tech professionals, we’re spending more and more hours on “basic upkeep” just to keep systems functional. Are these changes truly for security, or are they just making our lives harder?</p><p>Finally, we ask a question for the audience: <em>Can you think of a single software or system update that’s genuinely made your life easier?</em> Or are we all just stuck in the endless cycle of patching, troubleshooting, and relearning?</p><p>If you’ve ever:</p><ul><li><p>Forgotten a password and sweated bullets,</p></li><li><p>Questioned if your MFA setup is enough,</p></li><li><p>Wondered why your “upgraded” laptop runs slower than your old one…</p></li></ul><p>…this episode is for you. It’s equal parts cautionary tale, therapy session, and practical advice on how to avoid digital self-sabotage.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Ever had that heart-stopping moment when you can’t get into your password manager? In this episode of <em>Cash in the Cyber Sheets</em>, we’re back with Bryan Barnhart from Infiltration Labs to talk about exactly that—because it almost happened to both of us. We unpack the nightmare scenario of getting locked out of your own encrypted vault, the ripple effects it can have on your digital life, and why your carefully planned “secure” setup may not be as resilient as you think.</p><p>From there, we dive into <strong>multi-factor authentication (MFA) alternatives</strong>—specifically YubiKeys and other hardware tokens—and how they compare to traditional app-based MFA. Spoiler: physical keys can save you, but they also introduce new risks you might not have considered.</p><p>We also dig into the messy world of <strong>cold storage for encryption keys</strong>. On paper, it sounds like the ultimate security solution. In reality, it can leave you stranded if anything goes wrong—lost keys, corrupted backups, or just simple human error.</p><p>But that’s not all. We vent about <strong>planned obsolescence</strong>—how updates and “improvements” often make devices and software slower, harder to use, and more time-consuming to manage. As tech professionals, we’re spending more and more hours on “basic upkeep” just to keep systems functional. Are these changes truly for security, or are they just making our lives harder?</p><p>Finally, we ask a question for the audience: <em>Can you think of a single software or system update that’s genuinely made your life easier?</em> Or are we all just stuck in the endless cycle of patching, troubleshooting, and relearning?</p><p>If you’ve ever:</p><ul><li><p>Forgotten a password and sweated bullets,</p></li><li><p>Questioned if your MFA setup is enough,</p></li><li><p>Wondered why your “upgraded” laptop runs slower than your old one…</p></li></ul><p>…this episode is for you. It’s equal parts cautionary tale, therapy session, and practical advice on how to avoid digital self-sabotage.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203802-63-lockouts-cold-storage-fails-upgrade-pitfalls.mp3" length="28459828" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/8a96m4g3vfr211zr9bjnymcikbgo?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149066138</guid>
    <pubDate>Thu, 31 Jul 2025 10:00:00 -0400</pubDate>
    <itunes:duration>2364</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#62: What a Forensics Expert Teaches About Compliance</itunes:title>
    <title>#62: What a Forensics Expert Teaches About Compliance</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we dive into the gritty, behind-the-scenes realities of digital forensics and compliance with guest Bryan Barnhart of Infiltration Labs. Bryan is a seasoned forensics expert who has spent years testifying in courtrooms, untangling messy evidence trails, and uncovering the often-overlooked technical details that can make—or break—a legal case. Our conversation peels back the polished veneer of cybersecurity compliance and exposes the uncomfo...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of <strong>Cash in the Cyber Sheets</strong>, we dive into the gritty, behind-the-scenes realities of digital forensics and compliance with guest <strong>Bryan Barnhart</strong> of <strong>Infiltration Labs</strong>. Bryan is a seasoned forensics expert who has spent years testifying in courtrooms, untangling messy evidence trails, and uncovering the often-overlooked technical details that can make—or break—a legal case.</p><p>Our conversation peels back the polished veneer of cybersecurity compliance and exposes the uncomfortable truth: <strong>weak evidence and incomplete logging are silently sabotaging cases every day</strong>. Bryan shares eye-opening real-world examples, including one case where a lack of proper logging didn’t just complicate the investigation—it directly swayed the court’s decision. The implications? If your organization isn’t proactive about evidence handling and log management, you might be setting yourself up for legal and financial disaster.</p><p>We also unpack the myth of “simple compliance.” From legal holds to chain-of-custody requirements, complying with legal mandates isn’t as straightforward as ticking a box. Bryan explains how even well-meaning organizations can inadvertently violate legal requirements, often because they underestimate the complexity of digital evidence management—or worse, assume “IT has it covered.”</p><p>Expect practical takeaways throughout the episode. Whether you’re a compliance officer, IT manager, or business owner, you’ll walk away with actionable insights on:</p><ul><li><p>How to strengthen logging practices to support forensic investigations.</p></li><li><p>Why legal holds aren’t just “set and forget” and how to do them right.</p></li><li><p>The cost of ignoring compliance (spoiler: it’s more than just fines).</p></li><li><p>Strategies to prevent evidence gaps before they happen.</p></li></ul><p>If you’ve ever wondered how much trouble a missing log file can cause—or why so many organizations fail forensic scrutiny—this episode is your wake-up call. Tune in for a candid, no-fluff conversation about what really happens when compliance meets the courtroom.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of <strong>Cash in the Cyber Sheets</strong>, we dive into the gritty, behind-the-scenes realities of digital forensics and compliance with guest <strong>Bryan Barnhart</strong> of <strong>Infiltration Labs</strong>. Bryan is a seasoned forensics expert who has spent years testifying in courtrooms, untangling messy evidence trails, and uncovering the often-overlooked technical details that can make—or break—a legal case.</p><p>Our conversation peels back the polished veneer of cybersecurity compliance and exposes the uncomfortable truth: <strong>weak evidence and incomplete logging are silently sabotaging cases every day</strong>. Bryan shares eye-opening real-world examples, including one case where a lack of proper logging didn’t just complicate the investigation—it directly swayed the court’s decision. The implications? If your organization isn’t proactive about evidence handling and log management, you might be setting yourself up for legal and financial disaster.</p><p>We also unpack the myth of “simple compliance.” From legal holds to chain-of-custody requirements, complying with legal mandates isn’t as straightforward as ticking a box. Bryan explains how even well-meaning organizations can inadvertently violate legal requirements, often because they underestimate the complexity of digital evidence management—or worse, assume “IT has it covered.”</p><p>Expect practical takeaways throughout the episode. Whether you’re a compliance officer, IT manager, or business owner, you’ll walk away with actionable insights on:</p><ul><li><p>How to strengthen logging practices to support forensic investigations.</p></li><li><p>Why legal holds aren’t just “set and forget” and how to do them right.</p></li><li><p>The cost of ignoring compliance (spoiler: it’s more than just fines).</p></li><li><p>Strategies to prevent evidence gaps before they happen.</p></li></ul><p>If you’ve ever wondered how much trouble a missing log file can cause—or why so many organizations fail forensic scrutiny—this episode is your wake-up call. Tune in for a candid, no-fluff conversation about what really happens when compliance meets the courtroom.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203803-62-what-a-forensics-expert-teaches-about-compliance.mp3" length="23904882" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/y1w1b8oouwkk6bf0z41cjqi6u6sg?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149063812</guid>
    <pubDate>Thu, 24 Jul 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1985</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#61: Locked Out of Life | Password Management Wake-Up</itunes:title>
    <title>#61: Locked Out of Life | Password Management Wake-Up</title>
    <itunes:summary><![CDATA[        We nearly locked ourselves out of our own password manager. Yep. Us. The security professionals. If that doesn't make you tighten your digital shoelaces, nothing will. In Episode 61 of Cash in the Cyber Sheets, we're pulling back the curtain on a real-world scenario that could’ve gone very, very wrong. We’re talking full-blown lockout from critical accounts — and the painful lesson that even seasoned cybersecurity pros can get caught in a trap of good intentions and bad configurations...]]></itunes:summary>
    <description><![CDATA[        <p>We nearly locked ourselves out of our own password manager. Yep. Us. The security professionals. If that doesn&apos;t make you tighten your digital shoelaces, nothing will.</p><p>In Episode 61 of <em>Cash in the Cyber Sheets</em>, we&apos;re pulling back the curtain on a real-world scenario that could’ve gone very, very wrong. We’re talking full-blown lockout from critical accounts — and the painful lesson that even seasoned cybersecurity pros can get caught in a trap of good intentions and bad configurations.</p><p>This episode is your crash course on <strong>how to bulletproof your access controls</strong>, avoid common pitfalls, and uncover the sneaky Catch-22s in password recovery setups that no one considers until it&apos;s too late.</p><p>Here’s what we cover:</p><ul><li><p>The true story of how we almost lost access to our password management vault.</p></li><li><p>Why <strong>recovery phrases and backup MFA</strong> aren’t optional — and what to watch out for when setting them up.</p></li><li><p>How bad UX design, “convenience” features, and conflicting recovery paths create <strong>dead ends</strong> even when you have all the right intentions.</p></li></ul><p>If you’re an SMB, MSP, or just someone who’d prefer not to lose access to your digital kingdom — this is your wake-up call. We break down what went wrong, what saved us, and how you can make sure your organization (and sanity) doesn’t get locked out.</p><p>So grab your beverage of choice and prepare to double-check every login and backup you <em>think</em> you’ve got covered. This one’s not just informative. It’s a little too relatable.</p><p>🔐 Listen now, and don’t say we didn’t warn you.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>We nearly locked ourselves out of our own password manager. Yep. Us. The security professionals. If that doesn&apos;t make you tighten your digital shoelaces, nothing will.</p><p>In Episode 61 of <em>Cash in the Cyber Sheets</em>, we&apos;re pulling back the curtain on a real-world scenario that could’ve gone very, very wrong. We’re talking full-blown lockout from critical accounts — and the painful lesson that even seasoned cybersecurity pros can get caught in a trap of good intentions and bad configurations.</p><p>This episode is your crash course on <strong>how to bulletproof your access controls</strong>, avoid common pitfalls, and uncover the sneaky Catch-22s in password recovery setups that no one considers until it&apos;s too late.</p><p>Here’s what we cover:</p><ul><li><p>The true story of how we almost lost access to our password management vault.</p></li><li><p>Why <strong>recovery phrases and backup MFA</strong> aren’t optional — and what to watch out for when setting them up.</p></li><li><p>How bad UX design, “convenience” features, and conflicting recovery paths create <strong>dead ends</strong> even when you have all the right intentions.</p></li></ul><p>If you’re an SMB, MSP, or just someone who’d prefer not to lose access to your digital kingdom — this is your wake-up call. We break down what went wrong, what saved us, and how you can make sure your organization (and sanity) doesn’t get locked out.</p><p>So grab your beverage of choice and prepare to double-check every login and backup you <em>think</em> you’ve got covered. This one’s not just informative. It’s a little too relatable.</p><p>🔐 Listen now, and don’t say we didn’t warn you.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203804-61-locked-out-of-life-password-management-wake-up.mp3" length="12384729" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/903nmwacysb6mj5nau1241hvgeo2?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149060467</guid>
    <pubDate>Thu, 17 Jul 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1026</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#60: AI, Terms and Conditions, and the Vendor Rodeo</itunes:title>
    <title>#60: AI, Terms and Conditions, and the Vendor Rodeo</title>
    <itunes:summary><![CDATA[        In Episode 60 of Cash in the Cyber Sheets, we dive into the rapidly morphing world of AI and its increasingly tangled role in third-party software, supplier relationships, and data access controls. Remember when vetting vendors was a once-a-year checkbox and not a full-contact sport? Good times. But now, thanks to AI creeping into every crevice of modern software—from CRMs to coffee machine firmware—the game has changed. Now every supplier, integration, and platform you rely on might ...]]></itunes:summary>
    <description><![CDATA[        <p>In Episode 60 of <em>Cash in the Cyber Sheets</em>, we dive into the rapidly morphing world of AI and its increasingly tangled role in third-party software, supplier relationships, and data access controls.</p><p>Remember when vetting vendors was a once-a-year checkbox and not a full-contact sport? Good times. But now, thanks to AI creeping into every crevice of modern software—from CRMs to coffee machine firmware—the game has changed.</p><p>Now every supplier, integration, and platform you rely on might quietly include AI. And that means <em>your</em> data, <em>your</em> customers’ data, and your business logic could be influenced (or exposed) in ways you never explicitly agreed to—or even realized. Worse, by the time you finish evaluating one vendor’s AI usage, the terms of service have changed again. It’s like chasing a greased compliance pig through a foggy maze.</p><p>This episode explores:</p><ul><li><p>Why the growing use of AI in nearly all SaaS tools creates cascading compliance complexity.</p></li><li><p>How T&amp;Cs around AI use are changing at whiplash speed—and what that means for your contracts.</p></li><li><p>The evolving (and frankly exhausting) need to re-vet vendors on an ongoing basis.</p></li><li><p>How “silent AI integrations” can erode your data governance without triggering alarms.</p></li></ul><p>We’re not just sounding the alarm; we’re opening the floor. What are <em>you</em> seeing? How are <em>you</em> managing the ever-evolving AI-supplier matrix? We want to hear your stories, rants, and success hacks.</p><p>Whether you&apos;re a CISO juggling vendor reviews like flaming swords or a founder wondering if your new billing tool has a secret AI feature rewriting your invoice terms, this episode is your reality check.</p><p>💬 <strong>Comment. Vent. Share.</strong> Then come back for Episode 61—we’ll still be trying to make sense of it all.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In Episode 60 of <em>Cash in the Cyber Sheets</em>, we dive into the rapidly morphing world of AI and its increasingly tangled role in third-party software, supplier relationships, and data access controls.</p><p>Remember when vetting vendors was a once-a-year checkbox and not a full-contact sport? Good times. But now, thanks to AI creeping into every crevice of modern software—from CRMs to coffee machine firmware—the game has changed.</p><p>Now every supplier, integration, and platform you rely on might quietly include AI. And that means <em>your</em> data, <em>your</em> customers’ data, and your business logic could be influenced (or exposed) in ways you never explicitly agreed to—or even realized. Worse, by the time you finish evaluating one vendor’s AI usage, the terms of service have changed again. It’s like chasing a greased compliance pig through a foggy maze.</p><p>This episode explores:</p><ul><li><p>Why the growing use of AI in nearly all SaaS tools creates cascading compliance complexity.</p></li><li><p>How T&amp;Cs around AI use are changing at whiplash speed—and what that means for your contracts.</p></li><li><p>The evolving (and frankly exhausting) need to re-vet vendors on an ongoing basis.</p></li><li><p>How “silent AI integrations” can erode your data governance without triggering alarms.</p></li></ul><p>We’re not just sounding the alarm; we’re opening the floor. What are <em>you</em> seeing? How are <em>you</em> managing the ever-evolving AI-supplier matrix? We want to hear your stories, rants, and success hacks.</p><p>Whether you&apos;re a CISO juggling vendor reviews like flaming swords or a founder wondering if your new billing tool has a secret AI feature rewriting your invoice terms, this episode is your reality check.</p><p>💬 <strong>Comment. Vent. Share.</strong> Then come back for Episode 61—we’ll still be trying to make sense of it all.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203805-60-ai-terms-and-conditions-and-the-vendor-rodeo.mp3" length="9616468" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/zqk1uw30qi863gyjcoymd8pt1si7?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149056422</guid>
    <pubDate>Thu, 10 Jul 2025 10:00:00 -0400</pubDate>
    <itunes:duration>795</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#59: Domain Registrar Risks | Doing It Right Gone Wrong</itunes:title>
    <title>#59: Domain Registrar Risks | Doing It Right Gone Wrong</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we dive into a real-world experience with domain registrars—those gatekeepers of your online identity who are supposed to help keep you safe and sound on the internet. But what happens when doing their job too well actually opens up an unexpected vulnerability? It’s a classic case of security intentions versus operational reality. We break down how a seemingly well-configured domain protection mechanism—meant to shield against unauthor...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of <em>Cash in the Cyber Sheets</em>, we dive into a real-world experience with domain registrars—those gatekeepers of your online identity who are supposed to help keep you safe and sound on the internet. But what happens when doing their job <em>too well</em> actually opens up an unexpected vulnerability?</p><p>It’s a classic case of security intentions versus operational reality. We break down how a seemingly well-configured domain protection mechanism—meant to shield against unauthorized changes—ended up locking <em>us</em> out of critical functionality… right when we needed it most.</p><p>This isn’t just a one-off anecdote. It’s a prime example of a broader problem plaguing businesses of all sizes: security controls and compliance measures that paradoxically introduce new risks. From “you must enable this setting to protect your domain” to “well now you’re unable to prove ownership,” we explore the domino effect of protections gone sideways.</p><p><strong>In this episode, we discuss:</strong></p><ul><li><p>The real-world impact of overly rigid registrar controls.</p></li><li><p>How security and compliance intentions can inadvertently create vulnerabilities.</p></li><li><p>What this means for SMBs trying to do the right thing without accidentally doing the wrong thing.</p></li><li><p>The lessons we’ve learned (so you don’t have to learn them the hard way).</p></li></ul><p>Whether you&apos;re a business owner, IT admin, MSP, or security pro, this episode will hit home. It’s a reminder that in cybersecurity, the road to hell is often paved with good intentions—and domain-level irony.</p><p>🔐 Because sometimes locking the door too tightly doesn&apos;t just make things harder on you, but easier for the bad guys.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of <em>Cash in the Cyber Sheets</em>, we dive into a real-world experience with domain registrars—those gatekeepers of your online identity who are supposed to help keep you safe and sound on the internet. But what happens when doing their job <em>too well</em> actually opens up an unexpected vulnerability?</p><p>It’s a classic case of security intentions versus operational reality. We break down how a seemingly well-configured domain protection mechanism—meant to shield against unauthorized changes—ended up locking <em>us</em> out of critical functionality… right when we needed it most.</p><p>This isn’t just a one-off anecdote. It’s a prime example of a broader problem plaguing businesses of all sizes: security controls and compliance measures that paradoxically introduce new risks. From “you must enable this setting to protect your domain” to “well now you’re unable to prove ownership,” we explore the domino effect of protections gone sideways.</p><p><strong>In this episode, we discuss:</strong></p><ul><li><p>The real-world impact of overly rigid registrar controls.</p></li><li><p>How security and compliance intentions can inadvertently create vulnerabilities.</p></li><li><p>What this means for SMBs trying to do the right thing without accidentally doing the wrong thing.</p></li><li><p>The lessons we’ve learned (so you don’t have to learn them the hard way).</p></li></ul><p>Whether you&apos;re a business owner, IT admin, MSP, or security pro, this episode will hit home. It’s a reminder that in cybersecurity, the road to hell is often paved with good intentions—and domain-level irony.</p><p>🔐 Because sometimes locking the door too tightly doesn&apos;t just make things harder on you, but easier for the bad guys.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203806-59-domain-registrar-risks-doing-it-right-gone-wrong.mp3" length="11473594" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/jssvu2t7fxzzphr8wxlz463vezoh?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149053940</guid>
    <pubDate>Thu, 03 Jul 2025 10:00:00 -0400</pubDate>
    <itunes:duration>950</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#58: 16 Billion Records Breached – What Now?</itunes:title>
    <title>#58: 16 Billion Records Breached – What Now?</title>
    <itunes:summary><![CDATA[        Another day, another “largest breach in history.” This time, it’s reportedly 16 billion records leaked in a massive data dump that has cybersecurity pros scrambling and the rest of the world asking, “Was I in it?” In this episode of Cash in the Cyber Sheet, we break down the facts behind this mega-breach—including what’s real, what’s speculation, and what you should actually do about it. Whether this turns out to be a compilation of old breaches or a fresh apocalypse, the message is t...]]></itunes:summary>
    <description><![CDATA[        <p>Another day, another <em>“largest breach in history.”</em> This time, it’s reportedly <strong>16 billion records</strong> leaked in a massive data dump that has cybersecurity pros scrambling and the rest of the world asking, “Was I in it?”</p><p>In this episode of <em>Cash in the Cyber Sheet</em>, we break down the facts behind this mega-breach—including what’s real, what’s speculation, and what you should actually <em>do</em> about it. Whether this turns out to be a compilation of old breaches or a fresh apocalypse, the message is the same: your password practices and access controls need to be air-tight.</p><h3>🔍 What You’ll Learn:</h3><ul><li><p>The facts (and fiction) behind the 16 billion record leak</p></li><li><p>What makes this breach so concerning (beyond just the number)</p></li><li><p>How threat actors use this data in real-world attacks</p></li><li><p>Simple steps to protect yourself, your users, and your business</p></li></ul><p>We’ll also use this as a teachable moment for business owners and IT teams: this is your cue to review your <strong>password policies</strong>, <strong>multi-factor authentication (MFA)</strong> setup, and your <strong>user access audits</strong>. You can’t control who gets breached—but you <em>can</em> control how far the fallout reaches.</p><h3>✅ Get Proactive with These Resources:</h3><ul><li><p><strong>What&apos;s a Good Password:</strong><br/><a href='https://www.inputoutput.com/blog/what&apos;s-a-good-password-security-best-practices'>https://www.inputoutput.com/blog/what&apos;s-a-good-password-security-best-practices</a> </p></li><li><p><strong>MFA Best Practices Guide:</strong><br/><a href='https://www.inputoutput.com/blog/multifactor-authentication-best-practices'>https://www.inputoutput.com/blog/multifactor-authentication-best-practices</a> </p></li><li><p><strong>10 Steps for a Compliant User Access &amp; Logging Audit:</strong><br/><a href='https://www.inputoutput.com/blog/10-must-do-steps-to-perform-a-compliant-user-access-and-logging-audit'>https://www.inputoutput.com/blog/10-must-do-steps-to-perform-a-compliant-user-access-and-logging-audit</a> </p></li></ul><p>🔐 Whether you’re an IT lead, a business owner, or just someone who reused “Password123” one too many times, this episode will show you how to tighten up your personal and organizational security. Because breaches are inevitable—but being easy to exploit doesn’t have to be.</p><p>Hit play, panic <em>just a little</em>, and then take action.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Another day, another <em>“largest breach in history.”</em> This time, it’s reportedly <strong>16 billion records</strong> leaked in a massive data dump that has cybersecurity pros scrambling and the rest of the world asking, “Was I in it?”</p><p>In this episode of <em>Cash in the Cyber Sheet</em>, we break down the facts behind this mega-breach—including what’s real, what’s speculation, and what you should actually <em>do</em> about it. Whether this turns out to be a compilation of old breaches or a fresh apocalypse, the message is the same: your password practices and access controls need to be air-tight.</p><h3>🔍 What You’ll Learn:</h3><ul><li><p>The facts (and fiction) behind the 16 billion record leak</p></li><li><p>What makes this breach so concerning (beyond just the number)</p></li><li><p>How threat actors use this data in real-world attacks</p></li><li><p>Simple steps to protect yourself, your users, and your business</p></li></ul><p>We’ll also use this as a teachable moment for business owners and IT teams: this is your cue to review your <strong>password policies</strong>, <strong>multi-factor authentication (MFA)</strong> setup, and your <strong>user access audits</strong>. You can’t control who gets breached—but you <em>can</em> control how far the fallout reaches.</p><h3>✅ Get Proactive with These Resources:</h3><ul><li><p><strong>What&apos;s a Good Password:</strong><br/><a href='https://www.inputoutput.com/blog/what&apos;s-a-good-password-security-best-practices'>https://www.inputoutput.com/blog/what&apos;s-a-good-password-security-best-practices</a> </p></li><li><p><strong>MFA Best Practices Guide:</strong><br/><a href='https://www.inputoutput.com/blog/multifactor-authentication-best-practices'>https://www.inputoutput.com/blog/multifactor-authentication-best-practices</a> </p></li><li><p><strong>10 Steps for a Compliant User Access &amp; Logging Audit:</strong><br/><a href='https://www.inputoutput.com/blog/10-must-do-steps-to-perform-a-compliant-user-access-and-logging-audit'>https://www.inputoutput.com/blog/10-must-do-steps-to-perform-a-compliant-user-access-and-logging-audit</a> </p></li></ul><p>🔐 Whether you’re an IT lead, a business owner, or just someone who reused “Password123” one too many times, this episode will show you how to tighten up your personal and organizational security. Because breaches are inevitable—but being easy to exploit doesn’t have to be.</p><p>Hit play, panic <em>just a little</em>, and then take action.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203807-58-16-billion-records-breached-what-now.mp3" length="9883623" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/hijv1dztqm6m5jhdem24h8wo0iqu?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149051038</guid>
    <pubDate>Thu, 26 Jun 2025 10:00:00 -0400</pubDate>
    <itunes:duration>817</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#57: Common SPF Pitfalls and How to Solve Them</itunes:title>
    <title>#57: Common SPF Pitfalls and How to Solve Them</title>
    <itunes:summary><![CDATA[        If your marketing emails keep ghosting your prospects, it might not be a CRM problem, it could be your SPF record playing games. In this episode of Cash in the Cyber Sheet, we're diving into the murky waters of Sender Policy Framework (SPF) records. Whether you're an IT lead, a business owner, or just someone who’s tired of your emails landing in spam folders, this episode is your go-to guide for understanding the most common SPF issues and how to fix them like a pro. 🔍 What You'll Le...]]></itunes:summary>
