Blog

Security intelligence for the legal profession.

Field notes from the engineers protecting AmLaw firms, boutique practices, and the privileged data they hold.

Security Awareness Training for Law Firms (2026): Programs That Actually Stop Phishing, Wire Fraud, and Insider Mistakes
Featured · Training & Awareness

Security Awareness Training for Law Firms (2026): Programs That Actually Stop Phishing, Wire Fraud, and Insider Mistakes

Ninety percent of law-firm breaches start with a person, not a server — a clicked link, an approved wire, a document shared to the wrong portal. This is the 2026 guide to building security awareness training that partners will complete, insurers will credit, and attackers will fail against: real curricula, phishing-simulation cadences, pricing benchmarks, metrics that matter, and the ABA and FTC requirements behind it all.

August 2, 2026 17 min read
Read the post
Vulnerability Assessment vs. Penetration Testing for Law Firms (2026): Which Cybersecurity Test Do You Actually Need?
Security Testing

Vulnerability Assessment vs. Penetration Testing for Law Firms (2026): Which Cybersecurity Test Do You Actually Need?

Law firms are asked for 'a security test' by insurers, clients, and outside counsel guidelines — but a vulnerability assessment and a penetration test are not the same thing, don't cost the same, and don't satisfy the same requirements. Here's the 2026 breakdown: what each test finds, what each costs, how often to run them, and how to choose the right one for your firm's size and risk.

16 min read
Data Breach Lawyer: When to Hire One, What They Cost, and the 2026 Notification Clocks You Can't Miss
Incident Response

Data Breach Lawyer: When to Hire One, What They Cost, and the 2026 Notification Clocks You Can't Miss

A complete 2026 guide to hiring a data breach lawyer — retainer structures and hourly ranges, the state-by-state notification clocks (some as short as 30 days), how privileged incident response actually works, and the checklist general counsel and managing partners use to vet breach counsel before a call is ever made.

17 min read
Managed IT Services for Law Firms: The 2026 Buyer's Guide (Pricing, SLAs, Security & What to Ask Before You Sign)
IT & Operations

Managed IT Services for Law Firms: The 2026 Buyer's Guide (Pricing, SLAs, Security & What to Ask Before You Sign)

The complete 2026 buyer's guide to managed IT services for law firms — real per-user pricing, the security stack every legal MSP must include, ABA Model Rule 1.6(c) and FTC Safeguards alignment, iManage / NetDocuments / Clio expertise checklists, SLA benchmarks, and the 22 vetting questions to ask before signing. Built for solo attorneys through AmLaw 200 firms.

18 min read
Data Breach Prevention for Law Firms: The 2026 Playbook (Controls, Costs & ABA-Aligned Program)
Data Security

Data Breach Prevention for Law Firms: The 2026 Playbook (Controls, Costs & ABA-Aligned Program)

A practical, evidence-based data breach prevention playbook for law firms in 2026 — the real threat model, the 12 controls insurers and clients now require, budget benchmarks by firm size, a 90-day rollout plan, and an FAQ built for Google AI Overviews. Mapped to ABA Model Rule 1.6(c), FTC Safeguards Rule, SEC Reg S-P, HIPAA, and NY DFS 23 NYCRR 500.

17 min read
Cybersecurity for Law Firms (2026): The Definitive Guide for Managing Partners, GCs, and IT Directors
Cybersecurity

Cybersecurity for Law Firms (2026): The Definitive Guide for Managing Partners, GCs, and IT Directors

The definitive 2026 guide to cybersecurity for law firms — the threat landscape, ABA Model Rule 1.6(c) and FTC Safeguards Rule obligations, a nine-layer defense stack, budget benchmarks by firm size, insurer questionnaire answers, outside-counsel guideline requirements, and a 90-day rollout plan. Written for managing partners, general counsel, COOs, and IT directors who need a defensible program — not another vendor pitch.

