Nine States Team Up for Data Privacy — A New Era of Cross-State Enforcement

With the absence of a comprehensive federal data privacy law in the U.S., states have been stepping up individually to protect their residents’ information. Now, nine states have formed a collaborative regulatory force, sharing resources and enforcement strategies to address the challenges posed by digital data crossing jurisdictional lines. This historic partnership aims to harmonize […]
How to Make Security Awareness Stick With Your Clients (Without Scare Tactics)

Every October, inboxes fill with ghostly warnings, skeleton memes, and stats about lurking cyber threats — because Halloween is peak season for “scary” security marketing. Vendors and MSPs have leaned on puns and percentages for years, hoping to rattle clients into paying attention. Yet research shows that fear-based tactics, while momentarily grabbing attention, rarely create […]
What is Couch to Compliance?

This is a bit of a teaser introduction to our brand-new Couch to Compliance program. (If you’re a partner or you’ve been on a Blacksmith demo, you might have already seen some emails about it. 😎) Couch to Compliance is all about making the leap from the sidelines into the action, turning the complex world […]
5 Compliance Myths That Deserve to Be Busted

Managed Service Providers have evolved far beyond their origins as break/fixers and IT caretakers. In 2025, MSPs operate inside a tightening mesh of cybersecurity obligations, data privacy regulation, and AI governance frameworks. Yet even as MSPs step up to protect client networks, many still stumble over long-standing myths about compliance — myths that can prove […]
MSPs Face Compliance Crossroads: Managing Supply Chain, Third-Party, and Data Privacy Risks in 2026

MSPs (Managed Service Providers) are facing an urgent need to elevate their risk and compliance programs due to evolving supply chain, third-party, privacy, and disclosure requirements in 2025 and into 2026. For compliance leaders, keeping pace with these changes is no longer optional — it’s both a survival strategy and a proactive way to leverage […]
State Breach Laws, SEC Regulation S-P, and CIRCIA Drive Urgent Changes for 2025

Major regulatory and compliance changes in 2025 will transform how Managed Service Providers (MSPs) operate, manage risk, and support clients. Getting serious about compliance now is critical for MSPs who want to hedge against steep penalties and regulatory disruption in the years ahead. State Breach Notification Law Updates U.S. states such as California, New York, […]
Ransomware as a Service: The Shift in Cybercrime Targeting MSPs and Their Clients

Understanding Ransomware as a Service (RaaS) Ransomware-as-a-Service (RaaS) is transforming the way MSPs face cybercrime, allowing anyone — not just technical experts — to launch devastating attacks through rented ransomware platforms. These service models reduce the barriers to entry for ransomware actors by providing them with ready-made toolkits, infrastructure, and support, while developers take a […]
MSPs and Incident Response Plans — An Overview

For Managed Service Providers (MSPs), incident response planning is a critical part of cybersecurity preparedness. With cyber threats targeting not only their own infrastructure but also their clients’ systems, MSPs face unique risks and high stakes when it comes to incident response. Having a clear, actionable incident response plan can mean the difference between business […]
Rising Regulatory Pressure on SMBs: Why Compliance is Now a Critical Priority

It’s become a standard refrain in industry forums and vendor webinars: demand for compliance services is skyrocketing for managed service providers (MSPs) and their clients. But have you ever wondered exactly why this is happening? The answer isn’t just about headline-grabbing breaches or new technology — it’s about an unprecedented surge in regulatory pressure that’s now […]
Cyber Insurance and Compliance: The New Gatekeepers

Cyber insurance was once viewed as a safety net — merely a way for businesses to transfer risk in the event of a breach or ransomware attack. But that safety net is tightening. Rising premiums, stricter exclusions, and growing demands for evidence of security maturity mean that insurance is no longer a backstop you can […]