<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[The Fellowship]]></title><description><![CDATA[Supercharge your GRC Career by joining over 1000 people in InfoSec who read this Newsletter. It arrives in your inbox on Sunday afternoon (UK Time). Opening my book of spells, exclusive content to help you transition to a competent security practitioner.]]></description><link>https://blog.policywizard.io</link><image><url>https://substackcdn.com/image/fetch/$s_!tyx3!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6504815c-5485-418a-bfae-0e4763ae298f_1280x1280.png</url><title>The Fellowship</title><link>https://blog.policywizard.io</link></image><generator>Substack</generator><lastBuildDate>Thu, 07 May 2026 11:41:28 GMT</lastBuildDate><atom:link href="https://blog.policywizard.io/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Stuart Wedge]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[policywizard@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[policywizard@substack.com]]></itunes:email><itunes:name><![CDATA[Stuart Wedge]]></itunes:name></itunes:owner><itunes:author><![CDATA[Stuart Wedge]]></itunes:author><googleplay:owner><![CDATA[policywizard@substack.com]]></googleplay:owner><googleplay:email><![CDATA[policywizard@substack.com]]></googleplay:email><googleplay:author><![CDATA[Stuart Wedge]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[Do you want a GRC career?]]></title><description><![CDATA[2025 just got exciting!]]></description><link>https://blog.policywizard.io/p/do-you-want-a-grc-career</link><guid isPermaLink="false">https://blog.policywizard.io/p/do-you-want-a-grc-career</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 19 Jan 2025 12:47:28 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Sq7I!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Sq7I!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Sq7I!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!Sq7I!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!Sq7I!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!Sq7I!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Sq7I!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2914730,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://blog.policywizard.io/i/155154217?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Sq7I!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!Sq7I!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!Sq7I!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!Sq7I!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F743af023-08e4-4c66-8fc9-a0cccaeb6efe_1920x1080.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Ladies and Gentlemen, I'm thrilled to share some amazing news! Just yesterday afternoon, I wrapped up an incredible 38 slide decks and scripts for an upgraded version of my course, and I can&#8217;t wait for you to experience it!</p><p>This revamped course is meticulously designed to equip you with the essential skills needed to break into the fascinating world of Information Security. With a focus on governance, risk management, and compliance (GRC), you&#8217;ll gain the knowledge necessary to land your dream role as a GRC analyst.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading The Fellowship! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>But this isn&#8217;t just any ordinary video course! Get ready for exhilarating side quests, engaging reading tasks, and practical templates, including a control register, policy examples, and even a risk register and scenario template. </p><p>You&#8217;ll dive deep into vital topics like security risk assessment methodologies, human risk management, governance, policy crafting, and much more! We&#8217;re offering a robust 73 different lessons&#8212; and we might even add a few more to the mix!</p><p>This comprehensive structure is designed for YOU, helping you thrive as part of a GRC team, tackling risk assessment, risk management, and policy drafting like a pro!</p><p>Over the past three years, I&#8217;ve been honing my public speaking, presentation skills, and content creation to ensure that every course I deliver is not just informative but truly engaging and empowering.</p><p>Here&#8217;s the scoop: the current price is only <strong>&#163;47</strong>, but once I hit &#8220;publish&#8221; on this shining new version, it jumps to <strong>&#163;199</strong>.</p><p>Yes, the price is going up, but so is the value! You&#8217;ll be getting so much more from this course, with the potential to earn a <strong>top 10% salary</strong> within just 3-5 years because of the knowledge you&#8217;ll gain.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!TM09!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!TM09!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg 424w, https://substackcdn.com/image/fetch/$s_!TM09!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg 848w, https://substackcdn.com/image/fetch/$s_!TM09!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!TM09!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!TM09!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg" width="758" height="1466" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1466,&quot;width&quot;:758,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:416419,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!TM09!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg 424w, https://substackcdn.com/image/fetch/$s_!TM09!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg 848w, https://substackcdn.com/image/fetch/$s_!TM09!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!TM09!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01f90bf6-9f57-4861-a9c7-85c22990e6ae_758x1466.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>If you&#8217;re ready to take this exciting step towards your new career, join my security policy foundations course now and save a whopping &#163;152! </p><p>https://www.policywizard.io/security-policy-foundations </p><p>I expect to hit the publish button in the next month or two.</p><p>I can&#8217;t wait to embark on this journey with you!</p><p>Best wishes,</p><p>Stuart Wedge</p><p>PolicyWizard</p><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Thanks for reading The Fellowship! Subscribe for free to receive new posts and support my work.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ Using Policy to Mitigate Human Risk]]></title><description><![CDATA[Fifteenth Edition of The Fellowship]]></description><link>https://blog.policywizard.io/p/using-policy-to-mitigate-human-risk</link><guid isPermaLink="false">https://blog.policywizard.io/p/using-policy-to-mitigate-human-risk</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 08 Oct 2023 11:01:16 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/3b72c562-496f-4a10-91c5-450a8ee81828_840x600.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!RU4Q!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!RU4Q!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!RU4Q!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!RU4Q!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!RU4Q!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!RU4Q!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3043135,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!RU4Q!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!RU4Q!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!RU4Q!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!RU4Q!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4dc5a12a-7dc3-4238-b287-5ab041abdf8e_3600x1800.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>This week is a little different. I want to give you all access to the recording of a talk I gave to the interns in this year&#8217;s intake of <a href="https://cyblack.org/">CyBlack</a>. They are one of the organisations that I have partnered with. They provide training to people from the Black community in the UK and Europe, with the overall goal of helping them achieve a career in Tech. </p><p>I had a disaster of a start on the webinar. I had a technical issue preventing me from sharing the slide. It took me about 4 minutes to fix. Looking back on that, I was struggling a bit and did quite well under pressure to get by. These things happen.</p><p>After figuring out the issue, I spoke with them for nearly 15 minutes. It was very enjoyable. I hope you find it as valuable as the interns did.</p><p>This webinar is my first time publishing this type of content, and will normally only be available to premium subscribers. I intend to put out more premium content going forward. This video is a free look into the benefits of being a premium member.</p><p>A big upgrade button is in the corner if you want to join the premium members and support the blog.</p><p>I will be adding this video to the foundation course.</p><p>I hope you enjoy the video. Please do leave some comments.</p><div><hr></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;f42e51ec-2c85-4d38-921a-035bc5f41297&quot;,&quot;duration&quot;:null}"></div><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[How to prevent Reader Fatigue?]]></title><description><![CDATA[The Fellowship - Fourteenth Edition]]></description><link>https://blog.policywizard.io/p/how-to-prevent-reader-fatigue</link><guid isPermaLink="false">https://blog.policywizard.io/p/how-to-prevent-reader-fatigue</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 01 Oct 2023 11:00:23 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/aaedc787-70c1-466b-a7d8-8c0077aa2e35_840x600.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!3_de!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!3_de!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!3_de!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!3_de!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!3_de!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!3_de!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:6218778,&quot;alt&quot;:&quot;Tired man with glasses holding eyes&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Tired man with glasses holding eyes" title="Tired man with glasses holding eyes" srcset="https://substackcdn.com/image/fetch/$s_!3_de!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!3_de!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!3_de!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!3_de!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fddb0de47-8aba-4bea-948d-640926d503aa_3600x1800.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>I hear you ask, &#8220;Stuart, What is reader fatigue?&#8221; Well, my friend, it is the apathy people feel when they have to read verbose documents for a reason they do not care about.</p><p>Let&#8217;s break that down a little:</p><blockquote><p>Apathy</p><p>Behaviour that shows no interest or energy and shows that someone is unwilling to take action, especially over something important.</p><p>Cambridge Dictionary</p></blockquote><div><hr></div><h3>Privacy Notice</h3><p>Let&#8217;s look at this from the perspective of a Privacy Notice. Have you signed up for a new service like Disney+, Prime Video, or Netflix? Before you can watch anything, you are met with a Privacy Notice to read. </p><p>You know that privacy is important. It&#8217;s such an important issue that you started a career trying to protect other people&#8217;s privacy.</p><p>Did you read every line?</p><p>You did read it all&#8230;. didn&#8217;t you?</p><p>Be honest now&#8230;</p><p>You skipped it&#8230; didn&#8217;t you?</p><p>That, my friend, is &#8220;Reader fatigue.&#8221; </p><div><hr></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div><hr></div><h3>Reader Fatigue in Security</h3><p>On average, one-third of people asked to read a security policy will click to indicate they have read a 10+ page Information Security Policy in less than 60 seconds. I have seen the data with my own eyes.</p><p>When people don&#8217;t care to even read the policies, you get data like this from Gartner.</p><div class="pullquote"><p>A <a href="https://www.gartner.com/en/newsroom/press-releases/2023-02-22-gartner-predicts-nearly-half-of-cybersecurity-leaders-will-change-jobs-by-2025">Gartner survey</a> conducted in May and June 2022 among 1,310 employees revealed that 69% of employees have bypassed their organization&#8217;s cybersecurity guidance in the past 12 months. In the survey, 74% of employees said they would be willing to bypass cybersecurity guidance if it helped them or their team achieve a business objective.</p></div><p>Reader fatigue is potentially harmful to your organisation. If we recall the four drivers from the &#8220;<a href="https://blog.policywizard.io/p/how-to-choose-a-standard">How to Choose a Standard</a>&#8221; edition:</p><ol><li><p>Legal or regulatory obligation</p></li><li><p>Customer requirement</p></li><li><p>Consistency of Operational Security Configurations</p></li><li><p>Continuity of value generation</p></li></ol><p>Numbers three and four directly relate to the security posture of the organisation. Suppose people ignore the rules and set operational security configurations to suit their needs. In that case, there is a significant opportunity for a malicious person to exploit the shadow configurations and impede business operations.</p><div><hr></div><h3>Preventing Reader Fatigue</h3><p>So, how do we prevent reader fatigue? In a nutshell&#8230; it&#8217;s not easy. It&#8217;s going to take significant organisational change and support from executive management. Here are some options you can look at:</p><ul><li><p>Global email from the CISO explaining why staff need to read policies</p></li><li><p>Improve your writing in the security policies and procedures</p></li><li><p>Reduce the length and include only relevant information</p></li><li><p>Reduce the authoritarian language (Stop <strong>SHOUTING</strong>)</p></li><li><p>Write to the rule followers, not the rule breakers</p></li><li><p>Communicate policies using new methods</p></li><li><p>Explainer videos and policy cheat sheets</p></li><li><p>Write with respect and remove emotion</p></li><li><p>Reduce the number of documents</p></li><li><p>Reduce the notifications</p></li><li><p>Reduce the frequency</p></li></ul><p>You can try and do these yourself. Please do! I would love to see how you get on. Could you write about it and tell everyone what you learned? </p><p>Or&#8230;. you could speak to the employee of the month at PolicyWizard &#128578;. Someone who&#8217;s done this for real at an enterprise-level global software company.</p><p>If you&#8217;re seeing multiple staff leaking data or violating security policies, it might be worth looking into your security policies and trying to make improvements that reduce reader fatigue.</p><div><hr></div><p>If you would like to work with me on reducing reader fatigue at your organisation, DM me on <a href="https://www.linkedin.com/in/stuart-w-policywizard/">LinkedIn</a> or book a <a href="https://calendly.com/stuart-wedge-policywizard/discovery">Discovery call</a>. Discovery calls are for business customers engaging in consulting with PolicyWizard. If you want to learn more about security policies, enrol in the <a href="https://www.policy-wizard.io/security-policy-foundations">course </a>or book a <a href="https://www.policywizard.io/1-hour-coaching-session">coaching call</a>.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!f0ln!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!f0ln!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png 424w, https://substackcdn.com/image/fetch/$s_!f0ln!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png 848w, https://substackcdn.com/image/fetch/$s_!f0ln!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png 1272w, https://substackcdn.com/image/fetch/$s_!f0ln!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!f0ln!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png" width="362" height="452.5" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1500,&quot;width&quot;:1200,&quot;resizeWidth&quot;:362,&quot;bytes&quot;:472206,&quot;alt&quot;:&quot;Discovery Call | What's included? | 15-minute Q&amp;A session | 5-min strategy discussion | A detailed summary | Roadmap | 10% discount for a 90-minute consultation&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Discovery Call | What's included? | 15-minute Q&amp;A session | 5-min strategy discussion | A detailed summary | Roadmap | 10% discount for a 90-minute consultation" title="Discovery Call | What's included? | 15-minute Q&amp;A session | 5-min strategy discussion | A detailed summary | Roadmap | 10% discount for a 90-minute consultation" srcset="https://substackcdn.com/image/fetch/$s_!f0ln!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png 424w, https://substackcdn.com/image/fetch/$s_!f0ln!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png 848w, https://substackcdn.com/image/fetch/$s_!f0ln!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png 1272w, https://substackcdn.com/image/fetch/$s_!f0ln!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F573ca7b2-f3b0-4af0-8fb2-9ad0c6e672e9_1200x1500.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Big Offer Stack</figcaption></figure></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://blog.policywizard.io/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><h3>Why do we break the rules?</h3><p>I&#8217;ve recently learned about a study carried out in the 1950s on the topic of delinquency. It talks about how people tell themselves that rule-breaking is okay, depending on the justification. It&#8217;s called Neutralization. I&#8217;ll be digging into the subject more and covering it in a future edition. </p><div><hr></div><p>That&#8217;s it for this week; thanks for reading till the end! I hope you found this edition valuable. If you&#8217;re writing policies, it&#8217;s always good to consider how our policies and procedures affect our readers and remove objections where possible. </p><p>Until the next adventure,</p><p>Stuart Wedge,</p><p>PolicyWizard &#129497;&#8205;&#9794;&#65039;</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!ZfWV!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!ZfWV!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!ZfWV!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!ZfWV!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!ZfWV!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!ZfWV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png" width="172" height="172" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:172,&quot;bytes&quot;:146434,&quot;alt&quot;:&quot;Stuart Wedge, profile photo&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Stuart Wedge, profile photo" title="Stuart Wedge, profile photo" srcset="https://substackcdn.com/image/fetch/$s_!ZfWV!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!ZfWV!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!ZfWV!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!ZfWV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F37c6d26b-8cac-4350-9dd1-4b3a73f3b23f_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p></p><p></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share The Fellowship&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://blog.policywizard.io/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share The Fellowship</span></a></p>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ How to automate bulk email so you don’t breach GDPR.]]></title><description><![CDATA[Thirteenth edition of "The Fellowship. This week we use Power Automate to send bulk emails.]]></description><link>https://blog.policywizard.io/p/how-to-automate-bulk-email-so-you</link><guid isPermaLink="false">https://blog.policywizard.io/p/how-to-automate-bulk-email-so-you</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 10 Sep 2023 15:00:07 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/40ca5c44-0d07-43e5-841f-69476afe26a0_1260x900.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!AokJ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!AokJ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!AokJ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!AokJ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!AokJ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!AokJ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:5328144,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!AokJ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!AokJ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!AokJ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!AokJ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3798c896-df1e-4af0-b4f4-e1be3e902955_3600x1800.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Welcome to the Thirteenth edition of &#8220;The Fellowship&#8221; newsletter.</p><p>I took a break last week to rest up. I had a hectic week at work and was a little fatigued. It&#8217;s been another hectic week, but I&#8217;m feeling rested this morning and happy to spend some time writing to wonderful people.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>The 12<sup>th</sup> Edition of &#8220;The Fellowship&#8221; covered <strong><a href="https://blog.policywizard.io/p/what-is-the-objective-of-a-security">What is the objective of the Security Function</a></strong>. It&#8217;s a good edition that details why security policies are the root of all control. If you&#8217;ve not managed to read it yet, I would encourage you to do so.</p><p>This week, I want to help you with a simple lesson in using Automation. Let&#8217;s get into it.</p><h1>How to automate bulk email so you don&#8217;t breach GDPR.</h1><div><hr></div><p>My email address has been included in at least four data breaches in the last two years. Once, it was breached by a person of high stature in the security industry. They emailed their customers about an event they were hosting and sent it to everyone using the &#8220;To&#8221; address.</p><p>I could see the email address of all their customers who had registered for the paid-for event. If I were unscrupulous, I could have loaded their emails into my subscriber list and tried to sell to them. I didn&#8217;t&#8230; That would be a breach of GDPR and does not meet the personal values and ethical standards I hold myself to.</p><p>I was sent an email from a local public speaking group on a separate occasion. Similarly to the previous example, they had included all club members in the CC address. As someone concerned about the security and privacy of my personal information, I reported the data breach to the senders.</p><p>I have not yet reported a small business or a club for breaching my personal information to the Information Commissioner&#8217;s Office (ICO), the government body responsible for enforcing UK GDPR. They get a second chance. If they persist in sending my information insecurely, I will remove myself as a customer/member/subscriber and report them.</p><p>Any organisation collecting and using the personal information of UK citizens or those who live in Europe should be aware of their obligations under GDPR and implement safety checks before using the information in a way that could constitute a breach.</p><p>Mihaela Jembei, the ICO&#8217;s Director of Regulatory Cyber, said:</p><div class="pullquote"><p>&#8220;Failure to use BCC correctly in emails is one of the top data breaches reported to us every year &#8211; and these breaches can cause real harm, especially where sensitive personal information is involved.&#8221;</p></div><p>The ICO is genuinely monitoring the number of UK GDPR data breaches caused by the incorrect use of the BCC field and wrote <strong><a href="https://www.linkedin.com/posts/information-commissioner's-office_weve-issued-a-warning-to-organisations-activity-7102578668043919360-_bnV/?utm_source=share&amp;utm_medium=member_ios">this post</a></strong> only one week ago on LinkedIn.</p><h3>How can you prevent yourself from breaching UK GDPR when sending bulk emails?</h3><p>You have a couple of solid options. The first is an external platform that allows you to collect email addresses, group them using tags, and send them to each person individually. Here are the top 5 bulk email platforms:</p><ol><li><p>ConvertKit</p></li><li><p>Mailchimp</p></li><li><p>SubStack</p></li><li><p>Podia</p></li><li><p>HubSpot</p></li></ol><p>I like these options because they have been designed for the sole purpose of sending bulk emails. You can use them for Announcements, Newsletters, Product launches, and Sales promotions. Most platforms have a free option for managing a list of only a few hundred people. If your list is a little more extensive, the cost to use the paid options is usually high.</p><p>The second option is to use automation to control the email list on your licenced services, keeping it in-house, and if you&#8217;re paying for the product anyway, it doesn&#8217;t cost anything extra. What I&#8217;m talking about is Power Automation by Microsoft. It is BRILLIANT!</p><h3>Power Automate</h3><p>The application has two options. You can use the Desktop Application, or you can use the Cloud Application. I will share some resources and then show you what I do using a cloud flow. You can find the documentation Here: <a href="https://learn.microsoft.com/en-us/power-automate/">https://learn.microsoft.com/en-us/power-automate/</a></p><h3>What is a flow?</h3><p>A flow is the name of running a series of actions using automation.</p><h3>Desktop Application</h3><p>You can use the free desktop application. Some of the more advanced options are restricted to paying customers. For those of you running a business, if you&#8217;re using the MS365 environment for your company, the product may be included in the licence you already pay for. If it is, it&#8217;s even better because you can do much more with it!</p><p>The instructions to install are here: <a href="https://learn.microsoft.com/en-us/power-automate/desktop-flows/install">https://learn.microsoft.com/en-us/power-automate/desktop-flows/install</a>.</p><p>You can download it here: <a href="https://powerautomate.microsoft.com/en-gb/robotic-process-automation/">https://powerautomate.microsoft.com/en-gb/robotic-process-automation/</a>.</p><h3>Cloud Application</h3><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!6e5s!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!6e5s!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png 424w, https://substackcdn.com/image/fetch/$s_!6e5s!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png 848w, https://substackcdn.com/image/fetch/$s_!6e5s!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png 1272w, https://substackcdn.com/image/fetch/$s_!6e5s!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!6e5s!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png" width="205" height="301" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:301,&quot;width&quot;:205,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:22954,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!6e5s!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png 424w, https://substackcdn.com/image/fetch/$s_!6e5s!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png 848w, https://substackcdn.com/image/fetch/$s_!6e5s!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png 1272w, https://substackcdn.com/image/fetch/$s_!6e5s!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0a1ea14f-d255-4e25-8b75-e4b9b4731e1e_205x301.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Sign into Microsoft Office 365. At the top left, click the nine little dots and select Power Automate from the list. When it opens, click &#8220;+ Create&#8221;.</p><p>Flows running from the cloud are capable of a lot more. Here are a few examples:</p><ul><li><p>Automated Cloud Flow that runs when something happens. You do not need to do anything for this to run. An example might be if you receive an email. You can forward the email to the account manager, add the person to a database, and send them follow-up emails.