Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

CRA Compliance Gap Assessment: How to Identify Your Compliance Gaps

A CRA compliance gap assessment compares what your organization does with what Regulation (EU) 2024/2847 requires. It reviews each product and each role. It then produces a prioritized list of shortfalls. The list includes named owners, evidence pointers, and dates. It is not a conformity assessment. A conformity assessment decides whether a product may carry the CE marking. A gap assessment tells you whether you would survive one.

What are the benefits of Microsoft 365 consultancy?

Microsoft 365 is one of the most widely used business platforms in the world. However, most businesses use only a fraction of what it offers, and leave some of its most important security features either switched off or set up incorrectly. M365 offers far more than the productivity tools we are all familiar with, like Outlook, Word, PowerPoint and Excel. Used properly, it’s a powerful cybersecurity platform. Used poorly, it offers a false sense of protection.

How BlueVoyant and Partners are Detecting Modern Phishing Campaigns Across the Full Attack Chain Utilizing Microsoft's UEBA Capabilities

Over recent months, our Microsoft Managed Detection and Response (MDR) service, powered by the Threat Fusion Cell, has observed a sharp increase in sophisticated attack campaigns attributed to offshoots of threat brand Vocal Brigantine, who ceased operations in Spring 2026.

Defending against AI-fueled social engineering

Social engineering has always been the softest edge of enterprise defense, and AI is sharpening adversaries’ attacks. Phishing, business email compromise, and impersonation still dominate the initial-access playbook, but AI has stripped out the cost, time, and skill barriers that once forced attackers to choose between reach and precision.

The Dawn of Enterprise IT: Part 1 of the Enterprise OIT Series

There was a time when “Information Technology” wasn’t a department, an industry, or even a common business term. In the 1970s and 1980s, computing and telecommunications were largely separate disciplines. Computers processed information. Telecommunications moved information. Most systems operated independently, often serving specific departments or business functions. Then those worlds began to converge. Organizations started connecting computers through networks.

Sophisticated Attacks No Longer Require Sophisticated Attackers

For years, the sophistication of a cyberattack was closely connected to the sophistication of the attacker behind it. Advanced campaigns required experienced threat actors with the knowledge, resources, and time needed to research targets, understand environments, create convincing interactions, adapt when something failed, and coordinate complex operations. Artificial Intelligence is beginning to change that relationship.

OpenStack Backup And Recovery Frequently Asked Questions

My name is Kevin Jackson. I have been working with OpenStack since the first releases in various capacities — as an operator, author, architect, and currently at Trilio, where I assist organisations with cloud backup and recovery strategies. Over the years, I have watched OpenStack mature from an early-stage project into the core infrastructure underpinning demanding private and public clouds across telecoms, financial services, and the public sector.

The dark figure of supply chain detection

During World War II, Abraham Wald was asked where to add armor to bomber planes. The military's instinct was to study the planes that came back and reinforce wherever the bullet holes were clustered. Wald said to do the opposite. The planes in front of him had already survived hits to those spots. That's exactly why he could study them. The planes that took hits to the engine or the cockpit never made it back to be studied at all.