    <description><![CDATA[        <p>If your marketing emails keep ghosting your prospects, it might not be a CRM problem, it could be your SPF record playing games.</p><p>In this episode of <strong>Cash in the Cyber Sheet</strong>, we&apos;re diving into the murky waters of <strong>Sender Policy Framework (SPF)</strong> records. Whether you&apos;re an IT lead, a business owner, or just someone who’s tired of your emails landing in spam folders, this episode is your go-to guide for understanding the most common SPF issues and how to fix them like a pro.</p><h3>🔍 What You&apos;ll Learn:</h3><ul><li><p>What SPF is and why it&apos;s critical for email deliverability</p></li><li><p>The most frequent SPF mistakes we see (spoiler: “Too many DNS lookups” is a fan favorite)</p></li><li><p>How your SPF interacts with other email records like DKIM and DMARC</p></li><li><p>Practical steps to validate and fix broken or misconfigured SPF setups</p></li></ul><h3>🚨 Common Issues We Cover:</h3><ul><li><p>Multiple SPF records (and why that breaks things fast)</p></li><li><p>Incorrect use of “include”</p></li><li><p>Exceeding the 10 DNS lookup limit (yes, this exists—and it matters)</p></li><li><p>Legacy setups no longer aligned with current sending sources</p></li></ul><p>SPF is often “set and forget” until you find yourself in email purgatory. Even worse, an improperly configured SPF can leave your domain vulnerable to spoofing, which may cause you to lose more than just marketing traction. From client horror stories to real-world audits, we cover the nitty-gritty without the technical fluff.</p><p> </p><p>🧠 Want to go deeper?</p><p>Read our related blog posts:</p><ul><li><p><a class='' target='_new' href='https://www.inputoutput.com/blog/setting-up-multiple-spf-includes'>Setting Up Multiple SPF Includes (the right way)</a></p></li><li><p><a class='' target='_new' href='https://www.inputoutput.com/blog/dmarc-2025-requirements'>New DMARC 2025 Requirements: Why They Matter</a></p></li></ul><p> </p><p>🔧 Want to test your SPF right now?</p><ul><li><p><a target='_new' href='https://www.inputoutput.com/spf-checker'>Use our SPF Record Checker</a></p></li><li><p><a target='_new' href='https://www.inputoutput.com/email-audit'>Run a full Email Record Audit with iO™ DMARC</a></p></li></ul><p>If your email visibility matters (and let’s be honest, it does), this episode is not optional. Click play, fix your SPF, and finally escape the spam folder once and for all.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>If your marketing emails keep ghosting your prospects, it might not be a CRM problem, it could be your SPF record playing games.</p><p>In this episode of <strong>Cash in the Cyber Sheet</strong>, we&apos;re diving into the murky waters of <strong>Sender Policy Framework (SPF)</strong> records. Whether you&apos;re an IT lead, a business owner, or just someone who’s tired of your emails landing in spam folders, this episode is your go-to guide for understanding the most common SPF issues and how to fix them like a pro.</p><h3>🔍 What You&apos;ll Learn:</h3><ul><li><p>What SPF is and why it&apos;s critical for email deliverability</p></li><li><p>The most frequent SPF mistakes we see (spoiler: “Too many DNS lookups” is a fan favorite)</p></li><li><p>How your SPF interacts with other email records like DKIM and DMARC</p></li><li><p>Practical steps to validate and fix broken or misconfigured SPF setups</p></li></ul><h3>🚨 Common Issues We Cover:</h3><ul><li><p>Multiple SPF records (and why that breaks things fast)</p></li><li><p>Incorrect use of “include”</p></li><li><p>Exceeding the 10 DNS lookup limit (yes, this exists—and it matters)</p></li><li><p>Legacy setups no longer aligned with current sending sources</p></li></ul><p>SPF is often “set and forget” until you find yourself in email purgatory. Even worse, an improperly configured SPF can leave your domain vulnerable to spoofing, which may cause you to lose more than just marketing traction. From client horror stories to real-world audits, we cover the nitty-gritty without the technical fluff.</p><p> </p><p>🧠 Want to go deeper?</p><p>Read our related blog posts:</p><ul><li><p><a class='' target='_new' href='https://www.inputoutput.com/blog/setting-up-multiple-spf-includes'>Setting Up Multiple SPF Includes (the right way)</a></p></li><li><p><a class='' target='_new' href='https://www.inputoutput.com/blog/dmarc-2025-requirements'>New DMARC 2025 Requirements: Why They Matter</a></p></li></ul><p> </p><p>🔧 Want to test your SPF right now?</p><ul><li><p><a target='_new' href='https://www.inputoutput.com/spf-checker'>Use our SPF Record Checker</a></p></li><li><p><a target='_new' href='https://www.inputoutput.com/email-audit'>Run a full Email Record Audit with iO™ DMARC</a></p></li></ul><p>If your email visibility matters (and let’s be honest, it does), this episode is not optional. Click play, fix your SPF, and finally escape the spam folder once and for all.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203808-57-common-spf-pitfalls-and-how-to-solve-them.mp3" length="14767779" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/9h2zyvex6zsux4bt1cyctjtx8h1j?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149048415</guid>
    <pubDate>Thu, 19 Jun 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1224</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#56: Classify This | Why Data Classification Matters</itunes:title>
    <title>#56: Classify This | Why Data Classification Matters</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we take a bold step away from convention and dig into one of the most misunderstood yet crucial components of an information security program: data classification levels. Most organizations default to CISA’s Traffic Light Protocol (TLP) for labeling data, but we’ve taken a different route. While TLP is helpful for public-private information sharing, it lacks the granularity and operational context needed for meaningful internal use. Our cla...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of <em>Cash in the Cyber Sheets</em>, we take a bold step away from convention and dig into one of the most misunderstood yet crucial components of an information security program: data classification levels.</p><p>Most organizations default to CISA’s Traffic Light Protocol (TLP) for labeling data, but we’ve taken a different route. While TLP is helpful for public-private information sharing, it lacks the granularity and operational context needed for meaningful internal use. Our classification system was designed to solve that problem by clarifying risk exposure, enhancing threat modeling, and helping you understand where your crown jewels actually live.</p><p>We walk through how our classification levels are structured, where they differ from TLP, and why those differences matter. You’ll learn how a refined data classification model improves risk assessments, supports accurate network diagrams, sharpens data mapping efforts, and gives threat modeling the clarity it desperately needs.</p><p>You’ll also hear how vague or oversimplified classification systems can derail internal reviews, leading to incomplete threat identification and overlooked vulnerabilities. On the other hand, our approach gives teams a practical way to define what matters most, where it’s located, and how it could be exposed.</p><p>This isn’t theory for theory’s sake. If you&apos;re conducting a risk assessment, building out network architecture, or performing a gap analysis, our model offers structure that translates directly into action. Whether you&apos;re a vCISO, MSP, or an overwhelmed IT lead trying to secure a growing business, this episode arms you with a better lens for managing sensitive information.</p><p>Pour your drink of choice and join us for a conversation that could mean the difference between seeing risk in the fog and seeing it in high resolution.</p><p>Check our our companion article about data classification at: <a href='https://www.inputoutput.com/blog/what-is-a-data-classification-policy'>What is a Data Classification Policy?</a></p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of <em>Cash in the Cyber Sheets</em>, we take a bold step away from convention and dig into one of the most misunderstood yet crucial components of an information security program: data classification levels.</p><p>Most organizations default to CISA’s Traffic Light Protocol (TLP) for labeling data, but we’ve taken a different route. While TLP is helpful for public-private information sharing, it lacks the granularity and operational context needed for meaningful internal use. Our classification system was designed to solve that problem by clarifying risk exposure, enhancing threat modeling, and helping you understand where your crown jewels actually live.</p><p>We walk through how our classification levels are structured, where they differ from TLP, and why those differences matter. You’ll learn how a refined data classification model improves risk assessments, supports accurate network diagrams, sharpens data mapping efforts, and gives threat modeling the clarity it desperately needs.</p><p>You’ll also hear how vague or oversimplified classification systems can derail internal reviews, leading to incomplete threat identification and overlooked vulnerabilities. On the other hand, our approach gives teams a practical way to define what matters most, where it’s located, and how it could be exposed.</p><p>This isn’t theory for theory’s sake. If you&apos;re conducting a risk assessment, building out network architecture, or performing a gap analysis, our model offers structure that translates directly into action. Whether you&apos;re a vCISO, MSP, or an overwhelmed IT lead trying to secure a growing business, this episode arms you with a better lens for managing sensitive information.</p><p>Pour your drink of choice and join us for a conversation that could mean the difference between seeing risk in the fog and seeing it in high resolution.</p><p>Check our our companion article about data classification at: <a href='https://www.inputoutput.com/blog/what-is-a-data-classification-policy'>What is a Data Classification Policy?</a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203809-56-classify-this-why-data-classification-matters.mp3" length="13867039" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/1t2x8nka98zninm4bbtzz794a2qz?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149040307</guid>
    <pubDate>Thu, 05 Jun 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1149</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#55: DMARC Compliance Killed the Creative… Or Did It?</itunes:title>
    <title>#55: DMARC Compliance Killed the Creative… Or Did It?</title>
    <itunes:summary><![CDATA[        Think DMARC, SPF, and DKIM are just for your IT team? Think again. In this episode of Cash in the Cyber Sheets, we’re flipping the script on the idea that information security is the enemy of marketing. Spoiler alert: it’s actually your secret weapon. We break down how bad email authentication silently sabotages your best campaigns, why your beautiful emails may be ghosting inboxes, and how good compliance can boost deliverability, reinforce brand trust, and even make your sales team ...]]></itunes:summary>
    <description><![CDATA[        <p>Think DMARC, SPF, and DKIM are just for your IT team? Think again. In this episode of <em>Cash in the Cyber Sheets</em>, we’re flipping the script on the idea that information security is the enemy of marketing. Spoiler alert: it’s actually your secret weapon.</p><p>We break down how bad email authentication silently sabotages your best campaigns, why your beautiful emails may be ghosting inboxes, and how good compliance can boost deliverability, reinforce brand trust, and even make your sales team sound like heroes.</p><p>Here’s what’s inside:</p><ul><li><p>Why poor security practices can tank your ROI — even if your marketing is on point</p></li><li><p>How DMARC, SPF, and DKIM actually <em>increase</em> visibility and credibility</p></li><li><p>What BIMI adds to your brand’s professionalism (and your emails&apos; survival odds)</p></li><li><p>Real-world tips to integrate security into your funnel without strangling creativity</p></li><li><p>The tools we use — including our own <a target='_new' href='https://www.inputoutput.com/email-deliverability-tool'>iO™ DMARC</a>, to make setup and management stupid-simple</p></li></ul><p>If your brand is sending emails with p=none and crossing your fingers they get delivered… it’s time to stop guessing and start authenticating.</p><p>📥 Check your email setup with our free <a target='_new' href='https://www.inputoutput.com/email-audit'>iO™ DMARC Email Audit Tool</a></p><p>📚 Want a full DMARC breakdown? Read our blog: <a class='' target='_new' href='https://www.inputoutput.com/blog/how-to-setup-dmarc'>How to Setup DMARC</a></p><p>🎧 Tune in, take notes, and find out why compliance might just be the creative catalyst your brand’s been missing.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Think DMARC, SPF, and DKIM are just for your IT team? Think again. In this episode of <em>Cash in the Cyber Sheets</em>, we’re flipping the script on the idea that information security is the enemy of marketing. Spoiler alert: it’s actually your secret weapon.</p><p>We break down how bad email authentication silently sabotages your best campaigns, why your beautiful emails may be ghosting inboxes, and how good compliance can boost deliverability, reinforce brand trust, and even make your sales team sound like heroes.</p><p>Here’s what’s inside:</p><ul><li><p>Why poor security practices can tank your ROI — even if your marketing is on point</p></li><li><p>How DMARC, SPF, and DKIM actually <em>increase</em> visibility and credibility</p></li><li><p>What BIMI adds to your brand’s professionalism (and your emails&apos; survival odds)</p></li><li><p>Real-world tips to integrate security into your funnel without strangling creativity</p></li><li><p>The tools we use — including our own <a target='_new' href='https://www.inputoutput.com/email-deliverability-tool'>iO™ DMARC</a>, to make setup and management stupid-simple</p></li></ul><p>If your brand is sending emails with p=none and crossing your fingers they get delivered… it’s time to stop guessing and start authenticating.</p><p>📥 Check your email setup with our free <a target='_new' href='https://www.inputoutput.com/email-audit'>iO™ DMARC Email Audit Tool</a></p><p>📚 Want a full DMARC breakdown? Read our blog: <a class='' target='_new' href='https://www.inputoutput.com/blog/how-to-setup-dmarc'>How to Setup DMARC</a></p><p>🎧 Tune in, take notes, and find out why compliance might just be the creative catalyst your brand’s been missing.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203810-55-dmarc-compliance-killed-the-creative-or-did-it.mp3" length="11087062" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/ak6v5rdmp476j5qmbj4vllbtp6ox?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149037394</guid>
    <pubDate>Thu, 29 May 2025 10:00:00 -0400</pubDate>
    <itunes:duration>917</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#54: Why DMARC Changes in May 2025 Can’t Be Ignored</itunes:title>
    <title>#54: Why DMARC Changes in May 2025 Can’t Be Ignored</title>
    <itunes:summary><![CDATA[        Email Security Just Got Real: What Changed in 2025 with DMARCWelcome to another hard-hitting episode of Cash in the Cyber Sheets, where we pull no punches and call out the silent killers of your digital credibility. This week, we’re talking about something that sounds boring—but will absolutely wreck your marketing if ignored: DMARC. Spoiler alert: As of May 2025, if your email domain doesn’t have DMARC configured properly, your emails might never make it to your customers’ inboxes. W...]]></itunes:summary>
    <description><![CDATA[        <h1>Email Security Just Got Real: What Changed in 2025 with DMARC</h1><p>Welcome to another hard-hitting episode of <em>Cash in the Cyber Sheets</em>, where we pull no punches and call out the silent killers of your digital credibility. This week, we’re talking about something that sounds boring—but will absolutely wreck your marketing if ignored: <strong>DMARC</strong>.</p><p>Spoiler alert: As of May 2025, if your email domain doesn’t have DMARC configured properly, your emails might never make it to your customers’ inboxes. Worse? They might end up being spoofed by cybercriminals impersonating your brand.</p><p>In this episode, we get right to the core of:</p><ul><li><p>Why DMARC (along with SPF and DKIM) is the new standard for email trustworthiness</p></li><li><p>What changed in 2025 with email providers like Google, Microsoft, and Yahoo—and why it matters to your bottom line</p></li><li><p>The damage email spoofing can do to your brand reputation and customer trust</p></li><li><p>The actual business risks of ignoring this “invisible” piece of your cybersecurity stack</p></li><li><p>How to go from clueless to compliant in a few simple steps</p></li></ul><p>We break down what DMARC looks like in plain English (yes, even the scary TXT record stuff), share how forensic reports can give you visibility into spoofing attempts, and explain why email authentication isn’t just a technical task—it’s a strategic one.</p><p>🔍 Want to know if your domain is at risk right now?<br/> Run a free domain check with our <a target='_new' href='https://www.inputoutput.com/email-audit'>iO™ DMARC Email Audit Tool</a> and get instant insights into your SPF, DKIM, and DMARC configuration.</p><p>⭐ Need to make managing this stuff simple and non-headache inducing?<br/> That’s where <a target='_new' href='https://www.inputoutput.com/email-deliverability-tool'>iO™ DMARC</a> comes in. It’s the easy button for email security and deliverability.</p><p>📖 Dive deeper with our companion article: <a href='https://www.inputoutput.com/blog/dmarc-2025-requirements'>DMARC Is No Longer Optional: What Business Owners Need to Know in 2025</a></p><p>If email is part of your business (hint: it is), then this episode is for you. Even if you&apos;ve never heard of DMARC before—or tried to ignore it hoping it would go away—2025 isn&apos;t giving you the option anymore.</p><p>So buckle up, press play, and let’s make sure your emails land where they belong.</p>      ]]></description>
    <content:encoded><![CDATA[        <h1>Email Security Just Got Real: What Changed in 2025 with DMARC</h1><p>Welcome to another hard-hitting episode of <em>Cash in the Cyber Sheets</em>, where we pull no punches and call out the silent killers of your digital credibility. This week, we’re talking about something that sounds boring—but will absolutely wreck your marketing if ignored: <strong>DMARC</strong>.</p><p>Spoiler alert: As of May 2025, if your email domain doesn’t have DMARC configured properly, your emails might never make it to your customers’ inboxes. Worse? They might end up being spoofed by cybercriminals impersonating your brand.</p><p>In this episode, we get right to the core of:</p><ul><li><p>Why DMARC (along with SPF and DKIM) is the new standard for email trustworthiness</p></li><li><p>What changed in 2025 with email providers like Google, Microsoft, and Yahoo—and why it matters to your bottom line</p></li><li><p>The damage email spoofing can do to your brand reputation and customer trust</p></li><li><p>The actual business risks of ignoring this “invisible” piece of your cybersecurity stack</p></li><li><p>How to go from clueless to compliant in a few simple steps</p></li></ul><p>We break down what DMARC looks like in plain English (yes, even the scary TXT record stuff), share how forensic reports can give you visibility into spoofing attempts, and explain why email authentication isn’t just a technical task—it’s a strategic one.</p><p>🔍 Want to know if your domain is at risk right now?<br/> Run a free domain check with our <a target='_new' href='https://www.inputoutput.com/email-audit'>iO™ DMARC Email Audit Tool</a> and get instant insights into your SPF, DKIM, and DMARC configuration.</p><p>⭐ Need to make managing this stuff simple and non-headache inducing?<br/> That’s where <a target='_new' href='https://www.inputoutput.com/email-deliverability-tool'>iO™ DMARC</a> comes in. It’s the easy button for email security and deliverability.</p><p>📖 Dive deeper with our companion article: <a href='https://www.inputoutput.com/blog/dmarc-2025-requirements'>DMARC Is No Longer Optional: What Business Owners Need to Know in 2025</a></p><p>If email is part of your business (hint: it is), then this episode is for you. Even if you&apos;ve never heard of DMARC before—or tried to ignore it hoping it would go away—2025 isn&apos;t giving you the option anymore.</p><p>So buckle up, press play, and let’s make sure your emails land where they belong.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203811-54-why-dmarc-changes-in-may-2025-can-t-be-ignored.mp3" length="14574702" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/y3x8vi32qaw0psdhpjkzzif7w9hj?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149034402</guid>
    <pubDate>Thu, 22 May 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1208</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#53: What to Expect in an Information Security Audit</itunes:title>
    <title>#53: What to Expect in an Information Security Audit</title>
    <itunes:summary><![CDATA[        Think a cybersecurity audit is just someone skimming your policies and handing out a report card? Think again. In this episode of Cash in the Cyber Sheets, we break down what a modern cybersecurity audit actually looks like when it’s done right — not robotic, not adversarial, and definitely not a waste of time. From smart scoping and stakeholder alignment to deep-dive control reviews and practical remediation guidance, you'll discover how the audit process can be a strategic advantage...]]></itunes:summary>
    <description><![CDATA[        <p class=''>Think a cybersecurity audit is just someone skimming your policies and handing out a report card? Think again.</p><p class=''>In this episode of <em>Cash in the Cyber Sheets</em>, we break down what a modern cybersecurity audit <em>actually</em> looks like when it’s done right — not robotic, not adversarial, and definitely not a waste of time. From smart scoping and stakeholder alignment to deep-dive control reviews and practical remediation guidance, you&apos;ll discover how the audit process can be a strategic advantage, not a corporate migraine.</p><p class=''>We’ll walk you through:</p><ul><li class=''><p class=''>Scoping: How the right questions up front ensure an audit that’s focused, not bloated</p></li><li class=''><p class=''>Kickoff: Aligning teams and setting expectations (without the eye rolls)</p></li><li class=''><p class=''>Policy Review: How what’s written down compares to what’s <em>really</em> happening</p></li><li class=''><p class=''>Evidence Gathering: Why “trust but verify” is more than just a slogan</p></li><li class=''><p class=''>Risk Validation: Connecting control gaps with business risk and real-world threats</p></li><li class=''><p class=''>Reporting: Translating findings into plain-English, prioritized remediation roadmaps</p></li></ul><p class=''>We also spotlight Input Output’s proprietary <strong>iO-GRCF™</strong> — our framework that cross-maps your controls to multiple industry standards like NIST, ISO 27001, FTC Safeguards Rule, HIPAA, and more, all without creating duplicate work or cost.</p><p class=''>Whether you&apos;re preparing for a client review, chasing a certification, or just trying to avoid getting blindsided by your cyber insurer, this episode gives you the clarity you need.</p><p class=''>🔍 Want to dig deeper? Check out the companion article here:<br/> 👉 <a target='_new' class='' href='https://www.inputoutput.com/blog/What-Occurs-During-a-Security-Audit'>https://www.inputoutput.com/blog/What-Occurs-During-a-Security-Audit</a></p>      ]]></description>
    <content:encoded><![CDATA[        <p class=''>Think a cybersecurity audit is just someone skimming your policies and handing out a report card? Think again.</p><p class=''>In this episode of <em>Cash in the Cyber Sheets</em>, we break down what a modern cybersecurity audit <em>actually</em> looks like when it’s done right — not robotic, not adversarial, and definitely not a waste of time. From smart scoping and stakeholder alignment to deep-dive control reviews and practical remediation guidance, you&apos;ll discover how the audit process can be a strategic advantage, not a corporate migraine.</p><p class=''>We’ll walk you through:</p><ul><li class=''><p class=''>Scoping: How the right questions up front ensure an audit that’s focused, not bloated</p></li><li class=''><p class=''>Kickoff: Aligning teams and setting expectations (without the eye rolls)</p></li><li class=''><p class=''>Policy Review: How what’s written down compares to what’s <em>really</em> happening</p></li><li class=''><p class=''>Evidence Gathering: Why “trust but verify” is more than just a slogan</p></li><li class=''><p class=''>Risk Validation: Connecting control gaps with business risk and real-world threats</p></li><li class=''><p class=''>Reporting: Translating findings into plain-English, prioritized remediation roadmaps</p></li></ul><p class=''>We also spotlight Input Output’s proprietary <strong>iO-GRCF™</strong> — our framework that cross-maps your controls to multiple industry standards like NIST, ISO 27001, FTC Safeguards Rule, HIPAA, and more, all without creating duplicate work or cost.</p><p class=''>Whether you&apos;re preparing for a client review, chasing a certification, or just trying to avoid getting blindsided by your cyber insurer, this episode gives you the clarity you need.</p><p class=''>🔍 Want to dig deeper? Check out the companion article here:<br/> 👉 <a target='_new' class='' href='https://www.inputoutput.com/blog/What-Occurs-During-a-Security-Audit'>https://www.inputoutput.com/blog/What-Occurs-During-a-Security-Audit</a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203812-53-what-to-expect-in-an-information-security-audit.mp3" length="13888849" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/y3fsnjjlgqkn3rmw2tu3tpit51fh?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149029661</guid>
    <pubDate>Thu, 15 May 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1151</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#52: Information Security Policy Document Example</itunes:title>
    <title>#52: Information Security Policy Document Example</title>
    <itunes:summary><![CDATA[        If the phrase “information security policy document example” sounds like something only a compliance consultant could love… we’re here to change your mind. In this episode of Cash in the Cyber Sheets, we take a hands-on walkthrough of a real, downloadable information security policy document sample — the GOV domain sample from our Written Information Security Plan (WISP). This is the exact format and structure we use to help small and mid-sized businesses meet regulatory requirem...]]></itunes:summary>
    <description><![CDATA[        <p class=''>If the phrase “information security policy document example” sounds like something only a compliance consultant could love… we’re here to change your mind.</p><p class=''>In this episode of <em>Cash in the Cyber Sheets</em>, we take a hands-on walkthrough of a real, downloadable <strong>information security policy document sample</strong> — the GOV domain sample from our Written Information Security Plan (WISP). This is the exact format and structure we use to help small and mid-sized businesses meet regulatory requirements, close security gaps, and document their programs like pros.</p><p class=''>So many SMBs and MSPs struggle to turn compliance frameworks into something practical. The GOV domain helps bridge that gap — and in this episode, we explain how you can use it to:</p><ul><li class=''><p class=''>Understand and apply common InfoSec terminology (like C.I.A., risk treatment, and stakeholder matrices)</p></li><li class=''><p class=''>Align your policies with regulations like the <strong>FTC Safeguards Rule</strong>, <strong>GLBA</strong>, and <strong>ISO 27001</strong></p></li><li class=''><p class=''>Assign clear roles and responsibilities (yes, we break down who does what and why it matters)</p></li><li class=''><p class=''>Plan internal audits, board reviews, and executive reporting with confidence</p></li><li class=''><p class=''>Ensure version control, scope, and applicability are clearly defined and maintained</p></li><li class=''><p class=''>Communicate your security commitment across your organization and to external stakeholders</p></li></ul><p class=''>We don’t just read you the policy — we explain what each section is for, how to use it, and why it helps you get compliant faster with less guesswork. If you’re an MSP helping clients get compliant, or a business owner trying to avoid regulatory pain, this episode gives you a real-world guide to doing it right.</p><p class=''>🧩 <strong>Why this matters:</strong><br/> Using a strong, editable <strong>IT policy template</strong> saves time, reduces risk, and ensures you&apos;re not starting from a blank screen (or worse, a half-baked internet copy-paste). The GOV domain forms the strategic foundation of your InfoSec program and makes it easy to layer in the remaining domains later.</p><p class=''>🧰 <strong>Download the editable GOV domain information technology security policy template (Word + PDF):</strong><br/> 👉 <a href='https://www.inputoutput.com/Information-Technology-Security-Policy-Template-Download'>https://www.inputoutput.com/Information-Technology-Security-Policy-Template-Download</a> </p><p class=''><a target='_new' class='cursor-pointer' href='https://www.inputoutput.com/Information-Technology-Security-Policy-Template-Download'> </a>📘 <strong>Want the deep dive?</strong><br/> We also wrote a full article breaking down the components of a good security policy and the GOV domain:<br/> 👉 <a href='https://www.inputoutput.com/blog/Information-Technology-Security-Policy-Sample-guide'>https://www.inputoutput.com/blog/Information-Technology-Security-Policy-Sample-guide</a> </p>      ]]></description>
