

#217 - Navigating compliance and risk with Joshua Hoffman, CRO at ControlCase
12 snips May 27, 2025
In this discussion, Joshua Hoffman, the Chief Revenue Officer at ControlCase, sheds light on transforming compliance into a strategic advantage. With a rich background in cybersecurity, he emphasizes a shift from basic compliance to dynamic risk management. Joshua explores the role of AI in navigating complex regulatory frameworks like CMMC and PCI DSS. He also evaluates how small businesses can tackle new SEC disclosures, underscoring the importance of partnerships and communication in building a robust cybersecurity strategy.
AI Snips
Chapters
Transcript
Episode notes
Joshua Hoffman's Career Journey
- Joshua Hoffman shared his career journey starting with building protocol converters and progressing through roles at Dell, Palo Alto Networks, and Datto.
- His varied experience spans tech adoption, cybersecurity innovation, and hybrid revenue models involving MSPs and MSSPs.
Compliance as Cybersecurity Map
- Compliance frameworks like CMMC, SOC2, and HIPAA mainly map cybersecurity controls to protect data and operations.
- Despite different rules, these controls act as logical cybersecurity maps that require expertise and collaboration to implement effectively.
Leverage Overlapping Controls
- Clients benefit from combined audits since many controls overlap across frameworks like PCI, SOC 2, and HIPAA.
- Leveraging technology to map evidence to multiple frameworks saves considerable time, money, and stress.