18 min read
Law Firm IT Security Testing (2026): The Complete Playbook for Managing Partners, GCs, and IT Directors
Security Testing

Law Firm IT Security Testing (2026): The Complete Playbook for Managing Partners, GCs, and IT Directors

A field-tested 2026 guide to law firm IT security testing — external and internal network tests, Microsoft 365 and Entra ID hardening checks, iManage and NetDocuments exposure reviews, phishing and MFA-fatigue simulation, tabletop exercises, red-team engagements, and continuous attack-surface monitoring. Mapped to ABA Model Rule 1.6(c), the FTC Safeguards Rule, SEC Regulation S-P, HIPAA, NY DFS 23 NYCRR 500, and the outside-counsel guidelines AmLaw clients now enforce.

17 min read
Penetration Testing Checklist for Law Firms (2026): The 47-Point Guide Cyber Insurers, Clients, and the ABA Actually Expect
Security Testing

Penetration Testing Checklist for Law Firms (2026): The 47-Point Guide Cyber Insurers, Clients, and the ABA Actually Expect

A practical, defensible 2026 penetration testing checklist built for law firms — mapped to ABA Model Rule 1.6(c), the FTC Safeguards Rule, SEC Regulation S-P, cyber-insurance renewal questionnaires, and AmLaw client outside-counsel guidelines. Covers scoping, external and internal network testing, web app and client portal testing, cloud (Microsoft 365, iManage, NetDocuments, Clio), social engineering, physical, wireless, mobile, AI/LLM prompt-injection testing, retest windows, evidence preservation for privilege, and the reporting artifacts insurers now require.

18 min read
Cybersecurity Lawyer: When Law Firms Need One, What They Cost, and How to Hire the Right One in 2026
Legal Counsel

Cybersecurity Lawyer: When Law Firms Need One, What They Cost, and How to Hire the Right One in 2026

A cybersecurity lawyer is the outside counsel a law firm calls at 2 a.m. when ransomware hits, when a partner clicks a wire-fraud lure, or when a state attorney general opens an inquiry. This 2026 guide explains what a cybersecurity lawyer actually does, when your firm needs one on retainer versus per-incident, what they cost ($450–$1,400/hr), the credentials that matter (CIPP/US, breach-coach panel status, IAPP, ABA Cybersecurity Legal Task Force), and the ABA Rule 1.6(c) obligations that make proactive counsel non-negotiable — plus how continuous attack-surface monitoring changes the calculus.

16 min read
Penetration Testing Cost for Law Firms: What Firms Actually Pay in 2026 (Full Pricing Guide)
Penetration Testing

Penetration Testing Cost for Law Firms: What Firms Actually Pay in 2026 (Full Pricing Guide)

A law firm penetration test typically costs $4,500–$45,000 depending on scope, attorney count, and whether the engagement covers external, internal, web application, and social-engineering vectors. Here's a line-by-line breakdown of what firms actually pay in 2026, what drives the price up or down, what a defensible pen-test report must contain under ABA Rule 1.6(c), and how continuous smart pentesting compares to the traditional once-a-year engagement.

17 min read
Data Breach Attorneys: When to Hire One, What They Cost, and How They Save the Case (2027 Guide)
Breach Counsel

Data Breach Attorneys: When to Hire One, What They Cost, and How They Save the Case (2027 Guide)

A data breach attorney is the first call after unauthorized access, ransomware, or a vendor incident — the counsel who preserves privilege, drives the 72-hour notification clock, and defends the class action that follows. Here's what they do, when to hire one, what a typical engagement costs, and how to pick the right firm before you need it.

16 min read
Data Privacy Lawyer: What They Do, When to Hire One, and What It Costs in 2027
Data Privacy

Data Privacy Lawyer: What They Do, When to Hire One, and What It Costs in 2027

A data privacy lawyer advises on CCPA, HIPAA, GDPR, and state privacy laws — and steps in as breach counsel when something goes wrong. Here's what they actually do, how to hire the right one, what a typical engagement costs, and why every business (and every law firm) now needs one on speed dial before an incident hits.

