Author Bio

Jason Pufhal

Jason Pufahl

Chief Revenue Officer & Partner

Jason Pufahl runs revenue at Vancord, which is a slightly unusual job for someone who spent the last 20 years in information security. He's also a partner and sits on the Board of Directors, so the growth of the company isn't an abstract goal for him. It's personal.

The path here wasn't accidental. Jason ran security at the University of Connecticut as their CISO, then joined Vancord to lead the security practice and help shape it into a full MSSP. Now he runs the revenue side, which sounds like a pivot until you talk to him for ten minutes. His view: selling security isn't really about selling. It's about understanding what an organization is actually exposed to, telling them the truth about it, and being honest about what it takes to fix. The companies that figure that out tend to grow. The ones that don't, don't.

He works with clients on the messy stuff: CMMC, NIST 800-171, HIPAA, FERPA, CJIS. The compliance frameworks that sound dry until you're three weeks from an audit. He holds a CISM and a Master's in Educational Technology from UConn.

You can hear him every week on CyberSound, Vancord's podcast, where he and the team talk about what's actually happening in cybersecurity without the vendor spin. He also speaks at industry events, usually about leadership, compliance, or what it really takes to defend a mid-sized organization in 2026.

When he's not working, he's mountain biking, running, skiing, or playing guitar. Probably not all on the same day.

cybersecurity challenges schools face during the school year

Cybersecurity Challenges Schools Face During the School Year

Read More
ai in the classroom adoption and student innovation in public schools social

AI in the Classroom – Adoption and Student Innovation in Public Schools

Read More
how fast should incident response be during a cyber attack

How Fast Should Incident Response Be During a Cyber Attack?

Read More
conduent cybersecurity breach lessons for dod manufacturing supply chains and how to prevent the next one featured img

Conduent Cybersecurity Breach: Lessons for DoD Manufacturing Supply Chains – And How to Prevent the Next One

Read More
pen testing demystified how penetration testing reveals real attack paths social

Pen Testing Demystified: How Penetration Testing Reveals Real Attack Paths

Read More
cybersound ep142 cybersecurity predictions reality check

Cybersecurity Predictions: A Reality Check & 2026 Risks Part 2

Read More
cybersound ep141 cybersecurity predictions reality check

Cybersecurity Predictions: A Reality Check & What’s Next Part 1

Read More
cybersound health data privacy hipaa social

Health Data & Privacy Risks You Should Know

Read More
mssp vs msp vs hybrid providers which is right for your business featured img

MSSP vs MSP vs Hybrid Providers: Which Is Right for Your Business?

Read More
mssp service providers list how to choose the right one for your business featured img

MSSP Service Providers List: How to Choose the Right One for Your Business

Read More
from prevention to response how a full service mssp safeguards your business end to end featured img

From Prevention to Response: How a Full-Service MSSP Safeguards Your Business End-to-End

Read More
how cybersecurity consulting firms prepare you for compliance audits and certification featured img

How Cybersecurity Consulting Firms Prepare You for Compliance Audits and Certification

Read More