<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>TechFalcon IT Blog</title><description>Practical IT, cybersecurity and AI guidance for Canadian businesses.</description><link>https://techfalcon.ai/</link><language>en-ca</language><item><title>Data breach reporting in Alberta: PIPA, HIA and PIPEDA explained</title><link>https://techfalcon.ai/blog/alberta-breach-notification-pipa-hia-pipeda/</link><guid isPermaLink="true">https://techfalcon.ai/blog/alberta-breach-notification-pipa-hia-pipeda/</guid><description>Most private-sector organizations in Alberta fall under the Personal Information Protection Act (PIPA), which requires notifying the Information and Privacy Commissioner without unreasonable delay when a breach creates a real risk of significant harm. Health custodians follow the Health Information Act, which has its own notification duties, and some organizations fall under the federal PIPEDA. The key early step is a fast, documented investigation to determine what was accessed.</description><pubDate>Tue, 06 Oct 2026 00:00:00 GMT</pubDate><category>Compliance</category></item><item><title>Microsoft 365 Copilot oversharing: fix permissions before you switch it on</title><link>https://techfalcon.ai/blog/copilot-oversharing-permissions/</link><guid isPermaLink="true">https://techfalcon.ai/blog/copilot-oversharing-permissions/</guid><description>Microsoft 365 Copilot does not bypass permissions. It shows users content they already have access to. The risk is that most organizations have years of overshared SharePoint sites, Teams and OneDrive links, and Copilot makes that content easy to find. Audit and tighten sharing, apply sensitivity labels to confidential data, and roll Copilot out in stages.</description><pubDate>Tue, 06 Oct 2026 00:00:00 GMT</pubDate><category>AI</category></item><item><title>Cyber insurance questionnaires: the 7 controls insurers ask about</title><link>https://techfalcon.ai/blog/cyber-insurance-questionnaire-controls/</link><guid isPermaLink="true">https://techfalcon.ai/blog/cyber-insurance-questionnaire-controls/</guid><description>Most cyber insurance applications focus on the same handful of controls: multi-factor authentication, endpoint detection and response, tested backups, patching, security training, email security and an incident response plan. Answering &apos;yes&apos; when a control is only partly in place can put a future claim at risk, so confirm each answer against what is actually configured before you sign.</description><pubDate>Tue, 06 Oct 2026 00:00:00 GMT</pubDate><category>Compliance</category></item></channel></rss>