Lucas Hathaway

Lucas Hathaway has 10+ years of experience in information security. He is the Chief Revenue Officer at Rivial Data Security. He has worked with Rivial clients for years leading the consulting team and now leads the growth team with a focus on client success ensuring that Rivial’s platform exceeds client expectations.

Frameworks to replace FFIEC’s CAT - Rivial Security

2 min read

Frameworks to replace FFIEC’s CAT

Late last year, the FFIEC dropped a major announcement: the Cybersecurity Assessment Tool (CAT) will be officially retired by August 31, 2025. With this significant change on the horizon, now is the time to future-proof your cybersecurity strategy....

Read More
Assessing Fourth-Party Vendor Risk | Rivial Security

3 min read

Assessing Fourth-Party Vendor Risk

You’ve got third-party risk management down, but what about fourth-party risk? Regulators are stressing the importance of managing not just...

Read More

2 min read

NIST Compliance: The Ultimate Guide

For financial institutions, protecting sensitive customer data and meeting regulatory requirements isn’t just critical—it’s non-negotiable. NIST...

Read More

2 min read

NIST 800-55: The Ultimate Guide

NIST 800-55 elevates cybersecurity from a mere compliance exercise to a strategic discipline by offering a disciplined yet flexible framework of...

Read More

4 min read

10 Best Virtual CISO Services for 2025

For security leaders responsible for safeguarding critical business data, choosing the right vCISO (Virtual Chief Information Security Officer)...

Read More
Rivial Top Cloud Security Frameworks for Financial Institutions

4 min read

Top Cloud Security Frameworks for Financial Institutions

As organizations increasingly migrate workloads to cloud infrastructure, securing these environments has become both crucial and complex. Effective...

Read More
Data Breach Cost: A Guide for Financial Institutions in 2025

4 min read

Data Breach Cost: A Guide for Financial Institutions in 2025

With the average cost of a data breach now reaching $4.88 million, a 10% increase over the previous year” (IBM), the stakes have never been higher...

Read More
Integrating MITRE ATT&CK within Security Risk Assessments

6 min read

Integrating MITRE ATT&CK within Security Risk Assessments

Traditional IT risk assessments are failing to account for real-world adversarial tactics, leaving organizations vulnerable to emerging threats....

Read More
AI Risk Assessment: A Roadmap for Financial Institutions

4 min read

AI Risk Assessment: A Roadmap for Financial Institutions

AI has the potential to revolutionize how financial institutions operate, but like any new technology, it also introduces new risks. These range from...

Read More
Properly Assessing Third and Fourth Party Cybersecurity

4 min read

How to Assess 3rd vs 4th Party Risk Management

A concerning trend has emerged in recent years: organizations are increasingly falling victim to breaches that originate not from direct attacks on...

Read More