Coalfire
banner
coalfire.bsky.social
Coalfire
@coalfire.bsky.social
Cybersecurity and Compliance Services leader for the tech, healthcare, and finance industries.
Nobody argues about resilience when the outage hits.

They argue about why it wasn’t funded before it hit.

Gwen Takagawa + James Bird with #DivisionHex explain how a BIA (Business Impact Analysis) can turn downtime fear into a business case the Board can’t ignore.

👉 https://bit.ly/4qkk5AO
How Effective BIAs Turn Disaster Planning into Cybersecurity Business…
The Business Impact Analysis (BIA) is the next. This post breaks down the core components of a BIA (maximum tolerable downtime, recovery time objective,…
coalfire.com
December 19, 2025 at 11:38 PM
🌟 2026 is the year “prove it” replaces “trust us.”

Adam Shnider from Coalfire covers what regulators and customers will demand in the year to come: explainable AI, auditable controls, and assessments that go beyond checkboxes. 👀

Read full article: https://bit.ly/4aqvv1c
2026 Compliance Outlook: AI, Privacy, and Global Risk Trends
As organizations prepare for 2026, five forces are expected to reshape the compliance landscape: AI-driven transformation, tightening global regulations,…
coalfire.com
December 19, 2025 at 7:21 PM
The exposure management space needed a reality check.
So #DivisionHex gave it one. 🔥

A phased framework built by operators who live on the edge of hostile networks and know what real risk looks like.

This is the path for teams who want control instead of chaos.

👉 https://bit.ly/4qhR5te
DivisionHex Fires Back at Industry Confusion with a Clear Roadmap for…
New DivisionHex framework guides organizations through the Exposure Management journey, addressing industry gaps in strategy, process and governance.
coalfire.com
December 19, 2025 at 6:05 PM
Skimming isn’t petty crime. It is high-yield hardware exploitation that keeps adapting.

In Part 1 of his new series, Aidan Quimby from DivisionHex digs into the misconceptions and the tech powering one of the most persistent fraud vectors in the wild.

This one hits hard. 🔥
https://bit.ly/3Y2yDZB
December 18, 2025 at 8:30 PM
👉 ARC-AMPE gut check: audit-ready today?

Including Online vs offline retention, audit file access + integrity, backup/DR aligned.

Ian Walters from Coalfire maps the v1.04 updates into practical next steps.

👀 Read Now: https://bit.ly/4qhus8u
New ARC-AMPE v1.04 Requirements: How to Shore Up Audit Storage and…
Control V1.03 V1.04 AU-04 Audit Log Storage Capacity Allocate audit log storage capacity to accommodate, at a minimum, storage capacity of ninety (90)…
coalfire.com
December 18, 2025 at 5:41 PM
♟️2025 reshaped compliance.

More rules. Tighter frameworks. Global alignment got louder, not simpler.

Grayson Taylor covers what changed across NIST, FedRAMP, HITRUST, ISO, PCI, and critical infrastructure rules, plus what it means for 2026.

🔎 Read now: https://bit.ly/48TY8ml
2025 Cybersecurity Year in Review: Frameworks, Regulations, and the…
2025 was a pivotal year for cybersecurity, shaped by regulatory updates, evolving security frameworks, and renewed focus on international alignment.…
coalfire.com
December 18, 2025 at 4:39 PM
There’s no shortage of AI guidance. There is a shortage of execution clarity.

Coalfire + AWS partnered to build secure-by-design AI agent architectures for government, tackling security, risk, and compliance from day 1.

Shoutout to Nate Demuth + the Coalfire AI team! 👏

👉 https://bit.ly/4566Jjh
December 16, 2025 at 8:09 PM
⚠️ Alerting is not investigation.

James Bird and Gwen Takagawa from #DivisionHex at Coalfire show how tabletops reveal teams can see alerts but can’t answer basic questions fast enough.

Without that visibility, executives are frozen while the threat keeps moving.

👉 https://bit.ly/44vWvsp
The Reality Gap in Incident Response Tabletops
Incident response (IR) planning is often approached as a documentation exercise. IR planning activities are typically conducted by a small cohort,…
coalfire.com
December 16, 2025 at 6:14 PM
Reposted by Coalfire
Announcement: Magnet Forensics is strengthening our commitment to federal customers by beginning the process to authorize our solutions with the Federal Risk and Authorization Management Program (#FedRAMP), in partnership with
@coalfire.bsky.social. Read more: ow.ly/cJZU50V1Yr4 #DFIR
February 18, 2025 at 2:33 PM
📩 Brittany Brown from Coalfire shares a practical #NPRM readiness checklist, using CMS ARC-AMPE to turn regulatory expectations into real controls that reduce risk to sensitive data and build trust. 🛡️

👉 https://bit.ly/4pJlkJU

#HIPAA #Healthcare #Compliance #InfoSec #RiskManagement
HIPAA’s New Security Rule: The NPRM is Coming, and CMS is Already…
The Notice of Proposed Rule Making ( NPRM ) for the Health Insurance Portability and Accountability Act ( HIPAA ) Security Rule has been released. This…
coalfire.com
December 16, 2025 at 4:35 PM
“Credit doesn’t matter. Outcome does. Mission does.”

Neil “Grifter” Wyler of Coalfire’s #DivisionHex explains to Authority Magazine how a military mindset builds stronger teams and security programs. 🔥

👉 https://bit.ly/3KSznxm

#Cybersecurity #Leadership #Veterans #InfoSec
December 15, 2025 at 7:55 PM