</p></li><li><p>Manually trigger a flow. This requires you to start it. It could be anything. Say you want to announce a new product. You can input the latest product information into a flow, trigger it to start, and the flow will send it to your email list and send it to your social media channels as a new post.</p></li><li><p>Scheduled Cloud Flow. This is for things you need to happen, and you know they occur at a set period. You might need to take the bins out every Wednesday. You can set up a flow that will send you an email every Wednesday to remind you to take them out.</p></li></ul><h3>Connections</h3><p>Power Automate integrates with hundreds of different applications and services. All types of flow can be connected with Microsoft applications and hundreds of others. Here are some examples of applications that you can connect to:</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!vMEj!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!vMEj!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png 424w, https://substackcdn.com/image/fetch/$s_!vMEj!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png 848w, https://substackcdn.com/image/fetch/$s_!vMEj!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png 1272w, https://substackcdn.com/image/fetch/$s_!vMEj!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!vMEj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png" width="602" height="309" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:309,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:64452,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!vMEj!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png 424w, https://substackcdn.com/image/fetch/$s_!vMEj!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png 848w, https://substackcdn.com/image/fetch/$s_!vMEj!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png 1272w, https://substackcdn.com/image/fetch/$s_!vMEj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F603c56a0-d2a9-42ba-a4cc-66383cf6c01a_602x309.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!RpIY!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!RpIY!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png 424w, https://substackcdn.com/image/fetch/$s_!RpIY!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png 848w, https://substackcdn.com/image/fetch/$s_!RpIY!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png 1272w, https://substackcdn.com/image/fetch/$s_!RpIY!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!RpIY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png" width="602" height="305" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:305,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:71502,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!RpIY!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png 424w, https://substackcdn.com/image/fetch/$s_!RpIY!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png 848w, https://substackcdn.com/image/fetch/$s_!RpIY!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png 1272w, https://substackcdn.com/image/fetch/$s_!RpIY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3b44f2a-24d3-4c2f-b9cc-44c6de97c383_602x305.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3>Templates</h3><p>Microsoft has provided a lot of template flows for you. Select the flow, amend the information to what you require, and you&#8217;re all set! Here are a few examples:</p><ul><li><p>Save a Teams message in OneNote.</p></li><li><p>Forward emails to a channel in Teams</p></li><li><p>Notify a team when a task in Planner changes.</p></li><li><p>Find a meeting time with the sender of an email.</p></li><li><p>Post a message to Teams when a Jira is created</p></li></ul><h3>Sending Bulk Emails using an Excel sheet (Business Only)</h3><p>I use this to send emails to a list of people gathered from a tool such as an LMS. I might use it to send a reminder to complete their training if they are not doing it after receiving automated emails from the tool. Create this flow using a business MS365 Account. A single-person company costs &#163;19 a month, including most of the Microsoft Tools. It&#8217;s worth the investment. You will need the following things:</p><ul><li><p>Microsoft Excel</p></li><li><p>Microsoft Outlook</p></li><li><p>Microsoft Power Automate</p></li><li><p>Microsoft SharePoint</p></li></ul><h3>Excel Document</h3><p>This document will need a column listing the customer email addresses to which you want to send the email. A second column with &#8220;Yes&#8221; on each row is also required. Don&#8217;t include the quotation marks. Save the file to a location that Power Automate can reach. For me, I will use SharePoint.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!R-ka!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!R-ka!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png 424w, https://substackcdn.com/image/fetch/$s_!R-ka!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png 848w, https://substackcdn.com/image/fetch/$s_!R-ka!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png 1272w, https://substackcdn.com/image/fetch/$s_!R-ka!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!R-ka!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png" width="396" height="228" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:228,&quot;width&quot;:396,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:54004,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!R-ka!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png 424w, https://substackcdn.com/image/fetch/$s_!R-ka!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png 848w, https://substackcdn.com/image/fetch/$s_!R-ka!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png 1272w, https://substackcdn.com/image/fetch/$s_!R-ka!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F43b95d7d-31d8-4e0d-be35-96beadd5a026_396x228.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><h3>Power Automate</h3><p>Open Power Automate and create an Instant Cloud Flow.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!uZ3U!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!uZ3U!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png 424w, https://substackcdn.com/image/fetch/$s_!uZ3U!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png 848w, https://substackcdn.com/image/fetch/$s_!uZ3U!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png 1272w, https://substackcdn.com/image/fetch/$s_!uZ3U!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!uZ3U!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png" width="381" height="225" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8113c057-9872-496c-a785-e02f5f82151b_381x225.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:225,&quot;width&quot;:381,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:14323,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!uZ3U!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png 424w, https://substackcdn.com/image/fetch/$s_!uZ3U!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png 848w, https://substackcdn.com/image/fetch/$s_!uZ3U!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png 1272w, https://substackcdn.com/image/fetch/$s_!uZ3U!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8113c057-9872-496c-a785-e02f5f82151b_381x225.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>Give the flow a name and make sure &#8220;Manually Trigger a Flow&#8221; is selected. &nbsp;Click &#8220;Create,&#8221; and it will open your new flow.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!uMgh!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!uMgh!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png 424w, https://substackcdn.com/image/fetch/$s_!uMgh!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png 848w, https://substackcdn.com/image/fetch/$s_!uMgh!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png 1272w, https://substackcdn.com/image/fetch/$s_!uMgh!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!uMgh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png" width="624" height="396.6101694915254" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:300,&quot;width&quot;:472,&quot;resizeWidth&quot;:624,&quot;bytes&quot;:41942,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!uMgh!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png 424w, https://substackcdn.com/image/fetch/$s_!uMgh!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png 848w, https://substackcdn.com/image/fetch/$s_!uMgh!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png 1272w, https://substackcdn.com/image/fetch/$s_!uMgh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd8ba46c8-2fd6-46e2-b15c-c9472f1ce7d1_472x300.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Click &#8220;Next Step&#8221; and search for &#8220;List rows present in a table&#8221;.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!OCDx!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!OCDx!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png 424w, https://substackcdn.com/image/fetch/$s_!OCDx!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png 848w, https://substackcdn.com/image/fetch/$s_!OCDx!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png 1272w, https://substackcdn.com/image/fetch/$s_!OCDx!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!OCDx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png" width="602" height="313" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:313,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:51285,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!OCDx!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png 424w, https://substackcdn.com/image/fetch/$s_!OCDx!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png 848w, https://substackcdn.com/image/fetch/$s_!OCDx!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png 1272w, https://substackcdn.com/image/fetch/$s_!OCDx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5f2c6c33-f11a-44d3-ab43-52766e3eea83_602x313.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Select the file where the information resides. Select &#8220;Next step&#8221; and search for &#8220;Condition&#8221;.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!j8pW!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!j8pW!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png 424w, https://substackcdn.com/image/fetch/$s_!j8pW!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png 848w, https://substackcdn.com/image/fetch/$s_!j8pW!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png 1272w, https://substackcdn.com/image/fetch/$s_!j8pW!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!j8pW!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png" width="602" height="178" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:178,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:12016,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!j8pW!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png 424w, https://substackcdn.com/image/fetch/$s_!j8pW!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png 848w, https://substackcdn.com/image/fetch/$s_!j8pW!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png 1272w, https://substackcdn.com/image/fetch/$s_!j8pW!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb45de792-a3d3-4008-898d-d9566c7c7d30_602x178.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>This option is asking a question. We need to give it the question to ask. Click on the highlighted &nbsp;&#8220;Choose a Value&#8221; option. Here, we need to input some Dynamic Content.</p><h3>What is Dynamic Content?</h3><p>Dynamic content can be selected from previously gathered data in the flow. So, for this step, we want to choose the &#8220;Send to email&#8221; option from the Excel table.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!CnjS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!CnjS!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png 424w, https://substackcdn.com/image/fetch/$s_!CnjS!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png 848w, https://substackcdn.com/image/fetch/$s_!CnjS!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png 1272w, https://substackcdn.com/image/fetch/$s_!CnjS!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!CnjS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png" width="276" height="394" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:394,&quot;width&quot;:276,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:35541,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!CnjS!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png 424w, https://substackcdn.com/image/fetch/$s_!CnjS!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png 848w, https://substackcdn.com/image/fetch/$s_!CnjS!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png 1272w, https://substackcdn.com/image/fetch/$s_!CnjS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4d9c261-f39d-4d4a-92c4-aac7d7fbec61_276x394.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Selecting the option will change the flow to put the condition inside an &#8220;Apply to each&#8221; option. That means that for each &#8220;Send to&#8221; in the Excel table, it will run the condition. Make sure the &#8220;Send to&#8221; condition &#8220;is equal to&#8221; &gt; Yes.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!rAyg!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!rAyg!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png 424w, https://substackcdn.com/image/fetch/$s_!rAyg!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png 848w, https://substackcdn.com/image/fetch/$s_!rAyg!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png 1272w, https://substackcdn.com/image/fetch/$s_!rAyg!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!rAyg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png" width="602" height="169" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:169,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:12446,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!rAyg!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png 424w, https://substackcdn.com/image/fetch/$s_!rAyg!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png 848w, https://substackcdn.com/image/fetch/$s_!rAyg!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png 1272w, https://substackcdn.com/image/fetch/$s_!rAyg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1937195-4639-454c-9ef1-24a84c7ddacc_602x169.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!jYWA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!jYWA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png 424w, https://substackcdn.com/image/fetch/$s_!jYWA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png 848w, https://substackcdn.com/image/fetch/$s_!jYWA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png 1272w, https://substackcdn.com/image/fetch/$s_!jYWA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!jYWA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png" width="602" height="291" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/027a1a8e-46a6-4629-957d-f365134003a1_602x291.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:291,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:17657,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!jYWA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png 424w, https://substackcdn.com/image/fetch/$s_!jYWA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png 848w, https://substackcdn.com/image/fetch/$s_!jYWA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png 1272w, https://substackcdn.com/image/fetch/$s_!jYWA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F027a1a8e-46a6-4629-957d-f365134003a1_602x291.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Inside the &#8220;If yes&#8221; option, click &#8220;Add an action&#8221;.</p><p>Search for &#8220;Send an email (V2).</p><p>In the &#8220;Send an email&#8221; action, click on the &#8220;To&#8221; option. We need to add the dynamic action.</p><p>Select &#8220;Customer email&#8221; from the &#8220;List rows in table&#8221; option.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!kbkZ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!kbkZ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png 424w, https://substackcdn.com/image/fetch/$s_!kbkZ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png 848w, https://substackcdn.com/image/fetch/$s_!kbkZ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png 1272w, https://substackcdn.com/image/fetch/$s_!kbkZ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!kbkZ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png" width="602" height="284" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:284,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:57631,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!kbkZ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png 424w, https://substackcdn.com/image/fetch/$s_!kbkZ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png 848w, https://substackcdn.com/image/fetch/$s_!kbkZ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png 1272w, https://substackcdn.com/image/fetch/$s_!kbkZ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4f64baba-02b4-4ec7-af76-cd140b49615e_602x284.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Fill out the email information.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!v5Vz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!v5Vz!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png 424w, https://substackcdn.com/image/fetch/$s_!v5Vz!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png 848w, https://substackcdn.com/image/fetch/$s_!v5Vz!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png 1272w, https://substackcdn.com/image/fetch/$s_!v5Vz!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!v5Vz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png" width="602" height="759" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:759,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:106871,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!v5Vz!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png 424w, https://substackcdn.com/image/fetch/$s_!v5Vz!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png 848w, https://substackcdn.com/image/fetch/$s_!v5Vz!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png 1272w, https://substackcdn.com/image/fetch/$s_!v5Vz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5bee351-53f0-4d07-be5e-7a8a53913dfe_602x759.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>We can tidy up the flow by adding a &#8220;Terminate&#8221; option below the condition.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!KjYM!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!KjYM!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png 424w, https://substackcdn.com/image/fetch/$s_!KjYM!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png 848w, https://substackcdn.com/image/fetch/$s_!KjYM!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png 1272w, https://substackcdn.com/image/fetch/$s_!KjYM!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!KjYM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png" width="602" height="371" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/cd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:371,&quot;width&quot;:602,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:31929,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!KjYM!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png 424w, https://substackcdn.com/image/fetch/$s_!KjYM!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png 848w, https://substackcdn.com/image/fetch/$s_!KjYM!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png 1272w, https://substackcdn.com/image/fetch/$s_!KjYM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd196849-3f4c-4c40-a86b-f99143ca9ff7_602x371.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>This flow is complete and can be used to send emails to your contact list without risking a breach of UK GDPR. You can save the flow and run a test using a personal email address.</p><p><strong>How can I help?</strong></p><p>I can use Power Automate for many tasks within the Security Awareness, Compliance, ISO 27001, and GDPR space. If you&#8217;d like assistance to automate your processes, please email <strong><a href="mailto:info@policywizard.io">info@policywizard.io</a> or </strong>DM me on LinkedIn. My <strong><a href="https://www.policywizard.io/services">services</a></strong> page has information on other services I provide.</p><p>That&#8217;s it for this week. I hope you&#8217;ve enjoyed learning how to send bulk emails using Power Automate. Let me know what you think in the comments or on LinkedIn. If you liked it, consider sharing it with your peers.</p><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ What is the objective of a security function?]]></title><description><![CDATA[The Fellowship - Twelfth edition]]></description><link>https://blog.policywizard.io/p/what-is-the-objective-of-a-security</link><guid isPermaLink="false">https://blog.policywizard.io/p/what-is-the-objective-of-a-security</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 27 Aug 2023 11:00:23 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/9df5877f-a4d3-4508-89af-b3d14504c390_840x600.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Pk6m!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Pk6m!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!Pk6m!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!Pk6m!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!Pk6m!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Pk6m!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3173904,&quot;alt&quot;:&quot;A person in a security jacket&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A person in a security jacket" title="A person in a security jacket" srcset="https://substackcdn.com/image/fetch/$s_!Pk6m!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!Pk6m!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!Pk6m!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!Pk6m!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F436ad07d-ee10-45f4-a439-c79d942bb04b_3600x1800.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Welcome to the twelfth edition of The Fellowship Newsletter.</p><p>Last week, I wrote about the <strong><a href="https://blog.policywizard.io/p/top-5-features-course-hosting">Top 5 things to look for in a Course Hosting Platform</a></strong>. I wrote it to help those thinking about launching your own course. It took me a lot of research to determine what I needed and which platform to use. I hope it helps you save a few hours.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>This week, I want to cover a subject I touched on in the <strong><a href="https://blog.policywizard.io/p/how-to-choose-a-standard">How to Choose a standard</a></strong> edition of The Fellowship. Like last week, I&#8217;m still on holiday from work, so it won&#8217;t be narrated. I&#8217;ll get back to that next week. The subject for this week is:</p><h1>What is the objective of a security function?</h1><p>Before answering the question, we need to know what we mean by &#8220;Security.&#8221; It&#8217;s from the Latin word. &#8220;Securitas&#8221;. It means to have &#8220;freedom from care&#8221;. If we dissect that a little more, It&#8217;s a feeling of &#8220;Freedom from Harm&#8221;. It&#8217;s a feeling of comfort and safety where you are and in your activity.</p><p>So, we know that being secure means feeling comfortable and safe. Why, then, do people feel insecure? There are a few reasons. The first is <strong>Natural disasters</strong>. Things that happen in our surrounding area could cause us harm. Things like tornadoes, tsunamis, and earthquakes (I&#8217;m including man-made object failures in this category (e.g., Aircraft failures, Building collapse, and Electrical fires)). Things that occur where we have zero control over what happens to us.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!YHAj!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!YHAj!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!YHAj!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!YHAj!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!YHAj!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!YHAj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2772946,&quot;alt&quot;:&quot;A person being blown by strong wind&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A person being blown by strong wind" title="A person being blown by strong wind" srcset="https://substackcdn.com/image/fetch/$s_!YHAj!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!YHAj!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!YHAj!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!YHAj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F070a850d-2f6e-48d5-92cb-87a733f14dbc_1920x1080.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">A person being blown by strong wind</figcaption></figure></div><p>Then we have <strong>Animals</strong>. They are not dangerous all the time. Animals are potentially dangerous. Most people who animals harm put themselves in danger in the first place. But they can still make us feel insecure! If this lion is walking towards me and you when out for a walk together, we will both feel insecure. If I start running&#8230; you&#8217;d better keep up because it&#8217;s the slow one that gets eaten.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!KRdB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!KRdB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!KRdB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!KRdB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!KRdB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!KRdB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2670514,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!KRdB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!KRdB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!KRdB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!KRdB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F360167c0-544a-47fb-9b8b-cfccd37a3c9c_1920x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">A lion on a dirt track</figcaption></figure></div><p>We can control none of those things. It&#8217;s not in our remit as a security function to concern ourselves with it. What we can do is to focus on people. Other <strong>people's behaviour</strong> can cause feelings of insecurity, either in our staff or our customers. People can be unpredictable, manipulative, aggressive, and violent.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!gXZP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!gXZP!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!gXZP!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!gXZP!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!gXZP!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!gXZP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3101561,&quot;alt&quot;:&quot;A person in a suit punching another&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A person in a suit punching another" title="A person in a suit punching another" srcset="https://substackcdn.com/image/fetch/$s_!gXZP!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!gXZP!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!gXZP!