Cyber due diligence: what investors are looking for

Every deal has a story before the contract is signed. Increasingly, part of that story is written by how an organisation handles its own cyber security, long before anyone sits down at the negotiating table. Cyber due diligence used to sit quietly in the background of a transaction, a box ticked somewhere between legal review […]

Somewhere along the way, cyber became ‘IT’s problem.’ That’s worth reconsidering

Every board has a fraud policy. A safety policy. A whistleblower policy. Somewhere along the way, cyber earned a much shorter conversation, often filed under “IT problem” rather than “board problem.” That’s an odd place for it to sit, given how common the problem has become. According to the RSM Australia 2026 Cyber Security Report, […]

Why letting staff use AI tools without training is your next cyber blind spot

Somewhere in your organisation right now, a staff member is using an AI tool to do their job faster. They might be drafting a client proposal in ChatGPT, summarising a contract in Copilot, or generating a report using Claude or DeepSeek. They are probably doing it with good intentions. And they are almost certainly doing […]

The 90 day window: why new starters are your most overlooked cyber risk

Someone joins your team. They are enthusiastic, capable, and keen to get started. Within their first week they are handed logins, added to email groups, given access to shared drives, and introduced to the payment approval process. Nobody mentions cyber security until the induction checklist gets to the last page, if it gets there at […]