    <content:encoded><![CDATA[        <p class=''>If the phrase “information security policy document example” sounds like something only a compliance consultant could love… we’re here to change your mind.</p><p class=''>In this episode of <em>Cash in the Cyber Sheets</em>, we take a hands-on walkthrough of a real, downloadable <strong>information security policy document sample</strong> — the GOV domain sample from our Written Information Security Plan (WISP). This is the exact format and structure we use to help small and mid-sized businesses meet regulatory requirements, close security gaps, and document their programs like pros.</p><p class=''>So many SMBs and MSPs struggle to turn compliance frameworks into something practical. The GOV domain helps bridge that gap — and in this episode, we explain how you can use it to:</p><ul><li class=''><p class=''>Understand and apply common InfoSec terminology (like C.I.A., risk treatment, and stakeholder matrices)</p></li><li class=''><p class=''>Align your policies with regulations like the <strong>FTC Safeguards Rule</strong>, <strong>GLBA</strong>, and <strong>ISO 27001</strong></p></li><li class=''><p class=''>Assign clear roles and responsibilities (yes, we break down who does what and why it matters)</p></li><li class=''><p class=''>Plan internal audits, board reviews, and executive reporting with confidence</p></li><li class=''><p class=''>Ensure version control, scope, and applicability are clearly defined and maintained</p></li><li class=''><p class=''>Communicate your security commitment across your organization and to external stakeholders</p></li></ul><p class=''>We don’t just read you the policy — we explain what each section is for, how to use it, and why it helps you get compliant faster with less guesswork. If you’re an MSP helping clients get compliant, or a business owner trying to avoid regulatory pain, this episode gives you a real-world guide to doing it right.</p><p class=''>🧩 <strong>Why this matters:</strong><br/> Using a strong, editable <strong>IT policy template</strong> saves time, reduces risk, and ensures you&apos;re not starting from a blank screen (or worse, a half-baked internet copy-paste). The GOV domain forms the strategic foundation of your InfoSec program and makes it easy to layer in the remaining domains later.</p><p class=''>🧰 <strong>Download the editable GOV domain information technology security policy template (Word + PDF):</strong><br/> 👉 <a href='https://www.inputoutput.com/Information-Technology-Security-Policy-Template-Download'>https://www.inputoutput.com/Information-Technology-Security-Policy-Template-Download</a> </p><p class=''><a target='_new' class='cursor-pointer' href='https://www.inputoutput.com/Information-Technology-Security-Policy-Template-Download'> </a>📘 <strong>Want the deep dive?</strong><br/> We also wrote a full article breaking down the components of a good security policy and the GOV domain:<br/> 👉 <a href='https://www.inputoutput.com/blog/Information-Technology-Security-Policy-Sample-guide'>https://www.inputoutput.com/blog/Information-Technology-Security-Policy-Sample-guide</a> </p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203813-52-information-security-policy-document-example.mp3" length="21966334" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/27yfipv5kn8lbjt2pobdf04oepxs?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149024674</guid>
    <pubDate>Thu, 08 May 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1824</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#51: FTC Safeguards Checklist | Reporting to Leadership</itunes:title>
    <title>#51: FTC Safeguards Checklist | Reporting to Leadership</title>
    <itunes:summary><![CDATA[        In this final episode of our FTC Safeguards Rule Compliance Checklist series, Cash in the Cyber Sheets wraps up with a deep dive into one of the most overlooked—but absolutely essential—requirements of the Safeguards Rule: reporting to your board of directors or senior leadership under §314.4(i). If you’ve been following our series, you’ve already tackled everything from risk assessments to incident response plans. But now, it's time to translate all that technical effort into a langu...]]></itunes:summary>
    <description><![CDATA[        <p class=''>In this final episode of our <em>FTC Safeguards Rule Compliance Checklist</em> series, <em>Cash in the Cyber Sheets</em> wraps up with a deep dive into one of the most overlooked—but absolutely essential—requirements of the Safeguards Rule: <strong>reporting to your board of directors or senior leadership</strong> under §314.4(i).</p><p class=''>If you’ve been following our series, you’ve already tackled everything from risk assessments to incident response plans. But now, it&apos;s time to translate all that technical effort into a language executives understand. Because what good is a great security program if leadership never hears about it?</p><p class=''>In this episode, we walk through exactly what this reporting requirement entails, why it matters to both compliance and business strategy, and how to build a board report that’s insightful, digestible, and regulation-ready. You’ll learn how to craft a report that covers program status, control testing, audit findings, incident history, stakeholder feedback, and evolving risks—without getting lost in acronyms or technical jargon.</p><p class=''>We’re also drawing on Input Output’s field-tested <strong>ISP Management Review</strong> framework, giving you a practical, board-facing template to make your next report more than just a compliance chore—it becomes a strategic asset. From identifying internal/external risk factors to defining performance targets and summarizing stakeholder feedback, we cover it all.</p><p class=''>We’ll also tie it all back to the broader goals of the FTC Safeguards Rule. If your business collects or processes customer financial data, staying compliant isn’t just about avoiding fines—it’s about earning trust, building resilience, and making security a leadership priority.</p><p class=''>Whether you’re a CISO, compliance officer, or just the person voluntold to handle the next board update, this episode is your go-to guide for turning security data into executive action.</p><p class=''>🧩 <strong>BONUS:</strong> <br/>Check out our full blog article on §314.4(i): <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-Reporting-to-Senior-Management'>FTC Safeguards Rule Checklist: Reporting to Senior Management</a></p><p class=''>and our <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>FTC Safeguards Rule Compliance Checklist Infographic</a>—your go-to visual aid for staying on track with every requirement.</p><p class=''>So grab your headphones, maybe a second coffee, and let’s make sure your next board report doesn’t just inform—it inspires.</p>      ]]></description>
    <content:encoded><![CDATA[        <p class=''>In this final episode of our <em>FTC Safeguards Rule Compliance Checklist</em> series, <em>Cash in the Cyber Sheets</em> wraps up with a deep dive into one of the most overlooked—but absolutely essential—requirements of the Safeguards Rule: <strong>reporting to your board of directors or senior leadership</strong> under §314.4(i).</p><p class=''>If you’ve been following our series, you’ve already tackled everything from risk assessments to incident response plans. But now, it&apos;s time to translate all that technical effort into a language executives understand. Because what good is a great security program if leadership never hears about it?</p><p class=''>In this episode, we walk through exactly what this reporting requirement entails, why it matters to both compliance and business strategy, and how to build a board report that’s insightful, digestible, and regulation-ready. You’ll learn how to craft a report that covers program status, control testing, audit findings, incident history, stakeholder feedback, and evolving risks—without getting lost in acronyms or technical jargon.</p><p class=''>We’re also drawing on Input Output’s field-tested <strong>ISP Management Review</strong> framework, giving you a practical, board-facing template to make your next report more than just a compliance chore—it becomes a strategic asset. From identifying internal/external risk factors to defining performance targets and summarizing stakeholder feedback, we cover it all.</p><p class=''>We’ll also tie it all back to the broader goals of the FTC Safeguards Rule. If your business collects or processes customer financial data, staying compliant isn’t just about avoiding fines—it’s about earning trust, building resilience, and making security a leadership priority.</p><p class=''>Whether you’re a CISO, compliance officer, or just the person voluntold to handle the next board update, this episode is your go-to guide for turning security data into executive action.</p><p class=''>🧩 <strong>BONUS:</strong> <br/>Check out our full blog article on §314.4(i): <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-Reporting-to-Senior-Management'>FTC Safeguards Rule Checklist: Reporting to Senior Management</a></p><p class=''>and our <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>FTC Safeguards Rule Compliance Checklist Infographic</a>—your go-to visual aid for staying on track with every requirement.</p><p class=''>So grab your headphones, maybe a second coffee, and let’s make sure your next board report doesn’t just inform—it inspires.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203814-51-ftc-safeguards-checklist-reporting-to-leadership.mp3" length="14308297" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/um14yrzrh4ml3vn3ffgf15823j5o?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149021163</guid>
    <pubDate>Thu, 01 May 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1186</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#50: FTC Safeguards Checklist | Incident Response Plan</itunes:title>
    <title>#50: FTC Safeguards Checklist | Incident Response Plan</title>
    <itunes:summary><![CDATA[        🎙️ FTC Safeguards Rule Series: Mastering Incident Response  Checklist for Compliance, Episode [#]: When Cyber Hits the Fan In the world of cybersecurity, it's not if something goes wrong—it's when. That’s why this week’s episode of our FTC Safeguards Rule Checklist for Compliance series tackles one of the most critical, and often chaotic, elements of your security program: your incident response plan. Under Section § 314.4(h) of the Safeguards Rule, financial institutions aren’t just ...]]></itunes:summary>
    <description><![CDATA[        <p class=''>🎙️ <strong>FTC Safeguards Rule Series: Mastering Incident Response</strong><br/> <em>Checklist for Compliance, Episode [#]: When Cyber Hits the Fan</em></p><p class=''>In the world of cybersecurity, it&apos;s not <em>if</em> something goes wrong—it&apos;s <em>when</em>. That’s why this week’s episode of our <strong>FTC Safeguards Rule Checklist for Compliance</strong> series tackles one of the most critical, and often chaotic, elements of your security program: your incident response plan.</p><p class=''>Under Section § 314.4(h) of the Safeguards Rule, financial institutions aren’t just expected to “try their best”—they&apos;re required to have a fully documented, thoroughly tested, and actively maintained incident response plan. And not just for the regulators’ warm and fuzzy feelings, but to ensure real-world readiness when that 2 a.m. breach alert starts blinking.</p><p class=''>In this episode, we dive headfirst into what a <em>compliant and competent</em> response plan really looks like. From setting crystal-clear objectives and mapping decision trees, to planning PR-ready breach communications and conducting root cause investigations without pointing fingers—we cover it all.</p><p class=''>We break down the <strong>seven required elements</strong> of an FTC-compliant response plan, share practical strategies for implementation, and explain how to make your program resilient enough to stand up to real threats—not just checkbox audits.</p><p class=''>🔍 <em>You’ll Learn:</em></p><ul><li class=''><p class=''>Why vague workflows are the enemy of rapid response</p></li><li class=''><p class=''>How to empower your team with defined roles (no “who’s handling this?” moments)</p></li><li class=''><p class=''>What to say (and not say) when regulators, clients, or your CEO come calling</p></li><li class=''><p class=''>The importance of documentation, remediation, and rehearsals</p></li><li class=''><p class=''>Why tabletop exercises should be your new team-building activity (sans trust falls)</p></li></ul><p class=''>📥 <strong>Want the visuals to match the audio?</strong><br/> Don’t forget to <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>download our <em>FTC Safeguards Rule Checklist for Compliance</em> Infographic</a>. It’s like a security roadmap with less jargon and more action—and it&apos;s designed for real-world use, not theoretical frameworks.</p><p class=''>📖 <strong>Craving even more detail?</strong><br/> Be sure to check out the full <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Series-Mastering-Incident-Response'>companion blog article</a> for this episode: <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Series-Mastering-Incident-Response'>Mastering Incident Response</a>. We unpack § 314.4(h) line by line and offer Input Output’s field-tested tactics for compliance, recovery, and reputation defense.</p>      ]]></description>
    <content:encoded><![CDATA[        <p class=''>🎙️ <strong>FTC Safeguards Rule Series: Mastering Incident Response</strong><br/> <em>Checklist for Compliance, Episode [#]: When Cyber Hits the Fan</em></p><p class=''>In the world of cybersecurity, it&apos;s not <em>if</em> something goes wrong—it&apos;s <em>when</em>. That’s why this week’s episode of our <strong>FTC Safeguards Rule Checklist for Compliance</strong> series tackles one of the most critical, and often chaotic, elements of your security program: your incident response plan.</p><p class=''>Under Section § 314.4(h) of the Safeguards Rule, financial institutions aren’t just expected to “try their best”—they&apos;re required to have a fully documented, thoroughly tested, and actively maintained incident response plan. And not just for the regulators’ warm and fuzzy feelings, but to ensure real-world readiness when that 2 a.m. breach alert starts blinking.</p><p class=''>In this episode, we dive headfirst into what a <em>compliant and competent</em> response plan really looks like. From setting crystal-clear objectives and mapping decision trees, to planning PR-ready breach communications and conducting root cause investigations without pointing fingers—we cover it all.</p><p class=''>We break down the <strong>seven required elements</strong> of an FTC-compliant response plan, share practical strategies for implementation, and explain how to make your program resilient enough to stand up to real threats—not just checkbox audits.</p><p class=''>🔍 <em>You’ll Learn:</em></p><ul><li class=''><p class=''>Why vague workflows are the enemy of rapid response</p></li><li class=''><p class=''>How to empower your team with defined roles (no “who’s handling this?” moments)</p></li><li class=''><p class=''>What to say (and not say) when regulators, clients, or your CEO come calling</p></li><li class=''><p class=''>The importance of documentation, remediation, and rehearsals</p></li><li class=''><p class=''>Why tabletop exercises should be your new team-building activity (sans trust falls)</p></li></ul><p class=''>📥 <strong>Want the visuals to match the audio?</strong><br/> Don’t forget to <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>download our <em>FTC Safeguards Rule Checklist for Compliance</em> Infographic</a>. It’s like a security roadmap with less jargon and more action—and it&apos;s designed for real-world use, not theoretical frameworks.</p><p class=''>📖 <strong>Craving even more detail?</strong><br/> Be sure to check out the full <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Series-Mastering-Incident-Response'>companion blog article</a> for this episode: <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Series-Mastering-Incident-Response'>Mastering Incident Response</a>. We unpack § 314.4(h) line by line and offer Input Output’s field-tested tactics for compliance, recovery, and reputation defense.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203815-50-ftc-safeguards-checklist-incident-response-plan.mp3" length="13795460" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/odh055dqz9ggsaxrhlqefs9abwa6?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149016574</guid>
    <pubDate>Thu, 24 Apr 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1143</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#49: FTC Safeguards Checklist | Continual ISP Improvement</itunes:title>
    <title>#49: FTC Safeguards Checklist | Continual ISP Improvement</title>
    <itunes:summary><![CDATA[        Let’s face it—cybersecurity can feel like a never-ending treadmill powered by acronyms, compliance checklists, and the looming threat of the next data breach headline. But in this episode of Cash in the Cyber Sheets, we’re helping you catch your breath while staying compliant with the FTC’s Safeguards Rule. We’re continuing our FTC Safeguards Rule Checklist series, and today we’re focusing on what might be the most under appreciated requirement of them all: continuous improvement (FTC...]]></itunes:summary>
    <description><![CDATA[        <p>Let’s face it—cybersecurity can feel like a never-ending treadmill powered by acronyms, compliance checklists, and the looming threat of the next data breach headline. But in this episode of Cash in the Cyber Sheets, we’re helping you catch your breath while staying compliant with the FTC’s Safeguards Rule.</p><p>We’re continuing our FTC Safeguards Rule Checklist series, and today we’re focusing on what might be the most under appreciated requirement of them all: continuous improvement (FTC Safeguards Rule § 314.4(g)). Spoiler alert—it’s not optional, and it doesn’t come with a snooze button.</p><p>In this episode, we’ll walk through:</p><ul><li>What continuous improvement actually means in the eyes of the FTC (hint: it’s not just about dusting off your policies once a year)</li><li>How to evolve your Information Security Program based on testing, monitoring, and business changes</li><li>Why risk assessments aren’t just busywork—they’re your roadmap to smarter security decisions</li><li>The easy ways you can show your continual improvement efforts as part of your routine ISP management</li><li>How to make “security culture” more than just a buzzword in a PowerPoint deck</li></ul><p>Whether you’re the person who built your WISP from scratch or the lucky soul who just inherited it, this episode offers practical insights into keeping your program effective, compliant, and yes—even a little future-proof.</p><p>We also highlight the tools and templates you can use to simplify documentation, streamline reassessments, and improve audit readiness without sacrificing your sanity (or your weekend).</p><p>💡 Bonus: Be sure to download our <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>FTC Safeguards Rule Checklist Infographic</a> to follow along visually. Because a well-organized mind—and security program—starts with a solid checklist.</p><p>So grab your coffee, cue up that compliance brain, and tune in to learn how to keep your security program moving forward—without spinning your wheels.</p><p> </p><p>Grab the FTC Safeguards Rule Checklist for Compliance here:<br/><a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance</a></p><p>Also, don&apos;t miss our companion blog article, &quot;FTC Safeguards Rule Checklist for Compliance: Continual ISP Improvement&quot;, here:<br/><a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Continual-ISP-Improvement'>https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Continual-ISP-Improvement</a> </p><p> </p>      ]]></description>
    <content:encoded><![CDATA[        <p>Let’s face it—cybersecurity can feel like a never-ending treadmill powered by acronyms, compliance checklists, and the looming threat of the next data breach headline. But in this episode of Cash in the Cyber Sheets, we’re helping you catch your breath while staying compliant with the FTC’s Safeguards Rule.</p><p>We’re continuing our FTC Safeguards Rule Checklist series, and today we’re focusing on what might be the most under appreciated requirement of them all: continuous improvement (FTC Safeguards Rule § 314.4(g)). Spoiler alert—it’s not optional, and it doesn’t come with a snooze button.</p><p>In this episode, we’ll walk through:</p><ul><li>What continuous improvement actually means in the eyes of the FTC (hint: it’s not just about dusting off your policies once a year)</li><li>How to evolve your Information Security Program based on testing, monitoring, and business changes</li><li>Why risk assessments aren’t just busywork—they’re your roadmap to smarter security decisions</li><li>The easy ways you can show your continual improvement efforts as part of your routine ISP management</li><li>How to make “security culture” more than just a buzzword in a PowerPoint deck</li></ul><p>Whether you’re the person who built your WISP from scratch or the lucky soul who just inherited it, this episode offers practical insights into keeping your program effective, compliant, and yes—even a little future-proof.</p><p>We also highlight the tools and templates you can use to simplify documentation, streamline reassessments, and improve audit readiness without sacrificing your sanity (or your weekend).</p><p>💡 Bonus: Be sure to download our <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>FTC Safeguards Rule Checklist Infographic</a> to follow along visually. Because a well-organized mind—and security program—starts with a solid checklist.</p><p>So grab your coffee, cue up that compliance brain, and tune in to learn how to keep your security program moving forward—without spinning your wheels.</p><p> </p><p>Grab the FTC Safeguards Rule Checklist for Compliance here:<br/><a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance</a></p><p>Also, don&apos;t miss our companion blog article, &quot;FTC Safeguards Rule Checklist for Compliance: Continual ISP Improvement&quot;, here:<br/><a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Continual-ISP-Improvement'>https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Continual-ISP-Improvement</a> </p><p> </p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203816-49-ftc-safeguards-checklist-continual-isp-improvement.mp3" length="11076743" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/a9ed9ekj57oqoogrq1pmetb7bq28?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149013655</guid>
    <pubDate>Thu, 17 Apr 2025 10:00:00 -0400</pubDate>
    <itunes:duration>917</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#48: FTC Safeguards Checklist | Managing Service Providers</itunes:title>
    <title>#48: FTC Safeguards Checklist | Managing Service Providers</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we’re diving into one of the most overlooked (and risky) parts of FTC Safeguards Rule compliance—managing your service providers. From contract clauses to risk reviews, we’ll walk you through what the Rule actually requires, what “reasonable oversight” really means, and how to avoid getting blindsided by a third-party security failure. ✅ Learn how to select secure vendors  📝 What language your contracts must include  🔁 How to reassess provi...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we’re diving into one of the most overlooked (and risky) parts of FTC Safeguards Rule compliance—managing your service providers.</p><p>From contract clauses to risk reviews, we’ll walk you through what the Rule actually requires, what “reasonable oversight” really means, and how to avoid getting blindsided by a third-party security failure.</p><p>✅ Learn how to select secure vendors <br/>📝 What language your contracts must include <br/>🔁 How to reassess providers without making it a full-time job</p><p>🎁 Download our <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>FTC Safeguards Rule Checklist Infographic</a> to follow along. <br/>📖 Want more details? <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Managing-Service-Providers'>Read the full blog post here</a>.</p><p>Because if your vendor drops the ball, you’re the one stuck holding it. Let’s make sure that doesn’t happen.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we’re diving into one of the most overlooked (and risky) parts of FTC Safeguards Rule compliance—managing your service providers.</p><p>From contract clauses to risk reviews, we’ll walk you through what the Rule actually requires, what “reasonable oversight” really means, and how to avoid getting blindsided by a third-party security failure.</p><p>✅ Learn how to select secure vendors <br/>📝 What language your contracts must include <br/>🔁 How to reassess providers without making it a full-time job</p><p>🎁 Download our <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>FTC Safeguards Rule Checklist Infographic</a> to follow along. <br/>📖 Want more details? <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Managing-Service-Providers'>Read the full blog post here</a>.</p><p>Because if your vendor drops the ball, you’re the one stuck holding it. Let’s make sure that doesn’t happen.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203817-48-ftc-safeguards-checklist-managing-service-providers.mp3" length="16830615" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/ucswb73vo2xybgy92oo10ku3nn97?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149010459</guid>
    <pubDate>Thu, 10 Apr 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1396</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#47: FTC Safeguards Checklist | Training &amp; Policies</itunes:title>
    <title>#47: FTC Safeguards Checklist | Training &amp; Policies</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we continue our series on the FTC Safeguards Rule checklist for compliance. Navigating compliance requirements can feel overwhelming, but we're here to break it down. This episode focuses on implementing robust information security policies, procedures, and training—key components to keeping your organization safe and compliant. We discuss how to develop a comprehensive Written Information Security Program (WISP), train employees on emergin...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we continue our series on the FTC Safeguards Rule checklist for compliance. Navigating compliance requirements can feel overwhelming, but we&apos;re here to break it down. This episode focuses on implementing robust information security policies, procedures, and training—key components to keeping your organization safe and compliant.</p><p>We discuss how to develop a comprehensive Written Information Security Program (WISP), train employees on emerging threats like phishing, smishing, vishing, quishing, and social engineering, and maintain ongoing threat awareness through continuous updates and timely communication.</p><p>From automated training exercises to posters and newsletters, we cover the best practices for keeping your team prepared. Don&apos;t miss out on these valuable insights!</p><p>Download the &apos;<a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist for Compliance</a>&apos; infographic to follow along and ensure your business stays on the right side of compliance.</p><p>Also, check our our companion article: <br/><a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Series-Information-Security-Policies-Procedures-Training' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist for Compliance Series: Information Security Policies, Procedures &amp; Training</a></p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we continue our series on the FTC Safeguards Rule checklist for compliance. Navigating compliance requirements can feel overwhelming, but we&apos;re here to break it down. This episode focuses on implementing robust information security policies, procedures, and training—key components to keeping your organization safe and compliant.</p><p>We discuss how to develop a comprehensive Written Information Security Program (WISP), train employees on emerging threats like phishing, smishing, vishing, quishing, and social engineering, and maintain ongoing threat awareness through continuous updates and timely communication.</p><p>From automated training exercises to posters and newsletters, we cover the best practices for keeping your team prepared. Don&apos;t miss out on these valuable insights!</p><p>Download the &apos;<a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist for Compliance</a>&apos; infographic to follow along and ensure your business stays on the right side of compliance.</p><p>Also, check our our companion article: <br/><a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-for-Compliance-Series-Information-Security-Policies-Procedures-Training' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist for Compliance Series: Information Security Policies, Procedures &amp; Training</a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203818-47-ftc-safeguards-checklist-training-policies.mp3" length="13304559" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/5yw9491c2ibizskksxsh98ojfqat?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149007962</guid>
    <pubDate>Thu, 03 Apr 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1102</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#46: FTC Safeguards Checklist | Reviewing Controls</itunes:title>
    <title>#46: FTC Safeguards Checklist | Reviewing Controls</title>
    <itunes:summary><![CDATA[        Welcome back to Cash In the Cyber Sheets. This episode is a continuation of our FTC Safeguards Rule Checklist for Compliance series, and we’re diving into a part of the Safeguards Rule that too many companies overlook until it’s too late: ongoing monitoring and testing. In this episode, we break down § 314.4(d) of the FTC Safeguards Rule—what it actually requires, what regulators expect, and how to move from "set it and forget it" to "set it, test it, monitor it, and update it." ...]]></itunes:summary>
    <description><![CDATA[        <p class=''>Welcome back to <em>Cash In the Cyber Sheets</em>. This episode is a continuation of our <em>FTC Safeguards Rule Checklist for Compliance</em> series, and we’re diving into a part of the Safeguards Rule that too many companies overlook until it’s too late: ongoing monitoring and testing.</p><p class=''>In this episode, we break down § 314.4(d) of the FTC Safeguards Rule—what it actually requires, what regulators expect, and how to move from &quot;set it and forget it&quot; to &quot;set it, test it, monitor it, and update it.&quot; Spoiler alert: hope is not a strategy, and ignorance is definitely not compliance.</p><p class=''>We’ll explore:</p><ul><li class=''><p class=''>What counts as &quot;regular testing&quot; and how often it’s required</p></li><li class=''><p class=''>The difference between vulnerability assessments and penetration testing (yes, you need both)</p></li><li class=''><p class=''>How to build a proactive, risk-based monitoring program that aligns with real-world threats</p></li><li class=''><p class=''>And how to ensure your security program doesn’t just exist on paper—but actually works</p></li></ul><p class=''>If you&apos;re serious about protecting sensitive data <em>and</em> staying on the right side of regulators, this is one episode you don’t want to miss.</p><p class=''>🔍 Download our <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>FTC Safeguards Rule Checklist Infographic</a> to follow along and track your compliance progress step-by-step.</p><p class=''>Also, check out our companion article at:</p><p class=''><a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-Compliance-Series-Monitoring-Reviewing-and-Testing-Controls' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist Compliance Series: Monitoring, Reviewing, and Testing Controls</a></p>      ]]></description>
