Weekly #cybersecurity digest to your inbox

Subscribe for our weekly digest and get each Friday the most important cyber security news, list of upcoming free webinars and a summary of Cyberday development to your inbox.
Thanks! See you in your inbox on Fridays. :)
Unfortunately something went wrong. You can contact us at team@cyberdayai.

ISMS implementation: comparison of documents, wikis, ISMS tools and GRC

There are a few different approaches to building an ISMS. In this post, we’ll compare these different methods, helping you understand which might be the best fit for your organization’s security management needs.

article

6.3.2025

What is Statement of Applicability (SoA) in ISO 27001?

In this blog, we'll cover the main purpose and benefits of a well-working Statement of Applicability document. We'll also explain why SoA is important, and 4 key roles it can play in information security work.

article

4.3.2025

Why is ISO 27001 compliance now more important than ever?

Year after year, ISO 27001 standard has remained one of the gold standards for information security. The global standard has remained relevant, but where did ISO 27001 originate? And why is it's popularity just going up?

article

27.2.2025

10 most common non-conformities in ISO 27001 audits

Audits and non-conformities drive organizations toward continuous improvement. But before your first ISO 27001 certification, it's good to be aware of some most common non-conformities, so you can avoid these in your certification audit.

article

18.2.2025

Got an ISO 27001 audit interview request - what should I expect?

In this blog, we will talk about the importance of employee participation in the audit interview process, why auditors value employee insights, and look into possible questions asked in an ISO 27001 interview.

article

13.2.2025

ISO 27001 compliance and certification checklist

Looking to ensure you fill ISO 27001 requirements? This checklist will present clearly ordered key steps that guide your organization in building an ISMS and getting compliant with the ISO 27001 standard.

article

6.2.2025

Most important documents in ISO 27001 certification audit

The ISO 27001 standard does specifically define some key documents, which need to be gathered together and be easily shareable e.g. for the auditor. In this blog, we'll present these most important documents for an ISO 27001 certification audit.

article

30.1.2025

NIS2 & national implementation: which local NIS2 laws are available in Cyberday?

EU Member States are required to adopt NIS2 into national law. Key national decisions include defining local authorities, monitoring mechanisms, and tailoring regulations to meet specific needs.

article

23.1.2025

Email Authentication Fails to Keep Pace with AI-Driven Attacks

AI is making phishing emails harder to spot, and despite growing DMARC adoption, many orgs still aren’t enforcing it—leaving them open to spoofing so email remains a weak link. 🔗 #dataprotection

Go to article at
30.4.2025

Mobile security is a frontline risk. Are you ready?

📱 Mobile is now a top attack target—not just a side risk. With phishing rising, sideloaded apps spreading #malware, and outdated devices open to exploits, mobile security needs serious attention. Defenses must match the threat. 🛡️

Go to article at
30.4.2025

Why Startups Must Prioritize Cybersecurity and Compliance

Startups often overlook cybersecurity and compliance while chasing growth—but ignoring them can be costly. A small investment in protection early on can prevent major damage and build long-term trust. 🛡️ ⭐️ #dataprotection

Go to article at
30.4.2025

Compliance Challenges in Cloud Data Governance 

Good read on cloud compliance—highlighting how managing data across borders involves navigating a complex mix of laws, regulations, and industry standards. As cloud adoption grows, so does the need for clear data governance. #cybersecurity

Go to article at
30.4.2025

FBI confirms $16.6 billion losses to cyber-crime in 2024

📝 The FBI reports $16.6B lost to cybercrime in 2024, with ransomware surging and elderly victims increasingly targeted. Fraud tops the list—awareness, MFA, and strong cyber hygiene are more vital than ever. #ransomware

Go to article at
25.4.2025

Understanding 2024 cyber attack trends

Report shows: Financial services were most targeted (17.4%) and exploits & stolen credentials topped initial access methods. The hybrid attack surface demands proactive, integrated defenses. 🛡️ #cybersecurity

Go to article at
25.4.2025

Who needs phishing when your login's already in the wild?

Stolen credentials have officially overtaken phishing as the second most common way attackers gain access to systems. One clear takeaway? MFA is no longer optional, but essential to protect against threats. #phishing 🎣

Go to article at
25.4.2025

Navigating Regulatory Shifts & AI Risks

2025 is already reshaping #cybersecurity—with AI and global regulations leading the charge. From NIS2’s steep compliance demands and DORA’s resilience testing for financial firms, the pressure is on and compliance is no longer a checkbox. ✅

Go to article at
25.4.2025

America's cyber defenses are being dismantled from the inside

Eye-opening: #cybersecurity is not optional. It’s foundational to digital trust, both nationally and globally. These political decisions don't just impact the US — they ripple out to affect the entire world’s cyber resilience. 🛡️🌍

Go to article at
25.4.2025