Security and Compliance from Friendly Rhode Island
Rhode Island-based Compass IT Compliance offers support in security and compliance for small and medium sized businesses.

Security and Compliance from Friendly Rhode Island

Each morning, Nicholas Foisy steers his car into a parking spot outside the offices of Compass IT Compliance. Located in a residential section of North Providence, the small firm has been serving the security and compliance needs of customers for over a decade. The thirty or so team members who work for Compass IT Compliance are mostly from the region, and at least fifty percent of the company’s customers are also New Englanders.

Compass IT Compliance offers personalized professional services for small and medium sized businesses. Their penetration testing, web application scanning, user training, and social engineering protection services position them well to address the cyber security need of their customers. With audit and assessment capabilities for PCI DSS, NIST CSF, and other frameworks, the company also serves the compliance needs of its customer base.

I spent some time recently with Foisy, who manages marketing for the firm. He shared a delightful story of a company that was founded by two men who brought their respective audit and account management backgrounds to the partnership. Ten years later, they have created a vibrant practice with satisfied customers and a managed growth plan that adds new customers and employees on a pace that can be easily absorbed.

From a TAG Cyber perspective, I must be honest: Compass IT Compliance is not the type of company we usually cover in our analysis. We’re usually sharing insights with high-flying cyber security start-ups enjoying millions in Series A from a famous investment house. We are used to seeing hockey stick-shaped revenue projections and staff growth plans. And we usually hear terms like “advanced,” “spectacular,” and “amazing,” during fancy briefings.

I guess this is why I decided to spotlight Compass IT Compliance in this article. They reminded me – and I hope they will remind you all – that the ultimate purpose of a business does not have to be some advanced, spectacular, and amazing IPO or other Big Dollar exit. Rather, a business can be created and operated for the sole delightful purpose of helping customers, and for providing a wonderful place for employees to live, work, and grow.

After speaking with Foisy, I agreed to support their small conference in Rhode Island in September as a speaker. Apparently, they take any excess profits from the event, and donate the money to charity. Now, that is super refreshing, and something I never, ever hear from cyber security companies running speaking events. My norm, instead, involves taking out a second mortgage just to cover a few tickets to that grubby RSA Conference.

Take a moment and check out the Compass IT Compliance website. If you are a small or medium sized business in New England with security or compliance needs, then give Foisy and the team a call. But I hope that not too many of you call. I mean, if Compass IT Compliance gets too powerful, then perhaps they’ll start using words like “advanced,” “spectacular,” and “amazing.” That would be a shame, because I like them as they are.

Let me know what you think.

Ngozi Eze

CISO at Levi Strauss & Co. | Board Member

5 年

Refreshing and encouraging to hear.

要查看或添加评论,请登录

Edward Amoroso的更多文章

  • Protecting the U.S. Bitcoin Reserve and Stockpile from Cyber Threats

    Protecting the U.S. Bitcoin Reserve and Stockpile from Cyber Threats

    As you no doubt have heard, plans are in place to establish a Strategic Bitcoin Reserve and Digital Asset Stockpile…

    15 条评论
  • Parable of Network Observability

    Parable of Network Observability

    I’d like to discuss here a common problem we see in our work at TAG every day – namely, the deployment of “network…

    23 条评论
  • Parable of the Cyber Industrial Complex

    Parable of the Cyber Industrial Complex

    Preamble In 1961, Eisenhower gave a famous speech that warned of the dangers of the so-called military-industrial…

    34 条评论
  • The Challenges of CISOs Working for Cybersecurity Vendors

    The Challenges of CISOs Working for Cybersecurity Vendors

    (Note to Reader: Normally these reports are available only to TAG Research as a Service (RaaS) subscribers. But with…

    27 条评论
  • Have Uncle Joe Read This Before He Invests in Crypto

    Have Uncle Joe Read This Before He Invests in Crypto

    I’ve been lecturing to my graduate students on the foundations of cryptocurrency and blockchain for years. Starting…

    15 条评论
  • Why TAG is Now Rating Cybersecurity Vendors

    Why TAG is Now Rating Cybersecurity Vendors

    by Edward Amoroso The first time I ever paid attention to an analyst quadrant – fully two decades ago, I found myself…

    11 条评论
  • Predicting the Impact of Trump’s Election on Cyber

    Predicting the Impact of Trump’s Election on Cyber

    Below are seven predictions from our team at TAG for how the recent Trump election of 2024 will impact U.S.

    83 条评论
  • Five Tips for Working CISOs

    Five Tips for Working CISOs

    Our team at TAG has been coaching CISOs for years – and this includes private discussions just about every day of every…

    11 条评论
  • The SEC is Weakening the Cybersecurity Posture of the United States. Here is Why.

    The SEC is Weakening the Cybersecurity Posture of the United States. Here is Why.

    Preface During May and June of 2024, draft versions of this article were shared with Chief Information Security…

    123 条评论
  • Sad Loss Today

    Sad Loss Today

    Several years ago, before the Pandemic, I received a friendly call from a law firm I’d done some business with – and…

    9 条评论

社区洞察

其他会员也浏览了