Small and midsized businesses (SMBs) have the same information security concerns and needs as large organizations yet are often hampered by resource limitations. Most large companies have a Chief Information Security Officer (CISO) to lead and manage information security programs, initiatives, and risks. However, the cost of retaining a full-time CISO is often prohibitive for SMBs. This gap has led to the rise of the virtual CISO, or vCISO role. A vCISO is a part-time consultant that works virtually (remotely) as opposed to in person (which would be more precisely defined as a fractional CISO). Because of the high demand for CISO experience, the virtual nature keeps the cost of engaging a vCISO relatively low. This guide is the result of discussing those common needs. It is our hope that, by collating and presenting the most significant ones, we can help SMBs begin their journey to a more secure environment. We have strived to present all topics in plain English, focusing more on the business needs, rather than using "Giga-mumbo-jumbo" terminology, to paraphrase an early career mentor of mine. And that is the key, because at the core information security is two things - a business issue, and risk management. We have organized this publication in a somewhat cohesive order so subsequent chapters build off the previous yet kept each independent enough to allow this to be also used as a reference. In other words, you may choose to read it sequentially or by chapter based on topic interest (or both). Our goal is to provide a simple yet powerful resource to you, the SMB executive, so you may be able to make risk informed decisions. To that end, we welcome all feedback so we may improve the next edition.
I am a Christian, husband, father (to rescue dogs), veteran, and information security executive consultant. My novels include Forgiveness (2014), Leaving Darkness (2018), and Fatherhood (in progress, planned for 2024 release). I also have published Summer’s Drowning (2013), a collection of poems, and From the Loft (2017), a collection of horse-humor articles.
I wrote my first novel (unpublished) in high school. It sits in some nondescript box in my basement in its original form on various types of ruled paper. Perhaps one day I will resurrect it.
I began work on what would eventually become Forgiveness in 1991 as a method to deal with my divorce. I found myself fantasizing about “what if” scenarios. What if we hadn’t married early? What could I have done differently to prevent the pain I struggled with daily? I needed to live that fantasy, at least through writing. I wrote in the basement wood-paneled bedroom of my post-divorce house I shared with three others, I wrote during lunch at work in my cubicle, and anywhere I could find a few free minutes away from the world.
The positive reactions to Forgiveness urged me to create a prequel focused on one mysterious character. With Temptations of the Innocent, I created such a complicated world comprising of this life and a fictionalized (certainly not Biblically based) version of the afterlife. I didn’t stop there, adding in an antagonist who is pure evil (if not the devil himself) and a Soviet plot to infiltrate the Catholic church. This title is currently not available as I retool it as Before Forgiveness.
In January of 2017, I received a God nudge to pick up the pen again. I sketched out a three-act story on a piece of paper that would tell the story of healing through small group ministries. I had at that time been involved with one such ministry for several years and was very passionate about it, having seen firsthand the positive changes this eight-week group had on people willing to change. Leaving Darkness was published in the fall of 2018.
My work in progress is Fatherhood, a story about abortion from the father’s point of view.