Cyber Security vs Resilience: The Board’s Role

Dateline: February 23, 2018 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. Cybersecurity is a business concern that must be addressed at every level of the organization.  To keep an organization secure requires awareness, understanding and actions by employees, managers and executives.   Increasingly Board of Directors are addressing cybersecurity … [Read more...]

Should You or Your Software Vendor Own The System’s Cybersecurity?

Dateline: February 9, 2018 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. Many managers assume that the software they purchase from reputable vendors is cybersecure.  After all, our vendors know their software and their vulnerabilities, issue patches all the time, and stand to lose business and their reputation if it gets out that their software is … [Read more...]

The Count and Cybersecurity

Dateline: January 26, 2018 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. This week I'm teaching a short course at MIT on the managing and leading cybersecurity.  One key theme of this program is the importance of managing the people in the ecosystem since it's been observed over and over that the human risk is significant (and possibly much larger … [Read more...]

Balancing Innovation and Cybersecurity

Dateline: January 19, 2018 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. Balancing innovation and cybersecurity can be a challenge.  Product design prioritization means that that difficult decisions have to be made about what to include in the design, and often cybersecurity is not above the cut line.  Recently, TechTarget interviewed Alissa … [Read more...]

Executive Mistakes After a Data Breach

Dateline: January 12, 2018 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. We have a long way to go before we can be sure our data and systems are secure.  In the meantime, executives can take some comfort in knowing that many before them have had to made tough decisions to both protect and recover from sever cyber attacks.  Harvard Business Review … [Read more...]

Cybersecurity for Small Businesses

Dateline: December 29, 2017 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. Small businesses have the same needs for cybersecurity as large businesses, but more often neglect doing the very basic actions that are needed, according to a recent article published by Tech News World.  Journalist David Jones published an article titled Small Companies … [Read more...]

Table Stakes for Cybersecurity: Patch and Patch Again

Dateline: December 22, 2017 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. Keeping with our focus on cybersecurity, this week we look at the very basic issue of keeping our systems secure.  We trust our tech leaders to do what is needed, but more often than not, it’s the basic blocking and tackling that gets skipped and opens our organizations up to … [Read more...]

Dividing Cybersecurity Between Your Platform and Your People

Dateline: December 15, 2017 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. It’s becoming increasingly clear that technology alone will not provide the level of cyber resilience needed by our organizations (and by each of us individually).  Instead, leaders in our organizations increasingly need solutions that combine technology with human behavior.  … [Read more...]

More Training Is Not The Answer for Cybersecurity

Dateline: December 8, 2017 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. Making our companies more cyber secure is a critical goal these days.  Since we know that employees are often the weakest link to a cybersecurity plan (in fact IBM estimates that 60% of all attacks are from the inside), managers often believe that more training is the answer. … [Read more...]

Cybersecurity Moonshot

Dateline: November 24, 2017 Welcome to our Friday WRAP – one thought-provoking idea to think about over the weekend. Recently the CEO of Palo Alto Networks made a bold call to action for cybersecurity.  Channeling President John F. Kennedy's vision for reaching the Moon in the 1960's, CEO Mark McLaughlin called for for a cybersecurity moonshot in his keynote address to the US Federal Ignite … [Read more...]