CISO's perspective from the frontlines

Latest stories

Vendors, Stop shooting yourselves in the foot

V

CISOs talk to each other, a lot!!! even on weekends, and when something is going on the word is getting our fast. We also rely on each other professionally and mentally, and some time even emotionally. A few weeks ago, I expressed my frustration about a sales tactic a Business Development Representative (BDR) tried to use on me, and boy the flood gates opened and people started to share their...

Which security game are you playing?

W

A few years ago I watched Simon Sinek excellent talk “Most Leaders Don’t Even know the game they are in” and it changed completely how I am thinking about practicing cybersecurity. In his talk, Sinek presented the concept of finite vs. infinite games, and how this concept applies to leadership. Finite game vs. infinite game A finite game as a game with known players, fixed...

Interviewing for a CISO role – Part 2

I

In the previous post (Part 1), we explored some business questions you, the prospective CISO, should ask to truly grasp the organization’s landscape and set yourself up for success. In this part we will focus on questions about the position itself. This is important because the previous questions were understanding the company’s DNA, and gain understanding if the organization and its culture are...

Interviewing for a CISO role – Part 1

I

Landing a CISO interview is thrilling, especially for newcomers! But be prepared for a marathon. These interviews can involve multiple rounds with numerous participants, particularly if it’s the organization’s first CISO hire. The most I ever had was 19 people who interviewed me. Yes, you read it right! So why does it take so long? because many times organizations don’t really...

Essential Skills for a Thriving CISO: The modern Renaissance man

E

Cybersecurity isn't just a cost anymore, it's a strategic advantage. That's why CISOs have gone from behind-the-scenes techies to boardroom influencers. The CISO is a Renaissance figure of the digital age - blending tech mastery, strategic foresight, and human touch. This path is demanding, but for those who answer, the triumphs are equally profound.

4 Ways to Stop Self-Sabotage

4

Do you ever feel like you’re your own worst critic? You set goals, make plans, and then suddenly find yourself veering off course, tripped up by negative thoughts and self-doubt. Welcome to the club! I recently listened to Dr. Judy Ho excellent audiobook: 4 ways to stop self sabotage. It is a short 30 minuted audiobook and has great tips and strategies. Self-sabotage is a surprisingly...

So, you want to be a CISO

S

Ever dreamt of becoming a CISO? Before grabbing the reins, consider the motivations. Titles and fat checks are tempting, but the reality is demanding, stressful, and requires more than tech mastery. The right reasons? Leadership, protecting critical assets, building high-performing teams, and shaping a security-aware culture. The best part? Collaborating with an amazing security community. But...

Risk never sleeps podcast: Securing the Digital Future with Adaptability and Communication

R

In an ever-evolving digital landscape, cybersecurity has become more critical than ever. In this episode of Risk Never Sleeps, I visited with Ed Gaudet CEO at Censinet and shared insights earned from my career journey, highlighting adaptability and essential skills as key elements of his success across diverse industries. We talked about emotional intelligence in cybersecurity communication, AI...

Cyber Security Headlines Week in Review: July 10-14, 2023

C

In this episode of CISO Series, Cyber Security Headlines, I am reviewing this week’s cyber security headlines and stories with Sean Kelly We talked about: Threat actors gaining access to US government email USB drive malware attacks Cloud environment breaches US and EU agree on new data transfer agreement JumpCloud resets customer API keys California resident charged with cyberattack on...

Defense in depth podcast: Third Party Risk vs. Third Party Trust

D

This time I am sitting in as a guest co-host in this episode of Defense in Depth podcast. David Sparks, Dan Walsh and I talked about how businesses grow based on trust, but they have to operate in a world of risk. Even cybersecurity operates this way, but when it comes to third party analysis, what if we leaned on trust more than trying to calculate risk?

CISO's perspective from the frontlines

Topics

Follow me

Get in touch

Do you want to get in touch? have a question? want me to speak at your event? need advice? please use the form below. No sales messages please!
Please enable JavaScript in your browser to complete this form.