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!gXZP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F01744fbb-d6dd-4127-abee-544737efc61a_1920x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">A punch</figcaption></figure></div><p>Our staff want to avoid coming to work and fear being harmed. Likewise, our customers do not want to be impacted by the unwanted behaviour of someone who has access to our networks and systems, potentially causing harm to their staff or customers.</p><p>That fear of harm does not always come from external forces. Accidental actions or incompetence can also cause damage. A system administrator wiping the backups, or someone in HR sending staff compensation rates to the wrong distribution list. Then there is also the possibility of Insider Threat. Someone internal to the organisation acting against it or working in their own self-interest to defraud the organisation of money or future revenue.</p><p>Given that we now know that being secure is all about feelings, what is the purpose of the security function? Why are we here?</p><div><hr></div><h3>The primary objective of the security function</h3><p>To advise the organisation on safeguarding operating conditions to prevent behaviour impacting its ability to create protected value.</p><h3>The secondary objective of the security function</h3><p>To identify and respond to occurrences of unwanted behaviour that were able to avoid the safeguards and implement countermeasures to reduce the impact of possible harm.</p><div><hr></div><p>There is a beautiful quote that I use when I talk about security risk. It&#8217;s by the author J. A. Shedd, who lived between 1859 and 1929. He stated:</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!eZvi!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!eZvi!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png 424w, https://substackcdn.com/image/fetch/$s_!eZvi!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png 848w, https://substackcdn.com/image/fetch/$s_!eZvi!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png 1272w, https://substackcdn.com/image/fetch/$s_!eZvi!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!eZvi!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png" width="374" height="374" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1200,&quot;width&quot;:1200,&quot;resizeWidth&quot;:374,&quot;bytes&quot;:1647172,&quot;alt&quot;:&quot;A picture of a ship in a snow covered harbour and the quote, \&quot;A ship in harbour is safe, but that's not what ships are built for.\&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A picture of a ship in a snow covered harbour and the quote, &quot;A ship in harbour is safe, but that's not what ships are built for.&quot;" title="A picture of a ship in a snow covered harbour and the quote, &quot;A ship in harbour is safe, but that's not what ships are built for.&quot;" srcset="https://substackcdn.com/image/fetch/$s_!eZvi!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png 424w, https://substackcdn.com/image/fetch/$s_!eZvi!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png 848w, https://substackcdn.com/image/fetch/$s_!eZvi!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png 1272w, https://substackcdn.com/image/fetch/$s_!eZvi!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3ecb96ed-5fc5-4174-92f6-91f814f1aa63_1200x1200.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Quote by J.A. Shedd</figcaption></figure></div><div class="pullquote"><p>&#8220;A ship in harbour is safe, but that&#8217;s not what ships are built for.&#8221; </p></div><p>This sums up quite nicely what we do in security. We advise businesses on how to build their ships to deliver their goods safely to their customers. Essentially, we advise them on how to build and manage their operating conditions so that they can do business in places where unwanted behaviour causes them (or their customers) to feel insecure. In our case, that is mostly business operating in the online environment.&nbsp;</p><div><hr></div><h3>Safeguarding Operating Conditions</h3><p>We must safeguard our operating conditions, but how do we do it? We need to introduce controls to prevent it. Safeguards are chosen to reduce the frequency of a behaviour or event that could cause harm. These controls act as blockers to prevent access to the environment you wish to protect. Countermeasures are chosen to reduce the impact or level of damage the behaviour could cause.</p><h4>Control Sub-types</h4><ul><li><p>Preventative controls stop something from happening.</p><ul><li><p>This would include VPNs, Network and Application Firewalls, and Security Groups in the cloud.</p></li></ul></li><li><p>Detection controls provide awareness that an event of concern is happening.</p><ul><li><p>This would include SIEM tools like Splunk and SentinelOne.</p></li></ul></li><li><p>A corrective control stops an event from progressing any further.</p><ul><li><p>This might include an endpoint detection and response tool that stops known malicious files from executing. Think CrowdStrike and Windows Defender.</p></li></ul></li><li><p>A displacement control moves the event to where the potential for harm is reduced.</p><ul><li><p>This could be a Honeypot or a Sandbox with no production data.</p></li></ul></li><li><p>A minimisation control reduces the impact of the event.</p><ul><li><p>This could include methods of preventing someone from downloading the entire customer database in one request. Instead, breaking the download into very small chunks and requiring the approval of 2 other people.</p></li></ul></li><li><p>Recovery controls reduce the effect of the behaviour.</p><ul><li><p>This would include Data Backups, Incident Response Policy, and Business Continuity Procedures.</p></li></ul></li><li><p>Awareness and Capability controls are people-based controls.</p><ul><li><p>This usually involves training and testing.</p></li></ul></li></ul><div><hr></div><h3>Accidental Data Loss</h3><p>Security is a people problem. Generally, people want to be good. They want to go to work, do a good job, get paid, and go home. They don&#8217;t want to do something that might jeopardise that. But work is complicated. There are lots of things to think about. Some pressures put on our staff can make them do things accidentally that cause harm. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!mLWK!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!mLWK!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!mLWK!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!mLWK!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!mLWK!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!mLWK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3555709,&quot;alt&quot;:&quot;A lady holding a laptop and lots of graphics surrounding her.&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A lady holding a laptop and lots of graphics surrounding her." title="A lady holding a laptop and lots of graphics surrounding her." srcset="https://substackcdn.com/image/fetch/$s_!mLWK!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!mLWK!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!mLWK!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!mLWK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8c8d311a-f882-438a-a32f-7b656ac63e1f_1920x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">A confused member of staff</figcaption></figure></div><div class="pullquote"><p>Between 70 &amp; 90% of instances of data loss are caused by someone internal to the organisation.</p></div><p>That is where our Security Policies and Procedures come in. These are our Authority documents. These are how we influence most of our staff. We set rules that we want them to do. These are Administrative and Managerial controls. Without this guidance, we, the staff, are the vulnerability. They are the basis of how we implement our safeguards and countermeasures. They are the Root of all Control. Let me explain:</p><div><hr></div><h3>Policies are the root of all control.</h3><p>We have our unwanted behaviours. These are our risks. If they happen, it will result in some form of harm to the organisation. So, we need to implement our security policies to tell our staff how we want them to behave. What is considered acceptable behaviour? What configurations to use? This is important, and we need to document it and ensure that our staff know what is expected of them and what will happen if they do not follow the rules.</p><p>There is a lot to consider. There is a lot for our staff to learn and do. We can make it easier for them by implementing controls that make the unwanted behaviour less frequent. Sometimes, the control can stop it altogether.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!tdi4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!tdi4!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png 424w, https://substackcdn.com/image/fetch/$s_!tdi4!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png 848w, https://substackcdn.com/image/fetch/$s_!tdi4!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png 1272w, https://substackcdn.com/image/fetch/$s_!tdi4!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!tdi4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png" width="362" height="228.73626373626374" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:920,&quot;width&quot;:1456,&quot;resizeWidth&quot;:362,&quot;bytes&quot;:32553,&quot;alt&quot;:&quot;A diagram showing three boxes. Policies, Risk, and Controls. Arrows pointing between each&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A diagram showing three boxes. Policies, Risk, and Controls. Arrows pointing between each" title="A diagram showing three boxes. Policies, Risk, and Controls. Arrows pointing between each" srcset="https://substackcdn.com/image/fetch/$s_!tdi4!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png 424w, https://substackcdn.com/image/fetch/$s_!tdi4!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png 848w, https://substackcdn.com/image/fetch/$s_!tdi4!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png 1272w, https://substackcdn.com/image/fetch/$s_!tdi4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fad1882fd-4520-4a9c-b1e9-e1f6c06a4188_2130x1346.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a><figcaption class="image-caption">Policy Feedback Loop</figcaption></figure></div><p>It&#8217;s a feedback loop. Changing the risks will require changes to the policies and the controls used to mitigate the risk. It&#8217;s all controlled by the policies.</p><div><hr></div><h3>Building for Compliance</h3><p>Many companies will only focus their security policies on what is required by security frameworks like ISO 27001. That standard has a mandatory requirement for companies to have nine security policies before getting the certification. Compliance does not equal security. Building for compliance will make an organisation more secure, but all of the standards could be better. Then, we have the problem of reactive policies.</p><p>Somebody does something stupid, and the company makes a policy to try and stop it from happening again. That just doesn&#8217;t work. You end up covered in policies designed to fix problems, not prevent them from happening in the first place. If we build for security, we can avoid this problem and become mature organisations with policies designed to deal with security first. This results in having the proper defences and controls in place to stop the cuts from happening in the first place.</p><p>We want to build for security. We know that we have risks and need policies to control them. How do we do it? What risks do we need to manage? What policies do we need to write?</p><div><hr></div><h3>Risk Scenarios</h3><p>Before controlling potentially harmful behaviour, we must understand what behaviour we might be exposed to. We need to carry out an assessment of the risks that could harm us. We do that by looking at our environment and seeing where we are vulnerable. I don&#8217;t mean vulnerability management. If someone walked into the building and stole the finance server, what harm would that cause? How do we stop it? That&#8217;s a risk scenario.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!gXTA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!gXTA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png 424w, https://substackcdn.com/image/fetch/$s_!gXTA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png 848w, https://substackcdn.com/image/fetch/$s_!gXTA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png 1272w, https://substackcdn.com/image/fetch/$s_!gXTA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!gXTA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png" width="1456" height="626" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:626,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:411872,&quot;alt&quot;:&quot;A view of the PolicyWizard risk scenario database&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A view of the PolicyWizard risk scenario database" title="A view of the PolicyWizard risk scenario database" srcset="https://substackcdn.com/image/fetch/$s_!gXTA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png 424w, https://substackcdn.com/image/fetch/$s_!gXTA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png 848w, https://substackcdn.com/image/fetch/$s_!gXTA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png 1272w, https://substackcdn.com/image/fetch/$s_!gXTA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe6df619a-5b50-4a35-9ce5-6d28fe6e2b2a_2841x1222.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">PolicyWizard Risk Scenarios Database</figcaption></figure></div><p>This is a proprietary database of 98 risk scenarios that I have created. It looks at generic threats. I select if the behaviours can be caused by someone internal or external, malicious or accidental. Then, I look at the assets it could affect, the location of the asset, and the areas of weakness for the potential vulnerability. I then need to ensure a policy that targets and mitigates the risk. We do that by carrying out a Gap Analysis against the Policy framework.</p><div><hr></div><h3>Security Policy Framework</h3><p>The policy framework is the database or repository we use to track security policies and procedures.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!rRpU!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!rRpU!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png 424w, https://substackcdn.com/image/fetch/$s_!rRpU!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png 848w, https://substackcdn.com/image/fetch/$s_!rRpU!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png 1272w, https://substackcdn.com/image/fetch/$s_!rRpU!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!rRpU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png" width="1084" height="498" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:498,&quot;width&quot;:1084,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:91452,&quot;alt&quot;:&quot;A view of the PolicyWizard Policy Repository on the Xoralia solition&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A view of the PolicyWizard Policy Repository on the Xoralia solition" title="A view of the PolicyWizard Policy Repository on the Xoralia solition" srcset="https://substackcdn.com/image/fetch/$s_!rRpU!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png 424w, https://substackcdn.com/image/fetch/$s_!rRpU!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png 848w, https://substackcdn.com/image/fetch/$s_!rRpU!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png 1272w, https://substackcdn.com/image/fetch/$s_!rRpU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F937e3862-8018-43f8-aa92-45d96d8b6e09_1084x498.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">PolicyWizard Repository</figcaption></figure></div><p>If we have a risk scenario not covered by a policy, we need to amend an existing policy or draft a new one that does. This is my policy repository. It&#8217;s a Policy Management Solution provided by <strong><a href="https://xoralia.com/">Xoralia</a></strong>. Their brilliant policy management solution allows companies to control policies, manage the policy lifecycle, and track the reader&#8217;s attestation. The best thing about it is that it integrates with SharePoint. So, companies don&#8217;t need to move their policies outside the network.</p><div><hr></div><h3>Control Register</h3><p>You need a control register after completing the risk scenarios and your policy framework. A method of tracking all the controls that the organisation has in place to reduce unwanted behaviour.&nbsp;</p><div><hr></div><h3>Summary</h3><p>In summary, we learned that security is about feelings of comfort and safety. We learned that people feel insecure because of natural disasters, potentially dangerous animals, and the unwanted behaviour of others. We learned that the purpose of the security function is to advise businesses on managing operating conditions to enable them to generate revenue in places where the risk of unwanted behaviour is minimal. We learned about the two types of security control and their sub-types. I wrote about how security policies are the root of all control. It&#8217;s how we control the mitigation of all security risks. We learned about Risk scenarios and how they can be used to target risks. Then we looked at a Policy framework, and I wrote about a control register.</p><div><hr></div><h3>How can I help?</h3><p>This methodology is how I create a strategy for implementing a security policy framework and help clients meet the requirements of laws and security standards like Cyber Essentials, GDPR, and ISO 27001. If you&#8217;d like to talk to me about working with you to implement a security standard at your small or medium-sized business, you can send me a DM on LinkedIn or book a Strategy Call on my <strong><a href="https://www.policywizard.io/services">services</a></strong> page, where you will find more information.</p><p>That&#8217;s it for this week. I hope you&#8217;ve enjoyed learning about the objective of a security function and how I help my clients achieve it. Let me know what you think in the comments or on LinkedIn. If you liked it, consider sharing it with your peers.</p><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ Top 5 things to look for in a Course Hosting Platform]]></title><description><![CDATA[The Fellowship - Week 11]]></description><link>https://blog.policywizard.io/p/top-5-features-course-hosting</link><guid isPermaLink="false">https://blog.policywizard.io/p/top-5-features-course-hosting</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 20 Aug 2023 11:01:35 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/47731bcd-f7d1-4e1f-816f-8a50f69ee1a9_840x600.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!nqrV!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!nqrV!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!nqrV!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!nqrV!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!nqrV!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!nqrV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:10880032,&quot;alt&quot;:&quot;Laptop on a night sky with E-Learning on the Screen. PolicyWizard logo.&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Laptop on a night sky with E-Learning on the Screen. PolicyWizard logo." title="Laptop on a night sky with E-Learning on the Screen. PolicyWizard logo." srcset="https://substackcdn.com/image/fetch/$s_!nqrV!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!nqrV!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!nqrV!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!nqrV!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cddbeac-82a9-4098-9f5e-be601ddd0cb8_3600x1800.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Welcome to the eleventh edition of The Fellowship Newsletter.</p><p>Last week I wrote about <strong><a href="https://blog.policywizard.io/p/security-policies-for-small-business">Security Policies for Small Businesses</a></strong>. It focussed on the first security policies I would write and how I would go about it. I even included a breakdown of the mandatory policies for ISO 27001. Providing a simple framework for small businesses to begin to implement.</p><p>Well, that edition of the Newsletter led to a meeting with a small business owner with whom I had a previous relationship. This PolicyWizard has agreed to consult/contract with the client on a retained deal to help them implement security policies and help to implement compliance efforts for Cyber Essentials (Plus), GDPR, and ISO 27001.</p><p>That is the power of networking, building solid relationships, producing excellent work at every opportunity, and helping others. That new contract would only have happened with sharing the knowledge in The Fellowship. </p><div class="pullquote"><p>If you&#8217;d like to talk with me about how I can help you and your business with policy and compliance implementation projects, reach out to me on LinkedIn, I&#8217;d be happy to talk with you.</p></div><p>This week, it will be a much shorter edition and will not have a voiceover. It&#8217;s Friday night. I&#8217;ve just finished a wonderful but tiring week at work, and I&#8217;m heading out on holiday (vacation for my friends from the US). I&#8217;m staying local in Scotland and resting up. I&#8217;ll be eating good food, enjoying the late summer sun, and probably spending some time writing the book too. So, let&#8217;s look at:</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Zp9P!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Zp9P!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!Zp9P!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!Zp9P!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!Zp9P!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Zp9P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png" width="492" height="246" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:492,&quot;bytes&quot;:461163,&quot;alt&quot;:&quot;digital graphic showing people holding gold stars.&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="digital graphic showing people holding gold stars." title="digital graphic showing people holding gold stars." srcset="https://substackcdn.com/image/fetch/$s_!Zp9P!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!Zp9P!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!Zp9P!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!Zp9P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27546b64-3a31-4228-8651-81c992409ad9_3600x1800.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h1>Top 5 things to look for in a Course Hosting Platform</h1><p>I set out over a year ago, looking at the different options for a Learning Management System (LMS) that I could use to host my course and, even better, if it provided additional functions that I could use to run my business. I wanted it to look professional, be customisable, and be owned by me. I did not want any other companies influencing the price of my course or changing something I didn&#8217;t want to change. I had to go independent. At that stage, it seemed like my only option.</p><p>It couldn&#8217;t just be an LMS. It needed to take people from being interested to getting them signed up for a course or courses. That process is called a sales funnel. It helps businesses turn people from social media into customers spending money with you. So, I began looking for a platform that was an all-encompassing solution. It needed to give me total control over the customer journey and provide me with the tools to do that.</p><p>I have nearly 9000 people following me on LinkedIn. Lots of them engage with me regularly. I put out great content and have helped many people. For businesses, one of the biggest problems with social media is that the audience (your followers) is rented. If the platform were to die overnight (like Myspace) or my account was revoked for any number of reasons, my business would fail if my only source of customers was that platform.</p><p>We need multiple customer sources to have a business resilient to changes like losing a social media account. We also want to own the contact details of the people that follow us. If we hold those, they can still be customers. It does not matter what happens to the platform they found us on.</p><p></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://blog.policywizard.io/subscribe?"><span>Subscribe now</span></a></p><p></p><p>That leads me to the first point:</p><h3>1. Email List</h3><p>The platform must allow you to collect potential customers' emails and send mass emails to the list. You'll need this to let them know what you're doing and what new products and services are available. If you want to remain GDPR compliant, make sure you have the ability for a double opt-in.</p><div><hr></div><p></p><h3>2. Digital Downloads</h3><p>It&#8217;s all good if the platform can collect email addresses, but how will you encourage people to sign up for your list? You need to give them something of value. Otherwise, you&#8217;re going to be begging them. &#8220;Please sign up for my list; we need customers.&#8221; It&#8217;s not attractive.</p><p>Step forward the &#8220;<strong>Lead Magnet</strong>&#8221;.</p><p>A lead magnet is something valuable that you offer potential customers to get them to join your email list. You can promote the lead magnet in other places, like your social media channels and link back to the lead magnet. People interested in value must sign up to get it. In my case, I have a few lead magnets. The first one that I created was the <strong><a href="https://www.policywizard.io/security-policy-cheat-sheet">Security Policy Cheat Sheet</a></strong>. It&#8217;s a PDF document detailing what should be included in a security policy. It&#8217;s written at quite a high level but also full of value.</p><p>When I published it, people began to sign up and read it. Over 300 people downloaded the document in about four months. I don&#8217;t link to it from my LinkedIn profile anymore, but lots of people still visit the website and download it.</p><div><hr></div><p></p><h3>3. Website</h3><p>If I were to go with a provider such as Udemy or Teachable, I could only host the course. It wouldn&#8217;t let me have an actual website. I wanted PolicyWizard to be a business, not just a course. I wanted to build a website showcasing everything I do, including coaching people, writing policies for businesses as a contractor, and anything else I want to offer in the future.</p><div><hr></div><p></p><h3>4. Learning Management System</h3><p>I needed to host and present my course in an acceptable manner. I wanted the ability to customise lessons and include videos, transcripts, captions, and quizzes. This was the meat of the requirement. I wanted a platform that made it enjoyable to use, was accessible to all, and looked great too. It also needed to give the people who completed the course a certificate.</p><div><hr></div><p></p><h3>5. Coaching and Webinars</h3><p>I wanted to be able to take the learning further than the courses. I wanted to engage with my customers at a deeper level. Help them achieve their career goals faster and produce better work. To do that, I needed a platform to sell coaching and integrate with external solutions for webinars.</p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!_H9Y!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!_H9Y!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!_H9Y!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!_H9Y!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!_H9Y!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!_H9Y!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png" width="368" height="184" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:368,&quot;bytes&quot;:124495,&quot;alt&quot;:&quot;Podia Logo in White&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Podia Logo in White" title="Podia Logo in White" srcset="https://substackcdn.com/image/fetch/$s_!