S26 Ep3: Steve Durbin & Juliette Foster - Good Cyber Strategy Begins and Ends with Alignment to Business Priorities
ISF Podcast28 Touko 2024

S26 Ep3: Steve Durbin & Juliette Foster - Good Cyber Strategy Begins and Ends with Alignment to Business Priorities

Recently, British journalist Juliette Foster interviewed Steve for a feature in The European, and today we’re listening to that conversation. Steve and Juliette explore a range of topics, including how to get buy-in to your security strategy at all levels of the organization, how much security should cost, navigating the regulatory landscape, and which industries and enterprises Steve believes could be templates for security.

Key Takeaways:
1. Good cyber strategy aligns with business strategy, is quantifiable, and involves all employees.
2. Durbin suggests involving security in project planning to avoid retrofitting security measures.
3. Durbin suggests that security teams need to spend more time explaining security implications to business leaders in a way they can understand.
4. Durbin suggests that leaders must create a personal investment in security by providing feedback and justifying costs in a way that resonates with each individual’s role and responsibilities.
5. Durbin highlights the evolving regulatory landscape, with a shift from standardization to protectionism and complexity for organizations.
6. Durbin highlights the evolving threat landscape, including malware, ransomware, and phishing attacks.

Tune in to hear more about:
1. Aligning cybersecurity strategy with business goals and outcomes (1:36)
2. Cybersecurity strategies, testing, and budgeting (10:42)
3. Regulation complexity and its impact on businesses (18:00)
4. Cybersecurity investment, risk management, and emerging threats (22:44)
5. Evolving cyber threats and the importance of resilience (26:58)

Standout Quotes:
1. “What is important for organizations is not to become over fixated on the threats — that’s necessary, obviously, to have a good defense — but also to figure out this whole notion of resilience. How quickly could we get our systems back up and running? How quickly could we get our organization functioning again? How are we going to recover our data? Where are we storing it? Those sorts of things.” - Steve Durbin

2. “... the crux of good cyber strategy is having an alignment with a business strategy happening in alignment with what it is that the organization is looking to do on a daily basis, which in the majority of cases is: increase revenue, increase shareholder value, deliver back to employees, customers, and to further the ideals of the organization.” - Steve Durbin

3. “So the role of the security leader in any budget cycle is to try to align whatever spend she or he wishes to have with the future direction of travel of that organization. And if you can start to do that, then the whole conversation becomes very much easier. But I'm not a huge fan of setting fairly random percentages, because I think it sends entirely the wrong message. You run the risk of overspend or underspend. And what you actually want to be doing is spending appropriately to deliver the right level of protection for your critical assets, for your company, for your employees, for your shareholders, so that you can continue to provide a thriving environment.” - Steve Durbin


Mentioned in this episode:

Read the transcript of this episode
Subscribe to the ISF Podcast wherever you listen to podcasts
Connect with us on LinkedIn and Twitter

From the Information Security Forum, the leading authority on cyber, information security, and risk management.

Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(345)

345: Stephanie Forbes - The $4.2 Trillion Problem: Why Boards Can't Afford to Ignore Supply Chain Fraud

345: Stephanie Forbes - The $4.2 Trillion Problem: Why Boards Can't Afford to Ignore Supply Chain Fraud

Today, Steve sits down with Stephanie Forbes, CEO of the Forbes Group. Stephanie is a supply chain expert who recently released Global Wealth, Local Impact: How Supply Chains Build Thriving Companies,...

16 Kesä 28min

344: Dustin Dobbyn - Train Like Your Life Depends on It: A SWAT Operator on Cyber Resilience

344: Dustin Dobbyn - Train Like Your Life Depends on It: A SWAT Operator on Cyber Resilience

Today, Steve speaks with Dustin Dobbyn, an internationally recognized security expert, Marine Corps veteran, former SWAT operator, and the CEO of a fast-growing private security and executive protecti...

9 Kesä 20min

343: Peter Hinssen - The New Never Normal: AI, the Future of Business and the Leaders We Need

343: Peter Hinssen - The New Never Normal: AI, the Future of Business and the Leaders We Need

Today, one of our favorite guests returns: Peter Hinssen. A renowned keynote speaker, author and serial entrepreneur, Peter is one of the most sought-after thought leaders on radical innovation, leade...

2 Kesä 28min

342: Betsy Cooper - The Policy Gap: Navigating AI, Risk and Regulation

342: Betsy Cooper - The Policy Gap: Navigating AI, Risk and Regulation

In this episode, Steve is in conversation with Betsy Cooper, director of the Aspen Policy Academy at the Aspen Institute. As an expert in cyber and tech policy, Betsy shares her thoughts on how policy...

19 Touko 26min

341: Dr. Keith Morneau - AI & the Resilient Workforce: Thriving in the Next Decade

341: Dr. Keith Morneau - AI & the Resilient Workforce: Thriving in the Next Decade

Today’s guest is Dr. Keith Morneau, an experienced cybersecurity professional who currently serves as Dean of Computer and Information Science at ECPI University. Steve and Kieth discuss the future of...

12 Touko 24min

340: John "Jock" Brocas - Gut Instinct: The Intuitive Edge in Cyber Security

340: John "Jock" Brocas - Gut Instinct: The Intuitive Edge in Cyber Security

In today’s episode, Steve sits down with John “Jock" Brocas, a former military member who is now an executive mentor and strategic intuitive intelligence advisor to the C-suite. Jock is far from your ...

5 Touko 23min

S36 Ep27: Emily Holyoake - Beyond Infrastructure: The Case for Putting People First

S36 Ep27: Emily Holyoake - Beyond Infrastructure: The Case for Putting People First

Today’s episode might sound a little bit different, but it’s a really important conversation. Steve sits down with Emily Holyoake, co-founder of Not A Standard and the brain behind the FRAME Network, ...

28 Huhti 24min

S36 Ep26: Brett Johnson - From Most Wanted to Most Valuable: Inside the Cybercrime Landscape

S36 Ep26: Brett Johnson - From Most Wanted to Most Valuable: Inside the Cybercrime Landscape

Today we bring back one of our favorite guests: former US most-wanted cybercriminal Brett Johnson. It’s been seven years since he was last on the show, and much has happened in the world of cyber. Bre...

21 Huhti 26min

Suosittua kategoriassa Liike-elämä ja talous

sijotuskasti
mimmit-sijoittaa
rss-rahapodi
psykopodiaa-podcast
rss-oivalluksia-rahasta-elamasta
asuntoasiaa-paivakirjat
oppimisen-psykologia
rss-kaupan-tila
rss-ainin-sekatoimisto
herrasmieshakkerit
hyva-paha-johtaminen
pari-sanaa-lastensuojelusta
rss-rahamania
rss-myynnilla-on-asiaa-kert-kenner
rss-set-for-life-sijoita-ja-vaurastu
rss-tarkeista-asioista-2
rss-paasipodi
rss-raharadio
rss-40-ajatusta-aanesta
rss-asiakaskokemusklubi