Email Security Beyond 'Don't Click the Link'
Employee training matters, but it's not a complete email security strategy. Here's what else you should have in place — and how AI has changed what 'suspicious' looks like.
CEO and co-founder of Kief Studio. Full-stack developer and strategist. In tech since 2012. Served as Secretary of the TRaViS board until May 2026.
https://ameliasgagne.com172 articles
Employee training matters, but it's not a complete email security strategy. Here's what else you should have in place — and how AI has changed what 'suspicious' looks like.
AI compliance requirements are coming. Most small businesses have no AI use policy. Here's how to write one that protects you without killing productivity.
How to back up a business against ransomware is a restore you have run. FBI (27 Jan 2026) and CISA #StopRansomware: three copies, one offline and immutable, then test. NIST SP 800-34 Rev. 1 treats testing as a step.
Every AI vendor demo looks impressive. The question is whether it solves your problem or theirs. Here's a framework for evaluating AI tools before you commit.
Most businesses imagine a breach as a dramatic event. The reality is quieter, slower, and more expensive than the movies suggest. Here's what actually happens, hour by hour.
80% of failed AI projects fail because of bad data, not bad AI. Before you plug anything in, understand what your data actually needs to look like.
A password manager costs less than a business lunch and eliminates the single most common way businesses get breached. Here's how to pick one and roll it out.
The difference between a useless AI response and a genuinely helpful one is almost always the prompt. Here's how to write prompts that work on the first try.
Phishing isn't just bad grammar in a Nigerian prince email anymore. AI-generated phishing is personalized, grammatically perfect, and harder to spot than ever.
The best way to learn AI isn't a course — it's seven days of focused experimentation with tasks you already do. Here's a realistic first-week plan.
The first five cybersecurity steps for a small business: MFA, password manager, updates, a restore you have run, staff training. CISA small-business guidance (April 2024) and CPG 2.H / 2.R.
82% of businesses under five employees believe AI isn't applicable to them. The SBA calls that an education gap, not a reality gap. Here's how to find the real opportunities.