All articles

5-part series

Risk in Plain Language

A five-part series on cyber risk for small businesses and nonprofits — why size is no shield, how attacks actually unfold, where to start with no security team, which common beliefs are working against you, and the questions leadership should be asking.

  1. 1

    Risk in Plain Language

    Cybersecurity Isn't Just a Big-Company Problem

    Small businesses and nonprofits face the same threats with far fewer resources to absorb them. Here is what actually matters and where to start.

    5 min read
  2. 2

    Real-World Stories

    The Email That Cost Everything

    Business email compromise is the most financially damaging cybercrime category in the US. Here is how it actually happens, who it happens to, and what would have stopped it.

    6 min read
  3. 3

    Practical How-To

    Where to Start When You Have No Security Team

    No IT staff. Limited budget. No idea where to begin. Here is a sequenced, practical starting point sized for organizations that need to get serious about security without getting overwhelmed.

    7 min read
  4. 4

    Myths & Mistakes

    Five Myths That Keep Nonprofits Exposed

    Widely held beliefs about cybersecurity that are actively working against you, and what the evidence actually says about each one.

    7 min read
  5. 5

    Leadership Lens

    The Five Questions Every Leader Should Be Asking About Cyber Risk

    You don't need to understand firewalls to make good decisions about cybersecurity. You need to ask the right questions — and know what a good answer looks like.

    7 min read