### The Platform

Design a security program that builds trust, scales with your business, mitigates risk, and empowers your team to work efficiently.

- [Our technology](https://www.strikegraph.com/platform)
- [Built for AI](https://www.strikegraph.com/built-for-ai)
- [Why Strike Graph](https://www.strikegraph.com/why-strike-graph)
- [All frameworks](https://www.strikegraph.com/security-compliance-frameworks)

### Features

- [Action Items (POA&M)](https://www.strikegraph.com/action-items)
- [AI Security Assistant](https://www.strikegraph.com/ai-security-assistant)
- [Audits & certifications](https://www.strikegraph.com/measure/security-certifications)
- [Customizations](https://www.strikegraph.com/customize-compliance)
- [Dashboards & reporting](https://www.strikegraph.com/compliance-dashboards-reporting)
- [Enterprise content](https://www.strikegraph.com/enterprise-content-management)
- [Integrations](https://www.strikegraph.com/integrations)
- [Pen testing](https://www.strikegraph.com/penetration-testing)
- [Questionnaires](https://www.strikegraph.com/ai-security-reports-for-vendor-assessments)
- [Risk management](https://www.strikegraph.com/risk-management)
- [SBOM Manager](https://www.strikegraph.com/sbom-manager)
- [Self-Assessment](https://www.strikegraph.com/self-assessments)
- [System Security Plan (SSP)](https://www.strikegraph.com/system-security-plan)
- [Vulnerability scanning](https://www.strikegraph.com/vulnerability-scanning)
- [Verify AI](https://www.strikegraph.com/verifyai)

### Solutions

#### For industries

- [Data Centers](https://www.strikegraph.com/solutions/data-centers)
- [Life Sciences](https://www.strikegraph.com/solutions/life-sciences)
- [Manufacturing](https://www.strikegraph.com/solutions/manufacturing)
- [Medical Devices](https://www.strikegraph.com/solutions/medical-devices)

### Frameworks

- [CCPA/CPRA](https://www.strikegraph.com/ccpa)
- [CMMC](https://www.strikegraph.com/nist-800-171)
- [DORA](https://www.strikegraph.com/dora)
- [GDPR](https://www.strikegraph.com/gdpr)
- [HIPAA](https://www.strikegraph.com/hipaa)
- [SOC 2](https://www.strikegraph.com/soc2)
- [HITRUST CSF](https://www.strikegraph.com/hitrust)
- [ISO 27001](https://www.strikegraph.com/iso-27001)
- [ISO 27701](https://www.strikegraph.com/iso-27701)
- [ISO 42001](https://www.strikegraph.com/iso-42001)
- [NIST CSF](https://www.strikegraph.com/nist-csf)
- [NIST 800-53](https://www.strikegraph.com/fedramp)
- [NIST 800-171](https://www.strikegraph.com/nist-800-171)
- [PCI DSS](https://www.strikegraph.com/pci-dss)
- [SOC 1](https://www.strikegraph.com/soc1)
- [TISAX](https://www.strikegraph.com/tisax)

### Ready to see Strike Graph in action?

Find out why Strike Graph is the right choice for your organization. **What can you expect?**

- Brief conversation to discuss your compliance goals and how your team currently tracks security operations
- Live demo of our platform, tailored to the way you work
- All your questions answered to make sure you have all the information you need
- No commitment whatsoever

#### We look forward to helping you with your compliance needs!

### Beyond Big Cities: Understanding Cybersecurity in Mid-Sized Communities | Secure Talk with Lars Kruse  
**October 21, 2025**

When we think about cybersecurity, images of tech giants and major financial centers come to mind—but what about the towns where most of us actually live? This SecureTalk episode with cybersecurity researcher Lars Kruse explores an often-overlooked question: how do communities of 20,000-100,000 residents protect themselves in an increasingly digital world?

#### Key topics explored include:

- How mid-sized communities differ from "smart cities" in their security approach
- The balance between regulatory requirements like GDPR, NIS2, and DORA
- Why employee training consistently ranks as the most critical security investment
- Practical frameworks for managing third-party technology vendors
- The role of political leadership in prioritizing cybersecurity budgets
- How research institutions contribute to better security policies

Kruse shares optimistic findings too: many organizations already practice good security fundamentals—they just need guidance connecting their existing processes to compliance requirements. The episode emphasizes that cybersecurity isn't about expensive technology alone; it's about building resilient practices that protect community services and citizen data.

Perfect for professionals in public administration, IT management, business operations, or anyone curious about how digital security works beyond headlines. This conversation offers practical knowledge about protecting the digital infrastructure we all depend on daily.

#### View full transcript

Justin Beals: Hi Lars, welcome to SecureTalk.

Lars Kruse: Thanks for having me, Justin, and thank you for your interest in my research.
