Knowledge base

Security guides that make compliance make sense.

Plain-English, evidence-backed guides to phishing, GDPR, NIS2, DORA and ISO 27001 - written for the founders, CISOs and compliance leads of 50-200 person companies. No jargon walls, no scare tactics. Just what applies to you and what to do next.

5
Guides and growing, kept current
4
Frameworks mapped, never conflated
12m
Average read, start to finish
100%
Claims cited to the source
Featured guide

Start with the one most teams need first.

Most read Foundations ยท Identity

Phishing in 2026 and beyond

Modern phishing is identity and workflow compromise, not just a bad email. What changed, and the controls that actually stop it.

12 min read Foundational Updated Jun 2026 7 chapters
  • Why phishing is now identity and workflow compromise
  • The 2026 shifts: AI lures, adversary-in-the-middle, OAuth and QR
  • A modern defence built on phishing-resistant authentication
  • How to detect, respond and measure what actually matters
PHISH
Inside this guide
  1. Phishing is no longer just an email problem
  2. The challenges defining 2026
  3. Build a modern defence
  4. Score your phishing resilience
  5. Detect compromise earlier
  6. Modern phishing incident response
Browse the library

Every guide, by framework.

5 guides
PHISH
Foundations

Phishing in 2026 and beyond

Modern phishing is identity and workflow compromise, not just a bad email. What changed, and the controls that actually stop it.

Foundational12 min
GDPR
GDPR

GDPR essentials for European SMEs

The regulation distilled to what a 50-200 person company actually has to do.

Coming soon
NIS2
NIS2

NIS2 in plain English

Who is in scope, what essential vs important means, and the duties that follow.

Coming soon
DORA
DORA

DORA for financial entities

Digital operational resilience pillars, and how they differ from NIS2's remit.

Coming soon
ISO
ISO 27001

ISO 27001 foundations

Building an ISMS your auditor accepts and your team will actually maintain.

Coming soon
No guides match that search yet.
Questions

Before you dive in

Reading is step one. We will handle the rest.

Bring us your readiness score and we will turn the gaps into a fixed-scope plan, with evidence your auditors trust and clarity your board understands.

Copy / Ask AI