How to Talk Cybersecurity to the Board

in #security6 years ago

Talking to the BOD - L.Spitzner.png

Outstanding advice on how to present to the Board. Lance Spitzner, as always, delivers great insights! This is a must read for those who will be influencing the strategic direction of an organization in front of the BOD. Every slide is spot on, emphasizing the need to be strategic, in business terms, for the caretakers. The one add I would submit is for the presenter to have a long-term plan in their mind on how the cybersecurity capability becomes 'sustainable' over time. ie. consistently delivering to the desired level of risk acceptance, remaining cost effective, and adaptable over time as the organization and products change. Talk the journey, not the steps.

Lance Spitzner published his SANS 2018 presentation slides and notes. They can be found here: https://owncloud.sans.org/index.php/s/Y03feX6bS0Dsno4

Sort:  

Cybersecurity is like a foreign language to many boards, yet good communication is crucial. Takes both sides to find a common lexicon so the risks can be understood and a strong, but attainable, direction given.

If the CISO can't bridge that gap, then it becomes an uphill battle fraught with danger for the organization, partners, and customers.

i love the level of thought and organization put into this!

The products I work on are in need of cyber security. Airbags and pretensioners can be hacked, and this was proven by college students in Europe. We are currently working on securing our products via cyber security. Extremely important. Too many people with too much time on their hands...they will attack anything with an ecu.

Yes, vehicle cybersecurity directly has an impact on safety of passengers/others, availability of the syste, and confidentiality of user data.

This is so relevant in these days. So many companies neglect cybersecurity and don't know the potential dangers if hackers take over their systems. Many companies use old and outdated software so this is definitely something that needs to be adressed to the boards! Thanks for sharing

For all great technology, the benefits come with equitable risks. We must actively manage those risks.

Interesting way to explain the value of cybersecurity and support it in your business. Regards

Very interesting post

this is really new to me.

that is damn true..

Thanks for share this
images.jpg

In this day and age a good Cybersecurity policy is essential to any organisation, we have a solution that will give the board the confidence to protect their infrastructure. Uncloak

Coin Marketplace

STEEM 0.20
TRX 0.13
JST 0.030
BTC 65762.16
ETH 3485.95
USDT 1.00
SBD 2.50