    <content:encoded><![CDATA[        <p class=''>Welcome back to <em>Cash In the Cyber Sheets</em>. This episode is a continuation of our <em>FTC Safeguards Rule Checklist for Compliance</em> series, and we’re diving into a part of the Safeguards Rule that too many companies overlook until it’s too late: ongoing monitoring and testing.</p><p class=''>In this episode, we break down § 314.4(d) of the FTC Safeguards Rule—what it actually requires, what regulators expect, and how to move from &quot;set it and forget it&quot; to &quot;set it, test it, monitor it, and update it.&quot; Spoiler alert: hope is not a strategy, and ignorance is definitely not compliance.</p><p class=''>We’ll explore:</p><ul><li class=''><p class=''>What counts as &quot;regular testing&quot; and how often it’s required</p></li><li class=''><p class=''>The difference between vulnerability assessments and penetration testing (yes, you need both)</p></li><li class=''><p class=''>How to build a proactive, risk-based monitoring program that aligns with real-world threats</p></li><li class=''><p class=''>And how to ensure your security program doesn’t just exist on paper—but actually works</p></li></ul><p class=''>If you&apos;re serious about protecting sensitive data <em>and</em> staying on the right side of regulators, this is one episode you don’t want to miss.</p><p class=''>🔍 Download our <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'>FTC Safeguards Rule Checklist Infographic</a> to follow along and track your compliance progress step-by-step.</p><p class=''>Also, check out our companion article at:</p><p class=''><a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-Compliance-Series-Monitoring-Reviewing-and-Testing-Controls' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist Compliance Series: Monitoring, Reviewing, and Testing Controls</a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203819-46-ftc-safeguards-checklist-reviewing-controls.mp3" length="15925928" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/0t59fg2faysj8malc1jb7yk9ddr4?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149004550</guid>
    <pubDate>Thu, 27 Mar 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1321</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#45: FTC Safeguards Checklist | Security Controls Deep Dive</itunes:title>
    <title>#45: FTC Safeguards Checklist | Security Controls Deep Dive</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we continue our FTC Safeguards Rule Checklist for Compliance series by diving deeper into the practical implementation of security controls. Last time, we outlined the critical components of a risk-based approach—now, we’re getting into the nitty-gritty of making those safeguards work effectively in your organization. With the FTC’s updated Safeguards Rule now in full effect, businesses handling customer financial data must establish robust...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we continue our FTC Safeguards Rule Checklist for Compliance series by diving deeper into the practical implementation of security controls. Last time, we outlined the critical components of a risk-based approach—now, we’re getting into the nitty-gritty of making those safeguards work effectively in your organization.</p><p>With the FTC’s updated Safeguards Rule now in full effect, businesses handling customer financial data must establish robust security measures to mitigate risks, prevent breaches, and maintain compliance. This episode breaks down the key controls required under 16 CFR § 314.4(c), including:</p><p>🔹 Access Controls – Enforcing least privilege, MFA, and strong authentication to prevent unauthorized data exposure.</p><p>🔹 Asset Management – Identifying critical data and systems, classifying risk levels, and prioritizing protections.</p><p>🔹 Data Encryption &amp; Alternative Safeguards – Securing data in transit and at rest, and implementing compensating controls when encryption isn’t feasible.</p><p>🔹 Secure Development Practices – Building security into applications using OWASP best practices and proactive code review.</p><p>🔹 Data Retention &amp; Disposal – Establishing clear policies to eliminate unnecessary data storage and minimize breach risks.</p><p>🔹 Change Management &amp; Monitoring – Ensuring updates don’t introduce new vulnerabilities and leveraging logging for real-time threat detection.</p><p>We also explore how businesses—especially those without a dedicated security team—can streamline compliance using Input Output’s Written Information Security Program (WISP), which provides ready-to-use policies, procedures, and incident response templates to simplify implementation.</p><p>Staying compliant isn’t just about checking boxes; it’s about maintaining an adaptable security posture that protects your customers and your business. Tune in to Cash in the Cyber Sheets as we break it all down, making compliance easier (and maybe even a little fun).</p><p>🔊 Listen now and take control of your security program!</p><p> </p><p>Grab your copy of the: <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist for Compliance Infographic</a></p><p>Check out our companion article for even more in-depth review of best FTC Safeguards Rule security practices at: <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-Implementing-Appropriate-Controls' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist: Implementing Appropriate Controls with a Risk-Based Approach</a></p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we continue our FTC Safeguards Rule Checklist for Compliance series by diving deeper into the practical implementation of security controls. Last time, we outlined the critical components of a risk-based approach—now, we’re getting into the nitty-gritty of making those safeguards work effectively in your organization.</p><p>With the FTC’s updated Safeguards Rule now in full effect, businesses handling customer financial data must establish robust security measures to mitigate risks, prevent breaches, and maintain compliance. This episode breaks down the key controls required under 16 CFR § 314.4(c), including:</p><p>🔹 Access Controls – Enforcing least privilege, MFA, and strong authentication to prevent unauthorized data exposure.</p><p>🔹 Asset Management – Identifying critical data and systems, classifying risk levels, and prioritizing protections.</p><p>🔹 Data Encryption &amp; Alternative Safeguards – Securing data in transit and at rest, and implementing compensating controls when encryption isn’t feasible.</p><p>🔹 Secure Development Practices – Building security into applications using OWASP best practices and proactive code review.</p><p>🔹 Data Retention &amp; Disposal – Establishing clear policies to eliminate unnecessary data storage and minimize breach risks.</p><p>🔹 Change Management &amp; Monitoring – Ensuring updates don’t introduce new vulnerabilities and leveraging logging for real-time threat detection.</p><p>We also explore how businesses—especially those without a dedicated security team—can streamline compliance using Input Output’s Written Information Security Program (WISP), which provides ready-to-use policies, procedures, and incident response templates to simplify implementation.</p><p>Staying compliant isn’t just about checking boxes; it’s about maintaining an adaptable security posture that protects your customers and your business. Tune in to Cash in the Cyber Sheets as we break it all down, making compliance easier (and maybe even a little fun).</p><p>🔊 Listen now and take control of your security program!</p><p> </p><p>Grab your copy of the: <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist for Compliance Infographic</a></p><p>Check out our companion article for even more in-depth review of best FTC Safeguards Rule security practices at: <a href='https://www.inputoutput.com/blog/FTC-Safeguards-Rule-Checklist-Implementing-Appropriate-Controls' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Checklist: Implementing Appropriate Controls with a Risk-Based Approach</a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203820-45-ftc-safeguards-checklist-security-controls-deep-dive.mp3" length="13882289" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/n7l2g0nhzz06j562ycll4waesic4?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2149000358</guid>
    <pubDate>Thu, 20 Mar 2025 10:00:00 -0400</pubDate>
    <itunes:duration>1150</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#44: FTC Safeguards Checklist | Key Security Controls</itunes:title>
    <title>#44: FTC Safeguards Checklist | Key Security Controls</title>
    <itunes:summary><![CDATA[        When people think of security controls, they usually picture firewalls, antivirus software, and multi-factor authentication. But truly protecting your business goes beyond just technical solutions—it requires a mix of administrative, physical, and technical controls working together. In this episode of Cash in the Cyber Sheets, we continue our deep dive into the FTC Safeguards Rule Checklist, focusing on appropriate security controls. We’ll cover the essentials, including malware mana...]]></itunes:summary>
    <description><![CDATA[        <p>When people think of security controls, they usually picture firewalls, antivirus software, and multi-factor authentication. But truly protecting your business goes beyond just technical solutions—it requires a mix of administrative, physical, and technical controls working together.</p><p>In this episode of Cash in the Cyber Sheets, we continue our deep dive into the FTC Safeguards Rule Checklist, focusing on appropriate security controls. We’ll cover the essentials, including malware management, password managers, and MFA, while also tackling the often-overlooked administrative and physical safeguards that are just as critical.</p><p>How do you determine which controls are right for your organization? What gaps might you be overlooking? We break it all down so you can build a security strategy that actually works—not just one that checks a compliance box.</p><p>If you&apos;re serious about protecting sensitive data (and avoiding hefty fines), this episode is for you.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>When people think of security controls, they usually picture firewalls, antivirus software, and multi-factor authentication. But truly protecting your business goes beyond just technical solutions—it requires a mix of administrative, physical, and technical controls working together.</p><p>In this episode of Cash in the Cyber Sheets, we continue our deep dive into the FTC Safeguards Rule Checklist, focusing on appropriate security controls. We’ll cover the essentials, including malware management, password managers, and MFA, while also tackling the often-overlooked administrative and physical safeguards that are just as critical.</p><p>How do you determine which controls are right for your organization? What gaps might you be overlooking? We break it all down so you can build a security strategy that actually works—not just one that checks a compliance box.</p><p>If you&apos;re serious about protecting sensitive data (and avoiding hefty fines), this episode is for you.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203821-44-ftc-safeguards-checklist-key-security-controls.mp3" length="10944585" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/wc2dchc9ahjm2l180fsboixdzrg1?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148994897</guid>
    <pubDate>Thu, 13 Mar 2025 10:00:00 -0400</pubDate>
    <itunes:duration>905</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#43: FinCEN BOI Reporting Requirements Halted</itunes:title>
    <title>#43: FinCEN BOI Reporting Requirements Halted</title>
    <itunes:summary><![CDATA[        Regulatory compliance just took another sharp turn. The Beneficial Ownership Information (BOI) reporting requirements under the Corporate Transparency Act (CTA) have been halted—at least for now. But what does that really mean for small businesses? In this episode of Cash in the Cyber Sheets, we unpack the latest legal twists, including the U.S. Treasury Department’s announcement that BOI reporting will not be enforced at this time. Does this mean businesses are off the hook permanent...]]></itunes:summary>
    <description><![CDATA[        <p>Regulatory compliance just took another sharp turn. The Beneficial Ownership Information (BOI) reporting requirements under the Corporate Transparency Act (CTA) have been halted—at least for now. But what does that really mean for small businesses?</p><p>In this episode of Cash in the Cyber Sheets, we unpack the latest legal twists, including the U.S. Treasury Department’s announcement that BOI reporting will not be enforced at this time. Does this mean businesses are off the hook permanently, or is this just a temporary pause before new regulations drop?</p><p>Join us as we break down the legal back-and-forth, what businesses should do next, and why staying informed is crucial in this shifting compliance landscape. If you&apos;re wondering what’s next for BOI reporting, this episode has the answers.</p><p>Read more about the FinCEN BOI Reporting Requirements:<br/><a href='https://www.inputoutput.com/blog/Beneficial-Ownership-Information-FinCEN-Reporting-halted'>https://www.inputoutput.com/blog/Beneficial-Ownership-Information-FinCEN-Reporting-halted</a></p><p> </p>      ]]></description>
    <content:encoded><![CDATA[        <p>Regulatory compliance just took another sharp turn. The Beneficial Ownership Information (BOI) reporting requirements under the Corporate Transparency Act (CTA) have been halted—at least for now. But what does that really mean for small businesses?</p><p>In this episode of Cash in the Cyber Sheets, we unpack the latest legal twists, including the U.S. Treasury Department’s announcement that BOI reporting will not be enforced at this time. Does this mean businesses are off the hook permanently, or is this just a temporary pause before new regulations drop?</p><p>Join us as we break down the legal back-and-forth, what businesses should do next, and why staying informed is crucial in this shifting compliance landscape. If you&apos;re wondering what’s next for BOI reporting, this episode has the answers.</p><p>Read more about the FinCEN BOI Reporting Requirements:<br/><a href='https://www.inputoutput.com/blog/Beneficial-Ownership-Information-FinCEN-Reporting-halted'>https://www.inputoutput.com/blog/Beneficial-Ownership-Information-FinCEN-Reporting-halted</a></p><p> </p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203822-43-fincen-boi-reporting-requirements-halted.mp3" length="13413290" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/f8q8w8j2os76z9adb7bw24ria749?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148992225</guid>
    <pubDate>Thu, 06 Mar 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1111</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#42: FTC Safeguards Checklist | Risk-Based Approach</itunes:title>
    <title>#42: FTC Safeguards Checklist | Risk-Based Approach</title>
    <itunes:summary><![CDATA[        Compliance isn’t a checkbox—it’s a strategy. This week on Cash in the Cyber Sheets, we continue our FTC Safeguards Rule Checklist for Compliance series with a deep dive into how to design your Information Security Program (ISP) using a risk-based approach. The FTC Safeguards Rule requires businesses to identify, assess, and mitigate risks to customer information—but what does that actually look like in practice? We’ll break down how the CIA Triad (Confidentiality, Integrity, and Avail...]]></itunes:summary>
    <description><![CDATA[        <p>Compliance isn’t a checkbox—it’s a strategy. This week on <em>Cash in the Cyber Sheets</em>, we continue our <strong>FTC Safeguards Rule Checklist for Compliance</strong> series with a deep dive into <strong>how to design your Information Security Program (ISP) using a risk-based approach</strong>.</p><p>The FTC Safeguards Rule requires businesses to <strong>identify, assess, and mitigate risks</strong> to customer information—but what does that actually look like in practice? We’ll break down how the <strong>CIA Triad (Confidentiality, Integrity, and Availability)</strong> serves as the foundation of a strong security strategy and how to build a risk assessment program that not only checks the compliance box but actually protects your business.</p><p>🔍 <strong>What You’ll Learn:</strong><br/>✅ Why a <strong>risk-based approach</strong> is essential for compliance and security<br/>✅ How to align your ISP with the <strong>CIA Triad</strong> (Confidentiality, Integrity, Availability)<br/>✅ Key steps to conducting a <strong>proper risk assessment</strong> under FTC requirements<br/>✅ How to prioritize and treat risks to meet <strong>regulatory expectations</strong></p><p>🎁 <strong>Bonus Resources:</strong><br/>📌 <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'><em>FTC Safeguards Rule Checklist for Compliance</em> – Download our step-by-step infographic</a><br/>📖 Blog: <a href='https://www.inputoutput.com/blog/ftc-safeguards-rule-requirements'>FTC Safeguards Rule Requirements: What Every Organization Needs to Know<br/><span>📖 eBook: </span></a><a href='https://www.inputoutput.com/pl/2148618123' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule - FTC Compliant in 10 Easy Steps</a><a href='https://www.inputoutput.com/blog/ftc-safeguards-rule-requirements'> </a><br/>🛠️ <a href='https://www.inputoutput.com/input-output-ftc-safeguards-written-information-security-program' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Compliant WISP (Written Information Security Program)</a></p><p> </p><p>You can’t secure what you don’t understand. <strong>Tune in now to learn how to take a proactive, risk-based approach to protecting your business and customer data!</strong></p><p>👉 Listen now wherever you get your podcasts! 🎧 #CyberSecurity #FTCSafeguards #RiskManagement #Compliance #InfoSec</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Compliance isn’t a checkbox—it’s a strategy. This week on <em>Cash in the Cyber Sheets</em>, we continue our <strong>FTC Safeguards Rule Checklist for Compliance</strong> series with a deep dive into <strong>how to design your Information Security Program (ISP) using a risk-based approach</strong>.</p><p>The FTC Safeguards Rule requires businesses to <strong>identify, assess, and mitigate risks</strong> to customer information—but what does that actually look like in practice? We’ll break down how the <strong>CIA Triad (Confidentiality, Integrity, and Availability)</strong> serves as the foundation of a strong security strategy and how to build a risk assessment program that not only checks the compliance box but actually protects your business.</p><p>🔍 <strong>What You’ll Learn:</strong><br/>✅ Why a <strong>risk-based approach</strong> is essential for compliance and security<br/>✅ How to align your ISP with the <strong>CIA Triad</strong> (Confidentiality, Integrity, Availability)<br/>✅ Key steps to conducting a <strong>proper risk assessment</strong> under FTC requirements<br/>✅ How to prioritize and treat risks to meet <strong>regulatory expectations</strong></p><p>🎁 <strong>Bonus Resources:</strong><br/>📌 <a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'><em>FTC Safeguards Rule Checklist for Compliance</em> – Download our step-by-step infographic</a><br/>📖 Blog: <a href='https://www.inputoutput.com/blog/ftc-safeguards-rule-requirements'>FTC Safeguards Rule Requirements: What Every Organization Needs to Know<br/><span>📖 eBook: </span></a><a href='https://www.inputoutput.com/pl/2148618123' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule - FTC Compliant in 10 Easy Steps</a><a href='https://www.inputoutput.com/blog/ftc-safeguards-rule-requirements'> </a><br/>🛠️ <a href='https://www.inputoutput.com/input-output-ftc-safeguards-written-information-security-program' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Compliant WISP (Written Information Security Program)</a></p><p> </p><p>You can’t secure what you don’t understand. <strong>Tune in now to learn how to take a proactive, risk-based approach to protecting your business and customer data!</strong></p><p>👉 Listen now wherever you get your podcasts! 🎧 #CyberSecurity #FTCSafeguards #RiskManagement #Compliance #InfoSec</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203823-42-ftc-safeguards-checklist-risk-based-approach.mp3" length="12851580" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/fcasumwnya68kezffxcsm39wuykg?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148988203</guid>
    <pubDate>Thu, 27 Feb 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1064</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#41: FTC Safeguards Checklist | Qualified Individual Role</itunes:title>
    <title>#41: FTC Safeguards Checklist | Qualified Individual Role</title>
    <itunes:summary><![CDATA[        The FTC Safeguards Rule is here, and compliance isn’t optional. But where do you start? This week on Cash in the Cyber Sheets, we kick off our educational series diving deep into the FTC Safeguards Rule Checklist—one critical requirement at a time. In this episode, we tackle the first (and arguably most important) step: designating a Qualified Individual to oversee your Information Security Program. Who should take on this role? What qualifications matter? And how do you ensure they h...]]></itunes:summary>
    <description><![CDATA[        <p>The FTC Safeguards Rule is here, and compliance isn’t optional. But where do you start? This week on <em>Cash in the Cyber Sheets</em>, we kick off our educational series diving deep into the <strong>FTC Safeguards Rule Checklist</strong>—one critical requirement at a time.</p><p>In this episode, we tackle the first (and arguably most important) step: <strong>designating a Qualified Individual to oversee your Information Security Program</strong>. Who should take on this role? What qualifications matter? And how do you ensure they have the authority and resources to keep your business compliant and secure?</p><p>🔍 <strong>What You’ll Learn:</strong><br/>✅ Who qualifies as a “Qualified Individual” under the FTC Safeguards Rule<br/>✅ Key responsibilities and expectations for this role<br/>✅ The risks of getting it wrong—and how to get it right<br/>✅ Actionable steps to set up your compliance foundation</p><p> </p><p>🎁 <strong>Additional</strong><strong> Resources:</strong></p><ul><li><a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'><em>FTC Safeguards Rule Checklist for Compliance</em> – Download our easy-to-follow infographic</a></li><li>Blog: <a href='https://www.inputoutput.com/blog/ftc-safeguards-rule-requirements'>FTC Safeguards Rule Requirements: What Every Organization Needs to Know</a></li><li>eBook: <a href='https://www.inputoutput.com/pl/2148618123' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule - FTC Compliant in 10 Easy Steps</a></li><li><a href='https://www.inputoutput.com/input-output-ftc-safeguards-written-information-security-program' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Compliant WISP (Written Information Security Program)</a></li></ul>      ]]></description>
    <content:encoded><![CDATA[        <p>The FTC Safeguards Rule is here, and compliance isn’t optional. But where do you start? This week on <em>Cash in the Cyber Sheets</em>, we kick off our educational series diving deep into the <strong>FTC Safeguards Rule Checklist</strong>—one critical requirement at a time.</p><p>In this episode, we tackle the first (and arguably most important) step: <strong>designating a Qualified Individual to oversee your Information Security Program</strong>. Who should take on this role? What qualifications matter? And how do you ensure they have the authority and resources to keep your business compliant and secure?</p><p>🔍 <strong>What You’ll Learn:</strong><br/>✅ Who qualifies as a “Qualified Individual” under the FTC Safeguards Rule<br/>✅ Key responsibilities and expectations for this role<br/>✅ The risks of getting it wrong—and how to get it right<br/>✅ Actionable steps to set up your compliance foundation</p><p> </p><p>🎁 <strong>Additional</strong><strong> Resources:</strong></p><ul><li><a href='https://www.inputoutput.com/ftc-safeguards-rule-checklist-for-compliance'><em>FTC Safeguards Rule Checklist for Compliance</em> – Download our easy-to-follow infographic</a></li><li>Blog: <a href='https://www.inputoutput.com/blog/ftc-safeguards-rule-requirements'>FTC Safeguards Rule Requirements: What Every Organization Needs to Know</a></li><li>eBook: <a href='https://www.inputoutput.com/pl/2148618123' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule - FTC Compliant in 10 Easy Steps</a></li><li><a href='https://www.inputoutput.com/input-output-ftc-safeguards-written-information-security-program' target='_blank' rel='noopener noreferrer'>FTC Safeguards Rule Compliant WISP (Written Information Security Program)</a></li></ul>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203824-41-ftc-safeguards-checklist-qualified-individual-role.mp3" length="13731936" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/j3sql353kzf9i5hkgkoxlv7dlfpl?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148984898</guid>
    <pubDate>Thu, 20 Feb 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1138</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#40: Breaking Barriers to Success with JASB Management</itunes:title>
    <title>#40: Breaking Barriers to Success with JASB Management</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we sit down with Jerry Seigel from JASB Management, a seasoned expert in management training, executive coaching, and personal development. We dive into some of the biggest challenges business owners face and uncover what truly holds them back from reaching their full potential. From leadership blind spots to self-imposed roadblocks, Jerry shares invaluable insights on how to break through limitations and build a path to lasting success. If...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we sit down with Jerry Seigel from JASB Management, a seasoned expert in management training, executive coaching, and personal development. We dive into some of the biggest challenges business owners face and uncover what truly holds them back from reaching their full potential.</p><p>From leadership blind spots to self-imposed roadblocks, Jerry shares invaluable insights on how to break through limitations and build a path to lasting success. If you&apos;ve ever felt like you&apos;re stuck in a cycle of frustration, this episode is packed with practical strategies to help you take control and level up.</p><p>Connect with Jerry Seigel:</p><ul><li>Website: <a href='https://www.JASBManagement.com'>https://www.JASBManagement.com</a></li></ul><p>Listen now and start clearing the obstacles between you and your business success! 🚀</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we sit down with Jerry Seigel from JASB Management, a seasoned expert in management training, executive coaching, and personal development. We dive into some of the biggest challenges business owners face and uncover what truly holds them back from reaching their full potential.</p><p>From leadership blind spots to self-imposed roadblocks, Jerry shares invaluable insights on how to break through limitations and build a path to lasting success. If you&apos;ve ever felt like you&apos;re stuck in a cycle of frustration, this episode is packed with practical strategies to help you take control and level up.</p><p>Connect with Jerry Seigel:</p><ul><li>Website: <a href='https://www.JASBManagement.com'>https://www.JASBManagement.com</a></li></ul><p>Listen now and start clearing the obstacles between you and your business success! 🚀</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203825-40-breaking-barriers-to-success-with-jasb-management.mp3" length="15834919" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/355nwhox8hirr5k3hfftn1qb9zp8?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148980842</guid>
    <pubDate>Thu, 13 Feb 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1310</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#39: Expanding the CIA Triad: Why CIAPS is the New Standard</itunes:title>
    <title>#39: Expanding the CIA Triad: Why CIAPS is the New Standard</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we take a deep dive into the foundational principles of information security—the CIA triad (Confidentiality, Integrity, Availability)—and explore why these are no longer sufficient to meet today’s challenges. Introducing CIAPS (Confidentiality, Integrity, Availability, Privacy, and Safety), we discuss why businesses should adopt this expanded framework to remain secure, compliant, and aligned with modern expectations.       ]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we take a deep dive into the foundational principles of information security—the CIA triad (Confidentiality, Integrity, Availability)—and explore why these are no longer sufficient to meet today’s challenges. Introducing CIAPS (Confidentiality, Integrity, Availability, Privacy, and Safety), we discuss why businesses should adopt this expanded framework to remain secure, compliant, and aligned with modern expectations.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we take a deep dive into the foundational principles of information security—the CIA triad (Confidentiality, Integrity, Availability)—and explore why these are no longer sufficient to meet today’s challenges. Introducing CIAPS (Confidentiality, Integrity, Availability, Privacy, and Safety), we discuss why businesses should adopt this expanded framework to remain secure, compliant, and aligned with modern expectations.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203826-39-expanding-the-cia-triad-why-ciaps-is-the-new-standard.mp3" length="13251554" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/m4d3vvt6hiveiawivj7821kv85vh?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148976997</guid>
    <pubDate>Thu, 06 Feb 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1098</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#38: The First Step in Building Information Security</itunes:title>
    <title>#38: The First Step in Building Information Security</title>
    <itunes:summary><![CDATA[        The First Step in Information Security - Laying the Foundation for a Robust ISP  What does it take to build an effective Information Security Program (ISP) and what are the first things you need to consider when developing your information security policies and procedures? In this episode, we explore the critical first steps, including securing leadership commitment, forming an Information Security Program Board, and defining your organization's context and scope. Learn how these foun...]]></itunes:summary>
