Blog Archive – Page 2
July 6, 2026 – August 4, 2026 · page 2 of 12
A Quarterly Access Review for Your Practice Management System
Stale user accounts and over-broad permissions in Clio and similar platforms are a quiet risk. Use this quarterly checklist to tighten who can see what.
Legal CybersecuritySuspicious Login Alert: A Walkthrough of the First 24 Hours
A hypothetical walkthrough of how a small law firm should respond to an unusual sign-in alert, from first triage to lessons learned, hour by hour.
Cyber Insurance and Client Security QuestionnairesCyber Insurance Applications: Answer Accurately, Not Optimistically
A cyber insurance application is a representation about your controls. Learn how to verify your answers before you sign so a claim is not jeopardized later.
Legal Ethics and Technology ComplianceRule 5.3 and Your IT Vendor: Supervising Nonlawyer Help
Model Rule 5.3 addresses supervision of nonlawyer assistance. Here is what that can mean for how your firm selects, contracts with and oversees its IT provider.
AI and Emerging Technology for Law FirmsBuilding a Sanctioned AI Tool List for Your Law Firm
Staff are already using AI tools whether you approve them or not. Here is how to build a short, enforceable list of sanctioned tools and the rules around it.
Practice Management TechnologyE-Signature and Client Portals: Secure Ways to Exchange Documents
Compare email attachments, client portals and e-signature tools for sharing sensitive documents with clients, with practical rules for choosing and using each.
Legal CybersecurityMobile Device Security for Attorneys Who Work From Anywhere
How to secure attorneys' phones, tablets and travel laptops: encryption, management, public Wi-Fi, border crossings and what to do when a device is lost.
Cyber Insurance and Client Security QuestionnairesOutside Counsel Guidelines: Security Terms Your Firm Should Expect
A look at the security terms corporate clients put in outside counsel guidelines, from encryption to audit rights, and how to prepare your firm to meet them.
Legal Ethics and Technology ComplianceModel Rule 1.4 and Cyber Incidents: What Clients Should Hear
How the duty to communicate under Model Rule 1.4 applies when a cyber incident touches client data, and how to prepare clear, timely client notices.
Managed IT for Law FirmsLaw Firm Help Desk Metrics Worth Asking Your IT Provider For
The help desk and security metrics a managing partner can request from an IT provider each quarter, and how to read them without technical expertise.
Backup and Disaster Recovery for Law FirmsMicrosoft 365 Backup Myths That Law Firms Still Believe
Five common myths about Microsoft 365 and cloud backup that leave law firms exposed, and what to verify with your provider before something is deleted.
Legal CybersecurityPasswords, Passkeys and Password Managers for Law Firm Staff
A practical guide to modern password hygiene for law firms: password managers, passkeys, MFA methods, and the outdated advice you can stop giving your staff.
Cyber Insurance and Client Security QuestionnairesCyber Insurance Renewal Prep: What Underwriters Ask Law Firms
What cyber insurers commonly ask law firms at application and renewal, how to prepare answers, and which security controls tend to matter most for coverage.
Legal Ethics and Technology ComplianceModel Rule 5.3 and Your IT Vendors: Supervising Nonlawyer Help
Learn how ABA Model Rule 5.3 applies to IT providers, cloud vendors and other outside services, and what practical steps a firm can take to supervise them.
Managed IT for Law FirmsIn-House IT Person or Managed Provider? A Practical Comparison
Comparing an in-house IT employee, a managed IT provider and a hybrid model for small and mid-size law firms, with cost, coverage and security tradeoffs.
Backup and Disaster Recovery for Law FirmsDisaster Recovery Planning When Your Office Is Unreachable
How a law firm can keep working during a storm, fire or building outage: remote access, communications, paper backups and a simple continuity plan.
Wire Fraud and Email SecurityFive Business Email Compromise Scams Aimed at Lawyers
Common business email compromise schemes aimed at law firms, including fake closing instructions and spoofed partner requests, and how to spot and stop each.
AI and Emerging Technology for Law FirmsHallucinated Citations: A Verification Workflow for AI-Assisted Drafts
Courts have sanctioned lawyers for AI-invented case citations. Here is a repeatable verification workflow for briefs, memos and filings drafted with AI help.
Legal Ethics and Technology ComplianceABA Formal Opinion 483 and Your Firm's Breach Response Plan
What ABA Formal Opinion 483 says about lawyers' duties after a data breach, and how to turn it into a practical incident response and client notice plan.
Managed IT for Law FirmsWhat a Good Managed IT Agreement for a Law Firm Should Include
A buyer's guide to managed IT service agreements for law firms: scope, response times, security duties, confidentiality, reporting and how to exit cleanly.
Backup and Disaster Recovery for Law FirmsSetting Recovery Time and Recovery Point Goals for Your Firm
Learn RTO and RPO in plain English and set realistic recovery goals for your law firm's key systems, with a worksheet approach any administrator can use.
Wire Fraud and Email SecurityDMARC, SPF and DKIM: A Plain-English Guide for Law Firms
A non-technical explanation of SPF, DKIM and DMARC email authentication, why they help stop spoofing of your firm's name, and how to roll them out safely.
AI and Emerging Technology for Law FirmsAI Note-Takers on Client Calls: Convenience, Risk and Rules
Should your firm let AI notetakers join client calls? Learn the confidentiality, privilege and consent issues and how to set practical rules before they spread.
Practice Management TechnologyOnboarding a New Attorney: The IT Checklist Firms Forget
A day-by-day IT onboarding checklist for new attorneys and staff, from accounts and MFA to device setup and training, so nobody gets unsafe shortcuts.
Legal CybersecurityMoney, Files and Leverage: What Attackers Want From a Law Firm
Why attackers target law firms of every size, what data and access they want, and which low-cost security controls matter most for small and mid-size practices.
Backup and Disaster Recovery for Law FirmsLive Data, Local Copy, Cloud Copy: Building 3-2-1 Backups at a Firm
What the 3-2-1 backup rule means, why ransomware has made it more important, and how a law firm can apply it with cloud tools and a realistic restore test.
Wire Fraud and Email SecurityClosing Day Wire Fraud: A Safe-Wiring Procedure for Your Firm
A step-by-step wire verification procedure for law firms handling closings and settlements, designed to stop fraudulent payment instructions before funds move.
AI and Emerging Technology for Law FirmsFive Questions to Ask Any AI Vendor Before Your Firm Signs
A vendor due-diligence guide for law firms evaluating generative AI tools: data use, retention, access, security controls and contract terms to confirm.
Practice Management TechnologyDocument Management for Small Firms: Folders, DMS or Both?
A buyer's guide for small law firms deciding between shared folders, SharePoint and a full legal document management system, with security and cost tradeoffs.
Legal CybersecurityRansomware at a Law Firm: A Hypothetical Hour-by-Hour Walkthrough
A hypothetical ransomware incident at a small firm, hour by hour, showing what to do, who to call and which decisions to make before attackers force them.