The Compliance & Cyber Chronicles: Why NIST CSF and CIS are a Great Match

By Steve Haley | February 17, 2026

How two leading frameworks align to reduce risk, simplify compliance, and support smarter security investments for the SMB. Welcome to…

The Connecticut Privacy Law 2025 Enforcement Report

By Matt Dumiak | February 17, 2026

The Connecticut Office of the Attorney General (OAG) released its Connecticut Data Privacy Act (CTDPA) 2025 Enforcement Report. This is…

Michigan SB 351: What the New Telephone Solicitation Act Means for Businesses

By Kara Urbaniak | February 13, 2026

As part of an effort to update the state’s telemarketing rules and strengthen consumer protections against unwanted calls and texts,…

Disney Fined $2.75M for CCPA Violations

By Matt Dumiak | February 13, 2026

California Attorney General Rob Bonta announced a $2.75 million settlement with Disney for violating the California Consumer Privacy Act (CCPA).…

How Organizations Successfully Build Security and Compliance Programs

By Brandon Breslin | February 9, 2026

For many organizations, the compliance journey does not start with an audit or a certification goal. It starts much earlier…

What PCI SSC’s 2025 Annual Report Means for Our Clients – A QSA Perspective

By Brandon Breslin | February 9, 2026

The PCI Security Standards Council (PCI SSC) recently published its first-ever Annual Report, offering transparency into how PCI standards are…

Common Cloud Misconfigurations and Their Compliance Implications

By Alec Harrell | February 5, 2026

Modern cloud platforms deliver speed and flexibility, but the environments are complex and often create new security risks. From accidentally…

The Documentation Needed for Cybersecurity Audits

By Alec Harrell | February 2, 2026

Preparing for a cybersecurity audit is a big job. It can feel especially overwhelming if it’s your organization’s first time…

Should You Complete a PCI SAQ on Your Own or Engage a QSA?

By Brandon Breslin | January 27, 2026

For organizations that accept, process, store, or transmit payment card data, PCI DSS compliance is a required but often misunderstood…

HITRUST AI Security and AI Risk Management: Which Option Fits Your Assessment?

By Brooke Gardner | January 23, 2026

Artificial intelligence is quickly becoming part of the operational fabric for healthcare organizations, SaaS providers, and business associates. From automation…

Finding a credible expert with the appropriate background, expertise, and credentials can be difficult. CompliancePoint is here to help.

Our Clients

Copyright © 2026 CompliancePoint, Inc. All Rights Reserved | Privacy Statement | Accessibility | Disclosure | Trust | Sitemap

PossibleNOW - a sister company

Connect with us on social media