• Solutions
    • Forthright DigitalNOW
    • Forthright Advisory
    • Forthright Cybersecurity
  • Tech Insights
  • About
  • Contact Us
  • Client Hub
CIS Safeguard 7.2: Finding the Problem Is Only the Beginning

CIS Safeguard 7.2: Finding the Problem Is Only the Beginning

by Tim Marley | Jul 22, 2026

In Safeguard 7.1, we discussed the difference between running a vulnerability scanner and operating a vulnerability management program. A scan may identify weaknesses, but the organization still needs a documented process that explains what happens next. That brings us to CIS Safeguard 7.2: Establish and Maintain a Remediation Process. The safeguard calls for a documented, risk-based remediation strategy that is reviewed at least monthly. The phrase “risk-based” matters. Most organizations...

Trending at Forthright.

Vulnerability Scanner

CIS Safeguard 7.1: Why a Vulnerability Scanner Is Not a Vulnerability Management Program

CIS IG1 Safeguard 6.5: Require MFA for Administrative Access

CIS IG1 Safeguard 6.5: Require MFA for Administrative Access

Why 84% of Companies Fail at Digital Transformation. And Why That Number Hasn’t Moved.

Why 84% of Companies Fail at Digital Transformation. And Why That Number Hasn’t Moved.

CIS IG1 Safeguard 6.4: Require MFA for Remote Network Access

CIS IG1 Safeguard 6.4: Require MFA for Remote Network Access

Require MFA for Externally‑Exposed Applications

CIS IG1 Safeguard 6.3

by Heath Gieson | Jun 30, 2026 | Modern IT Operations, Tech Insights, Uncategorized

Require MFA for Externally‑Exposed Applications This article is part of our ongoing CIS IG1 series focused on practical, high‑impact security...

read more...
Access Revoking Laptop

CIS IG1 Control 6.2 – Establish an Access Revoking Process

by Heath Gieson | Jun 30, 2026 | Modern IT Operations, Tech Insights, Uncategorized

CIS IG1 Control 6.2 – Establish an Access Revoking Process by Heath Gieson   If access granting is where intent is established, access revoking...

read more...
Access Control Management: Access Should Be Granted Intentionally

Access Control Management: Access Should Be Granted Intentionally

by Tim Marley | Jun 10, 2026 | 2026, Secure IT operations, Tech Insights

Access Should Be Granted Intentionally   By Tim Marley As we move into CIS Control 6, Access Control Management, we're going to spend the next...

read more...
CIS IG1 5.4: How Everyday Admin Access Turned a Phish Into a Crisis

CIS IG1 5.4: How Everyday Admin Access Turned a Phish Into a Crisis

by Heath Gieson | Jun 3, 2026 | 2026, Secure IT operations, Tech Insights

by Heath Gieson   CIS IG1 Safeguard 5.4 states that administrator privileges should be restricted to dedicated administrator accounts, and that...

read more...
CIS IG1 5.3 Dormant Accounts Are a Process Failure

CIS IG1 5.3 Dormant Accounts Are a Process Failure

by Heath Gieson | May 27, 2026 | 2026, Secure IT operations, Tech Insights

by Heath Gieson   Years ago, I worked with a client to implement multi‑factor authentication across their organization. As part of the project,...

read more...
CIS IG1 Safeguard 5.2: Why Unique Passwords Still Matter in a Multi-Factor World

CIS IG1 Safeguard 5.2: Why Unique Passwords Still Matter in a Multi-Factor World

by Heath Gieson | May 20, 2026 | 2026, Secure IT operations, Tech Insights

CIS IG1 Safeguard 5.2: Why Unique Passwords Still Matter in a Multi-Factor World By Heath Gieson CIS Safeguard 5.2 is deceptively simple on the...

read more...
Security Complexity Is an Operational Risk

Security Complexity Is an Operational Risk

by Heath Gieson | May 15, 2026 | 2026, Secure IT operations, Tech Insights

Security Complexity Is an Operational Risk by Heath Gieson Most organizations do not set out to create a complex security environment. It usually...

read more...
You Can’t Manage What You Can’t See

You Can’t Manage What You Can’t See

by Tim Marley | May 13, 2026 | 2026, Secure IT operations, Tech Insights, Uncategorized

As we move into CIS Control 5, Account Management, we're going to spend a few weeks working through the individual safeguards. We're starting with...

read more...
CIS IG1 Control 4.7: Manage Default Accounts on Enterprise Assets and Software

CIS IG1 Control 4.7: Manage Default Accounts on Enterprise Assets and Software

by Heath Gieson | May 6, 2026 | 2026, Secure IT operations, Tech Insights, Uncategorized

by Heath Gieson Manage Default Accounts on Enterprise Assets and Software As we continue through the CIS IG1 controls, a consistent pattern keeps...

read more...
Page 1 of 3012345...102030...»Last »

Every organization has technology goals.

Your business has unique goals, challenges, and opportunities. Our advisory team takes the time to understand where you are today, where you want to go, and the obstacles standing in the way. From there, we provide the strategic guidance needed to align technology, cybersecurity, and business priorities.

Gain clarity. Build momentum.
Scale with confidence.

Understand Your IT Priorities | Align Technology and Strategy | Strengthen Operations | Support Growth

Schedule a Call

Let's discuss your business and technology goals.

  • Follow
  • Follow
  • Follow
  • Follow
  • Follow
  • Follow
  • Follow

Explore

Contact Us
About Us
Careers
Events
Blog
Refer a client

Offices

HEADQUARTERS

2893 Executive Park Drive, Suite 204. Weston, FL 33331

(855) 796-3381

Forthright Technology Partners
Certified Minority-owned Business

© 2026 Forthright Technology Partners, Inc.

Sitemap
Privacy Policy
Client Portal
Website Accessibility Statement

Ticket submitted!

Please warm transfer call to (754) 356-1601.