15 min read
Cybersecurity Attorney: When Your Law Firm Needs One (and When You Actually Need a Cybersecurity Vendor)
Cybersecurity Attorney

Cybersecurity Attorney: When Your Law Firm Needs One (and When You Actually Need a Cybersecurity Vendor)

A cybersecurity attorney handles the legal side of a breach. A cybersecurity vendor prevents the breach from happening. Most firms confuse the two — and spend on the wrong one at the wrong time. Here's the 2026 breakdown: what each does, what they cost, and how to build the two-part defense every US law firm now needs.

14 min read
Cybersecurity for Lawyers: The Definitive 2026 Guide (Threats, Ethics Rules, Tools & a 90-Day Plan)
Cybersecurity for Lawyers

Cybersecurity for Lawyers: The Definitive 2026 Guide (Threats, Ethics Rules, Tools & a 90-Day Plan)

A practical, no-fluff guide to cybersecurity for lawyers in 2026 — the real threats hitting solo, small, and midsize firms, what ABA Rule 1.6 and state bars now require, the tools that actually move the needle, and a 90-day plan any attorney can execute.

16 min read
Secure File Sharing for Attorneys: The 2026 Guide (Client Portals, Encryption & ABA Rule 1.6)
Attorney File Sharing

Secure File Sharing for Attorneys: The 2026 Guide (Client Portals, Encryption & ABA Rule 1.6)

Email attachments are the #1 source of privileged data leaks at US law firms. Here's how modern attorneys share files with clients, co-counsel, and experts in 2026 — the tools, the encryption standards, the ethics rules, and a practical rollout plan.

15 min read
Law Firm Data Security: The Complete 2026 Guide to Protecting Client Information
Data Security

Law Firm Data Security: The Complete 2026 Guide to Protecting Client Information

How modern law firms actually secure client data in 2026 — the ABA Rule 1.6 standard, the 12 controls that stop 95% of breaches, and a 90-day implementation plan with budgets, owners, and evidence.

16 min read
The Law Firm Cybersecurity Checklist (2026): 50 Controls Every Practice Needs
Checklist

The Law Firm Cybersecurity Checklist (2026): 50 Controls Every Practice Needs

A practical, ABA- and insurance-aligned cybersecurity checklist for law firms in 2026 — 50 controls across identity, email, endpoints, data, vendors, and incident response, with priority, owner, and evidence for each.

14 min read
Law Firm Compliance in 2026: Cybersecurity, Ethics, and Data Protection Playbook
Compliance

Law Firm Compliance in 2026: Cybersecurity, Ethics, and Data Protection Playbook

A complete 2026 guide to law firm compliance — ABA Model Rules, state data-breach laws, HIPAA, GDPR, client outside-counsel guidelines, and the exact controls, policies, and evidence a firm needs to pass an audit or underwriter review.

16 min read
Law Firm IT Security: The Complete 2026 Guide (Controls, Costs, Checklist)
IT Security

Law Firm IT Security: The Complete 2026 Guide (Controls, Costs, Checklist)

A practical, ABA-aligned guide to law firm IT security in 2026 — the 18 controls that actually matter, real budget benchmarks by firm size, a 90-day implementation roadmap, and the audit checklist underwriters and outside-counsel guidelines now expect.

17 min read
Cyber Insurance for Law Firms: 2026 Coverage, Costs, and Underwriter Checklist
Insurance

Cyber Insurance for Law Firms: 2026 Coverage, Costs, and Underwriter Checklist

What cyber insurance for law firms actually covers in 2026, typical premiums by firm size, the 14 controls underwriters now require before they'll bind a policy, and how to avoid the most common claim denials.