    <description><![CDATA[        <p><strong>The First Step in Information Security - Laying the Foundation for a Robust ISP </strong></p><p>What does it take to build an effective Information Security Program (ISP) and what are the first things you need to consider when developing your information security policies and procedures?</p><p>In this episode, we explore the critical first steps, including securing leadership commitment, forming an Information Security Program Board, and defining your organization&apos;s context and scope. Learn how these foundational elements set the stage for long-term security success.</p><p>Whether you&apos;re a security professional or a business leader, this episode provides actionable insights to help you protect your organization in an increasingly digital world.</p><p> </p><p>Check our our blog to learn even more about how to develop your information security policies and procedures and set a strong foundation for your Information Security Program:</p><p><a href='https://www.inputoutput.com/blog/what-is-the-first-step-in-information-security' target='_blank' rel='noopener noreferrer'>What is the First Step in Information Security? Building a Strong Foundation with Leadership and Organizational Context</a></p><p> </p>      ]]></description>
    <content:encoded><![CDATA[        <p><strong>The First Step in Information Security - Laying the Foundation for a Robust ISP </strong></p><p>What does it take to build an effective Information Security Program (ISP) and what are the first things you need to consider when developing your information security policies and procedures?</p><p>In this episode, we explore the critical first steps, including securing leadership commitment, forming an Information Security Program Board, and defining your organization&apos;s context and scope. Learn how these foundational elements set the stage for long-term security success.</p><p>Whether you&apos;re a security professional or a business leader, this episode provides actionable insights to help you protect your organization in an increasingly digital world.</p><p> </p><p>Check our our blog to learn even more about how to develop your information security policies and procedures and set a strong foundation for your Information Security Program:</p><p><a href='https://www.inputoutput.com/blog/what-is-the-first-step-in-information-security' target='_blank' rel='noopener noreferrer'>What is the First Step in Information Security? Building a Strong Foundation with Leadership and Organizational Context</a></p><p> </p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203827-38-the-first-step-in-building-information-security.mp3" length="15939240" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/49mmybzmj4mm90k7789mx1o4kt59?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148971444</guid>
    <pubDate>Thu, 30 Jan 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1322</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#37: The Dirty 13 | MFA Issues &amp; Best Practices</itunes:title>
    <title>#37: The Dirty 13 | MFA Issues &amp; Best Practices</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we continue our Dirty 13 series by tackling one of the most overlooked yet critical security gaps: MFA (Multi-Factor Authentication). While MFA is one of the strongest tools for securing accounts, its effectiveness plummets if it's not implemented or configured correctly. We’ll discuss the common pitfalls of MFA neglect and dive into best practices that can keep your organization secure: - The importance of break-glass accounts and how...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of <strong><em>Cash in the Cyber Sheets</em></strong>, we continue our <em>Dirty 13</em> series by tackling one of the most overlooked yet critical security gaps: MFA (Multi-Factor Authentication). While MFA is one of the strongest tools for securing accounts, its effectiveness plummets if it&apos;s not implemented or configured correctly.</p><p>We’ll discuss the common pitfalls of MFA neglect and dive into best practices that can keep your organization secure:</p><p>- The importance of break-glass accounts and how to set them up safely.<br/>- Why storing OTPs or recovery keys in your password manager is a risk.<br/>- Backup strategies for lost devices and how to avoid single points of failure. <br/>- The advantages of hardware authenticators like YubiKeys over SMS or email-based MFA. <br/>- How to safeguard your MFA strategy against phishing, SIM-swapping, and other vulnerabilities.</p><p>Don’t miss this actionable guide to doing MFA right. Whether you’re an IT pro or a business leader, this episode is packed with insights to strengthen your security posture.</p><p>Looking for more details? <br/>Check out our companion article: <em><strong>&quot;Information Security Policies: Multifactor Authentication Best Practices&quot;</strong></em>, where we expand on everything discussed in the episode. Perfect for sharing with your team or referencing during your next security review.</p><p>Read More: <a href='https://www.inputoutput.com/blog/multifactor-authentication-best-practices' target='_blank' rel='noopener noreferrer'>Information Security Policies: Multifactor Authentication Best Practices</a></p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of <strong><em>Cash in the Cyber Sheets</em></strong>, we continue our <em>Dirty 13</em> series by tackling one of the most overlooked yet critical security gaps: MFA (Multi-Factor Authentication). While MFA is one of the strongest tools for securing accounts, its effectiveness plummets if it&apos;s not implemented or configured correctly.</p><p>We’ll discuss the common pitfalls of MFA neglect and dive into best practices that can keep your organization secure:</p><p>- The importance of break-glass accounts and how to set them up safely.<br/>- Why storing OTPs or recovery keys in your password manager is a risk.<br/>- Backup strategies for lost devices and how to avoid single points of failure. <br/>- The advantages of hardware authenticators like YubiKeys over SMS or email-based MFA. <br/>- How to safeguard your MFA strategy against phishing, SIM-swapping, and other vulnerabilities.</p><p>Don’t miss this actionable guide to doing MFA right. Whether you’re an IT pro or a business leader, this episode is packed with insights to strengthen your security posture.</p><p>Looking for more details? <br/>Check out our companion article: <em><strong>&quot;Information Security Policies: Multifactor Authentication Best Practices&quot;</strong></em>, where we expand on everything discussed in the episode. Perfect for sharing with your team or referencing during your next security review.</p><p>Read More: <a href='https://www.inputoutput.com/blog/multifactor-authentication-best-practices' target='_blank' rel='noopener noreferrer'>Information Security Policies: Multifactor Authentication Best Practices</a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203828-37-the-dirty-13-mfa-issues-best-practices.mp3" length="15458049" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/nsucig657za89xge6b2gmi7a5mfm?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148965694</guid>
    <pubDate>Thu, 23 Jan 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1282</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#36: Incident Response | Planning for the Unexpected</itunes:title>
    <title>#36: Incident Response | Planning for the Unexpected</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we are joined by Bryan Barnhart from Infiltration Labs to discuss the critical importance of incident response planning. Together, we explore Bryan’s extensive experience in the field, dive into best practices for effective incident response, and examine evolving trends that are making incident response plans a mandatory part of organizational security strategies. Whether you’re building your first plan or refining an existing one, this con...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we are joined by Bryan Barnhart from Infiltration Labs to discuss the critical importance of incident response planning. Together, we explore Bryan’s extensive experience in the field, dive into best practices for effective incident response, and examine evolving trends that are making incident response plans a mandatory part of organizational security strategies. Whether you’re building your first plan or refining an existing one, this conversation offers valuable insights into staying prepared in today’s dynamic cybersecurity landscape.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we are joined by Bryan Barnhart from Infiltration Labs to discuss the critical importance of incident response planning. Together, we explore Bryan’s extensive experience in the field, dive into best practices for effective incident response, and examine evolving trends that are making incident response plans a mandatory part of organizational security strategies. Whether you’re building your first plan or refining an existing one, this conversation offers valuable insights into staying prepared in today’s dynamic cybersecurity landscape.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203829-36-incident-response-planning-for-the-unexpected.mp3" length="31092212" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/n2pm3zagm51xnjin7o4k34277jqf?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148958891</guid>
    <pubDate>Thu, 16 Jan 2025 10:00:00 -0500</pubDate>
    <itunes:duration>2585</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#35: The Dirty 13 | Poor Password Management Risks</itunes:title>
    <title>#35: The Dirty 13 | Poor Password Management Risks</title>
    <itunes:summary><![CDATA[        From the 'Dirty 13' series, this episode tackles one of the most pervasive cybersecurity issues: poor password management. Join us as we explore the risks of sharing, reusing, and creating weak passwords—and share six simple steps to strengthen your security. Learn how to safeguard your accounts and reduce vulnerabilities. Don’t miss out on practical tips and expert insights!   Want quick tips on how to make a really strong password? Download our infographic: How to Make a Really...]]></itunes:summary>
    <description><![CDATA[        <p>From the &apos;Dirty 13&apos; series, this episode tackles one of the most pervasive cybersecurity issues: poor password management. Join us as we explore the risks of sharing, reusing, and creating weak passwords—and share six simple steps to strengthen your security.</p><p>Learn how to safeguard your accounts and reduce vulnerabilities. Don’t miss out on practical tips and expert insights!</p><p> </p><p>Want quick tips on how to make a really strong password? Download our infographic:</p><p><a href='https://www.inputoutput.com/how-to-make-a-really-strong-password-6-quick-steps' target='_blank' rel='noopener noreferrer'>How to Make a Really Strong Password - 6 Quick Steps Infographic</a></p><p> </p><p>Learn more about password best practices. Check out our blog:</p><p><a href='https://www.inputoutput.com/blog/what&apos;s-a-good-password-security-best-practices' target='_blank' rel='noopener noreferrer'>What&apos;s a Good Password? Security Best Practices for Creating Smarter, Stronger, and Less Annoying Passwords</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-fro&lt;/truncato-artificial-root&gt;'></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>From the &apos;Dirty 13&apos; series, this episode tackles one of the most pervasive cybersecurity issues: poor password management. Join us as we explore the risks of sharing, reusing, and creating weak passwords—and share six simple steps to strengthen your security.</p><p>Learn how to safeguard your accounts and reduce vulnerabilities. Don’t miss out on practical tips and expert insights!</p><p> </p><p>Want quick tips on how to make a really strong password? Download our infographic:</p><p><a href='https://www.inputoutput.com/how-to-make-a-really-strong-password-6-quick-steps' target='_blank' rel='noopener noreferrer'>How to Make a Really Strong Password - 6 Quick Steps Infographic</a></p><p> </p><p>Learn more about password best practices. Check out our blog:</p><p><a href='https://www.inputoutput.com/blog/what&apos;s-a-good-password-security-best-practices' target='_blank' rel='noopener noreferrer'>What&apos;s a Good Password? Security Best Practices for Creating Smarter, Stronger, and Less Annoying Passwords</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-fro&lt;/truncato-artificial-root&gt;'></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203830-35-the-dirty-13-poor-password-management-risks.mp3" length="15612508" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/klwj2ddh81esz2gyhwddj3m84nd2?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148950036</guid>
    <pubDate>Thu, 09 Jan 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1294</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#34: BOI Requirements Change Again, Again</itunes:title>
    <title>#34: BOI Requirements Change Again, Again</title>
    <itunes:summary><![CDATA[        Small businesses across the U.S. are caught in a whirlwind of confusion as the Corporate Transparency Act (CTA) faces ongoing legal battles. With reporting requirements for Beneficial Ownership Information (BOI) being halted, reinstated, and halted again, where does this leave business owners? In this episode, we unpack the legal tug-of-war over the CTA, explore what this means for small businesses, and provide actionable insights to navigate the uncertainty. Whether you're a small bu...]]></itunes:summary>
    <description><![CDATA[        <p>Small businesses across the U.S. are caught in a whirlwind of confusion as the Corporate Transparency Act (CTA) faces ongoing legal battles. With reporting requirements for Beneficial Ownership Information (BOI) being halted, reinstated, and halted again, where does this leave business owners? In this episode, we unpack the legal tug-of-war over the CTA, explore what this means for small businesses, and provide actionable insights to navigate the uncertainty. Whether you&apos;re a small business owner or a compliance professional, this episode is your guide to staying ahead in a turbulent regulatory landscape.</p><p> </p><p>Read more on the Input Output blog at:</p><p>https://www.inputoutput.com/blog/legal-battle-over-boi-reporting</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Small businesses across the U.S. are caught in a whirlwind of confusion as the Corporate Transparency Act (CTA) faces ongoing legal battles. With reporting requirements for Beneficial Ownership Information (BOI) being halted, reinstated, and halted again, where does this leave business owners? In this episode, we unpack the legal tug-of-war over the CTA, explore what this means for small businesses, and provide actionable insights to navigate the uncertainty. Whether you&apos;re a small business owner or a compliance professional, this episode is your guide to staying ahead in a turbulent regulatory landscape.</p><p> </p><p>Read more on the Input Output blog at:</p><p>https://www.inputoutput.com/blog/legal-battle-over-boi-reporting</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203831-34-boi-requirements-change-again-again.mp3" length="13163135" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/qhefa6oq4t6ntdk29lhsvyemz291?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148942272</guid>
    <pubDate>Thu, 02 Jan 2025 10:00:00 -0500</pubDate>
    <itunes:duration>1090</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#33: BOI Reporting Reinstated | What Businesses Must Know</itunes:title>
    <title>#33: BOI Reporting Reinstated | What Businesses Must Know</title>
    <itunes:summary><![CDATA[        In this solo episode of Cash in the Cyber Sheets, we dive deep into the reinstatement of Beneficial Ownership Information (BOI) reporting requirements under the Corporate Transparency Act (CTA). With recent legal twists, including a federal injunction and a subsequent court decision lifting it, businesses are facing a fresh wave of compliance obligations. We’ll walk you through: The history and importance of BOI reporting in the fight against financial crimes.Key milestones and legal ...]]></itunes:summary>
    <description><![CDATA[        <p>In this solo episode of Cash in the Cyber Sheets, we dive deep into the reinstatement of Beneficial Ownership Information (BOI) reporting requirements under the Corporate Transparency Act (CTA). With recent legal twists, including a federal injunction and a subsequent court decision lifting it, businesses are facing a fresh wave of compliance obligations.</p><p>We’ll walk you through:</p><ul><li>The history and importance of BOI reporting in the fight against financial crimes.</li><li>Key milestones and legal developments, from the CTA’s inception to the Fifth Circuit&apos;s reinstatement of reporting requirements.</li><li>Practical steps for compliance, including the information businesses need to gather and how to submit it to FinCEN.</li></ul><p>Whether you’re a small business owner scrambling to meet the new deadlines or just someone curious about how the U.S. is tackling corporate transparency, this episode has everything you need to know. And yes, there’s some dry humor sprinkled in to keep things lively—because financial compliance shouldn’t feel like a life sentence (even if non-compliance might).</p><p><strong>Don’t miss it—your business (and wallet) will thank you.</strong></p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this solo episode of Cash in the Cyber Sheets, we dive deep into the reinstatement of Beneficial Ownership Information (BOI) reporting requirements under the Corporate Transparency Act (CTA). With recent legal twists, including a federal injunction and a subsequent court decision lifting it, businesses are facing a fresh wave of compliance obligations.</p><p>We’ll walk you through:</p><ul><li>The history and importance of BOI reporting in the fight against financial crimes.</li><li>Key milestones and legal developments, from the CTA’s inception to the Fifth Circuit&apos;s reinstatement of reporting requirements.</li><li>Practical steps for compliance, including the information businesses need to gather and how to submit it to FinCEN.</li></ul><p>Whether you’re a small business owner scrambling to meet the new deadlines or just someone curious about how the U.S. is tackling corporate transparency, this episode has everything you need to know. And yes, there’s some dry humor sprinkled in to keep things lively—because financial compliance shouldn’t feel like a life sentence (even if non-compliance might).</p><p><strong>Don’t miss it—your business (and wallet) will thank you.</strong></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203832-33-boi-reporting-reinstated-what-businesses-must-know.mp3" length="13541851" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/o3nl6m2thyrwb6uu24ve1txiiale?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148935564</guid>
    <pubDate>Thu, 26 Dec 2024 10:00:00 -0500</pubDate>
    <itunes:duration>1122</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#32: The Dirty 13 | Bad Data Classification Practices</itunes:title>
    <title>#32: The Dirty 13 | Bad Data Classification Practices</title>
    <itunes:summary><![CDATA[        In this episode, James continues the “Dirty 13” series, tackling one of the most common and costly audit findings: poor data classification. Without a structured approach to labeling and protecting data, organizations are left vulnerable to security breaches, compliance failures, and wasted resources. Join James as he explores: Why data classification is a cornerstone of effective information security.The risks of neglecting classification, from financial losses to reputational damage...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode, James continues the “Dirty 13” series, tackling one of the most common and costly audit findings: poor data classification.</p><p>Without a structured approach to labeling and protecting data, organizations are left vulnerable to security breaches, compliance failures, and wasted resources.</p><p>Join James as he explores:</p><ul><li>Why data classification is a cornerstone of effective information security.</li><li>The risks of neglecting classification, from financial losses to reputational damage.</li><li>Input Output’s tiered classification framework, designed to protect data while streamlining operations.</li><li>Practical steps to build and implement your own classification system.</li></ul><p>Data classification isn’t just a security checkbox—it’s a strategic tool that can save your organization time, money, and risk.</p><p>Want to go deeper? Check out our accompanying blog article for a more detailed look at strategies, frameworks, and tools to strengthen your classification practices.</p><p><a href='https://www.inputoutput.com/blog/poor-data-classification-cybersecurity-risk' target='_blank' rel='noopener noreferrer'>Why Poor Data Classification is a Cybersecurity Risk Your Company Can’t Ignore</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='&lt;/truncato-artificial-root'></a></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>In this episode, James continues the “Dirty 13” series, tackling one of the most common and costly audit findings: poor data classification.</p><p>Without a structured approach to labeling and protecting data, organizations are left vulnerable to security breaches, compliance failures, and wasted resources.</p><p>Join James as he explores:</p><ul><li>Why data classification is a cornerstone of effective information security.</li><li>The risks of neglecting classification, from financial losses to reputational damage.</li><li>Input Output’s tiered classification framework, designed to protect data while streamlining operations.</li><li>Practical steps to build and implement your own classification system.</li></ul><p>Data classification isn’t just a security checkbox—it’s a strategic tool that can save your organization time, money, and risk.</p><p>Want to go deeper? Check out our accompanying blog article for a more detailed look at strategies, frameworks, and tools to strengthen your classification practices.</p><p><a href='https://www.inputoutput.com/blog/poor-data-classification-cybersecurity-risk' target='_blank' rel='noopener noreferrer'>Why Poor Data Classification is a Cybersecurity Risk Your Company Can’t Ignore</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='&lt;/truncato-artificial-root'></a></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203833-32-the-dirty-13-bad-data-classification-practices.mp3" length="11203566" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/akqka57pv13603likiugd4g8vrki?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148930200</guid>
    <pubDate>Thu, 19 Dec 2024 10:00:00 -0500</pubDate>
    <itunes:duration>927</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#31: The Dirty 13 | Most Common Data Backup Failures</itunes:title>
    <title>#31: The Dirty 13 | Most Common Data Backup Failures</title>
    <itunes:summary><![CDATA[        In this episode of our Dirty 13 series, we dive into one of the most overlooked yet critical audit findings: poor backup practices. While backups are a cornerstone of data security and business continuity, many financial firms struggle to implement them effectively. From backups stored on the same systems they’re meant to protect to schedules that fail to meet regulatory retention requirements, we explore the most common failures—and their serious consequences. We’ll also discuss: The...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of our Dirty 13 series, we dive into one of the most overlooked yet critical audit findings: poor backup practices. While backups are a cornerstone of data security and business continuity, many financial firms struggle to implement them effectively. From backups stored on the same systems they’re meant to protect to schedules that fail to meet regulatory retention requirements, we explore the most common failures—and their serious consequences.</p><p>We’ll also discuss:</p><ul><li>The risks of incomplete system coverage.</li><li>Why short backup retention periods can derail compliance efforts.</li><li>The importance of encryption and routine testing to ensure backup integrity.</li></ul><p>Join us for actionable insights and practical strategies to strengthen your backup approach and avoid these all-too-common pitfalls. Don&apos;t let a poor backup strategy put your business at risk—tune in now!</p><p>Read more about these backup failures, and their remedies at:<br/><a href='https://www.inputoutput.com/blog/data-backup-six-common-backup-failures' target='_blank' rel='noopener noreferrer'>Data Backup: Six Common Backup Failures That Can Derail Your Business</a></p><p>Listen, learn, and take action.</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-complian&lt;/truncato-artificial-root&gt;'></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>In this episode of our Dirty 13 series, we dive into one of the most overlooked yet critical audit findings: poor backup practices. While backups are a cornerstone of data security and business continuity, many financial firms struggle to implement them effectively. From backups stored on the same systems they’re meant to protect to schedules that fail to meet regulatory retention requirements, we explore the most common failures—and their serious consequences.</p><p>We’ll also discuss:</p><ul><li>The risks of incomplete system coverage.</li><li>Why short backup retention periods can derail compliance efforts.</li><li>The importance of encryption and routine testing to ensure backup integrity.</li></ul><p>Join us for actionable insights and practical strategies to strengthen your backup approach and avoid these all-too-common pitfalls. Don&apos;t let a poor backup strategy put your business at risk—tune in now!</p><p>Read more about these backup failures, and their remedies at:<br/><a href='https://www.inputoutput.com/blog/data-backup-six-common-backup-failures' target='_blank' rel='noopener noreferrer'>Data Backup: Six Common Backup Failures That Can Derail Your Business</a></p><p>Listen, learn, and take action.</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-complian&lt;/truncato-artificial-root&gt;'></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203834-31-the-dirty-13-most-common-data-backup-failures.mp3" length="11295188" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/kg068l7nlrod7tgh8y0fvznbrcc1?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148924186</guid>
    <pubDate>Thu, 12 Dec 2024 10:00:00 -0500</pubDate>
    <itunes:duration>935</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#30: Major Victory over the CTA and BOI</itunes:title>
    <title>#30: Major Victory over the CTA and BOI</title>
    <itunes:summary><![CDATA[        In this episode, we explore the recent court decision blocking enforcement of the Corporate Transparency Act’s reporting requirements. We break down what the CTA entails, why it faced legal challenges, and how this ruling impacts small businesses nationwide. Discover how this decision protects privacy, reduces regulatory burdens, and what it means for the future of small business compliance.       ]]></itunes:summary>
    <description><![CDATA[        <p>In this episode, we explore the recent court decision blocking enforcement of the Corporate Transparency Act’s reporting requirements. We break down what the CTA entails, why it faced legal challenges, and how this ruling impacts small businesses nationwide. Discover how this decision protects privacy, reduces regulatory burdens, and what it means for the future of small business compliance.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode, we explore the recent court decision blocking enforcement of the Corporate Transparency Act’s reporting requirements. We break down what the CTA entails, why it faced legal challenges, and how this ruling impacts small businesses nationwide. Discover how this decision protects privacy, reduces regulatory burdens, and what it means for the future of small business compliance.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203835-30-major-victory-over-the-cta-and-boi.mp3" length="17666219" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/gq9mxlsssx31doekw7e3qdatehdu?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148918532</guid>
    <pubDate>Thu, 05 Dec 2024 10:00:00 -0500</pubDate>
    <itunes:duration>1465</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#29: Building a Culture of Gratitude in Cybersecurity</itunes:title>
    <title>#29: Building a Culture of Gratitude in Cybersecurity</title>
    <itunes:summary><![CDATA[        In this special Thanksgiving episode of Cache in the Cyber Sheets, we take a moment to step back from the usual technical deep dives and focus on the theme of gratitude. As cybersecurity professionals, we operate in a fast-paced, high-stakes environment, often facing immense pressure and increasing scrutiny. Yet, amidst the challenges, there's so much to appreciate. In this episode, we: 1. Reflect on the critical work of cybersecurity teams who keep systems secure, recover from incide...]]></itunes:summary>
