Always Bring Your Top Three
Years ago I applied and interviewed for the "VP, IT Risk Management" position at my company. The very first interview question was "What do you feel the top three IT risks to this organization are?"?
My answer was… "wow that's a great question -- awkward pause -- I really should have an answer for that."
I didn't get the job.
I still cringe at the experience years later, even though it gets a good laugh at happy hour. I mention it here to share two lessons I took away:
领英推荐
This week I was asked where a team should start when building out an IT Security Program. One of those "if you had a magic wand" questions. On my hand I had these three words written down:?
Visibility, Identity, Automation
In the next Airitos blog post I'll explain what we mean by each. I would love to hear how they compare to your top three, and if they differ I welcome some healthy debate :)
Thanks,
Bill
Seasoned Product Management and Technology Professional
1 年"...where a team should start when building out an IT Security Program" - stealing a page from the physical security world - secure the perimeter!
CEO at CyberSolve | Identity First Security | Consider It Solved
1 年Ah, the sweet rule of three, the smallest number required to create a pattern! When presenting information, options should be two, list items should be three, tips should be five and pitfalls or myths should be seven in number - thus explained a wise marketer. :) Thanks for the article, Bill!
Great advice William Morse Having a Top 3 list at your fingertips helps narrow down the focus amongst a sea of options. And it's great to feel prepared and not like a deer in the headlights ??