Compliance Pointers cover art

All Episodes

Compliance Pointers — 99 episodes

#
Title
1

SOC 2 Auditor Red Flags

2

Analyzing the Written Consent Ruling

3

The Intersection of AI Governance and Traditional Security Frameworks

4

State Privacy Laws - What Regulators are Looking For

5

Cloud Security and Compliance Best Practices

6

The California Invasion of Privacy Act - Managing CIPA Risks

7

AI Risk Management That Scales with Adoption

8

The HITRUST AI Options

9

Ask an Attorney: What's Driving Email Compliance Litigation

10

Is ISO 42001 Right for Your Business?

11

CMMC Scoping and Self Assessments

12

Ask an Attorney: Analyzing Texas SB 140 Risks

13

CCPA Cybersecurity Audits

14

Where do Consent Revocation Rules Stand?

15

B2B Marketing and the TCPA

16

AI and SOC 2 Compliance

17

What is the EU AI Act?

18

How to Complete InfoSec Audits Faster

19

Managing Telemarketing Partner Risks

20

S3 E37: Getting to Know NIST AI RMF

21

S3 E36 How State Privacy Laws Impact Telemarketing

22

S3 E35: HIPAA Risk Assessments

23

S3 E34: A HITRUST Certification Story

24

S3 E33: How ISO 42001 Fits Into the Current AI Landscape

25

S3 E32: Telemarketing in Texas Just Got Riskier

26

S3 E31: The Impact of the SCOTUS McLaughlin Ruling

27

S3 E30: ISO as a Catalyst, Not a Checkbox

28

S3 E29: Integrating GRC Tools Into Your Compliance Program

29

S3 E28: Common Penetration Testing Mistakes

30

S3 E27: How to Read a SOC 2 Report

31

S3 E26: How Existing AI Laws Impact Businesses

32

S3 E25: What's Driving TCPA Lawsuits

33

S3 E24: HITRUST Certification First Steps

34

S3 E23 Solving Website Cookie Configuration and Compliance Challenges

35

S3 E22: The Path to SOC 2 Compliance

36

S3 E21: Don't Forget Email in Your Marketing Compliance Program

37

S3 E20: The Lessons Learned from CCPA Enforcements

38

S3 E19: How Your ISO 27001 Certification can Accelerate ISO 42001 Compliance

39

S3 E18: Are Recent Rulings Changing the Telemarketing Regulatory Landscape

40

S3 E17: Aligning Cybersecurity Controls to Healthcare Compliance Obligations

41

S3 E16: Changes at HHS and the Impact on HIPAA

42

S3 E15: Medical Device Cybersecurity

43

S3 E14: Leveraging AI in PCI Assessments

44

S3 E13: Cybersecurity in an Era of Deregulation

45

S3 E12: Building a Security and Privacy Culture

46

S3 E11: Telemarketing Litigation Trends

47

S3 E10: A Compliance Journey with Tamara Lauterbach

48

S3 E9: The Top Privacy Priorities of 2025

49

S3 E8: Selecting the Right ISO Readiness Partner

50

S3 E7: CompliancePoint Exchange

51

S3 E6: Using AI in Security and Compliance Assessments

52

S3 E5: Protecting Your Business From Professional Plaintiffs

53

S3 E4: Building a Third-party Risk Management Program

54

S3 E3: Telemarketing Regulations: What to Expect in 2025

55

S3 E2: Proposed HIPAA Security Rule Updates

56

S3 E1: PCI and SOC 2 Combined Audits

57

S2 E37: Privacy Regulations: 2024 Review and 2025 Preview

58

S2 E36: The Impact of One-to-one Consent on Outbound Calling

59

S2 E35: CMMC is Finalized, What Comes Next?

60

S2 E34: Getting Ahead of PCI DSS 4.0 Future-dated Requirements

61

S2 E33: Deciding Between SOC 2 and HITRUST

62

S2 E32: AI and Compliance with Privacy Regulations and the TCPA

63

S2 E31: Why ISO Makes Sense Even Without a Customer Requirement

64

S2 E30: Common HIPAA Privacy Rule Mistakes

65

S2 E29: Website Privacy Functions and Controls

66

S2 E28: The Value of Compliance Orchestration

67

S2 E27: Consent Revocation Rules and Best Practices

68

S2 E26: Risk and Data Stewardship Throughout the Business Life Cycle

69

S2 E25: Data Stewardship for Venture Capital and Private Equity Firms

70

S2 E24: Geopolitical Ransomware - The Growing Threat and Defense Strategies

71

S2 E23: Compliance Pointers is Taking a Short Summer Break

72

S2 E22: Where are all the ISO 42001 Certificates Part 2

73

S2 E21: Where are all the ISO 42001 Certificates Part 1

74

S2 E20: ISO 27001: 2022 Common Challenges and Solutions

75

S2 E19: State-level TCPAs: The Requirements and Risks

76

S2 E18: Change Healthcare - The Impact and the Lessons Learned

77

S2 E17: Where you Should be in the Transition to PCI DSS v4.0

78

S2 E16: Building an Effective Cybersecurity Training Program

79

S2 E15: Breaking Down the American Privacy Rights Act

80

S2 E14: Telemarketing Regulations Update Spring 2024

81

S2 E13: The Essentials of Penetration Testing Part 2

82

S2 E12: The Essentials of Penetration Testing Part 1

83

S2 E11: Reducing the Risk of Internal Threats in Healthcare

84

S2 E10: Why You Need to do Calling Data Audits

85

S2 E9: The Impact of AI on Privacy Regulations and Compliance

86

S2 E8: Getting to Know PCI 3DS

87

S2 E7: Achieving Compliance with NIST 800-171 Part 2

88

S2 E6: Achieving NIST 800-171 Compliance Part 1

89

S2 E5: The Value of Risk Assessments in Healthcare

90

S2 E4: Understanding Your Privacy Notice Obligations

91

S2 E3: The Impact of the FCC's New Lead Generation Rules

92

S2 E2: The Major Changes in PCI DSS v.40

93

S2 E1: Preparing for a SOC 2 Audit

94

S1 E6: Making Data Privacy Impact Assessments Easier

95

S1 E5: Effective Vendor Security Evaluations

96

S1 E4: CMMC: The Requirements, Challenges, and Benefits

97

S1 E3: Transitioning to PCI DSS v4.0

98

S1 E2: Effective Record Keeping for Do Not Call Compliance

99

S1 E1: Web Trackers and HIPAA Compliance