    <description><![CDATA[        <p>In this special Thanksgiving episode of Cache in the Cyber Sheets, we take a moment to step back from the usual technical deep dives and focus on the theme of gratitude. As cybersecurity professionals, we operate in a fast-paced, high-stakes environment, often facing immense pressure and increasing scrutiny. Yet, amidst the challenges, there&apos;s so much to appreciate.</p><p>In this episode, we:</p><p>1. Reflect on the critical work of cybersecurity teams who keep systems secure, recover from incidents, and drive innovation under intense pressure.</p><p>2. Explore how artificial intelligence has sparked more robust conversations around data security and compliance, shining a necessary spotlight on key issues.</p><p>3. Discuss the personal and organizational impact of fostering a culture of gratitude, including practical methods to integrate thankfulness into everyday workflows and meetings.</p><p>4. Share insights into how gratitude can enhance teamwork, build relationships, and improve workplace morale.</p><p>We also provide actionable tools, including a list of 20 ways to express gratitude to partners and employees, and templates to help you get started. Whether it’s calling out a colleague for their extra effort or expressing appreciation to vendors, gratitude has the power to transform how we work and lead.</p><p>Grab them here:<br/><a href='https://www.inputoutput.com/s_altitude_template_opt-in_short' target='_blank' rel='noopener noreferrer'>20 Ways to Show Gratitude &amp; 4 Email Templates</a></p><p>Tune in as we dive into the profound ripple effect gratitude can have—both in the cybersecurity industry and in our personal lives.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this special Thanksgiving episode of Cache in the Cyber Sheets, we take a moment to step back from the usual technical deep dives and focus on the theme of gratitude. As cybersecurity professionals, we operate in a fast-paced, high-stakes environment, often facing immense pressure and increasing scrutiny. Yet, amidst the challenges, there&apos;s so much to appreciate.</p><p>In this episode, we:</p><p>1. Reflect on the critical work of cybersecurity teams who keep systems secure, recover from incidents, and drive innovation under intense pressure.</p><p>2. Explore how artificial intelligence has sparked more robust conversations around data security and compliance, shining a necessary spotlight on key issues.</p><p>3. Discuss the personal and organizational impact of fostering a culture of gratitude, including practical methods to integrate thankfulness into everyday workflows and meetings.</p><p>4. Share insights into how gratitude can enhance teamwork, build relationships, and improve workplace morale.</p><p>We also provide actionable tools, including a list of 20 ways to express gratitude to partners and employees, and templates to help you get started. Whether it’s calling out a colleague for their extra effort or expressing appreciation to vendors, gratitude has the power to transform how we work and lead.</p><p>Grab them here:<br/><a href='https://www.inputoutput.com/s_altitude_template_opt-in_short' target='_blank' rel='noopener noreferrer'>20 Ways to Show Gratitude &amp; 4 Email Templates</a></p><p>Tune in as we dive into the profound ripple effect gratitude can have—both in the cybersecurity industry and in our personal lives.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203836-29-building-a-culture-of-gratitude-in-cybersecurity.mp3" length="18332678" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/zn5cc66fesp6zd9nez2q84kpskqj?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148911386</guid>
    <pubDate>Thu, 28 Nov 2024 10:00:00 -0500</pubDate>
    <itunes:duration>1521</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#28: The Dirty 13 | Common Physical Security Findings</itunes:title>
    <title>#28: The Dirty 13 | Common Physical Security Findings</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we dive deeper into the Dirty 13—the most common findings from information security audits. From daisy-chained power strips to sticky-note passwords, we unpack how these seemingly simple issues pose serious risks. Building on our latest blog, we highlight overlooked physical security controls, legal hazards like unmaintained fire extinguishers, and the dangers of unsecured visitor access. Tune in for practical tips, real-world examples, and...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we dive deeper into the Dirty 13—the most common findings from information security audits. From daisy-chained power strips to sticky-note passwords, we unpack how these seemingly simple issues pose serious risks. Building on our latest blog, we highlight overlooked physical security controls, legal hazards like unmaintained fire extinguishers, and the dangers of unsecured visitor access. Tune in for practical tips, real-world examples, and a few laughs as we explore how to address these low-hanging fruits before they lead to high-stakes consequences.</p><p>Read more at:<br/><a href='https://www.inputoutput.com/blog/most-common-physical-information-security-audit-findings' target='_blank' rel='noopener noreferrer'>The Dirty 13: The Most Common Audit Findings in Physical Information Security</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148873193' title='Inadequate Risk Management in CPA Information Security Programs' target='_blank' rel='noopener noreferrer'>Inadequate Risk Management in CPA Information Security Programs</a></li><li><a href=''></a></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we dive deeper into the Dirty 13—the most common findings from information security audits. From daisy-chained power strips to sticky-note passwords, we unpack how these seemingly simple issues pose serious risks. Building on our latest blog, we highlight overlooked physical security controls, legal hazards like unmaintained fire extinguishers, and the dangers of unsecured visitor access. Tune in for practical tips, real-world examples, and a few laughs as we explore how to address these low-hanging fruits before they lead to high-stakes consequences.</p><p>Read more at:<br/><a href='https://www.inputoutput.com/blog/most-common-physical-information-security-audit-findings' target='_blank' rel='noopener noreferrer'>The Dirty 13: The Most Common Audit Findings in Physical Information Security</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148873193' title='Inadequate Risk Management in CPA Information Security Programs' target='_blank' rel='noopener noreferrer'>Inadequate Risk Management in CPA Information Security Programs</a></li><li><a href=''></a></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203837-28-the-dirty-13-common-physical-security-findings.mp3" length="14032114" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/bpsjpxmsuhgsts84qmemy3xt3e9p?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148905772</guid>
    <pubDate>Thu, 21 Nov 2024 10:00:00 -0500</pubDate>
    <itunes:duration>1163</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#27: The Dirty 13 | Backup Restore Testing Oversights</itunes:title>
    <title>#27: The Dirty 13 | Backup Restore Testing Oversights</title>
    <itunes:summary><![CDATA[        In this follow-up episode of Cash in the Cyber Sheets, we’re continuing our journey through the infamous “Dirty 13” – the top information security audit findings that keep CISOs up at night. This time, we’re focusing on a critical, often-overlooked aspect: backup restore testing. It’s easy for organizations to assume that backups will be there when they need them, but without regular testing, that assurance is nothing more than a risky leap of faith. In this episode, we discuss why ba...]]></itunes:summary>
    <description><![CDATA[        <p>In this follow-up episode of Cash in the Cyber Sheets, we’re continuing our journey through the infamous “Dirty 13” – the top information security audit findings that keep CISOs up at night. This time, we’re focusing on a critical, often-overlooked aspect: backup restore testing.</p><p>It’s easy for organizations to assume that backups will be there when they need them, but without regular testing, that assurance is nothing more than a risky leap of faith. In this episode, we discuss why backup restore testing should be a non-negotiable part of your security strategy and the core elements companies need to examine to ensure data recovery processes are as robust as they claim to be.</p><p>Join us as we break down the best practices to ensure that your data is recoverable, reliable, and ready for anything. Don&apos;t let backup testing be the gap in your security armor—tune in to <em>Cash in the Cyber Sheets</em> for insights that could be the difference between recovery and ruin.</p><p> </p><p>Read more about backup testing on our blog:</p><p><a href='https://www.inputoutput.com/blog/testing-data-backups-and-data-recoverability' target='_blank' rel='noopener noreferrer'>Testing Data Backups and Data Recoverability: Because &quot;Backed Up&quot; Doesn&apos;t Mean &quot;Actually Useful</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148&lt;/truncato-artificial-root&gt;'></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>In this follow-up episode of Cash in the Cyber Sheets, we’re continuing our journey through the infamous “Dirty 13” – the top information security audit findings that keep CISOs up at night. This time, we’re focusing on a critical, often-overlooked aspect: backup restore testing.</p><p>It’s easy for organizations to assume that backups will be there when they need them, but without regular testing, that assurance is nothing more than a risky leap of faith. In this episode, we discuss why backup restore testing should be a non-negotiable part of your security strategy and the core elements companies need to examine to ensure data recovery processes are as robust as they claim to be.</p><p>Join us as we break down the best practices to ensure that your data is recoverable, reliable, and ready for anything. Don&apos;t let backup testing be the gap in your security armor—tune in to <em>Cash in the Cyber Sheets</em> for insights that could be the difference between recovery and ruin.</p><p> </p><p>Read more about backup testing on our blog:</p><p><a href='https://www.inputoutput.com/blog/testing-data-backups-and-data-recoverability' target='_blank' rel='noopener noreferrer'>Testing Data Backups and Data Recoverability: Because &quot;Backed Up&quot; Doesn&apos;t Mean &quot;Actually Useful</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148&lt;/truncato-artificial-root&gt;'></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203838-27-the-dirty-13-backup-restore-testing-oversights.mp3" length="13005723" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/bed991t93pu5zu0bp1rui4mwqgoz?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148900969</guid>
    <pubDate>Thu, 14 Nov 2024 10:00:00 -0500</pubDate>
    <itunes:duration>1077</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#26: The Dirty 13 | Misunderstanding MSP Security</itunes:title>
    <title>#26: The Dirty 13 | Misunderstanding MSP Security</title>
    <itunes:summary><![CDATA[        Episode 26: Cash in the Cyber Sheets - "The Dirty 13: Unpacking MSP Misconceptions Relating toRisk, Security, and Compliance" In this insightful continuation of the "Dirty 13" series, Episode 26 dives deep into the frequent misunderstandings surrounding IT departments' responsibilities—especially outsourced IT providers like Managed Service Providers (MSPs)—in managing risk, security, and compliance. While many companies assume their IT or MSP handles these crucial areas in full,...]]></itunes:summary>
    <description><![CDATA[        <p>Episode 26: Cash in the Cyber Sheets - &quot;The Dirty 13: Unpacking MSP Misconceptions Relating toRisk, Security, and Compliance&quot;</p><p>In this insightful continuation of the &quot;Dirty 13&quot; series, Episode 26 dives deep into the frequent misunderstandings surrounding IT departments&apos; responsibilities—especially outsourced IT providers like Managed Service Providers (MSPs)—in managing risk, security, and compliance. While many companies assume their IT or MSP handles these crucial areas in full, the reality is often more nuanced and, at times, misleading.</p><p>We break down why these misconceptions arise and how they lead to some of the most common audit issues among CPS firms. We clarify where the responsibilities of in-house IT end and where the accountability gaps often lie when third-party providers are involved. With real-world examples and expert insights, this episode highlights how firms can bridge these gaps and ensure a more comprehensive approach to security, risk management, and compliance.</p><p>Whether you’re an executive, a member of a compliance team, or an IT professional, this episode provides valuable guidance on navigating the complex web of responsibilities between internal and external IT services. Tune in to learn how to close these loopholes and take control of your firm&apos;s risk and compliance strategy!</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in&lt;/truncato-artificial-root&gt;'></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>Episode 26: Cash in the Cyber Sheets - &quot;The Dirty 13: Unpacking MSP Misconceptions Relating toRisk, Security, and Compliance&quot;</p><p>In this insightful continuation of the &quot;Dirty 13&quot; series, Episode 26 dives deep into the frequent misunderstandings surrounding IT departments&apos; responsibilities—especially outsourced IT providers like Managed Service Providers (MSPs)—in managing risk, security, and compliance. While many companies assume their IT or MSP handles these crucial areas in full, the reality is often more nuanced and, at times, misleading.</p><p>We break down why these misconceptions arise and how they lead to some of the most common audit issues among CPS firms. We clarify where the responsibilities of in-house IT end and where the accountability gaps often lie when third-party providers are involved. With real-world examples and expert insights, this episode highlights how firms can bridge these gaps and ensure a more comprehensive approach to security, risk management, and compliance.</p><p>Whether you’re an executive, a member of a compliance team, or an IT professional, this episode provides valuable guidance on navigating the complex web of responsibilities between internal and external IT services. Tune in to learn how to close these loopholes and take control of your firm&apos;s risk and compliance strategy!</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in&lt;/truncato-artificial-root&gt;'></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203839-26-the-dirty-13-misunderstanding-msp-security.mp3" length="17371221" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/003odbf9hdnqhwo1b8f7nuq4wf8a?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148896892</guid>
    <pubDate>Thu, 07 Nov 2024 10:00:00 -0500</pubDate>
    <itunes:duration>1441</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#25: Lessons Learned from Recent Cybersecurity Audits</itunes:title>
    <title>#25: Lessons Learned from Recent Cybersecurity Audits</title>
    <itunes:summary><![CDATA[        Episode 25: Mastering the ISO 27001 Audit - Key Takeaways from Our Latest Audits In this episode of Cash in the Cyber Sheets, we dive into the recent ISO 27001 audits we performed and share valuable insights from the process. Whether you’re preparing for your first audit or looking to improve your audit performance, this episode is packed with actionable tips to help you succeed.       ]]></itunes:summary>
    <description><![CDATA[        <p>Episode 25: Mastering the ISO 27001 Audit - Key Takeaways from Our Latest Audits In this episode of Cash in the Cyber Sheets, we dive into the recent ISO 27001 audits we performed and share valuable insights from the process.</p><p>Whether you’re preparing for your first audit or looking to improve your audit performance, this episode is packed with actionable tips to help you succeed.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Episode 25: Mastering the ISO 27001 Audit - Key Takeaways from Our Latest Audits In this episode of Cash in the Cyber Sheets, we dive into the recent ISO 27001 audits we performed and share valuable insights from the process.</p><p>Whether you’re preparing for your first audit or looking to improve your audit performance, this episode is packed with actionable tips to help you succeed.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203840-25-lessons-learned-from-recent-cybersecurity-audits.mp3" length="19795460" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/egzsl37r4czrn0jhhxd0ahwiqwuf?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148894018</guid>
    <pubDate>Thu, 31 Oct 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1643</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#24: The Dirty 13 | Poor Incident Response Planning</itunes:title>
    <title>#24: The Dirty 13 | Poor Incident Response Planning</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we continue our deep dive into the "Dirty 13"—the most common audit findings we encounter when auditing financial firms, with a special focus on CPAs. Episode 24 is all about Incident Response Management and the recurring issues many firms face. From inadequate planning to the failure to properly document and test incident responses, we discuss the gaps that frequently show up during audits. Learn the critical elements every firm should hav...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we continue our deep dive into the &quot;Dirty 13&quot;—the most common audit findings we encounter when auditing financial firms, with a special focus on CPAs.</p><p>Episode 24 is all about Incident Response Management and the recurring issues many firms face. From inadequate planning to the failure to properly document and test incident responses, we discuss the gaps that frequently show up during audits. Learn the critical elements every firm should have in place to handle a cybersecurity incident, and avoid the costly mistakes that could lead to regulatory penalties, financial loss, or reputational damage.</p><p>Tune in to hear real-world examples, practical tips, and strategies to tighten up your incident response protocols and improve your firm’s overall cybersecurity posture. Don’t miss part six of this essential series!</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148873193' title='Inadequate Risk Management in CPA Information Security Programs' target='_blank' rel='noopener noreferrer'>In</a></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we continue our deep dive into the &quot;Dirty 13&quot;—the most common audit findings we encounter when auditing financial firms, with a special focus on CPAs.</p><p>Episode 24 is all about Incident Response Management and the recurring issues many firms face. From inadequate planning to the failure to properly document and test incident responses, we discuss the gaps that frequently show up during audits. Learn the critical elements every firm should have in place to handle a cybersecurity incident, and avoid the costly mistakes that could lead to regulatory penalties, financial loss, or reputational damage.</p><p>Tune in to hear real-world examples, practical tips, and strategies to tighten up your incident response protocols and improve your firm’s overall cybersecurity posture. Don’t miss part six of this essential series!</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148873193' title='Inadequate Risk Management in CPA Information Security Programs' target='_blank' rel='noopener noreferrer'>In</a></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203841-24-the-dirty-13-poor-incident-response-planning.mp3" length="15686357" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/s601gow3zwo2tuh8z2bd24a000pj?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148887478</guid>
    <pubDate>Thu, 24 Oct 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1301</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#23: The Dirty 13 | Supplier Risk Management Gaps</itunes:title>
    <title>#23: The Dirty 13 | Supplier Risk Management Gaps</title>
    <itunes:summary><![CDATA[        In Episode 23 of Cash in the Cyber Sheets, we continue our deep dive into the Dirty 13, the most common audit findings that plague financial firms. This week, we’re focusing on supplier management – a critical area where many firms fall short. We discuss how inadequate identification of risks associated with third-party suppliers and failure to meet regulatory requirements can expose organizations to significant vulnerabilities. Tune in as we break down common pitfalls, share real-wor...]]></itunes:summary>
    <description><![CDATA[        <p>In Episode 23 of Cash in the Cyber Sheets, we continue our deep dive into the Dirty 13, the most common audit findings that plague financial firms. This week, we’re focusing on supplier management – a critical area where many firms fall short. We discuss how inadequate identification of risks associated with third-party suppliers and failure to meet regulatory requirements can expose organizations to significant vulnerabilities. Tune in as we break down common pitfalls, share real-world examples, and provide actionable insights to help firms strengthen their supplier management processes and mitigate risks effectively. Don&apos;t miss it!</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148873193' title='Inadequate Risk Management in CPA Information Security Programs' target='_blank' rel='noopener noreferrer'>Inadequate Risk Management in CPA Information Security Programs</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148869445' target='_blank' rel=''></a></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>In Episode 23 of Cash in the Cyber Sheets, we continue our deep dive into the Dirty 13, the most common audit findings that plague financial firms. This week, we’re focusing on supplier management – a critical area where many firms fall short. We discuss how inadequate identification of risks associated with third-party suppliers and failure to meet regulatory requirements can expose organizations to significant vulnerabilities. Tune in as we break down common pitfalls, share real-world examples, and provide actionable insights to help firms strengthen their supplier management processes and mitigate risks effectively. Don&apos;t miss it!</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; Training</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148873193' title='Inadequate Risk Management in CPA Information Security Programs' target='_blank' rel='noopener noreferrer'>Inadequate Risk Management in CPA Information Security Programs</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148869445' target='_blank' rel=''></a></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203842-23-the-dirty-13-supplier-risk-management-gaps.mp3" length="18082199" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/ebmwvtht54tqprjm4h1gcp1cw1ha?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148885159</guid>
    <pubDate>Thu, 17 Oct 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1500</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#22: The Dirty 13 | Weak Audit and Monitoring</itunes:title>
    <title>#22: The Dirty 13 | Weak Audit and Monitoring</title>
    <itunes:summary><![CDATA[        Cash in the Cyber Sheets - Episode 22: "Audit, Logging, and Monitoring: The Overlooked Essentials" In this episode of Cash in the Cyber Sheets, we continue our deep dive into the "Dirty 13" – the top audit findings that consistently surface during financial firm audits. This week, we take a closer look at one of the most overlooked and critical areas: audit, logging, and monitoring. Despite being fundamental to sound security and compliance practices, many financial firms fail to esta...]]></itunes:summary>
    <description><![CDATA[        <p>Cash in the Cyber Sheets - Episode 22: &quot;Audit, Logging, and Monitoring: The Overlooked Essentials&quot; In this episode of Cash in the Cyber Sheets, we continue our deep dive into the &quot;Dirty 13&quot; – the top audit findings that consistently surface during financial firm audits. This week, we take a closer look at one of the most overlooked and critical areas: audit, logging, and monitoring. Despite being fundamental to sound security and compliance practices, many financial firms fail to establish adequate audit mechanisms, leaving them vulnerable to significant regulatory risks and security threats. We’ll unpack why insufficient logging, improper monitoring, and poorly executed audits not only leave gaps in compliance but also open the door to substantial financial and reputational risks. Join us as we explore real-world examples of firms who’ve fallen short in these areas and discuss actionable steps that companies can take to improve their auditing practices, safeguard sensitive information, and meet regulatory expectations. Don’t miss this essential conversation if you’re in the financial services industry and want to avoid being blindsided by the risks of poor audit practices!</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequa</a></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>Cash in the Cyber Sheets - Episode 22: &quot;Audit, Logging, and Monitoring: The Overlooked Essentials&quot; In this episode of Cash in the Cyber Sheets, we continue our deep dive into the &quot;Dirty 13&quot; – the top audit findings that consistently surface during financial firm audits. This week, we take a closer look at one of the most overlooked and critical areas: audit, logging, and monitoring. Despite being fundamental to sound security and compliance practices, many financial firms fail to establish adequate audit mechanisms, leaving them vulnerable to significant regulatory risks and security threats. We’ll unpack why insufficient logging, improper monitoring, and poorly executed audits not only leave gaps in compliance but also open the door to substantial financial and reputational risks. Join us as we explore real-world examples of firms who’ve fallen short in these areas and discuss actionable steps that companies can take to improve their auditing practices, safeguard sensitive information, and meet regulatory expectations. Don’t miss this essential conversation if you’re in the financial services industry and want to avoid being blindsided by the risks of poor audit practices!</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequa</a></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203843-22-the-dirty-13-weak-audit-and-monitoring.mp3" length="17449923" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/4sboq37270hucgeds81dcu8q2e96?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148881462</guid>
    <pubDate>Thu, 10 Oct 2024 11:00:00 -0400</pubDate>
    <itunes:duration>1448</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#21: Poor Security Training Leaves Firms at Risk</itunes:title>
    <title>#21: Poor Security Training Leaves Firms at Risk</title>
    <itunes:summary><![CDATA[        In Episode 21 of "Cash in the Cyber Sheets," we continue the "Dirty 13" series by diving into inadequate employee training. This week, we explore strategies for delivering effective training that not only enhances security but also boosts employees' sales and leadership skills. Learn how investing in employee development can create a more secure firm while delivering multiple returns on investment. Tune in for actionable insights to strengthen your firm's defenses and unlock greater p...]]></itunes:summary>
    <description><![CDATA[        <p>In Episode 21 of &quot;Cash in the Cyber Sheets,&quot; we continue the &quot;Dirty 13&quot; series by diving into inadequate employee training. This week, we explore strategies for delivering effective training that not only enhances security but also boosts employees&apos; sales and leadership skills. Learn how investing in employee development can create a more secure firm while delivering multiple returns on investment. Tune in for actionable insights to strengthen your firm&apos;s defenses and unlock greater potential in your team.</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148873193' title='Inadequate Risk Management in CPA Information Security Programs' target='_blank' rel='noopener noreferrer'>Inadequate Risk Management in CPA Information Security Programs</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148869445' target='_blank' rel='noopener noreferrer' title='Avoiding the Most Common InfoSec Mistakes in Financial Firms and CPA Audits'>Avoiding the Most Common InfoSec Mistakes in Financial Firms and CPA Audits</a></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>In Episode 21 of &quot;Cash in the Cyber Sheets,&quot; we continue the &quot;Dirty 13&quot; series by diving into inadequate employee training. This week, we explore strategies for delivering effective training that not only enhances security but also boosts employees&apos; sales and leadership skills. Learn how investing in employee development can create a more secure firm while delivering multiple returns on investment. Tune in for actionable insights to strengthen your firm&apos;s defenses and unlock greater potential in your team.</p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148873193' title='Inadequate Risk Management in CPA Information Security Programs' target='_blank' rel='noopener noreferrer'>Inadequate Risk Management in CPA Information Security Programs</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148869445' target='_blank' rel='noopener noreferrer' title='Avoiding the Most Common InfoSec Mistakes in Financial Firms and CPA Audits'>Avoiding the Most Common InfoSec Mistakes in Financial Firms and CPA Audits</a></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203844-21-poor-security-training-leaves-firms-at-risk.mp3" length="22640369" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/3nfh3h1pija4o0fjqaenidojyl2t?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148877483</guid>
    <pubDate>Thu, 03 Oct 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1880</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#20: The Dirty 13 Risk Management Failures in CPA Firms</itunes:title>
    <title>#20: The Dirty 13 Risk Management Failures in CPA Firms</title>
    <itunes:summary><![CDATA[        Episode 20: The Dirty 13 – Inadequate Risk Management in CPA Information Security Programs  Continuing from last week’s deep dive into the most common mistakes in CPA information security programs, we explore one of the most critical: Inadequate Risk Management. Many CPAs fail to properly identify the specific risks their business faces, resulting in an incomplete risk assessment process. Without a clear understanding of their risks, they cannot make informed business decisions or pri...]]></itunes:summary>
    <description><![CDATA[        <p><strong>Episode 20: The Dirty 13 – Inadequate Risk Management in CPA Information Security Programs </strong></p><p>Continuing from last week’s deep dive into the most common mistakes in CPA information security programs, we explore one of the most critical: Inadequate Risk Management. Many CPAs fail to properly identify the specific risks their business faces, resulting in an incomplete risk assessment process. Without a clear understanding of their risks, they cannot make informed business decisions or prioritize efforts effectively. In this episode, we break down why risk management is so often overlooked and how it should be the cornerstone of every security program, enabling businesses to make better decisions and protect their operations.</p><p> </p><p><strong><span style='text-decoration: underline;'>Resources:</span></strong></p><p>Input Output Blog</p><ul><li><a href='https://www.inputoutput.com/blog/Top-13-Mistakes-CPA-Firms-Make-with-Their-FTC-Safeguards-Rule-ISP' target='_blank' rel='noopener noreferrer' title='13 Mistakes CPA Firms Make with Their FTC Safeguards Rule Information Security Program'>13 Mistakes CPA Firms Make with Their FTC Safeguards Rule Information Security Program</a></li><li><a href='https://www.inputoutput.com/blog/CPA-WISP-Written-Information-Security-Plan-FTC-Safeguards-Rule-Compliance' target='_blank' rel='noopener noreferrer'>CPA WISP: Written Information Security Plan for FTC Safeguards Rule Compliance</a></li></ul><p> </p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' re=''></a></li></ul>]]></description>