_H9Y!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!_H9Y!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!_H9Y!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!_H9Y!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff735eecb-4b07-4d56-89a3-4709061917f8_3600x1800.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a><figcaption class="image-caption">Podia Logo</figcaption></figure></div><h3>Podia</h3><p>After looking at all the options available, <strong><a href="https://podia37110.lt.acemlnb.com/Prod/link-tracker?redirectUrl=aHR0cHMlM0ElMkYlMkZ3d3cucG9kaWEuY29tJTJGJTNGdmlhJTNEOGIzNDg0&amp;sig=56yo5mWH8UD4yu7medeB8j62z5dvcXHhLFqPVhiX5LCv&amp;iat=1690817138&amp;a=%7C%7C610920696%7C%7C&amp;account=podia37110%2Eactivehosted%2Ecom&amp;email=5TUEREt3M10zlEEmeT3utUN2UHJeyPjV3ix%2FgE6uGi77Al4bLBSCoA%3D%3D%3AuWP0%2FELZANYq5L%2FT5NwnvcT7DG%2FusxfD&amp;s=83b5692e508a444b10546d4a4cd2d6cf&amp;i=646A707A20A27916">Podia</a></strong> appeared to be the most favourable. The price was a factor, as I was setting this up independently. <strong><a href="https://podia37110.lt.acemlnb.com/Prod/link-tracker?redirectUrl=aHR0cHMlM0ElMkYlMkZ3d3cucG9kaWEuY29tJTJGJTNGdmlhJTNEOGIzNDg0&amp;sig=56yo5mWH8UD4yu7medeB8j62z5dvcXHhLFqPVhiX5LCv&amp;iat=1690817138&amp;a=%7C%7C610920696%7C%7C&amp;account=podia37110%2Eactivehosted%2Ecom&amp;email=5TUEREt3M10zlEEmeT3utUN2UHJeyPjV3ix%2FgE6uGi77Al4bLBSCoA%3D%3D%3AuWP0%2FELZANYq5L%2FT5NwnvcT7DG%2FusxfD&amp;s=83b5692e508a444b10546d4a4cd2d6cf&amp;i=646A707A20A27916">Podia</a></strong> offered all the features I needed at a price point that would not make me wince every month when I saw the invoice.</p><div><hr></div><p></p><h3>Continual Improvement</h3><p>As with learning anything new, building the website and products to a level I was happy with took me a while. It&#8217;s currently looking professional and performs as I need it to. The copy is good, and I&#8217;m converting enough customers to cover the costs. I&#8217;m building for the long term; in five years, PolicyWizard will be bigger, with more in-depth courses, and hopefully be a household name. </p><p>Covering my costs allows me to partner with organisations that support people from underrepresented communities. Over 200 people have accessed my course through <strong><a href="https://www.policywizard.io/partners">Partnerships</a></strong> since March 2023. I encourage anyone considering building a similar business to do the same.</p><div><hr></div><p></p><h3>How can I help you?</h3><p>My products &amp; services:</p><ol><li><p>Wizard School</p><ol><li><p><a href="https://www.policywizard.io/security-policy-foundations">Security Policy Foundations</a></p></li></ol></li><li><p>Services</p><ol><li><p><a href="https://www.policywizard.io/we-review-your-policies-standard">Business Policy Review</a></p></li><li><p><a href="https://www.policywizard.io/policy-management">Policy Management</a></p></li><li><p><a href="https://www.policywizard.io/policy-creation">Policy Creation</a></p></li></ol></li><li><p>Book a Call</p><ol><li><p><a href="https://www.policywizard.io/1-hour-coaching-session">1-hour coaching session</a></p></li><li><p><a href="https://www.policywizard.io/policy-consultation">90-minute consultation</a> </p></li></ol></li><li><p>Resources</p><ol><li><p><a href="https://www.policywizard.io/security-policy-cheat-sheet">Security Policy Cheat Sheet</a></p></li><li><p><a href="https://www.policywizard.io/5-practical-skills-to-power-your-grc-career">5 Practical Skills to Power Your GRC Career</a></p></li></ol></li></ol><p>That&#8217;s it for this week. I hope you&#8217;ve enjoyed learning the Top 5 things to look for in a Course Hosting Platform. Let me know what you think in the comments or on LinkedIn. If you liked it, consider sharing it with your peers.</p><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><p></p>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ Security Policies for Small Business]]></title><description><![CDATA[The Fellowship - Week 10]]></description><link>https://blog.policywizard.io/p/security-policies-for-small-business</link><guid isPermaLink="false">https://blog.policywizard.io/p/security-policies-for-small-business</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 13 Aug 2023 11:00:32 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/726fb473-d2a9-4c6f-b06a-d46ce9c782ea_840x600.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!vfUv!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!vfUv!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!vfUv!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!vfUv!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!vfUv!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!vfUv!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:9289040,&quot;alt&quot;:&quot;Small Business book with a phone and PolicyWizard Logo&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Small Business book with a phone and PolicyWizard Logo" title="Small Business book with a phone and PolicyWizard Logo" srcset="https://substackcdn.com/image/fetch/$s_!vfUv!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!vfUv!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!vfUv!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!vfUv!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F32c9c40a-9263-4fc2-99d5-f74ebe8da774_3600x1800.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3>Welcome to the tenth edition of The Fellowship Newsletter.</h3><p>Last week I wrote about <a href="https://blog.policywizard.io/p/how-to-choose-a-standard?sort=new">Choosing a Standard</a> and the four key drivers for security policies. In the section &gt; Legal or Regulatory Obligations, I made a mistake. I wrote:</p><blockquote><p>&#8220;GDPR obligated countries within the EU to enact a law specific to their jurisdiction that enforces the regulation. In the UK, that law is the Data Protection Act (2018), revised in 2022.&#8221;</p></blockquote><p>That is a misunderstanding of the regulation on my part. The correct statement should have read:</p><blockquote><p>&#8220;GDPR is enforceable within all areas of the European Union as a stand-alone regulation. It allows member countries of the EU to add requirements. In the UK, the Data Protection Act adds to GDPR and is not the UK&#8217;s implementation of GDPR.&#8221; </p></blockquote><p>Thank you to <a href="https://www.linkedin.com/in/dr-mike-brass-cissp-cism-crisc-mbcs-20610462/">Dr Mike Brass</a> for pointing out the mistake.</p><div><hr></div><p>This week I respond to a question from <a href="https://www.linkedin.com/in/ronin-pentest/">Ben Brown</a> of <a href="https://ronin-pentest.com/">Ronin PenTest</a>, who asked:</p><h1>As a small but growing business, what are the most important policy areas to pay attention to, and where are the biggest/quickest wins to be found?</h1><p>Thank you for this question, Ben. As I work in an Enterprise level company, it&#8217;s easy to overlook how security policies and procedures can be used effectively in smaller organisations. I&#8217;m happy to dig into this area to help people like you who may have a few staff and want to know where to focus.</p><p>The first question you need to ask is, &#8220;Why?&#8221;. This ties into last week's newsletter. What is your reasoning for wanting security policies and procedures? What is driving you to need them? Are you doing it because there&#8217;s a regulation or law you need to comply with? Has a customer asked you for a certification like ISO 27001? Do you want to give your staff clear instructions? It might help reduce the number of questions you need to answer. Or are you trying to improve security because you know that good security is good business practice? Protecting your ability to create value will help keep the money coming in. You&#8217;re making it harder for somebody to come and take the value you have created with your product or service.</p><p>Once you know your drivers, you can start to build a plan. I covered it in a fair amount of depth last week in section 4: <a href="https://blog.policywizard.io/p/how-to-choose-a-standard?sort=new">Continuity of value generation</a>. As a recap, you will need to:</p><ul><li><p>Assess the environment:</p><ul><li><p>What do we have?</p></li><li><p>What can we not afford to lose?</p></li><li><p>What do we not want to be harmed?</p></li><li><p>What, if harmed, can we repair quickly?</p></li></ul></li><li><p>Assess the types of behaviour that could cause harm.</p></li><li><p>Assess what controls you have in place to stop harmful behaviour.</p></li><li><p>Assess what controls are deficient and should be implemented to stop harmful behaviour.</p></li></ul><p>Once you know what controls you need, you will need to implement them in Security Policies and Procedures. This is how you communicate the &#8220;management requirements&#8221; for security practices.</p><div><hr></div><p></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://blog.policywizard.io/subscribe?"><span>Subscribe now</span></a></p><p></p><h3>What are Authority Documents?</h3><p>In business, we have three different levels for document status. First, we have our foundational documents. This can include the board&#8217;s vision for the company, mission statements, and principles that the business uses to manage its business effectively.</p><p>Second, we have our authority documents. These are the policy instruments. Fact-based statements instruct staff on the management requirements for different business areas.</p><p>Lastly, we have our guidance. This is our standard operating procedures, work instructions, and any educational or background information that we use to communicate the policy requirements.</p><p>In my course, I describe five different types of policy documentation. Those five types all fall within the top two layers of the Authority Document pyramid. This graphic shows how using the business vision, mission, and principles set out the foundations for our documentation, then building on the sturdy base with the policies, and then the guidance is how we finish it. The three-tier process set our stall on how to manage the security framework of our business.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!rcpP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!rcpP!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png 424w, https://substackcdn.com/image/fetch/$s_!rcpP!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png 848w, https://substackcdn.com/image/fetch/$s_!rcpP!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png 1272w, https://substackcdn.com/image/fetch/$s_!rcpP!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!rcpP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png" width="514" height="342.0782967032967" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:969,&quot;width&quot;:1456,&quot;resizeWidth&quot;:514,&quot;bytes&quot;:61614,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!rcpP!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png 424w, https://substackcdn.com/image/fetch/$s_!rcpP!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png 848w, https://substackcdn.com/image/fetch/$s_!rcpP!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png 1272w, https://substackcdn.com/image/fetch/$s_!rcpP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5311d1a-8fbc-46b9-9f88-8eb71539b4a1_2945x1959.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Authority Document Pyramid</figcaption></figure></div><p>Without knowing your business, drivers, vision, mission, principles, environment, or controls, I&#8217;m not going to sit here and pontificate over what you should do. Instead, I will tell you how I would do it if I grew a small business.</p><div><hr></div><p></p><h3>How would I implement a Security Policy Framework in my small business?</h3><p>The big things to think about are privacy and security. Working in the UK, I am subject to the UK GDPR. As such, I must tell my customers (and those who use my free resources like this newsletter) what I do with their data. If you are collecting the data of your customers, you need to do the same.</p><p>There are a whole bunch of things that you need to do around personal information. This is not a lesson for that. One of the things that you&#8217;ll need to do is write a Privacy notice.</p><div><hr></div><p></p><h3>Draft a Privacy Notice</h3><p>A privacy notice is a publicly available document where you describe your business's different touch points with the personal information of your customers and potential customers. You&#8217;ll need to be open with them, providing the reasoning for collecting the information. &nbsp;</p><p>Give them contact details for someone in the business who can answer questions on the use of their data. They should also know their rights and who to contact to make a complaint.</p><p>The next thing I would do is write an Information Security Policy.</p><div><hr></div><p></p><h3>Draft an Information Security Policy (ISP)</h3><p>This document can be written for any one of the four policy drivers. It can show due diligence regarding a legal requirement, it can be requested as part of a security framework like ISO 27001, and it can be used to communicate the requirements of operational security configurations to ensure consistency across the business.</p><p>There are a lot of conflicting views about what should be included in an Information Security Policy. Some companies treat this document as a catch-all for everything related to security. My first contract job was for a financial services company in the United States of America. They sent over their ISP, which was over 40 pages long and full of utter incomprehensible waffle and legal rubbish. You&#8217;ll remember that one, Ben. We worked on that contract together.</p><p>They had used it as a dumping ground. There was procedural stuff for unrelated business processes, names of different people, and detailing tasks they had to do. It was bad. We fixed it for them, and working on that contract helped me learn what a bad Information Security Policy looked like.</p><div><hr></div><p></p><h3>ISO 27001 Policy Requirements</h3><p>If you&#8217;re implementing ISO 27001, you need to meet the requirements of section &gt; 5.2 Policy. In my words, the requirements are that the policy:</p><ul><li><p>Should be suitable for the business type and purpose.</p></li><li><p>Should include the objectives for Information Security or provide a framework.</p></li><li><p>Should include a management commitment to meet the objectives.</p></li><li><p>Should include the management's commitment to continually improving the Information Security Management System (ISMS).</p></li><li><p>Should be documented (published, not verbal).</p></li><li><p>Should be communicated to everyone in the business.</p></li><li><p>Should be available to other interested people who may need to know how the business manages information security. Those people might be law enforcement, regulatory bodies, or customers. Some businesses publish their ISP on their websites.</p></li></ul><p>Consider keeping the ISP short. Include only what you need for the standard, and then include some clear and concise policy statements for the specific ISMS functions detailed within the ISO standard. Just because the standard requires nine mandatory policies doesn&#8217;t mean that you need to have nine documents.</p><div><hr></div><p></p><h3>What Policies are mandatory for ISO 27001?</h3><p>Here are the nine mandatory policies within ISO 27001:</p><ul><li><p>(5.2) Information Security Policy</p></li><li><p>(A6.2.1) Mobile Device Policy</p><ul><li><p>Include BYOD</p></li></ul></li><li><p>(A6.2.2) Teleworking Policy</p></li><li><p>(A9.1.1) Access Control Policy</p></li><li><p>(A10.1.1) Cryptographic Control Policy</p></li><li><p>(A10.1.2) Key Management Policy</p><ul><li><p>Join this policy statement with the Cryptographic Control Policy.</p></li></ul></li><li><p>(A11.2.9) Clear Desk &amp; Screen Policy</p></li><li><p>(A12.3.1) Backup Policy</p></li><li><p>(A15.1.1) Supplier Relationships Policy</p></li></ul><div><hr></div><p></p><h3><strong>Quick Wins</strong></h3><p>To answer the last part of the question, if I wanted to have the quickest wins with security policy without worrying about ISO 27001, I&#8217;d implement only these:</p><ul><li><p>Privacy Notice</p></li><li><p>Information Security Policy</p><ul><li><p>Acceptable Use Policy Statement</p></li><li><p>Access Control Policy Statement</p></li><li><p>BYOD &amp; Mobile Policy Statement</p></li><li><p>Encryption and Key Management Policy Statement</p></li><li><p>Network Security Policy Statement</p></li><li><p>Password Policy Statement</p></li><li><p>Privileged Account Policy Statement</p></li><li><p>Remote Working Policy Statement</p></li><li><p>Safe Handling of Information Policy Statement</p></li><li><p>Policy Enforcement Statement</p></li></ul></li></ul><div><hr></div><h3>Getting deeper into the weeds</h3><p>Policy statements are very high level. Sometimes a high-level statement is not sufficient. Take the Password Policy Statement as an example. This is an area that can go quite deep. You may have many different environments with similar but slightly differing configuration requirements. </p><p>If you want to keep the ISP concise, we need to use other methods to introduce specific configuration requirements. We can do that by introducing a standard. A fact-based collection of controls or settings that we want our staff to use. Standards can be separate documents or included as an appendix to the ISP. Here are examples of both:</p><p><strong>Statement</strong></p><p>[Company] requires that all systems are configured to require a password and that the password be configured to meet the complexity and length requirements of the [Company] Password Standard.</p><p><strong>[Company] Password Standard</strong></p><p>The Password length is 24 characters or more.</p><p>The password contains at least one uppercase letter (e.g., A, B, C), at least one lowercase letter (e.g., a, b, c), at least one numerical character (e.g., 1, 2, 3), and at least one special character (e.g., &#8220;, &#163;, $, %).</p><div><hr></div><p></p><h3>Policy Templates</h3><p>Many businesses find implementing new security policies daunting, especially those trying to implement the ISO standards. If you look online, you&#8217;ll find many companies offering template policy packs with upwards of forty policies. You do not need all those documents. You only need the policies applicable to your business. If you buy a policy pack or download a policy from another organisation, customise them to communicate how you have implemented security controls for your business. If you don&#8217;t, you&#8217;re opening a can of worms that will lead to future problems and potentially legal or compliance issues. PolicyWizard only offers bespoke policies. We work with businesses to implement the right policies and procedures for them.</p><div><hr></div><p></p><h3>Conclusion</h3><p>Implementing security policies is vital to building good security practices into the foundations of a growing business. Implementing them early shows your staff and customers that you care about protecting personal information. It takes far more time and money to implement security policies once the business matures to a level where you have hundreds or even thousands of staff. Additionally, customers are more likely to spend their money with a business that takes care of their information.</p><div><hr></div><p></p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/p/security-policies-for-small-business?utm_source=substack&utm_medium=email&utm_content=share&action=share&quot;,&quot;text&quot;:&quot;Share&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://blog.policywizard.io/p/security-policies-for-small-business?utm_source=substack&utm_medium=email&utm_content=share&action=share"><span>Share</span></a></p><p></p><h3>How can I help?</h3><p>For small businesses, there are three options:</p><p>1.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Book a free <a href="https://www.policywizard.io/15-minute-policy-strategy-call/buy?payment_terms=full">15-minute policy strategy</a> session.</p><p>2.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Book a <a href="https://www.policywizard.io/policy-consultation/buy?payment_terms=full">90-minute consultation</a> to talk your requirements over in depth.</p><p>3.&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Take the <a href="https://www.policywizard.io/security-policy-foundations">Security Policy Foundations</a> course if you want to do it yourself.</p><p>For more information on my services, please visit my <a href="https://www.policywizard.io/services">Services</a> page.</p><p>That&#8217;s it for this week. I hope you&#8217;ve enjoyed learning about security policy implementation in a small but growing business. Let me know what you think in the comments or on LinkedIn. If you liked it, consider sharing it with your peers.</p><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!pav6!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!pav6!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!pav6!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!pav6!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!pav6!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!pav6!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png" width="164" height="164" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:164,&quot;bytes&quot;:146434,&quot;alt&quot;:&quot;Stuart Wedge Profile Picture&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Stuart Wedge Profile Picture" title="Stuart Wedge Profile Picture" srcset="https://substackcdn.com/image/fetch/$s_!pav6!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!pav6!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!pav6!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!pav6!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ce1732a-d2f6-4965-bd8f-e25fce8b9db4_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a><figcaption class="image-caption">Stuart Wedge</figcaption></figure></div><p></p><p></p>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ How to choose a standard?]]></title><description><![CDATA[The Fellowship - Week 9 - This week, we dig into the reasons organisations require security policies and procedures.]]></description><link>https://blog.policywizard.io/p/how-to-choose-a-standard</link><guid isPermaLink="false">https://blog.policywizard.io/p/how-to-choose-a-standard</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 06 Aug 2023 11:01:26 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/fd49942c-9e43-4377-ad5b-a37fe8b98956_840x600.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!EHur!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!EHur!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!EHur!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!EHur!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!EHur!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!EHur!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:7036850,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!EHur!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!EHur!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!EHur!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!EHur!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F95f5f77d-d4ca-4fa6-978f-576f1e0cd519_3600x1800.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3>Welcome to the ninth edition of The Fellowship Newsletter.</h3><p>Last week I wrote about finding inspiration for new content ideas. It was the first newsletter I narrated, and the first time I answered a reader's question. This week I respond to a question asked by <a href="https://www.linkedin.com/in/rowan-troy/">Rowan Troy</a>.</p><h1>How do you know what standards to choose when writing policy?</h1><p>This is a superb question. It allows me to delve into the world of security policy drivers&#8212;the reasons for implementing security policies. Before I dig into the drivers, let&#8217;s focus on the primary and secondary security objectives. This is what we are trying to achieve.</p><h4>The primary objective of the security function</h4><p>To advise the organisation on safeguarding operating conditions to prevent behaviour impacting its ability to create protected value.</p><h4>The secondary objective of the security function</h4><p>To identify and respond to occurrences of unwanted behaviour that were able to avoid the safeguards and implement countermeasures to reduce the impact of possible harm.</p><div><hr></div><p>Neither aliens nor robots are attacking us, not for now, at least. Security is a problem of the behaviour of people. It&#8217;s not solely a problem of people external to the organisation. It can be internal people too. Generally, people want to be good. They want to go to work, do a good job, get paid, and go home. They don&#8217;t want to do something that might jeopardise that.</p><p>However, work is complicated. There are lots of things to think about. Pressures are put on our staff that can make them do things accidentally that cause harm to the organisation. Internal people cause between 70 &amp; 90% of all data loss. We have several drivers (reasons) to stop this from happening.</p><div><hr></div><h3>What are the main drivers for security policies and procedures?</h3><p></p><h4>1. &nbsp;Legal or regulatory obligation</h4><p>Organisations are not permitted to do anything they like without consequences. Like all of us as individual citizens, they are required to follow all laws that apply to them. Those laws can apply to organisations in specific industries or regions. They can be based on their work or the organisation's size (either by the number of employees, customers, or the size of the organisation's revenue).</p><p>In 2018 the EU implemented the General Data Protection Regulation (GDPR). For the first time, the people of Europe have rights over how their personal data is used. The eight rights are:</p><ul><li><p>The right to be informed</p></li><li><p>The right to access</p></li><li><p>The right to rectification</p></li><li><p>The right to erasure</p></li><li><p>The right to restrict processing</p></li><li><p>The right to data portability</p></li><li><p>The right to object</p></li><li><p>Rights concerning automated decision-making and profiling</p></li></ul><p>GDPR obligated countries within the EU to enact a law specific to their jurisdiction that enforces the regulation. In the UK, that law is the Data Protection Act (2018), revised in 2022.</p><p>In addition to the rights of the data subject (individual citizens), <a href="https://www.legislation.gov.uk/ukpga/2018/12/part/3/chapter/2">Chapter 2</a> of the act requires that Data Controllers (organisations collecting data) handle that data by following seven fundamental principles:</p><p>Lawfulness, fairness and transparency</p><ul><li><p>Purpose limitation</p></li><li><p>Data minimisation</p></li><li><p>Accuracy</p></li><li><p>Storage limitation</p></li><li><p>Integrity and confidentiality (security)</p></li><li><p>Accountability</p></li></ul><blockquote><p>&#8220;The sixth data protection principle is that personal data processed for any of the lawful purposes must be so processed in a manner that ensures appropriate security of the personal data, using appropriate technical or organisational measures (and, in this principle, &#8220;appropriate security&#8221; includes protection against unauthorised or unlawful processing and against accidental loss, destruction or damage).