15 min read
Cybersecurity for Law Firms: The 2026 Playbook (ABA-Aligned, Insurance-Ready)
Guides

Cybersecurity for Law Firms: The 2026 Playbook (ABA-Aligned, Insurance-Ready)

A practical, ABA Model Rule-aligned guide to cybersecurity for law firms in 2026 — the threats that actually hit firms, the 12 controls underwriters and corporate clients now require, and a 30/60/90-day roadmap any firm from 5 to 500 attorneys can execute.

18 min read
Law Firm Ransomware in 2026: How Attacks Happen, Real Costs, and a 90-Day Prevention Plan
Threats

Law Firm Ransomware in 2026: How Attacks Happen, Real Costs, and a 90-Day Prevention Plan

Ransomware is now the most common cause of catastrophic loss at US law firms. Here's exactly how attackers get in, what a real incident costs in fees and lost billables, and the 90-day prevention plan that satisfies underwriters and the ABA.

16 min read
Cybersecurity for Law Firms: A Practical 2026 Guide
Guide

Cybersecurity for Law Firms: A Practical 2026 Guide

A practical, no-fluff 2026 guide to cybersecurity for law firms — covering ABA and state bar duties, the threats actually hitting firms this year, a tiered control checklist, vendor and AI risk, incident response, and cyber insurance.

14 min read
Cybersecurity Incident Response for Law Firms (2026): The Complete Playbook
Incident Response

Cybersecurity Incident Response for Law Firms (2026): The Complete Playbook

The definitive 2026 guide to cybersecurity incident response for law firms — roles, the hour-by-hour playbook, privilege preservation, regulator and bar notification clocks, vendor and OCG obligations, tabletop exercises, and the IR retainer questions that actually matter.

16 min read
Law Firm Data Breach: The 72-Hour Response Playbook (2026)
Incident Response

Law Firm Data Breach: The 72-Hour Response Playbook (2026)

A step-by-step law firm data breach response playbook for 2026: how to confirm the incident, preserve privilege, trigger your cyber policy, notify clients and regulators, and avoid the mistakes that turn an incident into a malpractice claim.

12 min read
ABA Model Rule 1.6: A Practical Cybersecurity Checklist for 2026
Compliance

ABA Model Rule 1.6: A Practical Cybersecurity Checklist for 2026

Rule 1.6(c) requires 'reasonable efforts' to protect client information. Here's what reasonable actually looks like in 2026 — and how to document it.

8 min read
The Phishing Playbook Targeting Law Firms in 2026
Threat Intel

The Phishing Playbook Targeting Law Firms in 2026

Adversaries have moved past generic invoice scams. The current wave uses court-filing impersonation, MFA fatigue, and AI-cloned partner voices.

6 min read
Securing Client Intake Portals Without Killing Conversion
Engineering

Securing Client Intake Portals Without Killing Conversion

Intake forms are the highest-value, lowest-protected surface at most firms. Here's how to harden them without adding friction.

7 min read
What Underwriters Will Actually Ask You in 2026 Renewals
Insurance

What Underwriters Will Actually Ask You in 2026 Renewals

Cyber insurance renewal questionnaires have doubled in length. The questions that move premiums are not the ones you'd expect.

5 min read
The First 72 Hours: An Incident Response Playbook for Law Firms
Incident Response

The First 72 Hours: An Incident Response Playbook for Law Firms

Most firms lose the case in the first three hours. A practical, hour-by-hour playbook for the moments after detection.

10 min read
Using AI Tools Without Waiving Privilege
AI & Privilege

Using AI Tools Without Waiving Privilege

ChatGPT, Copilot, and the next ten tools your associates will install. A framework for AI adoption that keeps work product protected.

9 min read

Browse by topic

Every guide, organized by subject

Incident Response

Security Testing

Data Security

Compliance

Insurance

Training & Awareness

IT & Operations

Cybersecurity

Legal Counsel

Penetration Testing

Breach Counsel

Data Privacy

Cybersecurity Attorney

Cybersecurity for Lawyers

Attorney File Sharing

Checklist

IT Security

Guides

Threats

Guide

Threat Intel

Engineering

AI & Privilege