    <content:encoded><![CDATA[        <p><strong>Episode 20: The Dirty 13 – Inadequate Risk Management in CPA Information Security Programs </strong></p><p>Continuing from last week’s deep dive into the most common mistakes in CPA information security programs, we explore one of the most critical: Inadequate Risk Management. Many CPAs fail to properly identify the specific risks their business faces, resulting in an incomplete risk assessment process. Without a clear understanding of their risks, they cannot make informed business decisions or prioritize efforts effectively. In this episode, we break down why risk management is so often overlooked and how it should be the cornerstone of every security program, enabling businesses to make better decisions and protect their operations.</p><p> </p><p><strong><span style='text-decoration: underline;'>Resources:</span></strong></p><p>Input Output Blog</p><ul><li><a href='https://www.inputoutput.com/blog/Top-13-Mistakes-CPA-Firms-Make-with-Their-FTC-Safeguards-Rule-ISP' target='_blank' rel='noopener noreferrer' title='13 Mistakes CPA Firms Make with Their FTC Safeguards Rule Information Security Program'>13 Mistakes CPA Firms Make with Their FTC Safeguards Rule Information Security Program</a></li><li><a href='https://www.inputoutput.com/blog/CPA-WISP-Written-Information-Security-Plan-FTC-Safeguards-Rule-Compliance' target='_blank' rel='noopener noreferrer'>CPA WISP: Written Information Security Plan for FTC Safeguards Rule Compliance</a></li></ul><p> </p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' re=''></a></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203845-20-the-dirty-13-risk-management-failures-in-cpa-firms.mp3" length="16841569" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/80pik5my3qmjh2yl8adl2iiqx17d?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148873193</guid>
    <pubDate>Thu, 26 Sep 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1397</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#19: The Dirty 13 InfoSec Fails in CPA Audits</itunes:title>
    <title>#19: The Dirty 13 InfoSec Fails in CPA Audits</title>
    <itunes:summary><![CDATA[        In this episode, we reveal the 13 most common information security program mistakes, dubbed the "Dirty 13," that financial firms and CPAs face during audits. These pitfalls can lead to significant security vulnerabilities, compliance issues, and costly errors. We deep dive into one of these issues to explore its impact in detail, offering practical advice on how to avoid it. In future episodes, we’ll be breaking down each of these 13 issues to help you build a more resilient and compl...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode, we reveal the 13 most common information security program mistakes, dubbed the &quot;Dirty 13,&quot; that financial firms and CPAs face during audits. These pitfalls can lead to significant security vulnerabilities, compliance issues, and costly errors. We deep dive into one of these issues to explore its impact in detail, offering practical advice on how to avoid it. In future episodes, we’ll be breaking down each of these 13 issues to help you build a more resilient and compliant security program.</p><p>Tune in to gain expert insights on securing your firm from these common and preventable mistakes!</p><p> </p><p>Resources:<br/><a href='https://www.inputoutput.com/blog/CPA-WISP-Written-Information-Security-Plan-FTC-Safeguards-Rule-Compliance' target='_blank' rel='noopener noreferrer'>CPA WISP: Written Information Security Plan for FTC Safeguards Rule Compliance</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; </a></li></ul>]]></description>
    <content:encoded><![CDATA[        <p>In this episode, we reveal the 13 most common information security program mistakes, dubbed the &quot;Dirty 13,&quot; that financial firms and CPAs face during audits. These pitfalls can lead to significant security vulnerabilities, compliance issues, and costly errors. We deep dive into one of these issues to explore its impact in detail, offering practical advice on how to avoid it. In future episodes, we’ll be breaking down each of these 13 issues to help you build a more resilient and compliant security program.</p><p>Tune in to gain expert insights on securing your firm from these common and preventable mistakes!</p><p> </p><p>Resources:<br/><a href='https://www.inputoutput.com/blog/CPA-WISP-Written-Information-Security-Plan-FTC-Safeguards-Rule-Compliance' target='_blank' rel='noopener noreferrer'>CPA WISP: Written Information Security Plan for FTC Safeguards Rule Compliance</a></p><p> </p><p>Explore more topics from the<span> </span><em>Cash in the Cyber Sheets - Dirty 13</em><span> </span>series:</p><ul><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148950036' target='_blank' rel='noopener noreferrer' title='Poor Password Management'>Poor Password Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148930200' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Bad Data Classification' tabindex='0'><span class='link-annotation-unknown-block-id-1419849696'>Bad Data Classification</span></a></li><li><span class='link-annotation-unknown-block-id-1419849696'><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148924186' class='notion-link-token notion-focusable-token notion-enable-hover' target='_blank' rel='noopener noreferrer' title='Most Common Data Backup Failures' tabindex='0'><span class='link-annotation-unknown-block-id-1419044632'>Most Common Data Backup Failures</span></a></span></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148905772' target='_blank' rel='noopener noreferrer' title='Most Common Physical Information Security Audit Findings'>Most Common Physical Information Security Audit Findings</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148900969' target='_blank' rel='noopener noreferrer' title='Backup Restore Testing'>Backup Restore Testing</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148896892' target='_blank' rel='noopener noreferrer' title='MSP Misconceptions'>MSP Misconceptions</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148887478' target='_blank' rel='noopener noreferrer' title='Incident Response Management'>Incident Response Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148885159' title='Supplier Risk Management' target='_blank' rel='noopener noreferrer'>Supplier Risk Management</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148881462' title='Audit, Logging, &amp; Monitoring' target='_blank' rel='noopener noreferrer'>Audit, Logging, &amp; Monitoring</a></li><li><a href='https://www.inputoutput.com/podcasts/cash-in-the-cyber-sheets-making-money-from-being-secure-compliant/episodes/2148877483' title='Inadequate Employee Security Awareness &amp; Training' target='_blank' rel='noopener noreferrer'>Inadequate Employee Security Awareness &amp; </a></li></ul>]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203846-19-the-dirty-13-infosec-fails-in-cpa-audits.mp3" length="16651800" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/9aez9pt4b2cz09flu47wbdwkwhk2?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148869445</guid>
    <pubDate>Thu, 19 Sep 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1381</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#18: CDP in Data Backup | What You Need to Know</itunes:title>
    <title>#18: CDP in Data Backup | What You Need to Know</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we dive deep into the world of Continuous Data Protection (CDP). What exactly is CDP, and why is it becoming a must-have for organizations looking to safeguard their data? We'll break down the pros and cons of this powerful backup solution, offering insights into how it works, its benefits, and potential challenges. Most importantly, we'll share critical tips to ensure you don’t paint yourself into a corner or waste your budget on the wrong...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we dive deep into the world of Continuous Data Protection (CDP). What exactly is CDP, and why is it becoming a must-have for organizations looking to safeguard their data? We&apos;ll break down the pros and cons of this powerful backup solution, offering insights into how it works, its benefits, and potential challenges. Most importantly, we&apos;ll share critical tips to ensure you don’t paint yourself into a corner or waste your budget on the wrong CDP product. Whether you&apos;re a seasoned IT professional or new to data backup solutions, this episode will arm you with the knowledge to make informed decisions for your business. Tune in for an essential guide to mastering data protection with CDP!</p><p> </p><p>Check out our companion article:<br/>https://www.inputoutput.com/blog/understanding-data-backup-cdp-continuous-data-backup</p><p> </p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we dive deep into the world of Continuous Data Protection (CDP). What exactly is CDP, and why is it becoming a must-have for organizations looking to safeguard their data? We&apos;ll break down the pros and cons of this powerful backup solution, offering insights into how it works, its benefits, and potential challenges. Most importantly, we&apos;ll share critical tips to ensure you don’t paint yourself into a corner or waste your budget on the wrong CDP product. Whether you&apos;re a seasoned IT professional or new to data backup solutions, this episode will arm you with the knowledge to make informed decisions for your business. Tune in for an essential guide to mastering data protection with CDP!</p><p> </p><p>Check out our companion article:<br/>https://www.inputoutput.com/blog/understanding-data-backup-cdp-continuous-data-backup</p><p> </p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203847-18-cdp-in-data-backup-what-you-need-to-know.mp3" length="21334200" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/9zhg0csxnhb76iogxh84s2ckwjxs?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148865600</guid>
    <pubDate>Thu, 12 Sep 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1770</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#17: Cash in the Cyber Sheets - Data Backup Types &amp; Strategies</itunes:title>
    <title>#17: Cash in the Cyber Sheets - Data Backup Types &amp; Strategies</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, we dive into the world of data backup strategies. From full, incremental, and differential backups to hybrid approaches, we explore how these methods safeguard your business’s most valuable data. Learn about the pros and cons of each backup type, discover key strategies like Grandfather-Father-Son (GFS) and the Tower of Hanoi, and understand how to implement a robust backup system that ensures quick recovery and long-term data protection. R...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we dive into the world of data backup strategies. From full, incremental, and differential backups to hybrid approaches, we explore how these methods safeguard your business’s most valuable data. Learn about the pros and cons of each backup type, discover key strategies like Grandfather-Father-Son (GFS) and the Tower of Hanoi, and understand how to implement a robust backup system that ensures quick recovery and long-term data protection.</p><p>Resources:</p><p>https://www.inputoutput.com/blog/data-backup-types</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, we dive into the world of data backup strategies. From full, incremental, and differential backups to hybrid approaches, we explore how these methods safeguard your business’s most valuable data. Learn about the pros and cons of each backup type, discover key strategies like Grandfather-Father-Son (GFS) and the Tower of Hanoi, and understand how to implement a robust backup system that ensures quick recovery and long-term data protection.</p><p>Resources:</p><p>https://www.inputoutput.com/blog/data-backup-types</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203848-17-cash-in-the-cyber-sheets-data-backup-types-strategies.mp3" length="28616077" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/st1ez0p7ve5o6y9xmobmucc6qa6k?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148858154</guid>
    <pubDate>Thu, 05 Sep 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2378</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#16: Don’t Overlook These 11 Critical Data Backup Steps</itunes:title>
    <title>#16: Don’t Overlook These 11 Critical Data Backup Steps</title>
    <itunes:summary><![CDATA[        Episode 16: The 11 Critical Steps Most Businesses Overlook in Data Backups In this episode of Cash in the Cyber Sheets, we dive deep into the often-overlooked steps that can make or break your data backup strategy. While many businesses believe they have solid backup procedures in place, there are 11 crucial steps that frequently get missed, leaving them vulnerable to data loss and compliance risks. Join us as we uncover these hidden pitfalls, offering actionable insights to ensure yo...]]></itunes:summary>
    <description><![CDATA[        <p>Episode 16: The 11 Critical Steps Most Businesses Overlook in Data Backups In this episode of Cash in the Cyber Sheets, we dive deep into the often-overlooked steps that can make or break your data backup strategy. While many businesses believe they have solid backup procedures in place, there are 11 crucial steps that frequently get missed, leaving them vulnerable to data loss and compliance risks. Join us as we uncover these hidden pitfalls, offering actionable insights to ensure your backup plan is truly bulletproof. Whether you&apos;re a small business or a large enterprise, this episode will help you fortify your data protection measures and avoid costly mistakes.</p><p>Resources:</p><p>https://www.inputoutput.com/blog/Importance-of-Data-Backups-For-Your-Business-Continuity-Plan</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Episode 16: The 11 Critical Steps Most Businesses Overlook in Data Backups In this episode of Cash in the Cyber Sheets, we dive deep into the often-overlooked steps that can make or break your data backup strategy. While many businesses believe they have solid backup procedures in place, there are 11 crucial steps that frequently get missed, leaving them vulnerable to data loss and compliance risks. Join us as we uncover these hidden pitfalls, offering actionable insights to ensure your backup plan is truly bulletproof. Whether you&apos;re a small business or a large enterprise, this episode will help you fortify your data protection measures and avoid costly mistakes.</p><p>Resources:</p><p>https://www.inputoutput.com/blog/Importance-of-Data-Backups-For-Your-Business-Continuity-Plan</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203849-16-don-t-overlook-these-11-critical-data-backup-steps.mp3" length="27224808" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/kawi2ghwqncsmy834f10939f5v1j?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148844877</guid>
    <pubDate>Thu, 29 Aug 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2263</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#15: Business Continuity Plan Testing Methodologies</itunes:title>
    <title>#15: Business Continuity Plan Testing Methodologies</title>
    <itunes:summary><![CDATA[        In this episode of "Cash in the Cyber Sheets," we dive deep into the world of Business Continuity Plan (BCP) testing. Disruptions, whether natural or man-made, can strike without warning, and your ability to swiftly recover could be the difference between resilience and disaster. But how can you be sure that your BCP will work when it’s needed most? Join us as we explore the five key types of BCP testing methodologies: walk-throughs, tabletop exercises, parallel testing, full interrup...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of &quot;Cash in the Cyber Sheets,&quot; we dive deep into the world of Business Continuity Plan (BCP) testing. Disruptions, whether natural or man-made, can strike without warning, and your ability to swiftly recover could be the difference between resilience and disaster. But how can you be sure that your BCP will work when it’s needed most?</p><p>Join us as we explore the five key types of BCP testing methodologies: walk-throughs, tabletop exercises, parallel testing, full interruption testing, and sandbox testing. We&apos;ll discuss when and how to use each method, the pros and cons of each approach, and how to integrate these tests into your organization&apos;s information security program. Whether you&apos;re a seasoned pro or new to the concept of business continuity, this episode will equip you with the knowledge to ensure your plans are rock solid.</p><p>Tune in to learn how to stress-test your BCP and keep your organization ready for any crisis.</p><p>Resources:</p><p>Check out our companion article at: <br/><a href='https://www.inputoutput.com/blog/business-continuity-plan-testing-methodologies' target='_blank' rel='noopener noreferrer'>Input Output Blog - Types of Business Continuity Plan Testing Methodologies</a></p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of &quot;Cash in the Cyber Sheets,&quot; we dive deep into the world of Business Continuity Plan (BCP) testing. Disruptions, whether natural or man-made, can strike without warning, and your ability to swiftly recover could be the difference between resilience and disaster. But how can you be sure that your BCP will work when it’s needed most?</p><p>Join us as we explore the five key types of BCP testing methodologies: walk-throughs, tabletop exercises, parallel testing, full interruption testing, and sandbox testing. We&apos;ll discuss when and how to use each method, the pros and cons of each approach, and how to integrate these tests into your organization&apos;s information security program. Whether you&apos;re a seasoned pro or new to the concept of business continuity, this episode will equip you with the knowledge to ensure your plans are rock solid.</p><p>Tune in to learn how to stress-test your BCP and keep your organization ready for any crisis.</p><p>Resources:</p><p>Check out our companion article at: <br/><a href='https://www.inputoutput.com/blog/business-continuity-plan-testing-methodologies' target='_blank' rel='noopener noreferrer'>Input Output Blog - Types of Business Continuity Plan Testing Methodologies</a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203850-15-business-continuity-plan-testing-methodologies.mp3" length="20588889" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/gu897987rljct8dr2sdwjvpn5yln?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148824335</guid>
    <pubDate>Thu, 22 Aug 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1710</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#14: Building Your Business Continuity Plan</itunes:title>
    <title>#14: Building Your Business Continuity Plan</title>
    <itunes:summary><![CDATA[        Episode 14: Building Your Business Continuity Plan  In this episode of Cash in the Cyber Sheets, we dive into the essentials of creating a robust Business Continuity Plan (BCP) to ensure your organization can withstand and recover from disruptions. Whether it's natural disasters, cyberattacks, or unexpected events, a well-structured business continuity plan is crucial for maintaining critical business functions. Join us as we walk through the key steps in developing a business continu...]]></itunes:summary>
    <description><![CDATA[        <p><strong>Episode 14: Building Your Business Continuity Plan </strong></p><p>In this episode of Cash in the Cyber Sheets, we dive into the essentials of creating a robust Business Continuity Plan (BCP) to ensure your organization can withstand and recover from disruptions. Whether it&apos;s natural disasters, cyberattacks, or unexpected events, a well-structured business continuity plan is crucial for maintaining critical business functions.</p><p>Join us as we walk through the key steps in developing a business continuity plan, from risk assessment and identifying critical operations to executing disaster recovery strategies. Perfect for business leaders and IT professionals looking to bolster their company&apos;s resilience.</p><p>Check out our companion article at the Input Output Blog: <br/><a href='https://www.inputoutput.com/blog/comprehensive-guide-business-continuity-plan' target='_blank' rel='noopener noreferrer'>Business Continuity Management: Comprehensive Guide to Building Your Business Continuity Plan</a></p>      ]]></description>
    <content:encoded><![CDATA[        <p><strong>Episode 14: Building Your Business Continuity Plan </strong></p><p>In this episode of Cash in the Cyber Sheets, we dive into the essentials of creating a robust Business Continuity Plan (BCP) to ensure your organization can withstand and recover from disruptions. Whether it&apos;s natural disasters, cyberattacks, or unexpected events, a well-structured business continuity plan is crucial for maintaining critical business functions.</p><p>Join us as we walk through the key steps in developing a business continuity plan, from risk assessment and identifying critical operations to executing disaster recovery strategies. Perfect for business leaders and IT professionals looking to bolster their company&apos;s resilience.</p><p>Check out our companion article at the Input Output Blog: <br/><a href='https://www.inputoutput.com/blog/comprehensive-guide-business-continuity-plan' target='_blank' rel='noopener noreferrer'>Business Continuity Management: Comprehensive Guide to Building Your Business Continuity Plan</a></p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203851-14-building-your-business-continuity-plan.mp3" length="20161372" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/0p05h0a0ytzl1r4amg7z3te2o5et?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148814746</guid>
    <pubDate>Thu, 15 Aug 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1674</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#13: Business Continuity Planning Essential Tips</itunes:title>
    <title>#13: Business Continuity Planning Essential Tips</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, host James delves into the critical yet often overlooked components of a successful business continuity plan. As organizations strive to safeguard their operations against unexpected disruptions, many miss key elements that can make the difference between survival and failure. James offers a unique perspective, highlighting innovative strategies and insights that set robust plans apart from the rest. Drawing on real-world examples and exper...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, host James delves into the critical yet often overlooked components of a successful business continuity plan. As organizations strive to safeguard their operations against unexpected disruptions, many miss key elements that can make the difference between survival and failure. James offers a unique perspective, highlighting innovative strategies and insights that set robust plans apart from the rest.</p><p>Drawing on real-world examples and expert advice, this episode explores:</p><ul><li>The correct perspective to have when building your business continuity plan.</li><li>How to tie your planning to core business metrics.</li><li>What questions to ask to be sure you&apos;re prepared for what you don&apos;t know.</li><li>Essential components of every business continuity plan.</li></ul><p> </p><p>For more in-depth analysis and actionable tips, read our comprehensive blog post:<br/><a href='https://www.inputoutput.com/blog/kickstarting-your-business-continuity-plan'>https://www.inputoutput.com/blog/kickstarting-your-business-continuity-plan</a> </p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, host James delves into the critical yet often overlooked components of a successful business continuity plan. As organizations strive to safeguard their operations against unexpected disruptions, many miss key elements that can make the difference between survival and failure. James offers a unique perspective, highlighting innovative strategies and insights that set robust plans apart from the rest.</p><p>Drawing on real-world examples and expert advice, this episode explores:</p><ul><li>The correct perspective to have when building your business continuity plan.</li><li>How to tie your planning to core business metrics.</li><li>What questions to ask to be sure you&apos;re prepared for what you don&apos;t know.</li><li>Essential components of every business continuity plan.</li></ul><p> </p><p>For more in-depth analysis and actionable tips, read our comprehensive blog post:<br/><a href='https://www.inputoutput.com/blog/kickstarting-your-business-continuity-plan'>https://www.inputoutput.com/blog/kickstarting-your-business-continuity-plan</a> </p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203852-13-business-continuity-planning-essential-tips.mp3" length="17287116" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/8husqh1o06wt605m0jhjazze4fez?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148800086</guid>
    <pubDate>Thu, 08 Aug 2024 10:00:00 -0400</pubDate>
    <itunes:duration>1435</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#12: CrowdStrike Global Outage | Liability Explained</itunes:title>
    <title>#12: CrowdStrike Global Outage | Liability Explained</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, host James Bowers II explores the complex layers of liability stemming from the recent CrowdStrike Global Outage by drawing parallels to the SolarWinds 2023 breach. We dissect the ramifications of these major cybersecurity incidents, focusing on how companies like CrowdStrike could be impacted and the potential legal and financial liabilities their users and businesses may face. We delve into the intricacies of liability in the wake of such...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, host James Bowers II explores the complex layers of liability stemming from the recent CrowdStrike Global Outage by drawing parallels to the SolarWinds 2023 breach. We dissect the ramifications of these major cybersecurity incidents, focusing on how companies like CrowdStrike could be impacted and the potential legal and financial liabilities their users and businesses may face.</p><p>We delve into the intricacies of liability in the wake of such breaches, examining case studies and offering insights into the shifting landscape of cybersecurity risk management. Additionally, we discuss the necessity of evolving our risk perspectives and share practical strategies to bolster our defenses against similar incidents in the future.</p><p>Episode Highlights:</p><ul><li>Analysis of the CrowdStrike Global Outage and its implications for liability.</li><li>Impacts from the SolarWinds 2023 breach.</li><li>Potential legal and financial repercussions for CrowdStrike.</li><li>Strategies to enhance cybersecurity and mitigate risks.</li><li>Expert advice on adapting risk management practices in a rapidly changing cyber environment.</li></ul><p>Tune in for a thought-provoking discussion that equips you with the knowledge to navigate the complexities of cybersecurity liability and fortify your defenses against future threats.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, host James Bowers II explores the complex layers of liability stemming from the recent CrowdStrike Global Outage by drawing parallels to the SolarWinds 2023 breach. We dissect the ramifications of these major cybersecurity incidents, focusing on how companies like CrowdStrike could be impacted and the potential legal and financial liabilities their users and businesses may face.</p><p>We delve into the intricacies of liability in the wake of such breaches, examining case studies and offering insights into the shifting landscape of cybersecurity risk management. Additionally, we discuss the necessity of evolving our risk perspectives and share practical strategies to bolster our defenses against similar incidents in the future.</p><p>Episode Highlights:</p><ul><li>Analysis of the CrowdStrike Global Outage and its implications for liability.</li><li>Impacts from the SolarWinds 2023 breach.</li><li>Potential legal and financial repercussions for CrowdStrike.</li><li>Strategies to enhance cybersecurity and mitigate risks.</li><li>Expert advice on adapting risk management practices in a rapidly changing cyber environment.</li></ul><p>Tune in for a thought-provoking discussion that equips you with the knowledge to navigate the complexities of cybersecurity liability and fortify your defenses against future threats.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203853-12-crowdstrike-global-outage-liability-explained.mp3" length="30287086" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/gw774ecw58lhnj2gp1x0sxqzcw53?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148784148</guid>
    <pubDate>Thu, 01 Aug 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2519</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#11: Encryption, the Credit System, &amp; Door Dash</itunes:title>
    <title>#11: Encryption, the Credit System, &amp; Door Dash</title>
