C-Suite Involvement in Cybersecurity Is Little More Than Lip Service

August 23, 2024 at 10:07AM The rise in cybersecurity threats impacts businesses of all sizes, necessitating proactive defenses and collective effort. An ExtraHop report highlights insufficient C-suite involvement in managing cyber-risk, leading to organizational overconfidence and frequent ransomware incidents. Improved internal alignment, leadership involvement, and investment in cyber-risk tools are essential. Successful integration of cybersecurity … Read more

Bringing Security Back into Balance

August 4, 2024 at 02:19AM Trend Micro CEO Eva Chen discusses the need for a balanced cybersecurity strategy that aligns with business goals. Highlighting the recent CrowdStrike outage as a cautionary tale, Chen emphasizes the importance of proactive cybersecurity measures and a business-aligned cyber strategy to prevent future incidents. She also emphasizes the impact of … Read more

CISOs Growing More Comfortable With Risk, But Better C-Suite Alignment Needed

June 26, 2024 at 05:49PM Netskope’s global research reveals evolving CISO roles, with 92% facing tensions with the C-suite due to changes in cyber threats. 57% report increased risk appetite, driven by real cyber incidents and better data access. CISOs aim to be business enablers but struggle to innovate due to C-suite alignment issues. Netskope … Read more

Catching Up on Innovation With NIST CSF 2.0

June 20, 2024 at 10:40AM The NIST Cybersecurity Framework 2.0 (NIST CSF 2.0) arrives at a critical moment, as ransomware attacks and other cybersecurity threats are on the rise. It emphasizes the need for organizations to reevaluate their security measures, make targeted investments, and prioritize organization-wide security hygiene to effectively combat evolving cyber threats. Based … Read more

Mitigating Third-Party Risk Requires a Collaborative, Thorough Approach

March 25, 2024 at 10:06AM Most organizations have more agency and flexibility to manage third-party risk than they realize, despite the issue initially appearing overwhelming. Based on the meeting notes, the key takeaway is that organizations have more agency and flexibility to address third-party risk than they realize, despite the issue seeming daunting. Full Article

Soft Skills Every CISO Needs to Inspire Better Boardroom Relationships

December 15, 2023 at 10:06AM The role of the Chief Information Security Officer (CISO) is evolving rapidly. CISOs now need to collaborate across the organization, communicate effectively with stakeholders, and develop storytelling skills. These soft skills are essential for navigating the changing cybersecurity landscape, aligning security strategies with business goals, and justifying security investments to … Read more

Communicating with Impact: Tips for Discussing Cybersecurity Metrics with Boards

December 14, 2023 at 02:06PM CISOs are tasked with evaluating and reporting on cybersecurity’s impact on the business. They need to identify relevant metrics that provide insight into risk management, threat landscape, and control effectiveness. Presenting cybersecurity metrics in the context of business risk and aligning them with emerging risks and regulatory changes is crucial … Read more