Lucas Hathaway

Lucas Hathaway has 10+ years of experience in information security. He is the Chief Revenue Officer at Rivial Data Security. He has worked with Rivial clients for years leading the consulting team and now leads the growth team with a focus on client success ensuring that Rivial’s platform exceeds client expectations.

Incident Response Plan: Data Breach - Rivial Security

4 min read

Incident Response Plan: Data Breach

Here are the key takeaways from this blog: Know the Regulatory Definitions and Deadlines — NCUA and FDIC have strict criteria and timelines (72 and 36 hours) for reporting breaches. Understanding these definitions is critical to ensure timely,...

Read More
NCUA Examiner Insights: 2025 Top Priorities - Rivial Security

4 min read

NCUA Examiner Insights: 2025 Top Priorities

Here are the key takeaways from this blog: NCUA's top findings in 2024: Credit unions struggled with BCDR readiness, outdated or inconsistent risk...

Read More

3 min read

Governance, Risk, and Compliance (GRC): 2025 Guide

Key takeaways from this GRC guide: AI's Impact on GRC: The rise of AI-driven cyber threats highlights the urgent need for organizations to strengthen...

Read More
Frameworks to replace FFIEC’s CAT - Rivial Security

2 min read

Frameworks to replace FFIEC’s CAT

Here are the key takeaways: FFIEC CAT retirement by August 2025: With the Cybersecurity Assessment Tool being phased out, institutions should begin...

Read More
Assessing Fourth-Party Vendor Risk | Rivial Security

4 min read

Assessing Fourth-Party Vendor Risk

Key takeaways from the blog:

Read More
NIST Compliance: A Complete Guide - Rivial Data Security

5 min read

NIST Compliance: A Complete Guide

NIST frameworks form the backbone of modern compliance and are essential for meeting regulatory mandates and demonstrating security maturity. When...

Read More

3 min read

NIST 800-55: The Ultimate Guide

Here are the key takeaways from the blog: Risk-based, outcome-focused metrics: NIST 800-55 shifts the focus from compliance to measuring the...

Read More

4 min read

10 Best Virtual CISO Services for 2025

For security leaders responsible for safeguarding critical business data, choosing the right vCISO (Virtual Chief Information Security Officer)...

Read More
Integrating MITRE ATT&CK within Security Risk Assessments

7 min read

Integrating MITRE ATT&CK within Security Risk Assessments

Here are key takeaways from the blog: Traditional Risk Assessments Fall Short: Most IT risk assessments overlook real-world adversary behavior....

Read More
AI Risk Assessment: A Roadmap for Financial Institutions

4 min read

AI Risk Assessment: A Roadmap for Financial Institutions

Here are the key takeaways from this blog: AI Introduces New, Critical Risks: From data privacy breaches to algorithmic bias, AI systems in financial...

Read More