Information Governance
Annual AML/CFT reporting is also a records and access check.
Practical technology checks before DIA's 31 August 2026 annual reporting date for portal access, Microsoft 365 evidence, delegates, supplier records, and retention.
Insights
Cybersecurity, Microsoft 365 governance, privacy, resilience, and safe AI guidance for New Zealand professional services leaders.
Information Governance
Practical technology checks before DIA's 31 August 2026 annual reporting date for portal access, Microsoft 365 evidence, delegates, supplier records, and retention.
Information Governance
Practical technology checks after DIA's 17 August 2026 AML/CFT guidance update summary for document ownership, Microsoft 365 access, supplier portals, and evidence records.
Device Security
Practical checks after OPC's lost USB decision note for removable media, Microsoft 365 workarounds, encryption, staff awareness, and incident readiness.
Safe AI
Practical checks after the FMA's AI in financial advice review for approved tools, Microsoft 365 access, human review, supplier controls, and records.
Supplier Security
Practical checks for third-party access, Microsoft 365 integrations, assurance evidence, incident reporting, and personal information handling.
Fraud Readiness
Practical checks after current NZ impersonation alerts for unexpected calls, payment changes, remote-access requests, Microsoft 365 controls, and first-hour scam response.
Website Governance
Practical checks for WordPress updates, supplier access, backups, forms, logs, and first-hour incident response.
Microsoft 365 Governance
Practical checks for server ownership, internet exposure, patch evidence, logs, backups, supplier records, and Microsoft 365 continuity.
Cybersecurity
Practical checks for appliance ownership, vendor patching, logs, backups, supplier evidence, and Microsoft 365 continuity.
Network Security
Practical checks for router ownership, firmware, management access, monitoring, backups, and Microsoft 365 continuity.
Information Governance
Practical checks for identity evidence, supplier portals, Microsoft 365 access, audit records, and safe AI use.
Account Security
What to check across password reuse, MFA, Microsoft 365 sign-ins, mailbox rules, and sensitive folder access.
Fraud Readiness
Practical checks for verification, Microsoft 365 mailbox controls, access permissions, complaints capture, and safe AI use.
Information Governance
What the 1 July 2026 consumer credit transfer to the FMA can prompt firms to check in Microsoft 365, mailboxes, records, and access.
Privacy Technology
Practical checks for biometric access, identity, visitor, and verification systems before the 3 August 2026 transition date.
Technology Risk
What RBNZ's June 2026 material can teach professional services firms about critical systems, suppliers, Microsoft 365, and recovery.
Cybersecurity
What NCSC's June 2026 updates mean for MFA, access control, patching, monitoring, recovery, and safe AI governance.
Safe AI
Clear rules for approved tools, client confidentiality, human review, and Microsoft 365 access in New Zealand professional services firms.
Microsoft 365 Governance
How to check SharePoint, Teams, guest users, old links, and broad permissions before quiet access gaps become client-confidence issues.
Device Security
A first-hour response guide for device encryption, remote wipe, account protection, privacy assessment, and client-risk checks.
Senior IT Support
What senior technology support should cover beyond tickets: governance, Microsoft 365 reviews, backup testing, security, and planning.
Cybersecurity
Practical cybersecurity guidance for New Zealand professional services firms across Microsoft 365, devices, privacy breach response, and first-hour incident readiness.
Safe AI
How New Zealand professional services firms can use AI more safely, with practical rules for confidentiality, Microsoft 365 access, and staff guidance.