Cybersecurity 2026: Proactive Defense for CPAs
Date: Wednesday, July 22, 2026
Instructor: Stephen M. Yoss
| Begin Time: |
9:00am Pacific Time 10:00am Mountain Time 11:00am Central Time 12:00pm Eastern Time |
| CPE Credit: |
2 hours for CPAs |
|
In the modern financial landscape, the security of a CPA’s practice is defined by the strength of their identity management and the resilience of their workflows. In 2026, the distinction between office and remote work has faded, as the cloud serves as our universal workspace. However, this borderless environment has increased the success of persistent threats like Business Email Compromise (BEC), ransomware, and sophisticated social engineering. This course provides a comprehensive update on these fundamental risks, examining how traditional attacks have become more frequent and harder to detect through automation.
We will analyze the intersection of established security principles and emerging technological challenges. This includes managing the confidentiality risks posed by staff using unauthorized AI tools for client work and understanding why the professional “minimum standard” for cybersecurity has reached a record high. Participants will explore practical frameworks for implementing Zero Trust security and strengthening authentication protocols. By focusing on the most likely threats and the most effective defenses, this session provides a clear roadmap for protecting client trust and maintaining professional liability standards in an increasingly automated world.
Who Should Attend
CPAs and financial professionals seeking a practical foundation in modern cybersecurity.
Topics Covered
- Defending Against Persistent Threats: BEC, Ransomware, and Social Engineering
- Data Governance: Managing Unauthorized AI and Unsanctioned Software Usage
- The Modern Perimeter: Identity Management and Multi-Factor Authentication
- Professional Liability: Meeting the Rising Standards of Cybersecurity Due Diligence
- Preventing data breaches in your organization
Learning Objectives
- Differentiate between current Business Email Compromise (BEC) and sophisticated social engineering tactics
- Analyze the lifecycle of modern ransomware to implement more effective firm-wide defenses
- Evaluate the confidentiality risks associated with using unsanctioned AI tools in accounting
- Apply Zero Trust principles to secure client data in a cloud-based environment
- Detect how automated tools are currently being used to supercharge traditional cyberattacks
- Discuss the relationship between privacy and security and the need for data governance in an organization
Level
Basic
Instructional Method
Group: Internet-based
NASBA Field of Study
Information Technology (2 hours)
Program Prerequisites
None
Advance Preparation
None