<?xml version="1.0" encoding="UTF-8"?>
<urlset xmlns="http://www.sitemaps.org/schemas/sitemap/0.9">

  <!-- Core pages -->
  <url>
    <loc>https://carefulsecurity.com/</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>1.0</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/services</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/services/quick-fix-30</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/services/audit-ready-90</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/services/securely-ever-after</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/pricing</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>weekly</changefreq>
    <priority>0.9</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/frameworks</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/frameworks/soc2</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/frameworks/iso-27001</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/frameworks/hipaa</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/frameworks/pci-dss</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/frameworks/iso-42001</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.8</priority>
  </url>

  <!-- Industry pages -->
  <url>
    <loc>https://carefulsecurity.com/industry/b2b-saas</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/industry/healthcare</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/industry/fintech</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/industry/manufacturing</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/industry/startups</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>

  <!-- About / Info pages -->
  <url>
    <loc>https://carefulsecurity.com/about-us</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/why-90-days</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/dashr</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/partner</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/contact</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>

  <!-- Blog index -->
  <url>
    <loc>https://carefulsecurity.com/blog</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>daily</changefreq>
    <priority>0.9</priority>
  </url>

  <!-- Blog articles -->
  <url>
    <loc>https://carefulsecurity.com/blog/everything-careful-security-does-explained</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/team-standards</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/why-diy-soc-2-fails-5-mistakes-that-cost-companies-50k</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/trust-but-verify-what-pickleball-taught-me-about-cybersecurity</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/price-of-a-pentest-2026</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/5-questions-every-ceo-should-answer-before-2025-ends</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/the-encryption-checklist-most-companies-get-half-right</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/how-to-read-soc2-report</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/the-incident-response-test-you-can-run-today</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/what-dashr-ai-is-and-how-it-tracks-security-maturity</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/when-the-cloud-sneezes-lessons-from-the-aws-october-2025-outage</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/why-most-companies-fail-their-first-soc-2-or-iso-27001-audit</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/when-to-hire-your-first-security-role</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/what-is-a-risk-assessment</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/the-npm-supply-chain-hack-what-happened-and-what-next</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/the-human-firewall-turning-your-team-into-cyber-defenders</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/the-importance-of-compliance-in-cybersecurity</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/stop-making-security-harder-than-it-needs-to-be</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/strengthening-startup-cybersecurity-and-leveraging-iso-27001-soc-2-for-bigger-deals</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/proving-least-privilege-in-saas-metrics-and-best-practices-for-2025</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/phishing-schmishing-how-to-spot-scam-emails-before-its-too-late</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/measuring-progress-with-security-kpis</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/in-cybersecurity-a-pound-of-preparedness-prevents-a-pound-of-worry</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/how-to-build-human-firewall</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/how-small-medium-manufacturers-can-reduce-breach-risk-and-why-network-segmentation-is-non-negotiable</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/dont-have-a-dedicated-ciso-heres-how-to-still-pass-your-audit</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/emerging-threat-supply-chain-attacks-on-the-rise</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/defending-the-mid-market--practical-strategies-for-lean-teams</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/daily-data-breaches-what-you-need-to-know-today-careful-security</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/cybersecurity-for-smb-financial-companies-2025</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/cybersecurity-attacks-on-u-s-educational-institutions-k-12-higher-ed-2023-2025</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/comprehensive-security-operations</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/compliance-without-chaos-90-day-roadmap</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/common-reasons-behind-data-breaches-in-small-to-medium-healthcare-organizations</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/carefulsecurity-com-blog-how-to-get-soc-2-compliant-without-slowing-down-engineering</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/blog-post-how-vendor-access-practices-led-to-data-breaches-at-la-manufacturers-in-2025</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/blog-on-audit-ready-in-90-days</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/audit-horror-stories-what-happens-when-youre-not-ready</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/api-security-for-fintech-threats-rate-limits-and-hmac-done-right</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/10-personal-cyber-security-tips-careful-security-shorts</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/the-state-of-cybersecurity-in-universities-are-campuses-prepared</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.6</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/the-pros-and-cons-of-ai-in-cybersecurity-and-privacy</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>
  <url>
    <loc>https://carefulsecurity.com/blog/why-healthcare-organizations-must-take-security-satisfied-seriously</loc>
    <lastmod>2026-04-15T18:37:39.453Z</lastmod>
    <changefreq>monthly</changefreq>
    <priority>0.7</priority>
  </url>

</urlset>