&#8221;</p></blockquote><p>Heavy fines for non-compliance with the law have encouraged (forced) organisations to take data security seriously. Governing bodies (the <a href="https://ico.org.uk/">Information Commissioner&#8217;s Office</a> in the UK) hold organisations accountable to the laws. As such, every organisation needs to implement controls to reduce the risk of a data breach. Showing due diligence and taking steps to prevent data breaches can lessen the impact of any fines issued for those breaches. &nbsp;</p><p>To do this, many organisations implement Information Security Management Systems (ISMS) to reduce the risk of a breach. Having an ISMS shows due diligence. One method of implementing an ISMS is to use an industry standard such as ISO 27001 or the National Institute of Science and Technology (NIST) Cybersecurity Framework. Many security frameworks require organisations to implement security policies before being assessed as compliant.</p><p>Other laws in other areas of the world are also helping to enhance the protection of citizens' personal information. In the USA, the Health Information Portability and Accountability Act (HIPAA), the California Consumer Privacy Act (CCPA), and the California Privacy Rights Act (CPRA) implement requirements for organisations to protect personal data from unauthorised disclosure. Slowly but surely, other countries are enforcing laws to protect their citizens. </p><div><hr></div><p>&nbsp;</p><h4>2.&nbsp; Customer requirement</h4><p>A big driver for organisations to implement security policies and procedures is to satisfy the due diligence of customers. Any organisation that is required to secure personal data because of their responsibilities under the laws in paragraph 1 will also require that other businesses in their supply chain are also taking steps to prevent data breaches. Most security frameworks list Third-party Risk Management as a requirement.</p><p>Often these requirements are set by governments. In the UK, the government requires all organisations tendering for government contracts to have a Cyber Essentials (Plus) certification before being considered.</p><p>The method used by most organisations for the Third-party Risk Management process often requires the completion of security questionnaires. These are typically an excel worksheet that has a couple of hundred questions. For each question, the service supplier is required to provide an answer. The customer often requests evidence to support the provided responses.</p><p>That evidence can include screenshots of configurations, copies of certifications (e.g., ISO 27001), attestations (e.g., SOC 2 Type 2), external audit reports, and copies of security policies and procedures.</p><div><hr></div><p></p><h4>3. Consistency of Operational Security Configurations</h4><p>The consistency of security messaging and configuration information is at the heart of the reasoning for security policies. They are the definitive source of truth. When staff are configuring systems, we want them to do that securely and to the requirements set by security management. &nbsp;</p><p>When security policies, procedures, and standards give clear, fact-based instructions, the staff have a consistent set of instructions that they can use to guide their decision-making and work product.</p><p>According to <a href="https://socradar.io/security-misconfigurations-caused-35-of-all-time-cyber-incidents/">SOCRadar</a>, misconfiguration has caused 35% of all Cyber Incidents. Providing staff with clear instructions and rules will inevitably reduce the instances of misconfigured systems.</p><p>Take launching a new virtual server as an example. An organisation might launch multiple thousands of new instances each month. Creating a virtual server, configured (hardened) to reduce vulnerabilities that all staff can use as an image to launch new servers will significantly reduce the effort required by the vulnerability management team. </p><p>This simple change will reduce the time to launch a machine, the number of devices with vulnerabilities, and the number of vulnerabilities and accidental misconfigurations. The cost savings are exponential as well. The operational requirements can be enforced through an administrative disciplinary procedure for staff who violate security policies and procedures.</p><div><hr></div><p></p><h4>4. Continuity of value generation</h4><p>Our objective as a security function is to prevent behaviour that might affect our ability to complete our primary and secondary objectives. That&#8217;s the meat and veg of security. <a href="#_ftn1">[1]</a>Our job is to reduce the opportunity for people (internal or external) to destroy our opportunity to create value, denying us the opportunity to use our tools, devaluing our products or services, and degrading the value we have created. &nbsp;</p><p>To do that effectively, we need to understand what behaviour we are trying to prevent and where to stop it from happening. We need to understand the operating conditions.</p><ul><li><p>What do we have in our environment?</p></li><li><p>What do the things do for our business?</p></li><li><p>What is the nature of the system or process?</p></li><li><p>What is the value that the system or process creates?</p></li><li><p>If Ransomware hit it for 24 hours, what would we lose?</p></li></ul><p>Then we need to create risk scenarios that help us to recognise where our security defences are fragile and where we need to implement safeguards and countermeasures. We are not interested in environmental events like tornados and earthquakes; those are not in our remit as security practitioners. We need to focus on the interaction of people with information systems.</p><p>I have created a generic database of 98 human behaviours that could potentially cause harm to business operations. It is not specific to any business. It allows me to assess if the behaviour is internal or external, malicious or accidental, which assets it could harm, and the security exposures (general vulnerabilities) that could be exploited.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!AXSU!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!AXSU!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png 424w, https://substackcdn.com/image/fetch/$s_!AXSU!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png 848w, https://substackcdn.com/image/fetch/$s_!AXSU!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png 1272w, https://substackcdn.com/image/fetch/$s_!AXSU!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!AXSU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png" width="1456" height="626" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:626,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:411872,&quot;alt&quot;:&quot;A table showing the general layout of the risk scenarios database.&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A table showing the general layout of the risk scenarios database." title="A table showing the general layout of the risk scenarios database." srcset="https://substackcdn.com/image/fetch/$s_!AXSU!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png 424w, https://substackcdn.com/image/fetch/$s_!AXSU!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png 848w, https://substackcdn.com/image/fetch/$s_!AXSU!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png 1272w, https://substackcdn.com/image/fetch/$s_!AXSU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa777aa46-1218-4b96-a9c6-e23f39f185bd_2841x1222.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Risk Scenarios Database</figcaption></figure></div><p>Security exists on a sliding scale. The more functionality an environment has, the less secure it is. Conversely, the more secure an environment, the less functionality it has. This is where we need to ensure that the safeguards and countermeasures we implement do not reduce the environment's functionality to a level that impacts the organisation's ability to create value. It needs to be delicately controlled by security management.</p><p>Using the risk scenarios, we can conduct a gap analysis on the security policy framework to check which risks are not covered by a safeguard. If we identify any gaps, policy statements that address the areas of concern can be drafted and implemented within existing policies, or where required, a new policy can be added.</p><div class="pullquote"><p><em><strong>Security policies are the root of all control.</strong></em></p></div><p>Security policies are the root of all control. It&#8217;s how we implement and communicate the security requirements to everyone in the business and ensure that the required functionality is not impacted by the rules we implement. Our security policies address our security risks and help us to implement our security controls. Our security controls allow us to mitigate security risks. It&#8217;s a feedback loop. Changing the risks will require changing the policies and controls.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!WPGu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!WPGu!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png 424w, https://substackcdn.com/image/fetch/$s_!WPGu!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png 848w, https://substackcdn.com/image/fetch/$s_!WPGu!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png 1272w, https://substackcdn.com/image/fetch/$s_!WPGu!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!WPGu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png" width="464" height="293.1868131868132" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:920,&quot;width&quot;:1456,&quot;resizeWidth&quot;:464,&quot;bytes&quot;:32553,&quot;alt&quot;:&quot;Policy, Risk, and Controls feedback loop&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Policy, Risk, and Controls feedback loop" title="Policy, Risk, and Controls feedback loop" srcset="https://substackcdn.com/image/fetch/$s_!WPGu!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png 424w, https://substackcdn.com/image/fetch/$s_!WPGu!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png 848w, https://substackcdn.com/image/fetch/$s_!WPGu!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png 1272w, https://substackcdn.com/image/fetch/$s_!WPGu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2d6aaf35-806d-4a60-ace1-98e679601ea3_2130x1346.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Feedback loop</figcaption></figure></div><div><hr></div><h4>In conclusion</h4><p><strong>Rowan asked</strong>: </p><p>How do you know what standards to choose when writing policy?</p><p><strong>Answer</strong>: </p><p>Security policies are created for several reasons. If you build for compliance (choosing a standard), you will leave potential areas of concern undiscovered. If we build for security, we get compliance for free. You should focus your security policies on the behaviours you try to prevent. Don&#8217;t write policies because a security framework requires it or an auditor says it&#8217;s needed. Address the security concerns applicable to the organisation, don&#8217;t implement a generic set of policies to meet compliance.</p><div><hr></div><p></p><h4>Learn with me</h4><p>If you&#8217;re ready, there are three ways that I can help you:</p><ol><li><p>Take the <a href="https://www.policywizard.io/wizard-school">security policy foundations course</a>.</p></li></ol><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!iU0h!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!iU0h!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!iU0h!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!iU0h!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!iU0h!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!iU0h!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png" width="456" height="256.5" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/cd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:456,&quot;bytes&quot;:469620,&quot;alt&quot;:&quot;How to write Information Security Policy&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="How to write Information Security Policy" title="How to write Information Security Policy" srcset="https://substackcdn.com/image/fetch/$s_!iU0h!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!iU0h!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!iU0h!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!iU0h!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcd86ca1d-3de6-4b41-a829-fc420209f477_1920x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><ol start="2"><li><p>Book a <a href="https://www.policywizard.io/1-hour-coaching-session/buy?payment_terms=full">60-minute 1:1 coaching session</a>.</p></li></ol><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!gUAD!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!gUAD!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!gUAD!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!gUAD!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!gUAD!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!gUAD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png" width="456" height="256.5" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:456,&quot;bytes&quot;:407773,&quot;alt&quot;:&quot;Need help? Book a call&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Need help? Book a call" title="Need help? Book a call" srcset="https://substackcdn.com/image/fetch/$s_!gUAD!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!gUAD!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!gUAD!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!gUAD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fee413def-bff0-49c4-93bd-ca178b459337_1920x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><ol start="3"><li><p>Upgrade to a <a href="https://blog.policywizard.io/subscribe?utm_source=menu&amp;simple=true&amp;next=https%3A%2F%2Fblog.policywizard.io%2F">premium subscription</a>.</p></li></ol><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://blog.policywizard.io/subscribe?"><span>Subscribe now</span></a></p><p>That&#8217;s it for this week. I hope you&#8217;ve enjoyed learning about the drivers for security policies and procedures. Let me know what you think in the comments or on LinkedIn. If you liked it, consider sharing it with your peers.</p><h4>Client testimonials</h4><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!AGIt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!AGIt!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png 424w, https://substackcdn.com/image/fetch/$s_!AGIt!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png 848w, https://substackcdn.com/image/fetch/$s_!AGIt!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png 1272w, https://substackcdn.com/image/fetch/$s_!AGIt!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!AGIt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png" width="1456" height="636" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:636,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:680817,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!AGIt!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png 424w, https://substackcdn.com/image/fetch/$s_!AGIt!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png 848w, https://substackcdn.com/image/fetch/$s_!AGIt!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png 1272w, https://substackcdn.com/image/fetch/$s_!AGIt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbec40ba-a6fa-41d7-9342-19d180b2a2ff_1471x643.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!cRw3!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!cRw3!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!cRw3!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!cRw3!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!cRw3!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!cRw3!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png" width="164" height="164" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/617bfcad-74a1-4dab-927f-067e9714f983_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:164,&quot;bytes&quot;:146434,&quot;alt&quot;:&quot;Stuart Wedge profile photo&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Stuart Wedge profile photo" title="Stuart Wedge profile photo" srcset="https://substackcdn.com/image/fetch/$s_!cRw3!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!cRw3!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!cRw3!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!cRw3!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F617bfcad-74a1-4dab-927f-067e9714f983_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p></p><p><a href="#_ftnref1">[1]</a> Dr Richard Diston &#8211; <a href="https://www.youtube.com/watch?v=xgc_BNCg4Cs">Why the CIA Triad must die</a></p>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ How to conjure up new content ideas?]]></title><description><![CDATA[The Fellowship - Week 8]]></description><link>https://blog.policywizard.io/p/how-to-conjure-up-new-content-ideas</link><guid isPermaLink="false">https://blog.policywizard.io/p/how-to-conjure-up-new-content-ideas</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 30 Jul 2023 11:01:18 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/8fc3fdba-9eec-4af1-a35d-283b8776bf7a_420x300.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!xPa4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!xPa4!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!xPa4!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!xPa4!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!xPa4!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!xPa4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:6106733,&quot;alt&quot;:&quot;Cauldron over a fire&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Cauldron over a fire" title="Cauldron over a fire" srcset="https://substackcdn.com/image/fetch/$s_!xPa4!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!xPa4!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!xPa4!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!xPa4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb5473d17-c193-4b51-80ab-7a626735a665_3600x1800.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a><figcaption class="image-caption">Conjuring up some new content</figcaption></figure></div><p>Welcome to the eighth edition of The Fellowship Newsletter.</p><p>Last week I wrote about changing the hosting platform for the Newsletter to <span class="mention-wrap" data-attrs="{&quot;name&quot;:&quot;Substack&quot;,&quot;id&quot;:81309935,&quot;type&quot;:&quot;user&quot;,&quot;url&quot;:null,&quot;photo_url&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/48c897d0-b43a-44af-a63f-fa6159c1cf5b_1000x1000.png&quot;,&quot;uuid&quot;:&quot;4e47c523-a3fb-4194-86a4-8d175612625a&quot;}" data-component-name="MentionToDOM"></span>. The transition is now complete. It has been a seamless move and super easy. If you received this as an email, you are now a free subscriber to The Fellowship on SubStack. If you don&#8217;t want to be here, please unsubscribe. No hard feelings. I do hope that you stay though as I have big plans, and I think you&#8217;ll find value in being a subscriber&#128200;.</p><p>This week, I answer a reader&#8217;s question. If you&#8217;d like to submit a question or topic for a future edition of the newsletter, please email <a href="mailto:info@policywizard.io">info@policywizard.io</a> or contact me on <a href="https://www.linkedin.com/in/stuart-w-policywizard/">LinkedIn</a>. The question this week was asked by <a href="https://www.linkedin.com/in/lupe-peterman/">Lupe Peterman</a>.</p><div><hr></div><h1>How to conjure up new content ideas?</h1><p>I love this question! It&#8217;s a subject that has real depth to it. Conjuring up new ideas sounds a little bit magical. Sometimes it does feel that way, especially when I write something that goes on to get over 40,000 views in a couple of days. </p><p>In truth, sometimes I have a spur-of-the-moment idea that I put out on LinkedIn a couple of minutes later; other times, I need more thought. Here are a few important things to consider before you put out new content:</p><div><hr></div><h4>Why?</h4><p>Why are you wanting to put out new content? It&#8217;s the most important thing to consider. What is your reasoning? </p><ul><li><p>Are you just posting for fun?</p></li><li><p>Are you trying to get a new job?</p></li><li><p>Are you trying to get promoted?</p></li><li><p>Are you trying to get new followers?</p></li><li><p>Are you trying to get new business leads?</p></li><li><p>Or are you trying to become a Subject Matter Expert (SME)? </p></li></ul><p>The reason you choose will dictate the subject area that you need to focus on. There is no point in posting about building your personal brand if you are trying to get a new job as a GRC Analyst.</p><p>If you&#8217;re trying to get a new job, you need to be posting content about the skills and knowledge that make you a suitable candidate for the job you&#8217;re applying for. If you want to be a GRC Analyst, post content related to the job you want and the skills and knowledge that make you perfect for the role. </p><p>You need to focus the content to address people that need those skills. You need to be showing your work. Talk about your experiences, the training you have done, and the transferrable skills that make you amazing. You can teach the skills to others. It&#8217;s a great way to cement knowledge and show that you know it.</p><div><hr></div><h4>Who?</h4><p>This section is relevant for all new content, but I will use <strong>business leads</strong> as an example. If you&#8217;re trying to get leads, you need to be talking to the people who are going to be your potential clients. </p><p>If you&#8217;re a security consultant trying to get new clients for your ISO 27001 Implementation service, why would you post content about &#8220;Breaking into Cyber&#8221;? Yes, helping people get into the industry will get you more followers. It will get more eyes on your posts, but it&#8217;s not speaking to your perfect client. Most of the people reading your posts will not be buying from you. One new customer is better than 100 followers who react with a thumbs-up emoji &#128077;.</p><div><hr></div><h4>Platform</h4><p>The platform will also dictate the content you post. Certain types of posts work better in different places. Twitter is great for short snippets. Instagram is the place for Images. You might post some light-hearted things on Facebook, but other posts on LinkedIn as it is the place for occupation-related content.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!p91I!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!p91I!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!p91I!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!p91I!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!p91I!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!p91I!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png" width="664" height="332" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/221f61ef-d666-4de6-aeee-5d7d65373271_3600x1800.png&quot;,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:664,&quot;bytes&quot;:607043,&quot;alt&quot;:&quot;Graphic showing an email being sent to lots of people.&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Graphic showing an email being sent to lots of people." title="Graphic showing an email being sent to lots of people." srcset="https://substackcdn.com/image/fetch/$s_!p91I!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!p91I!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!p91I!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!p91I!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2c8898d1-4543-46f1-acba-6b0f576172a9_3600x1800.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>You should try to build an audience on multiple platforms, but make sure you know why you&#8217;re posting on that specific platform. Remember, your audience on those platforms is rented. If you want to build something you own, you need a method of speaking to your followers that does not depend on social media. You need a website, a blog, and a mailing list.</p><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe now&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://blog.policywizard.io/subscribe?"><span>Subscribe now</span></a></p><div><hr></div><h2>Inspiration</h2><blockquote><p>inspiration - noun</p><p>someone or something that gives you ideas for doing something</p><p>a sudden good idea</p><p><a href="https://dictionary.cambridge.org/dictionary/english/inspiration">Cambridge Dictionary</a></p></blockquote><p>The definition of inspiration tells us that ideas can come from anywhere. Someone, something, or a sudden good idea. When you want to create content, for whatever reason, you&#8217;ll need good ideas. </p><p>You&#8217;ll need topics you are either proficient in or can quickly gain proficiency by researching and discussing what you&#8217;ve discovered. Here are some places where I find inspiration for content:</p><div><hr></div><h4>Comments</h4><p>Inspiration can come at any time. You could be procrastinating on LinkedIn, reading about what other people find interesting, and something you&#8217;ve commented on sparks an idea. </p><p>I have often turned my comments on other people&#8217;s posts into full posts on my profile by digging into the subject more or explaining why I think the way I do. </p><div><hr></div><h4>Reading</h4><p>I thought about reading books here as the second place for inspiration, but it&#8217;s much more than that for me. It&#8217;s not just in books that I find inspiration; it&#8217;s reading anything. </p><p>If I&#8217;m enjoying a read, it can be on any subject or medium, but often it will spark an idea. Something that I can relate to my experience and can see how my thoughts on that idea could help someone else. </p><div><hr></div><h4>Listening</h4><p>Let&#8217;s put anything we listen to in this category. Radio, music, podcasts, and audiobooks. It could be anything&#8230; You&#8217;ll find that listening to people talk will spark ideas in subjects where you have experience. </p><p>Take, for example, edition four of The Fellowship. It was the one where I wrote about my chosen values. I was inspired to do that after listening to a podcast about values in security. Reading that edition inspired a couple of readers to actually buy my course. I wasn&#8217;t talking about my course, but it inspired them to take action. </p><div><hr></div><h4>Watching</h4><p>I watch a fair amount of video content online. I am relentless. When I want to do something, I will learn how to do it, iterate on my first attempts, and make things better. </p><p>I watch YouTube videos every day. I take courses as often as possible. I invest in my personal development on top of any investment made by my company. I want to be a world-class security risk practitioner, business owner, and creator. </p><p>When I learn new things, I am filled with new ideas for content. I can take what I&#8217;ve learned and help others learn the key things from that new knowledge. </p><div><hr></div><h4>Questions</h4><p>Ask questions. LinkedIn polls are great for this. Find out what other people think and why, and then you can use that as research for your own content. An absolute master at this is <a href="https://www.linkedin.com/in/dr-richard-diston-32a8021b/">Dr Richard Diston</a>. </p><p>He asks a question every Monday and then provides the answer to the question in his free email on a Friday. He&#8217;s a person who is not particularly well-liked because of the persona he plays online, but his content and courses are excellent.</p><div><hr></div><h4>Ask your readers what they want to read?