Scaling Security for the Modern SMB: Demonstrating Due Diligence & Due Care

Scaling Security for the Modern SMB: Demonstrating Due Diligence & Due Care

By ISC2 Eastern MA

Date: December 4, 2025 Time: 3:30 PM - 6:00 PM Location: Federal Reserve Plaza, 600 Atlantic Ave, Boston, Boston, MA

Date and time

Location

Federal Reserve Plaza

600 Atlantic Avenue Boston, MA 02210

Good to know

Highlights

  • 2 hours 30 minutes
  • In person

Refund Policy

Refunds up to 7 days before event

About this event

Business • Other

Featured Topics


Scaling Security to Meet the SMB Market in a New Way
SMBs face the same sophisticated threats as global enterprises — but without the same budgets, staff, or infrastructure. In this session, we’ll explore new models for scaling security to protect this vital segment of the economy.


Drawing on real-world examples (including use cases for email security and business applications) and lessons from the SecurityBiaS blog — featured across multiple industry sites — we’ll share practical strategies for delivering enterprise-grade protection that works at SMB scale.

You’ll learn:

  • How to design adaptable, affordable, and effective security architectures for SMBs
  • What enterprise security leaders can learn from SMB-focused innovation
  • How to turn scaling challenges into business opportunities

Due Diligence, Due Care, and the “Reasonable Person” Standard
Every CISO, DPO, and executive has faced this question:


Have we done enough to demonstrate due diligence and due care?”

These aren’t abstract legal ideas — they are the foundation of organizational resilience, guiding how we prevent attacks and defend against legal or regulatory fallout when incidents occur.

This session will break down how to apply these principles in real-world governance, using the “reasonable person” standard as a practical lens for cybersecurity and privacy decision-making.


You’ll take away:

  • tanding of what “due diligence” and “due care” look like in practice
  • Examples of how to evidence reasonableness before boards, regulators, and courts
  • Actionable frameworks for aligning policy, risk, and accountability

Who Should Attend
This event is designed for:

CISOs, DPOs, and Security Leaders
Privacy and Compliance Professionals
Security Architects and Risk Managers
Business and Technology Executives driving cyber resilience

Why Attend
Gain actionable insights from real-world cases and legal benchmarks
Network with cybersecurity peers and thought leaders
Walk away with strategies you can apply immediately in your organization

Earn 3 CPEs for attending!

Parking
Parking is available around Federal Reserve plaza for a fee. Please check online for prices. If you are commuting from outside of Boston, public transportation is the best option. South Station stop on Red line is the closest stop.



RSVP

Click the RSVP button below to register. NOTE: Events are free for members with a paid membership for 2025. Non-paying members can opt to pre-pay a discounted rate, or can pay full price at the door. Membership status will be verified after registration is submitted.


Happy Hour / Networking at Trade (6:00 PM - 7:00 PM)



Thanks to our Sponsor for this Event: Vanta

Organized by

ISC2 Eastern MA

Followers

--

Events

--

Hosting

--

$0 – $10
Dec 4 · 3:30 PM EST