Practical thinking on cybersecurity, GRC, risk, technology, compliance, and the business decisions behind them.
Supply Chain Security: Managing Risk Beyond Your Vendors
When it comes to third-party supply chain security, there’s a big difference between doing it and doing it right. Every vendor you work with brings their own vendors into the mix—so who truly owns the risk? In this session, we’ll explore how to identify, assess, and mitigate supply chain risks at every level without overburdening […]
Where Compliance Meets Security: Doing Both the Right Way
Compliance and cybersecurity are often seen as separate priorities—but the truth is, good compliance reduces risk when done right. So how do you effectively integrate both for a stronger security posture? In this session, we’ll break down the intersection of compliance and cybersecurity, share best practices, and walk through real-world examples of organizations that have […]
Mastering Multi-Framework Compliance: Strategies for Efficiency & Growth
Aligning with multiple cybersecurity frameworks is rarely a clean, linear process—especially when your first framework wasn’t chosen with the fifth in mind. As your organization matures, how do you avoid inefficiencies, stay compliant, and ensure a streamlined approach across frameworks? In this session, we’ll explore strategies to create efficiencies, manage overlaps, and prevent compliance gaps […]
One Click Is All It Takes A single click on a phishing link. A password change request that didn’t feel quite right. A forgotten remote desktop login. That’s all it takes for ransomware to slip in and start locking down systems—and businesses. Why Ransomware Is Still a Threat Despite increased awareness, ransomware […]
A Practical Approach to Choosing the Right GRC Tool
With countless GRC tools on the market, how do you know which one is the right fit for your organization? The wrong choice can lead to wasted resources and unmet security goals. In this session, we’ll walk through real-world cases, breaking down why specific tools were chosen and how they were successfully implemented. You’ll learn […]
Security Awareness Training – Verizon 2025 Data Breach Investigations Report
In this 15-minute training, the HG team breaks down the most critical findings from Verizon’s 2025 Data Breach Investigations Report (DBIR)—and what they mean for real-world security programs. We cover the sharp rise in third-party breaches, the growing threat of GenAI misuse, and the continued dominance of ransomware and credential-based attacks. You’ll walk away with […]
Bridging the Gap: Why Cybersecurity Tools Alone Aren’t Enough
Investing in the latest cybersecurity tools doesn’t automatically mean you’re secure. Many leaders feel the initial promise of a new solution—only to realize it’s not delivering the protection they expected. So, what’s missing? In this session, we’ll break down where the responsibility of the tool ends and where your team’s role begins. We’ll uncover why […]
Choosing the Right Cybersecurity Framework: A Practical Guide for Leaders
Speakers: Cheri Hotman and Tanya WadeHosted by: Hotman Group Why Choosing the Right Framework Matters Passing an audit is no longer enough. Many organizations still treat cybersecurity as a one-time project, something to “check off” rather than an integrated, living part of their business operations. During this session, Cheri Hotman and Tanya […]
Security Awareness Training – Artificial Intelligence & Emerging Security Risks
Join us for an essential Security Awareness Training session focused on the evolving landscape of Artificial Intelligence (AI) and the emerging security risks that come with it. In this session, we explore how AI is being used in everyday tools—and how it’s also creating new opportunities for threat actors. This training emphasizes awareness, responsible usage, […]