</h4><p>I&#8217;m a lover of community and interactions. I want to help others. I don&#8217;t want to write in a vacuum. Why would someone want to read my thoughts on subjects that don&#8217;t interest them? </p><p>They wouldn&#8217;t&#8230; To keep people interested; I need to speak to them directly. I need to give them content that they want to read. What better way to find that out than to ask them what that is? </p><p>That is why in every newsletter in the future, I plan on asking people what they would like to read. My premium subscribers will have priority, and the ones suggested by them will only be available to those who have upgraded.</p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!wn1J!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!wn1J!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!wn1J!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!wn1J!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!wn1J!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!wn1J!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png" width="1456" height="728" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png&quot;,&quot;srcNoWatermark&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/62ec27ab-1973-461b-8bb4-d3d8e3ee749d_3600x1800.png&quot;,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:728,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:711464,&quot;alt&quot;:&quot;Graphic showing two people creating content&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Graphic showing two people creating content" title="Graphic showing two people creating content" srcset="https://substackcdn.com/image/fetch/$s_!wn1J!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png 424w, https://substackcdn.com/image/fetch/$s_!wn1J!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png 848w, https://substackcdn.com/image/fetch/$s_!wn1J!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png 1272w, https://substackcdn.com/image/fetch/$s_!wn1J!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff2b899f0-32bc-455d-ac98-12bca0bf3c03_3600x1800.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h2>Content Strategy</h2><p>If writing content is something that you plan on doing, you should build a content strategy. It&#8217;s how you take an idea, stoke the fire, stir the cauldron, and execute your content idea.</p><p>A content strategy does not have to be set in stone. It can be fluid like water. It can be moulded like putty. There are no hard and fast rules. Just make it your own. Show people who you are, what you do, and how engaging with you can help them achieve their goals.</p><p>Always remember that you are creating content to help others. You&#8217;re adding value to society. Don&#8217;t just write what you want; think of your audience.</p><div><hr></div><h2>Plagiarism</h2><p>While we can be inspired by other people's content, following our chosen personal values is imperative. We want people to trust us. We want to be seen as honest. Take what you need and create something new from it. Do not plagiarise other people. </p><p>If you&#8217;re using someone else&#8217;s ideas, give credit to them. If you&#8217;re using their words, quote them. One of the fastest ways to ruin your credibility and professional relationships is to take someone else&#8217;s work and pretend that it&#8217;s your own. This also goes against my values:</p><ul><li><p>To be creative</p></li><li><p>To be ethical</p></li><li><p>To self-actualise </p></li></ul><p>Plagiarism is rife within the security industry, among others. We even have certification bodies plagiarising industry practitioners&#8217; work. If you see it, call it out. I implore you, don&#8217;t do it yourself. It&#8217;s easier to give credit to the original creator than to fight an unwinnable battle with cancel culture.</p><div><hr></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share&quot;,&quot;text&quot;:&quot;Share The Fellowship&quot;,&quot;action&quot;:null,&quot;class&quot;:null}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://blog.policywizard.io/?utm_source=substack&amp;utm_medium=email&amp;utm_content=share&amp;action=share"><span>Share The Fellowship</span></a></p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!7FBy!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!7FBy!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!7FBy!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!7FBy!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!7FBy!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!7FBy!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png" width="106" height="106" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:106,&quot;bytes&quot;:146434,&quot;alt&quot;:&quot;Profile picture of Stuart Wedge&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Profile picture of Stuart Wedge" title="Profile picture of Stuart Wedge" srcset="https://substackcdn.com/image/fetch/$s_!7FBy!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!7FBy!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!7FBy!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!7FBy!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F89a751fa-fb59-4249-ac0b-ce7466d4a759_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><h2>Updates</h2><h4>CyberGirls</h4><p>This week has been amazing! On Wednesday, I onboarded 60 young ladies from the &#8220;CyberGirls&#8221;, an initiative created by <a href="https://www.linkedin.com/company/cybersafefoundation/?lipi=urn%3Ali%3Apage%3Ad_flagship3_detail_base%3BDlmwETcxR7ioVd7rotR%2F4Q%3D%3D">Cybersafe Foundation</a>, an organisation helping to train hundreds of young ladies in Africa. All 60 will now learn the foundational knowledge required to develop security policies.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!6Dqw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!6Dqw!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg 424w, https://substackcdn.com/image/fetch/$s_!6Dqw!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg 848w, https://substackcdn.com/image/fetch/$s_!6Dqw!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!6Dqw!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!6Dqw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg" width="326" height="326" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:828,&quot;width&quot;:828,&quot;resizeWidth&quot;:326,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;https://d31ezp3r8jwmks.cloudfront.net/ax2ejqm36g5ian3teiqygf3hoirt&quot;,&quot;title&quot;:&quot;https://d31ezp3r8jwmks.cloudfront.net/ax2ejqm36g5ian3teiqygf3hoirt&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="https://d31ezp3r8jwmks.cloudfront.net/ax2ejqm36g5ian3teiqygf3hoirt" title="https://d31ezp3r8jwmks.cloudfront.net/ax2ejqm36g5ian3teiqygf3hoirt" srcset="https://substackcdn.com/image/fetch/$s_!6Dqw!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg 424w, https://substackcdn.com/image/fetch/$s_!6Dqw!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg 848w, https://substackcdn.com/image/fetch/$s_!6Dqw!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!6Dqw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F179d3c06-d142-45ef-84be-9aeb7abe7caf_828x828.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.linkedin.com/in/ACoAAAQKqJkBtfx_wbkljzeLW0EVV4DqxuLB3Jk?lipi=urn%3Ali%3Apage%3Ad_flagship3_detail_base%3BDlmwETcxR7ioVd7rotR%2F4Q%3D%3D">Confidence Staveley</a>, the organisation's founder, set it up to help women achieve their dreams of a career in Tech, particularly in Cyber Security. I&#8217;m very proud I can help them achieve that dream, even if it is just a tiny amount.</p><blockquote><h4><strong>To be benevolent: </strong>The quality of being kind and helpful.</h4><p>Earth is a tough place to live. We are all trying to do our best to survive and live in comfort. I don&#8217;t know your struggles. I don&#8217;t want to make your day harder because I have had a tough one. If I can help you, I often will if doing so does not risk my life or values. This value drives my decision to partner with <a href="https://www.policywizard.io/partners?utm_source=podia&amp;utm_medium=broadcast&amp;utm_campaign=1531204">@CyBlack, @Cybersafe Foundation, and @TechVets</a>. &#8220;A rising tide lifts all ships&#8221;.</p></blockquote><p>If you&#8217;d like to learn more about my chosen values and how they influence me, you can do that in the <a href="https://blog.policywizard.io/p/the-fellowship-newsletter-19c">4th Edition</a> of &#8220;The Fellowship.&#8221;</p><div><hr></div><h4>Premium</h4><p>The first person has committed to a Premium subscription this week. I spoke with them after they signed up, and they said&#8230;</p><div class="pullquote"><p>&#8220;Everyone has to start somewhere, my friend - I hope I'm the first of many as you begin to put more content out there.&#8221; </p></div><p>If you&#8217;d like to support my efforts with The Fellowship, please consider upgrading to a premium membership.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ The Fellowship]]></title><description><![CDATA[Week 7 - Platform Change & New Options]]></description><link>https://blog.policywizard.io/p/the-fellowship-806</link><guid isPermaLink="false">https://blog.policywizard.io/p/the-fellowship-806</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sun, 23 Jul 2023 13:17:51 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/3fef8e0f-5e3a-410d-abe1-7f5781a53e6a_420x300.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Sa6P!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Sa6P!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!Sa6P!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!Sa6P!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!Sa6P!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Sa6P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png" width="1100" height="220" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:220,&quot;width&quot;:1100,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:234552,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Sa6P!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!Sa6P!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!Sa6P!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!Sa6P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78e17be0-5da8-436b-8aed-8b62ff5cdc9f_1100x220.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><h1>Welcome to the seventh edition of The Fellowship Newsletter.</h1><p>Last week I wrote about my journey as a writer. This week is a little different...</p><p>I am super excited to tell you that I am moving the Newsletter to SubStack. It's a platform dedicated to Writers, Blogs, Newsletters, and Podcasts. <strong><a href="http://links.podia.com/f/a/RrlZJ23K4M83AGJuTNvH2Q~~/AAGitQA~/RgRmn404P0RXaHR0cHM6Ly9ibG9nLnBvbGljeXdpemFyZC5pbz91dG1fc291cmNlPXBvZGlhJnV0bV9tZWRpdW09YnJvYWRjYXN0JnV0bV9jYW1wYWlnbj0xNTU0NjA5VwNzcGNCCmS2OAi9ZOyUYYBSFnN0dWFydEB0ZWNoc2Vjc2NvdC5jb21YBAAAwm4~">The Fellowship</a></strong> is already hosted there and is fully up and running.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!d_Rp!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!d_Rp!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png 424w, https://substackcdn.com/image/fetch/$s_!d_Rp!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png 848w, https://substackcdn.com/image/fetch/$s_!d_Rp!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png 1272w, https://substackcdn.com/image/fetch/$s_!d_Rp!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!d_Rp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png" width="432" height="453.4332965821389" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:952,&quot;width&quot;:907,&quot;resizeWidth&quot;:432,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Fellowship signup page&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Fellowship signup page" title="Fellowship signup page" srcset="https://substackcdn.com/image/fetch/$s_!d_Rp!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png 424w, https://substackcdn.com/image/fetch/$s_!d_Rp!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png 848w, https://substackcdn.com/image/fetch/$s_!d_Rp!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png 1272w, https://substackcdn.com/image/fetch/$s_!d_Rp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1b4c05ef-963e-4a56-8afe-c8497c679f99_907x952.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The SubStack platform is far superior to Podia for blogging and newsletters, and it was easy to see the value it would add to the user experience and the professional look and feel of the blog site.</p><p>I have posted the first six editions of <strong><a href="http://links.podia.com/f/a/RrlZJ23K4M83AGJuTNvH2Q~~/AAGitQA~/RgRmn404P0RXaHR0cHM6Ly9ibG9nLnBvbGljeXdpemFyZC5pbz91dG1fc291cmNlPXBvZGlhJnV0bV9tZWRpdW09YnJvYWRjYXN0JnV0bV9jYW1wYWlnbj0xNTU0NjA5VwNzcGNCCmS2OAi9ZOyUYYBSFnN0dWFydEB0ZWNoc2Vjc2NvdC5jb21YBAAAwm4~">The Fellowship</a></strong> on the blog, and they are available for you to use as a knowledge base.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!5cLt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!5cLt!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png 424w, https://substackcdn.com/image/fetch/$s_!5cLt!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png 848w, https://substackcdn.com/image/fetch/$s_!5cLt!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png 1272w, https://substackcdn.com/image/fetch/$s_!5cLt!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!5cLt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png" width="1456" height="1076" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/abf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1076,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;PolicyWizard Blog Homepage&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="PolicyWizard Blog Homepage" title="PolicyWizard Blog Homepage" srcset="https://substackcdn.com/image/fetch/$s_!5cLt!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png 424w, https://substackcdn.com/image/fetch/$s_!5cLt!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png 848w, https://substackcdn.com/image/fetch/$s_!5cLt!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png 1272w, https://substackcdn.com/image/fetch/$s_!5cLt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabf786f5-3535-4cc1-aee1-6eb2ddbeacf9_1693x1251.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Moving to SubStack allows me to offer subscriptions to the newsletter. This is an enormous change. Do not worry; I will not be moving to a subscription-only model. If you do not want to pay, you'll still receive great content in your inbox; it might not be so often.</p><p>The ability to offer exclusive premium content incentivises me to produce content that is full of value for you. It allows me to invest in more training. It allows me to focus on the important work. It will result in some superb knowledge transfer.</p><p>Alongside the weekly blogs, there will be exclusive live webinars, pre-recorded videos, and audio recordings of some of the blogs.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!SVP7!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!SVP7!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png 424w, https://substackcdn.com/image/fetch/$s_!SVP7!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png 848w, https://substackcdn.com/image/fetch/$s_!SVP7!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png 1272w, https://substackcdn.com/image/fetch/$s_!SVP7!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!SVP7!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png" width="1456" height="974" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:974,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!SVP7!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png 424w, https://substackcdn.com/image/fetch/$s_!SVP7!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png 848w, https://substackcdn.com/image/fetch/$s_!SVP7!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png 1272w, https://substackcdn.com/image/fetch/$s_!SVP7!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2eac0938-3a1f-4bc4-8f87-78ac68e7e40f_1585x1060.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3>Benefits &amp; Features</h3><h4>Benefits</h4><p>The following benefits are available based on the subscription type:</p><ul><li><p><strong>Free Tier</strong></p><ul><li><p>Access to <strong>public</strong> posts</p></li><li><p><strong>Preview</strong> of Premium posts</p></li><li><p>Access to the public archive</p></li><li><p>10% discount on the Security Policy Masterclass</p></li></ul></li></ul><p></p><ul><li><p><strong>Monthly Tier - &#163;9/month</strong></p><ul><li><p><strong>7-day free trial</strong></p></li><li><p>Premium subscriber-only posts</p><ul><li><p>Blogs</p></li><li><p>Free access to paid webinars</p></li><li><p>Exclusive webinars</p></li><li><p>Exclusive Video content</p></li></ul></li><li><p>Access to the <strong>full archive</strong> of all posts</p></li><li><p>Post comments and <strong>join</strong> <strong>the community</strong></p></li><li><p>10% Discount on all courses</p></li></ul></li></ul><p></p><ul><li><p><strong>Annual Tier - &#163;90/year</strong></p><ul><li><p><strong>17% Discount on the Monthly cost of a Premium subscription</strong></p></li><li><p>Premium subscriber-only posts</p><ul><li><p>Blogs</p></li><li><p>Free access to paid webinars</p></li><li><p>Exclusive webinars</p></li><li><p>Exclusive Video content</p></li></ul></li><li><p>Access to the full archive of all posts</p></li><li><p>Post comments and join the community</p></li><li><p>10% Discount on all courses</p></li></ul></li></ul><p></p><ul><li><p><strong>The "I can expense it" Tier</strong> - &#163;240 (suggested)</p><p>This tier is for founding members who would like to support The Fellowship in the early stages. It's called the "I can expense it" Tier to encourage those who might have a budget from their company for Personal Development to signup. For this tier, you'll receive:</p><ul><li><p><strong>30-minute coaching session with Stuart</strong></p></li><li><p>Premium subscriber-only posts</p><ul><li><p>Blogs</p></li><li><p>Free access to paid webinars</p></li><li><p>Exclusive webinars</p></li><li><p>Exclusive Video content</p></li></ul></li><li><p>Access to the full archive of all posts</p></li><li><p>Post comments and join the community</p></li><li><p>10% Discount on all courses</p></li></ul></li></ul><p></p><h4>Features</h4><ul><li><p>Better editing</p></li><li><p>Better user experience</p></li><li><p>Blog site to be used as a Knowledge Base</p></li><li><p>Cleaner, more professional look to the blog</p></li><li><p>Easier administration</p></li><li><p>New posts are sent to Email and the Blog simultaneously</p></li><li><p>Podcast feature</p></li><li><p>Video feature</p></li></ul><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!tB-v!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!tB-v!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png 424w, https://substackcdn.com/image/fetch/$s_!tB-v!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png 848w, https://substackcdn.com/image/fetch/$s_!tB-v!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png 1272w, https://substackcdn.com/image/fetch/$s_!tB-v!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!tB-v!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png" width="420" height="300" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/acc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:300,&quot;width&quot;:420,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Change Management diagram&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Change Management diagram" title="Change Management diagram" srcset="https://substackcdn.com/image/fetch/$s_!tB-v!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png 424w, https://substackcdn.com/image/fetch/$s_!tB-v!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png 848w, https://substackcdn.com/image/fetch/$s_!tB-v!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png 1272w, https://substackcdn.com/image/fetch/$s_!tB-v!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Facc6bdbf-5d19-4810-9c24-b10e7c28f88e_420x300.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3>Change Management</h3><h4>Why am I making this change?</h4><p>The platform I currently use for the Learning Management System initially offered email services included in the hosting price. They have changed the pricing model, and I felt that moving <strong><a href="http://links.podia.com/f/a/RrlZJ23K4M83AGJuTNvH2Q~~/AAGitQA~/RgRmn404P0RXaHR0cHM6Ly9ibG9nLnBvbGljeXdpemFyZC5pbz91dG1fc291cmNlPXBvZGlhJnV0bV9tZWRpdW09YnJvYWRjYXN0JnV0bV9jYW1wYWlnbj0xNTU0NjA5VwNzcGNCCmS2OAi9ZOyUYYBSFnN0dWFydEB0ZWNoc2Vjc2NvdC5jb21YBAAAwm4~">The Fellowship</a></strong> to a platform designed specifically for newsletters would be a quality upgrade.</p><h4><strong>What does this change mean for you?</strong></h4><p>On <strong>Saturday, the 29th of Jul, 2023</strong>, I will move the subscriber database to SubStack. Everyone who is a subscriber on the moving date will be loaded into the new platform as a free subscriber, and you will receive the 8th Edition of the Newsletter the next day. You may receive a welcome email on Saturday.</p><p>Please take a few minutes to read the <strong><a href="http://links.podia.com/f/a/gKCi0Z6NH0iCNyHePS__wg~~/AAGitQA~/RgRmn404P0RXaHR0cHM6Ly9zdWJzdGFjay5jb20vcHJpdmFjeT91dG1fc291cmNlPXBvZGlhJnV0bV9tZWRpdW09YnJvYWRjYXN0JnV0bV9jYW1wYWlnbj0xNTU0NjA5VwNzcGNCCmS2OAi9ZOyUYYBSFnN0dWFydEB0ZWNoc2Vjc2NvdC5jb21YBAAAwm4~">SubStack Privacy Policy</a> </strong>and the updated <strong><a href="http://links.podia.com/f/a/asRS5Q3rqDlw-K4fzvCuog~~/AAGitQA~/RgRmn404P0ReaHR0cHM6Ly93d3cucG9saWN5d2l6YXJkLmlvL3ByaXZhY3k_dXRtX3NvdXJjZT1wb2RpYSZ1dG1fbWVkaXVtPWJyb2FkY2FzdCZ1dG1fY2FtcGFpZ249MTU1NDYwOVcDc3BjQgpktjgIvWTslGGAUhZzdHVhcnRAdGVjaHNlY3Njb3QuY29tWAQAAMJu">PolicyWizard Privacy Notice</a></strong>.</p><p>If you do not wish for your personal information to be transferred to the new platform, please take this opportunity to unsubscribe. You will find the link to do that at the bottom of the page. There will be no hard feelings. I do hope you stick around.</p><h3>Next Email</h3><p>The title of the following email is <strong>How to conjure up new content ideas</strong>. As requested by @Lupe Peterman.</p><p>If you'd like to suggest a future blog subject, please email <strong><a href="mailto:info@policywizard.io">info@policywizard.io</a></strong> or contact me on LinkedIn.</p><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!uVne!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!uVne!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!uVne!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!uVne!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!uVne!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!uVne!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png" width="156" height="156" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:156,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Stuart Headshot&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Stuart Headshot" title="Stuart Headshot" srcset="https://substackcdn.com/image/fetch/$s_!uVne!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!uVne!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!uVne!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!uVne!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbd6a8342-c96a-4e65-bbd6-d3e1bb2b6d20_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://blog.policywizard.io/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">The Fellowship is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ The Fellowship Newsletter]]></title><description><![CDATA[Week 6 - Becoming a Writer]]></description><link>https://blog.policywizard.io/p/the-fellowship-newsletter-0b6</link><guid isPermaLink="false">https://blog.policywizard.io/p/the-fellowship-newsletter-0b6</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sat, 22 Jul 2023 16:13:42 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/7639dbf3-5720-4647-ac25-6aa585fce4e0_420x300.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!qG3p!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!qG3p!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!qG3p!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!qG3p!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!qG3p!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!qG3p!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png" width="1100" height="220" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:220,&quot;width&quot;:1100,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:234552,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!qG3p!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!qG3p!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!qG3p!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!qG3p!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff074066e-46d5-4f7e-ad61-fb946c29814a_1100x220.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p>Hello friend,</p><p>Welcome to the sixth edition of The Fellowship Newsletter.</p><p>Last week we conducted a skills audit. This week, I was going to write about the application process and how to write a good CV. I feel like this has been flogged to death. I would only be adding noise.</p><p>If you&#8217;d like information on that stuff, I recommend the CV Template by Stephen Semmelroth. He&#8217;s an awesome guy who owned a Cyber recruitment company before selling it. You can read some of my tips and find the link to his template on my <a href="https://www.techsecscot.com/CyberJobTips/Cyber-Resume-Advice?utm_source=podia&amp;utm_medium=broadcast&amp;utm_campaign=1546611">TechSecScot website</a>.</p><p>This week I made a huge decision. I am going to write a book.</p><h3><strong>Becoming a writer</strong></h3><p>When I was in school, I was terrible at writing. One summer, when I was ten, my father made it his mission to teach me how to write. My dad would go to his desk daily and remove an A4 writing pad. At the top of the page, he would write a title and the first sentence. It was my task to conjure up a story from my imagination.</p><p>I would spend two hours in the morning writing. It did not matter what it was that I was writing. All that mattered was that I was putting pencil to paper, forming sentences, building characters, and telling tales of catching colossal fish, winning at rugby, and climbing enormous mountains. You know, the weird stuff that a 10-year-old boy might write about.</p><p>I wouldn&#8217;t say I liked the task. I would often sit at the kitchen table, being battered by the sun through the large sliding glass door into the garden. My friends were on their bikes, playing football or catching minnows down the local stream. I was missing out on my time to play. This torture would persist for seven weeks.</p><p>The improvement in my writing was incredible. My teacher called my parents to the school to talk to them about my magical improvement over the summer holidays. I had hated every minute of my time at the kitchen table that summer, even though it had proved fruitful. &nbsp;</p><h4><strong>British Army</strong></h4><p>When I was in the army, one of my jobs was to do the administration for the unit. One of the requirements was to write the daily and weekly orders for the unit commander. Essentially, I would write a daily policy that the team of over one hundred and fifty soldiers would read. It was one of the methods that the army used to document what orders had been given.</p><p>This is where I would cut my teeth on writing policies to influence behaviour. I worked out recently that in the seven years, I held that position, I would have written nearly one thousand policies for the army.