    <itunes:summary><![CDATA[        In this episode of Cash in the Cyber Sheets, host James Bowers II sits down with Bryan Barnhart from Infiltration Labs for a deep dive into the world of encryption, credit security, and the unexpected challenges of online food orders. Join us as Bryan shares his expertise on the critical role encryption plays in safeguarding sensitive information and maintaining the integrity of financial transactions. We also explore the intricacies of credit security and how businesses can protect t...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, host James Bowers II sits down with Bryan Barnhart from Infiltration Labs for a deep dive into the world of encryption, credit security, and the unexpected challenges of online food orders. Join us as Bryan shares his expertise on the critical role encryption plays in safeguarding sensitive information and maintaining the integrity of financial transactions. We also explore the intricacies of credit security and how businesses can protect themselves and their customers from fraud.</p><p>But it’s not all serious talk—Bryan and James tackle a lighter yet surprisingly complex issue: the problems with Chipotle orders through Door Dash. By discussing delivery mishaps, we uncover the cybersecurity implications behind these everyday annoyances.</p><p>Tune in for an engaging and informative episode filled with practical insights, expert advice, and a dash of humor as we navigate the intersections of technology, security, and the modern consumer experience.</p><p>Episode Highlights:</p><ul><li>The importance of encryption in today&apos;s digital landscape.</li><li>Best practices for credit security and fraud prevention.</li><li>The unexpected cybersecurity challenges of food delivery apps.</li><li>Anecdotes and advice from Bryan Barnhart, an industry expert from Infiltration Labs.</li></ul>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of Cash in the Cyber Sheets, host James Bowers II sits down with Bryan Barnhart from Infiltration Labs for a deep dive into the world of encryption, credit security, and the unexpected challenges of online food orders. Join us as Bryan shares his expertise on the critical role encryption plays in safeguarding sensitive information and maintaining the integrity of financial transactions. We also explore the intricacies of credit security and how businesses can protect themselves and their customers from fraud.</p><p>But it’s not all serious talk—Bryan and James tackle a lighter yet surprisingly complex issue: the problems with Chipotle orders through Door Dash. By discussing delivery mishaps, we uncover the cybersecurity implications behind these everyday annoyances.</p><p>Tune in for an engaging and informative episode filled with practical insights, expert advice, and a dash of humor as we navigate the intersections of technology, security, and the modern consumer experience.</p><p>Episode Highlights:</p><ul><li>The importance of encryption in today&apos;s digital landscape.</li><li>Best practices for credit security and fraud prevention.</li><li>The unexpected cybersecurity challenges of food delivery apps.</li><li>Anecdotes and advice from Bryan Barnhart, an industry expert from Infiltration Labs.</li></ul>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203854-11-encryption-the-credit-system-door-dash.mp3" length="34716918" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/fy3tqt9ftkweoav3hgon8og3oq89?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148767183</guid>
    <pubDate>Thu, 25 Jul 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2887</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#10: Security Incident Response Policy &amp; Planning</itunes:title>
    <title>#10: Security Incident Response Policy &amp; Planning</title>
    <itunes:summary><![CDATA[        In this episode of "Cash in the Cyber Sheets," host James Bowers II dives deep into the world of security incident response planning. Discover the essential elements that every incident response plan must include to effectively manage and mitigate security incidents. James highlights critical areas that many businesses often overlook, ensuring you have a comprehensive understanding of how to build a robust and resilient incident response strategy. Tune in as we break down the key comp...]]></itunes:summary>
    <description><![CDATA[        <p>In this episode of &quot;Cash in the Cyber Sheets,&quot; host James Bowers II dives deep into the world of security incident response planning. Discover the essential elements that every incident response plan must include to effectively manage and mitigate security incidents. James highlights critical areas that many businesses often overlook, ensuring you have a comprehensive understanding of how to build a robust and resilient incident response strategy.</p><p>Tune in as we break down the key components, from assembling your Incident Response Team (ISIRT) to crafting a solid communication plan and ensuring timely incident reporting. Learn practical tips and best practices to enhance your organization&apos;s preparedness and response capabilities.</p><p>Don&apos;t miss out on our accompanying article that delves further into the topic, and grab your free essential tools designed to help you build and improve your company&apos;s security incident response plan. Stay ahead of the curve and safeguard your business from digital threats with expert insights and actionable advice.</p><p><a href='https://www.inputoutput.com/blog/crafting-a-solid-security-incident-response-policy' target='_blank' rel='noopener noreferrer'>Read the article here: &quot;Crafting a Solid Security Incident Response Policy: A Step-by-Step Guide&quot;</a></p><p><a href='https://www.inputoutput.com/security-incident-response-policy-essential-tools' target='_blank' rel='noopener noreferrer'>Download your FREE essential tools here.</a></p><p>Subscribe now to ensure you never miss an episode of &quot;Cash in the Cyber Sheets&quot; and keep your business secure and compliant in today&apos;s digital landscape.</p><p> </p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode of &quot;Cash in the Cyber Sheets,&quot; host James Bowers II dives deep into the world of security incident response planning. Discover the essential elements that every incident response plan must include to effectively manage and mitigate security incidents. James highlights critical areas that many businesses often overlook, ensuring you have a comprehensive understanding of how to build a robust and resilient incident response strategy.</p><p>Tune in as we break down the key components, from assembling your Incident Response Team (ISIRT) to crafting a solid communication plan and ensuring timely incident reporting. Learn practical tips and best practices to enhance your organization&apos;s preparedness and response capabilities.</p><p>Don&apos;t miss out on our accompanying article that delves further into the topic, and grab your free essential tools designed to help you build and improve your company&apos;s security incident response plan. Stay ahead of the curve and safeguard your business from digital threats with expert insights and actionable advice.</p><p><a href='https://www.inputoutput.com/blog/crafting-a-solid-security-incident-response-policy' target='_blank' rel='noopener noreferrer'>Read the article here: &quot;Crafting a Solid Security Incident Response Policy: A Step-by-Step Guide&quot;</a></p><p><a href='https://www.inputoutput.com/security-incident-response-policy-essential-tools' target='_blank' rel='noopener noreferrer'>Download your FREE essential tools here.</a></p><p>Subscribe now to ensure you never miss an episode of &quot;Cash in the Cyber Sheets&quot; and keep your business secure and compliant in today&apos;s digital landscape.</p><p> </p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203855-10-security-incident-response-policy-planning.mp3" length="32398280" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/9z3wvt3b4dge0hnf40q3ayopdu0w?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148753985</guid>
    <pubDate>Thu, 18 Jul 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2695</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#9: MultiFactor Authentication (MFA)</itunes:title>
    <title>#9: MultiFactor Authentication (MFA)</title>
    <itunes:summary><![CDATA[        Welcome to Episode 9 of 'Cash in the Cyber Sheets,' where we dive deep into the world of Multi-Factor Authentication (MFA). In this episode, we break down what MFA is and why it's a cornerstone of modern cybersecurity. We'll explore the various methods of MFA, discuss its critical importance in protecting your organization, and examine the potential vulnerabilities and ways MFA can be bypassed. We'll review of the Yubico YubiKey and the Yubico Authenticator Application, showcasing how...]]></itunes:summary>
    <description><![CDATA[        <p>Welcome to Episode 9 of &apos;Cash in the Cyber Sheets,&apos; where we dive deep into the world of Multi-Factor Authentication (MFA). In this episode, we break down what MFA is and why it&apos;s a cornerstone of modern cybersecurity. We&apos;ll explore the various methods of MFA, discuss its critical importance in protecting your organization, and examine the potential vulnerabilities and ways MFA can be bypassed.</p><p>We&apos;ll review of the Yubico YubiKey and the Yubico Authenticator Application, showcasing how these tools can significantly enhance your organization&apos;s MFA deployment. Learn about the features, benefits, and practical implementation tips for integrating YubiKey into your security infrastructure.</p><p>Enhance your understanding of MFA and stay ahead of the curve in securing your digital assets.</p><p>Resources:</p><p>* Article: The Power of Multifactor Authentication: Boosting Your Online Security <br/><a href='https://www.inputoutput.com/blog/The-Power-of-Multifactor-Authentication-Boosting-Your-Online-Security'>https://www.inputoutput.com/blog/The-Power-of-Multifactor-Authentication-Boosting-Your-Online-Security </a></p><p>* Yubico Online Store (Amazon)<br/><a href='https://amzn.to/3L9wWDn'>https://amzn.to/3L9wWDn </a></p><p>Tune in to fortify your defenses with advanced MFA strategies and tools</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Welcome to Episode 9 of &apos;Cash in the Cyber Sheets,&apos; where we dive deep into the world of Multi-Factor Authentication (MFA). In this episode, we break down what MFA is and why it&apos;s a cornerstone of modern cybersecurity. We&apos;ll explore the various methods of MFA, discuss its critical importance in protecting your organization, and examine the potential vulnerabilities and ways MFA can be bypassed.</p><p>We&apos;ll review of the Yubico YubiKey and the Yubico Authenticator Application, showcasing how these tools can significantly enhance your organization&apos;s MFA deployment. Learn about the features, benefits, and practical implementation tips for integrating YubiKey into your security infrastructure.</p><p>Enhance your understanding of MFA and stay ahead of the curve in securing your digital assets.</p><p>Resources:</p><p>* Article: The Power of Multifactor Authentication: Boosting Your Online Security <br/><a href='https://www.inputoutput.com/blog/The-Power-of-Multifactor-Authentication-Boosting-Your-Online-Security'>https://www.inputoutput.com/blog/The-Power-of-Multifactor-Authentication-Boosting-Your-Online-Security </a></p><p>* Yubico Online Store (Amazon)<br/><a href='https://amzn.to/3L9wWDn'>https://amzn.to/3L9wWDn </a></p><p>Tune in to fortify your defenses with advanced MFA strategies and tools</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203856-9-multifactor-authentication-mfa.mp3" length="30097087" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/y2b4zzpwasgpg0coac2jxy4mhz96?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148732150</guid>
    <pubDate>Thu, 11 Jul 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2504</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#8: 10 Steps for a Compliant User Access &amp; Logging Audit</itunes:title>
    <title>#8: 10 Steps for a Compliant User Access &amp; Logging Audit</title>
    <itunes:summary><![CDATA[        Welcome to Episode 8 of 'Cash in the Cyber Sheets,' where we delve into the critical components of maintaining compliance and security in your organization's IT environment. In this episode, we explore the '10 Steps for a Compliant User Access &amp; Logging Audit,' a comprehensive guide to ensure your systems meet regulatory requirements and avoid costly data incidents. Join us as we discuss common pitfalls organizations face and often overlooked areas that can lead to severe regulato...]]></itunes:summary>
    <description><![CDATA[        <p>Welcome to Episode 8 of &apos;Cash in the Cyber Sheets,&apos; where we delve into the critical components of maintaining compliance and security in your organization&apos;s IT environment. In this episode, we explore the &apos;10 Steps for a Compliant User Access &amp; Logging Audit,&apos; a comprehensive guide to ensure your systems meet regulatory requirements and avoid costly data incidents.</p><p>Join us as we discuss common pitfalls organizations face and often overlooked areas that can lead to severe regulatory violations and hefty fines. Our expert guests share their insights on how to effectively implement each step and highlight best practices to maintain robust user access and logging protocols.</p><p>Don&apos;t miss out on the accompanying resources! Check out our detailed infographic that visually summarizes the 10 crucial steps for a compliant audit and read our in-depth article that expands on these strategies.</p><p><strong>Resources:</strong></p><ul><li><a href='https://www.inputoutput.com/steps-for-a-compliant-user-access-logging-audit' target='_blank' rel='noopener noreferrer'>Infographic: 10 Steps for a Compliant User Access &amp; Logging Audit</a></li><li><a href='https://www.inputoutput.com/blog/10-must-do-steps-to-perform-a-compliant-user-access-and-logging-audit' target='_blank' rel='noopener noreferrer'>Article: 10 Must Do Steps to Perform a Compliant User Access &amp; Logging Audit</a></li></ul><p>Tune in to fortify your organization&apos;s data security and stay compliant with industry regulations.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Welcome to Episode 8 of &apos;Cash in the Cyber Sheets,&apos; where we delve into the critical components of maintaining compliance and security in your organization&apos;s IT environment. In this episode, we explore the &apos;10 Steps for a Compliant User Access &amp; Logging Audit,&apos; a comprehensive guide to ensure your systems meet regulatory requirements and avoid costly data incidents.</p><p>Join us as we discuss common pitfalls organizations face and often overlooked areas that can lead to severe regulatory violations and hefty fines. Our expert guests share their insights on how to effectively implement each step and highlight best practices to maintain robust user access and logging protocols.</p><p>Don&apos;t miss out on the accompanying resources! Check out our detailed infographic that visually summarizes the 10 crucial steps for a compliant audit and read our in-depth article that expands on these strategies.</p><p><strong>Resources:</strong></p><ul><li><a href='https://www.inputoutput.com/steps-for-a-compliant-user-access-logging-audit' target='_blank' rel='noopener noreferrer'>Infographic: 10 Steps for a Compliant User Access &amp; Logging Audit</a></li><li><a href='https://www.inputoutput.com/blog/10-must-do-steps-to-perform-a-compliant-user-access-and-logging-audit' target='_blank' rel='noopener noreferrer'>Article: 10 Must Do Steps to Perform a Compliant User Access &amp; Logging Audit</a></li></ul><p>Tune in to fortify your organization&apos;s data security and stay compliant with industry regulations.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203857-8-10-steps-for-a-compliant-user-access-logging-audit.mp3" length="28617230" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/70u7h09msnwowxclfly0oml3yt13?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148725484</guid>
    <pubDate>Thu, 04 Jul 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2380</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#7: CDK Breach &amp; Incident Response Management</itunes:title>
    <title>#7: CDK Breach &amp; Incident Response Management</title>
    <itunes:summary><![CDATA[        In this essential episode of Cash in the Cyber Sheets, we delve into the recent data breach at CDK Global, a leading provider of IT and digital marketing solutions to the automotive industry. Discover how this significant breach unfolded, the immediate impacts on the company and its clients, and the broader implications for businesses worldwide. We'll explore how this incident highlights the critical importance of robust incident response planning for organizations of all sizes. We'll...]]></itunes:summary>
    <description><![CDATA[        <p>In this essential episode of Cash in the Cyber Sheets, we delve into the recent data breach at CDK Global, a leading provider of IT and digital marketing solutions to the automotive industry. Discover how this significant breach unfolded, the immediate impacts on the company and its clients, and the broader implications for businesses worldwide. We&apos;ll explore how this incident highlights the critical importance of robust incident response planning for organizations of all sizes. We&apos;ll break down the key components of effective incident management, sharing best practices that can help safeguard your business against similar threats. Tune in to learn from CDK Global&apos;s experience, understand the vital steps in preparing for and responding to data breaches, and gain actionable insights to enhance your organization&apos;s cybersecurity posture. Whether you&apos;re a small business owner or an IT professional, this episode provides invaluable knowledge to help you navigate the ever-evolving landscape of cyber threats.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this essential episode of Cash in the Cyber Sheets, we delve into the recent data breach at CDK Global, a leading provider of IT and digital marketing solutions to the automotive industry. Discover how this significant breach unfolded, the immediate impacts on the company and its clients, and the broader implications for businesses worldwide. We&apos;ll explore how this incident highlights the critical importance of robust incident response planning for organizations of all sizes. We&apos;ll break down the key components of effective incident management, sharing best practices that can help safeguard your business against similar threats. Tune in to learn from CDK Global&apos;s experience, understand the vital steps in preparing for and responding to data breaches, and gain actionable insights to enhance your organization&apos;s cybersecurity posture. Whether you&apos;re a small business owner or an IT professional, this episode provides invaluable knowledge to help you navigate the ever-evolving landscape of cyber threats.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203858-7-cdk-breach-incident-response-management.mp3" length="26821562" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/c49zjv8labfb4qf5ox6l5vg6oy22?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148721716</guid>
    <pubDate>Thu, 27 Jun 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2230</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#6: Changes in Encryption Requirements</itunes:title>
    <title>#6: Changes in Encryption Requirements</title>
    <itunes:summary><![CDATA[        In this critical episode of Cash in the Cyber Sheets, we dive deep into the latest legislative developments that could potentially dismantle the effectiveness of End-to-End Encryption (E2EE). Join us as we explore the implications of these changes on privacy and security, and how they may inadvertently compromise the very core of secure digital communication. But it's not all doom and gloom. We'll also discuss the concurrent legislative efforts aimed at enhancing the safety of childre...]]></itunes:summary>
    <description><![CDATA[        <p>In this critical episode of Cash in the Cyber Sheets, we dive deep into the latest legislative developments that could potentially dismantle the effectiveness of End-to-End Encryption (E2EE). Join us as we explore the implications of these changes on privacy and security, and how they may inadvertently compromise the very core of secure digital communication. But it&apos;s not all doom and gloom. We&apos;ll also discuss the concurrent legislative efforts aimed at enhancing the safety of children on social media platforms. Could these measures strike a balance between privacy and protection, or are they destined to clash? Tune in to find out how these pivotal changes could reshape our digital landscape, impacting both the security of our personal data and the safety of our children online. Don&apos;t miss this episode packed with expert insights, potential scenarios, and the ongoing debate between security and safety in the digital age.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this critical episode of Cash in the Cyber Sheets, we dive deep into the latest legislative developments that could potentially dismantle the effectiveness of End-to-End Encryption (E2EE). Join us as we explore the implications of these changes on privacy and security, and how they may inadvertently compromise the very core of secure digital communication. But it&apos;s not all doom and gloom. We&apos;ll also discuss the concurrent legislative efforts aimed at enhancing the safety of children on social media platforms. Could these measures strike a balance between privacy and protection, or are they destined to clash? Tune in to find out how these pivotal changes could reshape our digital landscape, impacting both the security of our personal data and the safety of our children online. Don&apos;t miss this episode packed with expert insights, potential scenarios, and the ongoing debate between security and safety in the digital age.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203859-6-changes-in-encryption-requirements.mp3" length="32594649" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/ea0xkxzsil8cj0j3sdymenjf366u?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148721713</guid>
    <pubDate>Thu, 20 Jun 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2711</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#5: Wire Fraud Risks and How to Protect Your Business</itunes:title>
    <title>#5: Wire Fraud Risks and How to Protect Your Business</title>
    <itunes:summary><![CDATA[        In this eye-opening episode of Cash in the Cyber Sheets, we delve into the insidious world of wire fraud. Whether you're a business owner, a financial professional, or just an individual looking to safeguard your assets, understanding how wire fraud happens and who is liable is crucial. Join us as we unravel the complexities of wire fraud, featuring expert insights and real-world examples.       ]]></itunes:summary>
    <description><![CDATA[        <p>In this eye-opening episode of Cash in the Cyber Sheets, we delve into the insidious world of wire fraud. Whether you&apos;re a business owner, a financial professional, or just an individual looking to safeguard your assets, understanding how wire fraud happens and who is liable is crucial. Join us as we unravel the complexities of wire fraud, featuring expert insights and real-world examples.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this eye-opening episode of Cash in the Cyber Sheets, we delve into the insidious world of wire fraud. Whether you&apos;re a business owner, a financial professional, or just an individual looking to safeguard your assets, understanding how wire fraud happens and who is liable is crucial. Join us as we unravel the complexities of wire fraud, featuring expert insights and real-world examples.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203860-5-wire-fraud-risks-and-how-to-protect-your-business.mp3" length="33315836" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/satq46y2ye0dd405x3uun7ovq10r?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148721712</guid>
    <pubDate>Thu, 13 Jun 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2771</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#4: Risk Management Strategies to Stay Compliant</itunes:title>
    <title>#4: Risk Management Strategies to Stay Compliant</title>
    <itunes:summary><![CDATA[        Risk management and risk assessments are typically time consuming and confusing but we explore our new approach which aims to greatly simplify the process without sacrificing any insight or benefits.       ]]></itunes:summary>
    <description><![CDATA[        <p>Risk management and risk assessments are typically time consuming and confusing but we explore our new approach which aims to greatly simplify the process without sacrificing any insight or benefits.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Risk management and risk assessments are typically time consuming and confusing but we explore our new approach which aims to greatly simplify the process without sacrificing any insight or benefits.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203861-4-risk-management-strategies-to-stay-compliant.mp3" length="27371233" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/g2yuuj2t1xtcwbdh3dtlpwi5sjle?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148721704</guid>
    <pubDate>Thu, 06 Jun 2024 10:00:00 -0400</pubDate>
    <itunes:duration>2276</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Business Compliance Requirements</itunes:title>
    <title>Business Compliance Requirements</title>
    <itunes:summary><![CDATA[        We review the different business compliance requirements and how they are stacking against small businesses making it more and more difficult just to do business.       ]]></itunes:summary>
    <description><![CDATA[        <p>We review the different business compliance requirements and how they are stacking against small businesses making it more and more difficult just to do business.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>We review the different business compliance requirements and how they are stacking against small businesses making it more and more difficult just to do business.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203862-business-compliance-requirements.mp3" length="30121006" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/1s7shihv8cdwgc8azdibzg8hg59a?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148713070</guid>
    <pubDate>Thu, 30 May 2024 21:00:00 -0400</pubDate>
    <itunes:duration>2507</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>3</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>#2: Using Inputs &amp; Outputs to Strengthen Risk Programs</itunes:title>
    <title>#2: Using Inputs &amp; Outputs to Strengthen Risk Programs</title>
    <itunes:summary><![CDATA[        In this episode, we delve into the often-overlooked realm of risk management by examining a company's primary inputs and outputs. We'll explore how understanding these elements can help identify key risk management strategies, highlighting common pitfalls that many risk managers miss. Join us as we uncover practical tips and insights to enhance your risk management practices and safeguard your business effectively.       ]]></itunes:summary>
    <description><![CDATA[        <p>In this episode, we delve into the often-overlooked realm of risk management by examining a company&apos;s primary inputs and outputs. We&apos;ll explore how understanding these elements can help identify key risk management strategies, highlighting common pitfalls that many risk managers miss. Join us as we uncover practical tips and insights to enhance your risk management practices and safeguard your business effectively.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>In this episode, we delve into the often-overlooked realm of risk management by examining a company&apos;s primary inputs and outputs. We&apos;ll explore how understanding these elements can help identify key risk management strategies, highlighting common pitfalls that many risk managers miss. Join us as we uncover practical tips and insights to enhance your risk management practices and safeguard your business effectively.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203863-2-using-inputs-outputs-to-strengthen-risk-programs.mp3" length="21441286" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/3xyhobtzjur5xjhhbb5kcju3823x?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148713071</guid>
    <pubDate>Thu, 23 May 2024 16:00:00 -0400</pubDate>
    <itunes:duration>1784</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>2</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
  <item>
    <itunes:title>Welcome to Cash in the Cyber Sheets</itunes:title>
    <title>Welcome to Cash in the Cyber Sheets</title>
    <itunes:summary><![CDATA[        Shattering the myth that security and compliance are just necessary evils and profit-sucking business bottlenecks, “Cash in the Cyber Sheets” reveals how they’re actually launchpads for profit and how they lay the groundwork for golden opportunities. Dive between the spreadsheets with James Bowers II, CEO of Input Output each week as he unzips the secrets of turning obligatory fine print and security management into financial foreplay. It's time to make security, compliance, and risk ...]]></itunes:summary>
    <description><![CDATA[        <p>Shattering the myth that security and compliance are just necessary evils and profit-sucking business bottlenecks, “Cash in the Cyber Sheets” reveals how they’re actually launchpads for profit and how they lay the groundwork for golden opportunities. Dive between the spreadsheets with James Bowers II, CEO of Input Output each week as he unzips the secrets of turning obligatory fine print and security management into financial foreplay. It&apos;s time to make security, compliance, and risk management your business bedrock – turning them into strategic assets that aren&apos;t just about avoiding risks, but about creating value, sharpening your operations, and yes, padding your pockets.</p>      ]]></description>
    <content:encoded><![CDATA[        <p>Shattering the myth that security and compliance are just necessary evils and profit-sucking business bottlenecks, “Cash in the Cyber Sheets” reveals how they’re actually launchpads for profit and how they lay the groundwork for golden opportunities. Dive between the spreadsheets with James Bowers II, CEO of Input Output each week as he unzips the secrets of turning obligatory fine print and security management into financial foreplay. It&apos;s time to make security, compliance, and risk management your business bedrock – turning them into strategic assets that aren&apos;t just about avoiding risks, but about creating value, sharpening your operations, and yes, padding your pockets.</p>      ]]></content:encoded>
    <enclosure url="https://www.buzzsprout.com/2310977/episodes/18203864-welcome-to-cash-in-the-cyber-sheets.mp3" length="19619677" type="audio/mpeg" />
    <itunes:image href="https://storage.buzzsprout.com/r9zlb94i7d6m6znpzeug3de4mz29?.jpg" />
    <itunes:author>James Bowers II</itunes:author>
    <guid isPermaLink="false">Kajabi-2148713072</guid>
    <pubDate>Thu, 16 May 2024 11:00:00 -0400</pubDate>
    <itunes:duration>1632</itunes:duration>
    <itunes:keywords></itunes:keywords>
    <itunes:season>1</itunes:season>
    <itunes:episode>1</itunes:episode>
    <itunes:episodeType></itunes:episodeType>
    <itunes:explicit>false</itunes:explicit>
  </item>
</channel>
</rss>
