2 min read
#34 - Don’t Be That Guy - The Utilization Lies We Tell Ourselves (Ryan Alter)
In this Don’t Be That Guy episode, Josh Peterson and co-host Ryan Alter confront one of the most persistent blind spots in MSP operations:...
2 min read
Josh Peterson
:
Nov 29, 2025 12:00:00 AM
In this From the Trenches episode, independent assessor Dan Collins joins Josh Peterson to unpack how mid-market organizations should think about cyber risk, regulatory compliance, and security governance. Drawing on decades of work in technology audit and risk consulting, Dan explains the role of an independent assessor across frameworks like PCI, SOC, HIPAA, FedRAMP, and StateRAMP—and how those assessments intersect with MSPs, cyber insurers, and incident-response partners. Throughout the conversation, Josh and Dan connect these themes back to the broader operating system of an MSP, showing how programs like the BMK Vision platform help owners turn security and compliance obligations into a structured plan for growth, accountability, and risk reduction.
As the discussion progresses, Dan highlights why the emerging office of the CISO—and especially fractional vCISO services—represents a significant opportunity for MSPs willing to step beyond tools and tickets into true security leadership. He contrasts the behaviors of smaller firms that treat compliance as a checkbox with more mature organizations that align business risk, cyber insurance, and technical controls under cohesive governance. The episode closes with practical guidance on building a sales engine around security-led offerings, including how to budget 14–18% of revenue for sales and marketing, how to position advisory services alongside managed security, and how to recruit and develop the next generation of policy- and strategy-focused security leaders in an AI-enabled future.
For MSPs aiming to deepen their role in cybersecurity leadership and advisory services, explore these related articles: how MSPs improve cybersecurity posture and network security and the role of MSPs in implementing Zero-Trust security models.
Return to the BMK Vision Podcast main page →
Dan Collins is the CEO and founder of 360 Advanced, a cybersecurity and compliance firm headquartered in St. Petersburg, Florida. With more than 20 years of experience in technology audit, risk consulting, and strategy—including prior roles in Big Four technology risk practices—Dan leads a team that delivers SOC, PCI, ISO, HITRUST, HIPAA, FedRAMP, StateRAMP, CMMC, and other security and privacy assessments for organizations ranging from fast-growing mid-market firms to large enterprises across healthcare, financial services, technology, government, and business services.
🌐 Learn more about 360 Advanced →
Josh Peterson is the CEO of Bering McKinley and host of the BMK Vision Podcast. Through the From the Trenches series, Josh highlights MSP leaders who redefine growth through creativity, resilience, and genuine client connection.
📺 Subscribe on YouTube → | Connect with Josh on LinkedIn →
2 min read
In this Don’t Be That Guy episode, Josh Peterson and co-host Ryan Alter confront one of the most persistent blind spots in MSP operations:...
2 min read
In this From the Trenches episode, Bob Coppedge, Founder & CEO of Simplex-IT, joins Josh Peterson to unpack more than 18 years in managed...
2 min read
In this From the Trenches episode, Josh Peterson sits down with Bill Haber, Co-Founder and CEO of TEKRiSQ, to unpack the messy intersection...