<strong>&nbsp;</strong></p><h4><strong>A year under the Golden Arches</strong></h4><p>Most of you know I was a Door Supervisor. I worked for a company contracted to provide bouncers at various venues throughout Edinburgh City Centre. I worked at Market Stalls guarding them from the drunks in the small hours. I worked at public houses and nightclubs. I also worked at fast-food &#8220;restaurants&#8221;.</p><p>As you might be able to imagine, the wee small hours provide much violence, debauchery, impropriety, and entertainment. At 0300 hours, six nightclubs would vacate within a quarter mile of the venue. At that time of the morning, and with a stomach full of alcohol, the patrons of the nightclubs would make their way en-mass to &#8220;get some nuggets&#8221;. This would lead to over four hundred drunks turning up at our venue, all trying to get some food.</p><p>This type of work was stressful. Writing short stories about my shifts on the door, &#8220;under the golden arches,&#8221; was a method I used to relieve the stress of the work. I posted them to my friends on Facebook, and they became popular.</p><p>One of my friends (Sam) was a lecturer at a famous Scottish university. Without me knowing, he scraped these stories from my profile and turned them into a manuscript and had it published. He gifted the book to me on my birthday.</p><p>This gift was one of the most thoughtful things another human has done for me. I&#8217;m not ashamed to admit it made me tear up a little. I still have the book on my bookshelf. I will treasure it until the day that I return to the earth.<strong>&nbsp;</strong></p><h4><strong>Security Policy &amp; Awareness</strong></h4><p>For the last two years, I have been on a journey, learning to influence behaviour by writing principle-based policies. I control over fifty documents and improve the writing and effectiveness each time something changes. Each iteration improves the documents and gives clear, positive, respectful messages. I&#8217;m still learning the craft. I think I will be until I retire. I enjoy writing a good policy and have much knowledge and experience to share. That led me to start PolicyWizard.<strong>&nbsp;</strong></p><h4><strong>Masterclass</strong></h4><p>After completing the Security Policy Foundations course, I began working on the content for the Security Policy Masterclass. I sat at the computer late at night, just like I&#8217;m doing now, and compiled sixty-eight pages of content. I was trying to formulate a book to go along with the course. I was going about it wrong. It never quite felt right. I wasn&#8217;t passionate about it. I love the content and teaching, but it didn&#8217;t feel right. I paused that effort. I will return to it soon, but it will be in a different format.&nbsp;</p><h4><strong>My new book</strong></h4><p>I will keep the book a secret as the International Standard Book Number (ISBN) has yet to be confirmed. This book will not be theoretical. It will be story-based, bringing the policy writing discipline to life through words and magic.</p><p>As inspiration, I created the front cover of the book. It was super easy using <a href="https://www.canva.com/?utm_source=podia&amp;utm_medium=broadcast&amp;utm_campaign=1546611">Canva</a>. I was not expecting to make something good. I hoped for something I could look at when I didn&#8217;t feel like sitting at the desk for a few hours. Something to make me want to do the hard work.</p><p>Little did I know I would produce something that could sit proudly on any CISO or Security Consultants desk or bookshelf. I&#8217;m not sharing that cover until everything is confirmed and registered. That day will not be too far in the distance.</p><h2><strong>Coaching Flash Sale</strong></h2><p>Here is a coupon code for <a href="https://www.policywizard.io/1-hour-coaching-session?coupon=FLASHSALE0723&amp;utm_source=podia&amp;utm_medium=broadcast&amp;utm_campaign=1546611">30% off</a> the &#163;97 fee for a 1:1 sixty-minute session with me. A few spaces are available next Saturday, but you can book anytime in the next year if you buy. Click the link, and it will auto-apply the discount for you.</p><p><strong>Here is what Alana had to say about our session:</strong></p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!ViqU!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!ViqU!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png 424w, https://substackcdn.com/image/fetch/$s_!ViqU!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png 848w, https://substackcdn.com/image/fetch/$s_!ViqU!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png 1272w, https://substackcdn.com/image/fetch/$s_!ViqU!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!ViqU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png" width="1291" height="829" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/be808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:829,&quot;width&quot;:1291,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!ViqU!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png 424w, https://substackcdn.com/image/fetch/$s_!ViqU!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png 848w, https://substackcdn.com/image/fetch/$s_!ViqU!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png 1272w, https://substackcdn.com/image/fetch/$s_!ViqU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe808e3a-1d70-497c-9b22-99b7c552fd4f_1291x829.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!BmRp!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!BmRp!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!BmRp!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!BmRp!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!BmRp!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!BmRp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png" width="162" height="162" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:162,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Stuart Headshot&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Stuart Headshot" title="Stuart Headshot" srcset="https://substackcdn.com/image/fetch/$s_!BmRp!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!BmRp!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!BmRp!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!BmRp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9c24eeb4-241e-473e-82af-5a64d9a187be_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ The Fellowship Newsletter]]></title><description><![CDATA[Week 5 - Conducting a Skills Audit]]></description><link>https://blog.policywizard.io/p/the-fellowship-newsletter-7be</link><guid isPermaLink="false">https://blog.policywizard.io/p/the-fellowship-newsletter-7be</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sat, 22 Jul 2023 16:05:51 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/9aa453a3-c69c-408f-9424-d2d9344164d1_420x300.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!SYrC!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!SYrC!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!SYrC!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!SYrC!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!SYrC!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!SYrC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png" width="1456" height="364" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:364,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;PolicyWizard&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="PolicyWizard" title="PolicyWizard" srcset="https://substackcdn.com/image/fetch/$s_!SYrC!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png 424w, https://substackcdn.com/image/fetch/$s_!SYrC!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png 848w, https://substackcdn.com/image/fetch/$s_!SYrC!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png 1272w, https://substackcdn.com/image/fetch/$s_!SYrC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F038fd239-396b-4e08-85fe-160ab1f2585e_1584x396.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p>Welcome to the fifth edition of The Fellowship Newsletter.</p><h3><strong>Conducting a skills audit</strong></h3><p>Before we can conduct a skills audit, we need to know more about what a skills audit is. For the fun of it, I&#8217;m going to use an analogy.</p><p>I drove an old Honda Civic; it was a great car. Honda Civic have an excellent reputation for being reliable. I found one with a full-service history and very few findings during its annual testing. I commuted in that car for a couple of years. The journey took an hour each way.</p><p>Well, that car reached the grand old age of 22. I took it for testing as required by law. It failed the test. Several things were wrong, and it would cost a lot to fix. More than the car was worth. I decided to scrap the vehicle. As a result, I do not have wheels to get me where I want to go. I could take this story into how I chose a new car here, but that&#8217;s too obvious&#8230; Let&#8217;s go for a walk.</p><p>I changed jobs a couple of years ago and now work from home. That meant I didn&#8217;t need to rush the purchase of a new car. I could take my time. I live about a 40-minute walk from the local shop. It&#8217;s a small Tesco at the other end of the town. I live about a &#188; mile from the nearest bus stop.</p><p>Tesco delivers, and I would make use of that for the bigger things. But we wanted to ensure we got the correct meal ingredients. The pickers on home delivery orders often make substitutions when the item on the list is unavailable. Those substitutions were often things that we did not want. I would have to walk to the shop and get the right ingredients.</p><p>My partner would tell me what to get, and I would take a walk and bring the groceries home. Frequently I would make mistakes. I&#8217;d forget the mince, or I&#8217;d get the wrong sauce. To prevent further errors, I was given a list of things to go and get. A shopping list of the required items. This ensured that we would have the right ingredients before we started cooking.</p><p>Can you see where I&#8217;m going with this?</p><p>Think of that shopping list as the required ingredients for any job. The Hiring Manager has provided the Recruiter with a list of skills and experience that they use to cook up their next hire. That list is what all applicants are assessed against. If we want to be invited for an interview, we need to show in our CV/Resume that we have the skills and experience on the list. That is where a skills audit comes in.</p><p><strong>Q: </strong>What is a Skills Audit?</p><p><strong>A</strong>: It is a self-assessment an applicant carries out against multiple job descriptions of the same type to prepare themselves for the application process.</p><h3><strong>How to conduct a skills audit?</strong></h3><p>A skills audit is easy, but it does take some time. What you need to do is to open Excel. Create a table with 20 Columns and 11 Rows. The columns are where you list the skills, and the first row is where you list the job title (you can also put in a link to the job). Then open LinkedIn Jobs and run a search on your desired future role. I would suggest using the most common title for the job.</p><p>Then you need to list the top 10 skills in each of the first job descriptions that match the job title. Here is an example:</p><h3><strong>Job Requirements (Things you will be doing)</strong></h3><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!mU9n!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!mU9n!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png 424w, https://substackcdn.com/image/fetch/$s_!mU9n!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png 848w, https://substackcdn.com/image/fetch/$s_!mU9n!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png 1272w, https://substackcdn.com/image/fetch/$s_!mU9n!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!mU9n!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png" width="895" height="463" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:463,&quot;width&quot;:895,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Table showing a list of skills&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Table showing a list of skills" title="Table showing a list of skills" srcset="https://substackcdn.com/image/fetch/$s_!mU9n!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png 424w, https://substackcdn.com/image/fetch/$s_!mU9n!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png 848w, https://substackcdn.com/image/fetch/$s_!mU9n!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png 1272w, https://substackcdn.com/image/fetch/$s_!mU9n!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5c3d423-a9e1-4903-b34a-736ea06522f7_895x463.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3><strong>Experience Requirements (Things you can show that you have done)</strong></h3><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!UX4e!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!UX4e!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png 424w, https://substackcdn.com/image/fetch/$s_!UX4e!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png 848w, https://substackcdn.com/image/fetch/$s_!UX4e!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png 1272w, https://substackcdn.com/image/fetch/$s_!UX4e!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!UX4e!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png" width="900" height="409" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:409,&quot;width&quot;:900,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!UX4e!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png 424w, https://substackcdn.com/image/fetch/$s_!UX4e!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png 848w, https://substackcdn.com/image/fetch/$s_!UX4e!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png 1272w, https://substackcdn.com/image/fetch/$s_!UX4e!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1ec599e3-4df7-4077-82ba-cdacacd3f80b_900x409.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><h3><strong>The Skills Audit</strong></h3><p>This is the crucial bit. This is how you conduct the audit and assess where your skillset meets the requirements. You need to go through your worksheet and either change the colour of the text or fill in the cell where you have the skills.</p><p>After you have done this, you can easily see the jobs where you meet 70% of the requirements. I would encourage you to apply for those jobs.</p><p>You will also see where you do not meet 70% of the requirements. Aiming for these jobs but working on your skillset to meet the conditions would be best. Hit the magic 70% mark before you apply.</p><p>That&#8217;s it! That&#8217;s how you conduct a skills audit. I hope you have found this helpful. It should help you out if you&#8217;re applying for jobs, no matter where you are in your career.</p><h3><strong>Do you know the top requested GRC skill?&nbsp;</strong></h3><p>Whenever I conduct a skills audit for GRC Analyst or Information Security Analyst, it&#8217;s &#8220;creating security policies and procedures&#8221; that comes out on top. In my most recent search, 18/20 GRC Analyst advertisements required applicants to develop security policies proficiently.</p><p>If you want to learn that skill, you should consider some training in that area. Turn that box green and then focus on the others.</p><p>The <strong><a href="https://www.policywizard.io/security-policy-foundations?utm_source=podia&amp;utm_medium=broadcast&amp;utm_campaign=1539003">Security Policy Foundations</a></strong> course is available to work on at your own pace. The course is priced @ &#163;47.</p><p>On this learning opportunity, you will be able to achieve a certificate of completion, and you&#8217;ll be able to use two policies that you produce in the practical labs to evidence your skills. Only on the Live Webinar can you ask me questions directly.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Vnfx!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Vnfx!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!Vnfx!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!Vnfx!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!Vnfx!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Vnfx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Vnfx!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png 424w, https://substackcdn.com/image/fetch/$s_!Vnfx!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png 848w, https://substackcdn.com/image/fetch/$s_!Vnfx!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png 1272w, https://substackcdn.com/image/fetch/$s_!Vnfx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F18939047-48c0-4432-bff7-677fae3d282e_1920x1080.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!k5_J!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!k5_J!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!k5_J!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!k5_J!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!k5_J!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!k5_J!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png" width="146" height="146" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:146,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Stuart Headshot&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Stuart Headshot" title="Stuart Headshot" srcset="https://substackcdn.com/image/fetch/$s_!k5_J!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!k5_J!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!k5_J!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!k5_J!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf6dc9ae-8734-42df-8e57-98a473e346d8_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>Stuart W / PolicyWizard.io Office 101096, PO Box 26965, Glasgow, G1 9BW</p><p><a href="http://links.podia.com/f/a/OQhqWJz9DyrTLmuEcgOhPA~~/AAGitQA~/RgRmjSJWPxVEOGh0dHBzOi8vd3d3LnBvbGljeXdpemFyZC5pby91bnN1YnNjcmliZT91bnRyYWNrYWJsZT10cnVlVwNzcGNCCmSlVp2qZKiiCbtSGHN0dWFydC53QHBvbGljeXdpemFyZC5pb1gEAADCbg~~">Unsubscribe</a></p>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ The Fellowship Newsletter]]></title><description><![CDATA[Week 4 - Personal Values in Security]]></description><link>https://blog.policywizard.io/p/the-fellowship-newsletter-19c</link><guid isPermaLink="false">https://blog.policywizard.io/p/the-fellowship-newsletter-19c</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sat, 22 Jul 2023 15:58:07 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/81642b9a-f8bf-4a11-ab7f-973623c8e311_420x300.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!mvXm!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!mvXm!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!mvXm!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!mvXm!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!mvXm!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!mvXm!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png" width="1100" height="220" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:220,&quot;width&quot;:1100,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:234552,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!mvXm!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!mvXm!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!mvXm!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!mvXm!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F719f8d38-dbdf-4874-81a2-62b75d701a4e_1100x220.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p>Hello friend,</p><h3>Welcome to the fourth edition of The Fellowship Newsletter.</h3><p>Today we talk about <strong>Values</strong>.</p><p>There has been much talk in the industry lately about ethics, missions, principles, values, and visions. In &#8220;security&#8221;, we are the ones people trust to prevent unwanted behaviour harming our customers, staff, and value-generating processes.</p><p>I&#8217;m a military veteran and a Security Risk Practitioner who worked in the physical side of the industry before moving into Information Security. While I have only been in InfoSec for a few years, I have been around the block a bit. I served nine years in the British Army and five years in physical security.</p><p>I do my job, and I do it well. People trust me because I am trustworthy. I have never given any of my employers or colleagues a reason to question my motives. My service has always been exemplary. Specific personal values are ingrained into my psyche that I live by. These values guide me through life and assist me when making choices.</p><p>These values come from many different places. Some were drilled into me in the army. Others were instilled into my life by loving parents. The important ones are the values that I have chosen for myself. It doesn&#8217;t matter where they entered my life. What matters is how they influence my behaviour and my actions. I have never written about them, so I am doing that today.</p><h3><strong>My Chosen Values</strong></h3><p>Let&#8217;s make this alphabetical because I can&#8217;t stand lists that aren&#8217;t.</p><h4><strong>To be accessible and inclusive: </strong>Able to be reached or easily obtained by all people.</h4><p>I have always been aware of people who struggle to access buildings and services due to circumstances outside their control. It was only recently that I was encouraged to investigate this more. We need good people in the fight against Cybercrime. Your skin colour or lack of sight should not stop you from using your knowledge and abilities as a force for good. I will provide and encourage others to provide accessible and inclusive products and services.</p><h4><strong>To be accountable: </strong>The fact of being responsible for what you do and being able to give a satisfactory reason for it or the degree to which this happens.</h4><p>I have made mistakes in life and my work; people always do. I am not perfect. The important thing for me is to hold myself accountable for my choices and actions. If I make a terrible choice, I will own it, learn from it, rectify any issues if they arise, and try not to repeat the same mistake.</p><h4><strong>To be benevolent: </strong>The quality of being kind and helpful.</h4><p>Earth is a tough place to live. We are all trying to do our best to survive and live in comfort. I don&#8217;t know your struggles. I don&#8217;t want to make your day harder because I have had a tough one. If I can help you, I often will if doing so does not risk my life or values. This value drives my decision to partner with <a href="https://www.policywizard.io/partners?utm_source=podia&amp;utm_medium=broadcast&amp;utm_campaign=1531204">@CyBlack, @Cybersafe Foundation, and @TechVets</a>. &#8220;A rising tide lifts all ships&#8221;.</p><h4><strong>To be courageous:</strong> Having or showing courage (the ability to control your fear in a dangerous or difficult situation).</h4><p>Courage is not bravery. People mix this up all the time. Facing down a terrorist. Storming a beach in a war. That&#8217;s bravery. I&#8217;m talking about having the guts to do something your head is saying not to. Things like public speaking. Standing in front of a room of your peers and talking passionately about your work. That&#8217;s courageous. It could be doing something that might make you look stupid or foolish. It&#8217;s knowing the stakes are high but doing the thing anyway.</p><h4><strong>To be creative: </strong>Producing or using original and unusual ideas.</h4><p>I like to build things. To create something that brings happiness to others, value to society, and satisfaction or value to my life. Creativity is enormous when we consider the common good. I have put smiles on the faces of thousands of people up and down the UK as a fire performer &#128293;.</p><p>Being creative is also a massive driver for PolicyWizard. I have knowledge that can help others gain employment, improve security policies at their new employer, mitigate security risks, and prevent harm. I can only write a finite number of policies. If I teach 10,000 people to do it in the next 15 years, that impact is exponentially enormous.</p><h4><strong>To be ethical: </strong>Relating to beliefs about what is morally right and wrong (Morally: Based on principles that you or people generally consider right, honest, or acceptable).</h4><p>This value does not require much explanation. When confronted with a decision, I will always act morally. I will use my values as a guide to make an ethical decision.</p><h4><strong>To be non-violent: </strong>Not involving fighting or the use of physical force.</h4><p>As a military veteran and an ex-bouncer, this value surprises people. I don&#8217;t enjoy violence. I don&#8217;t like watching it, and I certainly don&#8217;t like taking part. I have been violent, and I have received violence. It&#8217;s part and parcel of growing up in a rough area and a huge part of military life.</p><p>I decided to refrain from using violence when I left the military. I became a father and wanted to show my kids that they didn&#8217;t need to live a life of violence. In my five years as a bouncer, I used non-violent communication and conflict resolution techniques to prevent violence. I became renowned for my cool head, proactive intervention, calm manner, and patience. I continue to use non-violent communication in my life.</p><p>This value does not prevent me from defending myself or others. Violence is an option; it&#8217;s one that I hope never to have to use again.</p><h4><strong>To be respectful:</strong> Showing politeness or honour to someone or something. (Honour<strong>: </strong>A quality that combines respect, being proud, and honesty.)</h4><p>I respect myself and give respect to all others without question. When someone disrespects me, I will act with honour. We cannot control other people&#8217;s behaviour; we can only control how we react.</p><h4><strong>To self-actualise: </strong>A person&#8217;s desire to use all their abilities to achieve and be everything that they possibly can.</h4><p>This value drives me forward. It makes me relentless. I have a vision for my future and am working incredibly hard to ensure it happens. That drive sees me writing a newsletter and dissecting my chosen values on a Saturday night. If doing this helps me to achieve my goals, the juice is worth the squeeze.</p><h3><strong>Final thoughts</strong></h3><p>Having solid values is how you build the foundations of a trusted relationship. As security practitioners, we should all look inside and determine our values. Hopefully, you have a bunch of good ones. We need people with good values. What values have you chosen? Consider writing a LinkedIn post about this newsletter and your values, and tag me if you do. I&#8217;d love to know &#128578;.</p><h3><strong>New Services</strong></h3><p>Things have changed a bit on the PolicyWizard website. There are now two clear routes for everyone who reaches the home page. One for those that would like to learn at <strong><a href="https://www.policywizard.io/wizard-school?utm_source=podia&amp;utm_medium=broadcast&amp;utm_campaign=1531204">Wizard School</a>, </strong>and one for those that would like <strong><a href="https://www.policywizard.io/services?utm_source=podia&amp;utm_medium=broadcast&amp;utm_campaign=1531204">Consultant</a></strong>. Take a look and let me know what you think.</p><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!g6Yc!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!g6Yc!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!g6Yc!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!g6Yc!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!g6Yc!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!g6Yc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png" width="148" height="148" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:148,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Stuart Headshot&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Stuart Headshot" title="Stuart Headshot" srcset="https://substackcdn.com/image/fetch/$s_!g6Yc!