Blind Spots – BSW #209
Full Audio
View Show IndexSegments
1. The Nine Cybersecurity Habits – George Finney – BSW #209
In 1989, Stephen Covey first published "The 7 Habits of Highly Effective People," empowering and inspiring leaders for over 25 years. Is there an equivalent or new set of habits for CISOs? George Finney, Chief Security Officer at Southern Methodist University, joins Business Security Weekly to discuss the Nine Cybersecurity Habits.
Announcements
Don't forget to check out our library of on-demand webcasts & technical trainings at securityweekly.com/ondemand.
Don't miss any of your favorite Security Weekly content! Visit https://securityweekly.com/subscribe to subscribe to any of our podcast feeds and have all new episodes downloaded right to your phone! You can also join our mailing list, Discord server, and follow us on social media & our streaming platforms!
Guest
George Finney is a CISO, Author, and Founder of that believes that people are the key to solving our cybersecurity challenges. George is the bestselling author of several cybersecurity books, including Project Zero Trust and the Book of the Year Award winning, Well Aware: Master the Nine Cybersecurity Habits to Protect Your Future. George is the recipient of the 2024 Baldridge Award for Cybersecurity Leadership and was recognized in 2023 as one of the top 100 CISOs in the world and has worked in Cybersecurity for over 20 years helping startups, global corporations, and nonprofits improve their security posture.
Hosts
2. Importance of Culture, Engaging The Board, & 8 New Roles! – BSW #209
This week, in the Leadership and Communications section, The importance of culture in digital transformation, 4 ways to keep the cybersecurity conversation going after the crisis has passed, 8 new roles today’s security team needs, and more!
Announcements
We're always looking for great guests for all of the Security Weekly shows! Submit your suggestions by visiting https://securityweekly.com/guests and completing the form!
If you missed Security Weekly Unlocked, you can now access all of the content on-demand, whether you registered before the live event or not, by visiting https://securityweekly.com/unlocked and clicking either the button to register or the button to login!
Hosts
- 1. What CEOs Need to Know About the Cloud in 2021If you’re a business leader daunted by cloud adoption, consider our research- and experience-informed answers to these questions: 1. Can I really trust my data in the cloud? 2. Do I have to get rid of my legacy infrastructure once and for all? 3. How do I make the right cloud choices for my business? 4. How does shifting our work to the cloud make it possible to reimagine the business? 5. Do I have the skills I need to take advantage of the cloud?
- 2. The Importance of Culture in Digital TransformationTrying to accomplish digital transformation without the right culture could result in failure to launch. Here are five steps you need to take to get off the ground: 1. Set the digital transformation vision 2. Make risk-taking acceptable 3. Hire and train for digital skills 4. Build teams and demonstrate leadership 5. Implement, measure and improve
- 3. 4 ways to keep the cybersecurity conversation going after the crisis has passedExecutives and board members focus more on cybersecurity when there’s immediate danger. Here’s how CISOs can use a crisis like SolarWinds to translate security into business strategy: 1. Match up with business models 2. Benchmark against your competitors 3. Leverage the push for legislation 4. Build relationships
- 4. Actionable Tips for Engaging the Board on CybersecurityUp your game with your company's board of directors to help them understand your cybersecurity priorities with these actionable tips: 1. Build Board Rapport 2. Watch Your Language 3. Show and Tell 4. Be Ready to Pivot
- 5. 3 Pragmatic Root Causes of Data BreachesAt the highest level, cybersecurity breaches are the result of one of three problems: lack or prioritization, lack of investment or poor execution of security procedures. How do you set up a CISO for success for organizations that don’t just view security as a compliance function or as a cost center? To start: 1. Have the CISO report to the CEO 2. Have the CISO present to the audit committee at least once per quarter. 3. Have the CISO present to the entire board of directors at least once per year, if not more often as needed. 4. Give the CISO their own budget, team, and decision-making authority.
- 6. 8 new roles today’s security team needsDemand for cybersecurity professionals remains sky-high. Make sure you're hiring for the right roles. Here are the eight key roles for IT security in 2021. 1. Identity and access management engineer 2. Manager of third-party risk 3. DevSecOps security engineer 4. Threat hunter 5. Vulnerability risk analyst 6. Cloud security architect 7. Incident response manager 8. CISO