Recent enforcement actions by the U.S. Securities and Exchange Commission (SEC) against corporations serve as warnings for public companies of the SEC's increased emphasis on cybersecurity, and of the potential consequences of inadequate cybersecurity practices. Implementation of practices has become especially crucial considering the newly required cybersecurity incident reporting and cybersecurity risk management and governance disclosure for public companies passed by the SEC last year. This article provides the reader with food for thought around cybersecurity lessons and practical tips.