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!g6Yc!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!g6Yc!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!g6Yc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F10006f3f-a753-41eb-bbcf-f779046a1fe8_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ The Fellowship Newsletter]]></title><description><![CDATA[Week 3 - Stop being scared of Public Speaking]]></description><link>https://blog.policywizard.io/p/the-fellowship-newsletter-774</link><guid isPermaLink="false">https://blog.policywizard.io/p/the-fellowship-newsletter-774</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sat, 22 Jul 2023 15:47:28 GMT</pubDate><enclosure url="https://substack-post-media.s3.amazonaws.com/public/images/572f859c-4e7f-4590-8d6e-c05d1483e73c_420x300.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!TP2j!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!TP2j!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!TP2j!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!TP2j!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!TP2j!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!TP2j!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png" width="1100" height="220" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/dab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:220,&quot;width&quot;:1100,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:234552,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!TP2j!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!TP2j!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!TP2j!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!TP2j!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdab4f6ed-4051-4c4b-9d9b-00bb71b937a8_1100x220.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><p>Hello friend,<br><br>Welcome to the third edition of <strong>The Fellowship Newsletter</strong>.&nbsp;<br><br>This week, we cover <strong>Public Speaking</strong>.</p><p>Ever since I was a boy, I have struggled to stand up in front of groups of people and speak confidently. I had a stutter. The doctor said I had so much on my brain that my tongue struggled to keep up. &#8220;He&#8217;ll grow out of it&#8221;.&nbsp;</p><p>Well, that was utter rubbish. I didn&#8217;t grow out of it. I still have a stutter. It&#8217;s not a confidence thing. I can stutter even when I&#8217;m perfectly comfortable and happy. In everyday life, I have learned to mask it. It&#8217;s so hidden that you&#8217;d probably never have known if you hadn&#8217;t read this.&nbsp;</p><p>Over the last two years working remotely and listening to other people talking in meetings, I realised that most people struggle with filler words. I um and ahhhh, just like everyone else. I&#8217;m not unique in that. I differ because I use pauses to prevent me from tripping over my words or stumbling like a scratched CD.&nbsp;</p><p>I have been trying to build confidence in this area for years. So, I set myself the goal of actively improving my public speaking by the end of 2023. Nobody would want a meek instructor who stutters, mumbles, and mutters. Building my public speaking knowledge was the first thing I had to do. I set about watching hours of YouTube videos about the subject.&nbsp;</p><p>I attended a few sessions at a local public speaking group and gave what the chair said was &#8220;The best first speech I have watched&#8221;. I can stand up and give a great talk. I&#8217;ve been doing it for years. I was a team leader in the military. I&#8217;ve been a survival instructor, a circus instructor, and a group leader for a performing arts group. Each time I stand before a group to speak, I die a little inside.&nbsp;</p><h3><strong>How does public speaking make you feel?</strong></h3><p>If I wanted to be a good instructor, security practitioner, and leader, I needed to figure this out. I needed to be able to feel confident when delivering a talk. I am confident in 99% of the things I do in life.&nbsp;</p><p>I&#8217;ve stood my ground when face to face with big wild animals; I&#8217;ve been to war, and I&#8217;ve performed solo in front of 10,000 people as a fire performer. I&#8217;ve also been a bouncer. I can stand my ground and even resolve conflict verbally when faced with aggression from people. I don&#8217;t lack confidence unless I&#8217;m speaking to groups.</p><h3><strong>Finding my confidence</strong></h3><p>During one of the sessions watching TEDx talks, I found one called &#8220;<strong><a href="https://www.youtube.com/watch?v=Iwpi1Lm6dFo">How to avoid death By PowerPoint</a></strong>&#8221;. It was a Swedish man named David JP Phillips who gave one of the best speeches I had ever heard. It was all about making your PowerPoint slides in a way that added to your presentation, not being the focus of them. I was captivated. I went down the rabbit hole, watching lots of his content.</p><p>In March this year, I had the opportunity to attend a free 5 Day public speaking challenge hosted by David. It was an online webinar format where he spoke for an hour each day about how different chemicals in the brain affect how we feel when public speaking. Here is the gist of the five days&#8230;</p><h4><strong>Endorphins</strong></h4><p>Endorphins are triggered by laughing. Think of a funny story or something that has happened to you that makes you laugh. Watch a short playlist of videos that make your belly laugh. If you feel happier, you&#8217;ll deliver your message much better.</p><h4><strong>Dopamine</strong></h4><p>The brain works better when it&#8217;s full of dopamine. If you give it dopamine, it feeds additional dopamine. You&#8217;ll feel less nervous and more relaxed if you can fill your brain with it before a presentation. Motivation gives you dopamine. What is your reason for giving the speech?</p><h4><strong>Oxytocin</strong></h4><p>This chemical is the body&#8217;s natural method of bonding and controlling stress. You can produce additional oxytocin by looking at family photos, watching sad videos, tearing up, making slow eye movements and feeling empathy, humanity, and care.</p><h4><strong>Testosterone</strong></h4><p>Testosterone is raised by winning at sports, anything where you feel powerful, strong, or in danger. Increasing your base volume by 10-20% can give you a 10% boost in testosterone. This additional boost gives you extra confidence in yourself. Stand in a power pose. Roar at the sky. These will all give you a boost.</p><h4><strong>Serotonin</strong></h4><p>This is the chemical you feel when you are proud. Look at video testimonials and reviews of your work. Videos of you being badass, videos of you as a presenter and feeling genuinely proud of a friend&#8217;s success.</p><p>These five chemicals will all enhance your ability as a public speaker. If you struggle with it, set yourself up 5-10 minutes before your meeting to inject the positive chemicals. Watch funny videos, roar at the sky, and speak from the chest.</p><p>Now let&#8217;s look at the bad one&#8230;</p><h4><strong>Cortisol</strong></h4><p>You&#8217;ll feel pain, fear, and suffering if your system has high cortisol levels. If you don&#8217;t control the other 5, the brain resorts to injecting this, and you&#8217;ll struggle to perform your best.&nbsp;</p><h4><strong>5 Tips to beat cortisol.</strong></h4><p>1. Convert it to dopamine!</p><p>2. Oxytocin will beat cortisol.</p><p>3. Change how you speak to yourself. You&#8217;re not nervous; you&#8217;re excited!</p><p>4. Re-appraise your pain. Choose your feelings. Don&#8217;t let cortisol tell you how you feel.</p><p>5. Nail your beginning.</p><h4><strong>Putting it into practice</strong></h4><p>There is much more to my public speaking journey over the last six months. I intend to tell it in future Newsletters. Before I close out this one, I want to say that I put all the learning together for a presentation my manager asked me to do. I presented my policy strategy to the 20+ people in our security team.&nbsp;</p><p>I&#8217;ve been working on my strategy for the last month or two. I am targeting risk scenarios with security policies to close our gaps, changing the language in our messaging to be more positive/respectful while evolving from a rule-based policy culture to a principle-based one.&nbsp; &nbsp;</p><p>The presentation was last Wednesday, and I gave the presentation of my life!</p><p>I seriously rocked it. I was confident, clear, and eloquent. There were no filler words&#8230;</p><p>It blew my mind!!!</p><p>The CISO said that it was &#8220;<strong>An excellent presentation</strong>&#8221;. He thought it was so good that he would present my strategy for principle-based policies to a CISO council in the next few weeks.&nbsp;</p><p>My manager said he felt &#8220;<strong>Energised</strong>&#8221;, and the Project Manager said she was &#8220;<strong>Captivated</strong>&#8221; by my presentation.&nbsp;</p><p>I had a little help. <strong><a href="https://www.linkedin.com/in/julie-anna-hardesty">Julie Hardesty</a></strong> is a Public Speaking Coach working for Infor. She agreed to be my mentor as part of an internal mentoring program run by the company. Julie helped me find the points of emphasis and found the bits where I could show the real impact of my work. Without her, it would not have been anywhere near as good as it was.</p><p>Julie is on LinkedIn and is just starting as a freelance Public Speaking coach. If you&#8217;re looking to progress in your career and you have a big presentation coming up, give Julie a DM. She can help you add the magic &#127908;&#128293;. If there is one thing you take from this, let it be that if I can give a superb presentation, you can too.&nbsp;</p><p>Until the next adventure!</p><p>Stuart Wedge</p><p>PolicyWizard</p>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ The Fellowship Newsletter]]></title><description><![CDATA[Week 2 - The NIS 2 Directive]]></description><link>https://blog.policywizard.io/p/the-fellowship</link><guid isPermaLink="false">https://blog.policywizard.io/p/the-fellowship</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sat, 22 Jul 2023 15:32:58 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Llwo!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hey there,<br><br>Welcome to the second week of <strong>The Fellowship</strong> newsletter.&nbsp;</p><p>This week has been excellent. On Monday, I was informed that a new version of the NIS Directive was coming into play. The original NIS Directive was published in 2016. It concerns the Security of Network Information Systems. <strong><a href="http://links.podia.com/f/a/8SbbRugAFKEW9h9tz-VSiQ~~/AAGitQA~/RgRmcWj6P0SXaHR0cHM6Ly9ldXItbGV4LmV1cm9wYS5ldS9sZWdhbC1jb250ZW50L0VOL1RYVC9QREYvP3VyaT1DRUxFWCUzQTMyMDIyTDI1NTUmcWlkPTE2ODY2MTIzNDcyMjImdXRtX3NvdXJjZT1wb2RpYSZ1dG1fbWVkaXVtPWJyb2FkY2FzdCZ1dG1fY2FtcGFpZ249MTUxMzUyMlcDc3BjQgpkf_vjjmSBiGvXUhdrZWxseWVsZXl0ZWNoQGdtYWlsLmNvbVgEAADCbg~~">NIS 2 Directive</a></strong> was published in 2022 and expanded the controls further. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Llwo!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Llwo!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png 424w, https://substackcdn.com/image/fetch/$s_!Llwo!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png 848w, https://substackcdn.com/image/fetch/$s_!Llwo!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png 1272w, https://substackcdn.com/image/fetch/$s_!Llwo!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Llwo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png" width="340" height="425" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/cf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1500,&quot;width&quot;:1200,&quot;resizeWidth&quot;:340,&quot;bytes&quot;:337349,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Llwo!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png 424w, https://substackcdn.com/image/fetch/$s_!Llwo!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png 848w, https://substackcdn.com/image/fetch/$s_!Llwo!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png 1272w, https://substackcdn.com/image/fetch/$s_!Llwo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcf51eb4c-7322-48f1-9c2a-36c8aef81533_1200x1500.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong><a href="http://links.podia.com/f/a/YOkZuSLyad4sVuIB7z2DZA~~/AAGitQA~/RgRmcWj6P0RyaHR0cHM6Ly93d3cucG9saWN5d2l6YXJkLmlvL25pcy0yLWRpcmVjdGl2ZS1hLWJyZWFrZG93bj91dG1fc291cmNlPXBvZGlhJnV0bV9tZWRpdW09YnJvYWRjYXN0JnV0bV9jYW1wYWlnbj0xNTEzNTIyVwNzcGNCCmR_--OOZIGIa9dSF2tlbGx5ZWxleXRlY2hAZ21haWwuY29tWAQAAMJu">NIS 2 Directive &#8211; A Breakdown</a></strong>&nbsp;</p><p>I had planned on including some content on the NIS Directive. So having a new one to work with is great! Fresh new content that most people don&#8217;t know about. It will be a great addition to the Practical GRC course.&nbsp;</p><p>It&#8217;s always best to work methodically when learning a new Regulation, Directive, Law, Standard, or Framework. You need to get your eyes on the document. This is the bible regarding what you are trying to learn. Occasionally, a paywall is a blocker.&nbsp;</p><p>I am using the ISO 27001 standard as an example. To read that document, you need to purchase it from ISO. It&#8217;s not cheap either. For my recent ISO 27005 class, I was required to have three different ISO standards as pre-requisite reading. Luckily, my company funded the course and the reading material as part of my CPD. Most of these types of documents are freely available online.</p><p>Once you have the document, to understand it fully, you&#8217;ll need to read it. There are, however, some quick ways to get to the bottom of the requirements.</p><p>First things first:</p><p>Search on YouTube for an explainer video. Many different Information Security companies will be using the new regulation (etc.) to gain new customers by selling their solutions to any new requirements that have been introduced.</p><p>Make notes on all the key points from the videos and then confirm that each point is visible in the document and that the words in the video reflect the document's requirements. The last thing you want to do is learn from a video and then find out after doing some work that the information needs to be corrected. Verify everything!</p><p>If a suitable quality video is unavailable, use &#8220;Ctrl + F&#8221;. It&#8217;s the Microsoft Shortcut that brings up a &#8220;Find&#8221; box. It allows you to search for words or phrases. It is beneficial and can reduce this process by more than 50%.</p><div><hr></div><p>Here are the key things that you need to find out in your initial familiarisation session:</p><h4><strong>Issuer</strong></h4><p>Who introduced the new Regulation, Directive, Law, Standard, or Framework?</p><h4><strong>Scope</strong></h4><p>The geographical region where the new Regulation, Directive, Law, Standard, or Framework applies.</p><p>The intended target audience. These are the people, businesses, organisations, or groups affected by the new Regulation, Directive, Law, Standard, or Framework.</p><p>If it applies to a region (e.g., The EU), does it apply to organisations outside the region that interact or do business with the Citizens of the region?</p><h4><strong>Previous Version</strong></h4><p>Does the new Regulation, Directive, Law, Standard, or Framework replace an older version?</p><h4><strong>Effective date</strong></h4><p>This is when the new Regulation, Directive, Law, Standard, or Framework comes into force.</p><h4><strong>Abbreviations</strong></h4><p>Understand the abbreviations used. Usually, these documents have a definitions section dedicated to clarifying the meanings of abbreviations or uncommon words.</p><h4><strong>Purpose</strong></h4><p>What is the purpose of the new Regulation, Directive, Law, Standard, or Framework? Why is it being introduced?</p><h4><strong>What are the requirements?</strong></h4><p>Does the new Regulation, Directive, Law, Standard, or Framework set out something to be done or restrict something from being done?</p><p>What are the implications for you or the organisation that you work for?</p><p>This might be the time to start looking at doing a gap analysis.</p><h4><strong>Compliance Checking/Enforcement</strong></h4><p>Who is liable to be checked for their compliance status?</p><p>Who is responsible for checking the compliance status?</p><h4><strong>Is Certification (if available) optional or compulsory?</strong></h4><p>If Certification is available, who is the Certification Body?</p><h4><strong>Consequences of non-compliance</strong></h4><p>What is the potential impact of any fines or criminal charges?</p><h4><strong>Who is Liable?</strong></h4><p>Is executive management personally liable? Or is the Organisation fully accountable for any actions against it?</p><p>That&#8217;s it for this week&#8217;s edition of &#8220;The Fellowship&#8221;. I hope you take this new knowledge and set yourself the task of understanding a Regulation, Directive, Law, Standard, or Framework you do not have experience with.</p><p>Some of you might have seen it; others may not have. I created a 51-page carousel and posted it to LinkedIn on Wednesday. You could also pick it up from my website as a digital download if you missed it. Click the link: <strong><a href="http://links.podia.com/f/a/YOkZuSLyad4sVuIB7z2DZA~~/AAGitQA~/RgRmcWj6P0RyaHR0cHM6Ly93d3cucG9saWN5d2l6YXJkLmlvL25pcy0yLWRpcmVjdGl2ZS1hLWJyZWFrZG93bj91dG1fc291cmNlPXBvZGlhJnV0bV9tZWRpdW09YnJvYWRjYXN0JnV0bV9jYW1wYWlnbj0xNTEzNTIyVwNzcGNCCmR_--OOZIGIa9dSF2tlbGx5ZWxleXRlY2hAZ21haWwuY29tWAQAAMJu">NIS 2 Directive &#8211; A Breakdown</a></strong>. Share the link with people at your business who might need to know about the changes to the NIS Directive.</p><div><hr></div><p>Until the next adventure!</p><p>Stuart Wedge &#129497;&#8205;&#9794;&#65039;</p><p>PolicyWizard</p>]]></content:encoded></item><item><title><![CDATA[🧙‍♂️ The Fellowship Newsletter]]></title><description><![CDATA[Week 1 - Introduction and Bio of Stuart]]></description><link>https://blog.policywizard.io/p/the-fellowship-newsletter</link><guid isPermaLink="false">https://blog.policywizard.io/p/the-fellowship-newsletter</guid><dc:creator><![CDATA[Stuart Wedge]]></dc:creator><pubDate>Sat, 22 Jul 2023 15:24:42 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!vSEc!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<p>Hello friend,<br><br>How are you? It&#8217;s been a while since I sent an email. I wanted to give you some updates on what I&#8217;m doing.</p><h3><strong>Newsletter</strong></h3><p>As the number of people on this mailing list is nearing 1000, I want to add more value to the people on it. I put up a poll on LinkedIn asking if people would like a Newsletter from me. The response was overwhelmingly positive, so I launched &#8220;The Fellowship&#8221; Newsletter. The first edition of it is below. I hope you will be happy to receive more regular emails from me. It will not be sales-focused but will share knowledge and stories of what I am doing. Stories about fighting the GRC Monsters. This first edition of the Newsletter details my story and why I work in Security.</p><div><hr></div><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!jTJG!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!jTJG!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!jTJG!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!jTJG!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!jTJG!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!jTJG!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png" width="1100" height="220" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:220,&quot;width&quot;:1100,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:234552,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!jTJG!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png 424w, https://substackcdn.com/image/fetch/$s_!jTJG!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png 848w, https://substackcdn.com/image/fetch/$s_!jTJG!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png 1272w, https://substackcdn.com/image/fetch/$s_!jTJG!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F51206d05-047c-4960-8ad7-2a402c4d75a6_1100x220.png 1456w" sizes="100vw" fetchpriority="high"></picture><div></div></div></a></figure></div><h1>The Fellowship Newsletter</h1><h3>What is a Fellowship?</h3><p><strong>Fellowship</strong><br>f&#277;l&#8242;&#333;-sh&#301;p&#8243;<br>Noun<br>&#128073; The companionship of individuals in a congenial atmosphere and on equal terms.&nbsp;<br>&#128073;&nbsp; Friendship; comradeship.&nbsp;<br>&#128073;&nbsp; A close association of friends or equals sharing similar interests.&nbsp;<br>(Wordnik)</p><div><hr></div><p>I have called the newsletter &#8220;The Fellowship&#8221;. Yes, it shows a little love for the Lord of the Rings, but more than that, it gives this Newsletter a purpose.&nbsp;<br>The Newsletter communicates knowledge, stories, and anecdotes with my friends, companions, and associates. Topics I will cover include (but are not limited to):<br>Current activities, Security Policy, Security Risk, GRC Skills, building a security consultancy, a training platform, an online course, Writing a book, My journey, Etc...&nbsp;<br>This email introduces who I am, what I do, and how you can work with me if you want to.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!vSEc!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!vSEc!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!vSEc!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!vSEc!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!vSEc!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!vSEc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png" width="198" height="198" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ab163564-5def-46dc-b780-8764469961cb_400x400.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:198,&quot;bytes&quot;:146434,&quot;alt&quot;:&quot;Stuart Wedge Profile Picture&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Stuart Wedge Profile Picture" title="Stuart Wedge Profile Picture" srcset="https://substackcdn.com/image/fetch/$s_!vSEc!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png 424w, https://substackcdn.com/image/fetch/$s_!vSEc!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png 848w, https://substackcdn.com/image/fetch/$s_!vSEc!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png 1272w, https://substackcdn.com/image/fetch/$s_!vSEc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fab163564-5def-46dc-b780-8764469961cb_400x400.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><h3>Who am I?&nbsp;</h3><p>Stuart Wedge</p><h3>What do I do?</h3><p>Security Policy Writer<br>Security Risk Practitioner</p><h3>What have I done?</h3><p>Military Veteran&nbsp;<br>Animal Tracker<br>Bushcraft &amp; Survival Instructor<br>Fire Performer</p><h3>Why do I work in Information Security?</h3><p>I was challenged on this recently. I said, &#8220;I joined the Army at 16 because I watched what was happening on the news in Bosnia, and I wanted to stand between the people doing harm and those being harmed.&#8221;The person said, &#8220;That&#8217;s a condition. It&#8217;s called a Hero Complex.&#8221; <br>I was fully aware of that. In the Army, we called it &#8220;Superman Syndrome&#8221;. It&#8217;s not that I wanted to be a hero. For me, it was that I detest violence, especially against those who cannot defend themselves. If I were able to help, I would do it.<br>After leaving the Army, I worked as a Satellite Dish Fitter. But when the digital switchover happened, my work stopped overnight. Most people have the means to watch Digital TV. I needed to find another source of income. <br>I fell into Physical Security. I got my Door Supervisor licence and found work as a bouncer in Edinburgh. I have many stories from that time of my life. A friend even turned a year of my Facebook posts into a book! <br>Jumping back to the reason I do what I do&#8230;<br>The person challenged me: &#8220;Do you really think, as a security function, we can keep people safe?&#8221;</p><h4><strong>My answer</strong></h4><blockquote><p>&#8220;As a security function; I don&#8217;t think we can keep people safe. What we can do is to help them make better decisions.&#8221;&nbsp;</p></blockquote><p>That is what I am doing in my work. I am helping to reduce the impact and frequency of accidental data loss caused by people not doing what they are meant to with data. Implementing policies that change how security controls are administered and managed. Improving the quality of the authority documents to enable people to understand what is meant to be done.</p><div><hr></div><h3>Here is the key message I use in everything I do:</h3><p>&#9989; If we get the policies right, we get the message right.&nbsp;<br>&#9989; If we get the message right, we get engagement.<br>&#9989; If we get engagement, we get action.&nbsp;<br>&#9989; If we get action, we get progress.&nbsp;<br>&nbsp;&nbsp;<br>It doesn&#8217;t matter if it&#8217;s your first month as a GRC Analyst or if you are fifteen years into your career and starting your first CISO position. Using Security Policies is how we implement our security controls, build our strong security posture, and put that new Security Strategy into effect.</p><div><hr></div><h3>If you&#8217;d like to work with me</h3><p>&#128073; <strong><a href="https://www.policywizard.io/book-a-call?utm_source=podia&amp;utm_medium=campaign&amp;utm_campaign=1020098">Book a Call</a></strong><br>&#128073; <strong><a href="https://www.policywizard.io/wizard-school?utm_source=podia&amp;utm_medium=campaign&amp;utm_campaign=1020098">Check out my courses</a></strong> <br>&#128073; <strong><a href="https://www.policywizard.io/services?utm_source=podia&amp;utm_medium=campaign&amp;utm_campaign=1020098">Hire me to Consult for your business</a></strong><br><br>Thank you for joining this Newsletter. I very much hope that you enjoy the content. <br>If you don&#8217;t, please unsubscribe. I know that I will not please everyone.</p><div><hr></div><h3><strong>Privacy</strong></h3><p>Don&#8217;t worry; I will not send loads of spam, and your details are never sold to other companies. I&#8217;m a big fan of GDPR, and if you read the <strong><a href="https://www.policywizard.io/privacy?utm_source=podia&amp;utm_medium=campaign&amp;utm_campaign=1020098">Privacy Notice</a></strong>, you&#8217;ll understand that a little bit more than you do now.&nbsp; &nbsp;<br><br>Stuart Wedge<br>PolicyWizard &#129497;&#8205;&#9794;&#65039;</p><div class="captioned-button-wrap" data-attrs="{&quot;url&quot;:&quot;https://substack.com/refer/stuartwedge?utm_source=substack&amp;utm_context=post&amp;utm_content=undefined&amp;utm_campaign=writer_referral_button&quot;,&quot;text&quot;:&quot;Start a Substack&quot;}" data-component-name="CaptionedButtonToDOM"><div class="preamble"><p class="cta-caption">Start writing today. Use the button below to create your Substack and connect your publication with Stuart&#8217;s Substack.</p></div><p class="button-wrapper" data-attrs="{&quot;url&quot;:&quot;https://substack.com/refer/stuartwedge?utm_source=substack&amp;utm_context=post&amp;utm_content=undefined&amp;utm_campaign=writer_referral_button&quot;,&quot;text&quot;:&quot;Start a Substack&quot;,&quot;hasDynamicSubstitutions&quot;:false}" data-component-name="ButtonCreateButton"><a class="button primary" href="https://substack.com/refer/stuartwedge?utm_source=substack&amp;utm_context=post&amp;utm_content=undefined&amp;utm_campaign=writer_referral_button"><span>Start a Substack</span></a></p></div>]]></content:encoded></item></channel></rss>