The Bedel Security Blog

Information security expertise exclusively for you.

Sign Up Today

Risk Management

2 min read

Why the FFIEC CAT Isn’t Your Risk Assessment—And What To Do Instead

With the upcoming sunset of the FFIEC Cybersecurity Assessment Tool (CAT) in less than three months, community banks are beginning to get nervous...

Read More

2 min read

The Wild, Untamed, and Exciting World of Passkeys

In today's digital landscape, securing user authentication is more critical than ever. Recently, I explored the benefits of using Yubikeys and...

Read More

2 min read

From Compliance to Confidence

Building a Risk-Based Information Security Program for Community Banks For many community banks, passing a regulatory exam can feel like a victory...

Read More

2 min read

Using RACI Charts to Strengthen Risk Management and InfoSec Programs

Without defined roles, critical tasks like policy reviews, incident response, and business continuity planning, or risk assessments can be overlooked...

Read More

3 min read

Strengthening Cybersecurity with a Single Source of Truth

In the current cybersecurity landscape, organizations generate and rely on vast amounts of data from various tools, systems, and platforms. Without a...

Read More

4 min read

Beyond the CAT: Building on a Foundation That Lasts

Introduction As most bankers know by now, the FFIEC Cybersecurity Assessment Tool (CAT), first released in 2015, will officially sunset on August 31,...

Read More

5 min read

AI Model Risk Management in Financial Institutions

Today we’ll discuss our newest and perhaps most ubiquitous buzzword: AI (Artificial Intelligence). Identifying and mitigating risks of AI are...

Read More

3 min read

Understanding the Second Amendment to DFS Part 500: What Financial Institutions Need to Know

The Second Amendment to the New York Department of Financial Services (NYDFS) Part 500, finalized on November 1, 2024, introduces more stringent...

Read More

2 min read

In a World of Emerging Technology, One Truth Remains

Artificial intelligence, quantum computing, cryptocurrency, banking as a service - there’s no shortage of new technology shaking up the financial...

Read More

2 min read

Network Segmentation:  How Much Is Enough?

Network segmentation is one of those terms that gets thrown around a lot, like the principle of least privilege and role-based access, as if it was...

Read More