Writing on what actually matters.
Practical reading on cybersecurity, charity-sector compliance, and Canadian IT operations — from the engineers who do the work.
Featured
Recent writing.
NIST CSF 2.0: What Changed in the 2024 Update
A plain-English walkthrough of NIST's first major Cybersecurity Framework update in a decade — the new Govern function, supply chain focus, and what it means for SMBs.
CYBERSECURITY FRAMEWORKSPIPEDA, Quebec Law 25, and PHIPA: A Compliance Primer for Canadian Charities
Three privacy regimes, one country, and the practical compliance posture that addresses all of them. Built specifically for the Canadian nonprofit sector.
CHARITY COMPLIANCEWhat CyberSecure Canada Certification Actually Requires
Canada's federal cybersecurity certification programme for SMEs, walked through end-to-end — what it covers, who runs it, and whether it is worth pursuing.
CERTIFICATIONSubscribe
New writing, monthly.
No marketing, no sales drips. Just the writing — when there is something worth saying.