Part II: Coffee with a Former US President's CISO

Part II: Coffee with a Former US President's CISO

Greg and I have been exchanging emails for a while. He had seen my #CyberRiskLeaders work in the industry and I was delighted when I finally had the opportunity to meet with him when he flew in from D.C. Washington for the ISACA's 50th Anniversary Conference, held in New Zealand this year.

Source: obamawhitehouse.archives.gov

It is not everyday that you get the chance to sit down with a former US President's CISO (Chief Information Security Officer), and not just any CISO I must add.

Greg stands for Brigadier General Gregory J. Touhill. He was appointed by President Barack Obama as the first Federal CISO of the United States back in 2016, and presently, the president of Cyxtera Technologies' Cyxtera Federal Group. It was such a privilege being able to pick his brain and also include his thoughts in the next print edition of my book Cyber Risk Leaders.

We discussed a few thought leadership topics including his personal advice that he would give to our next generation of #CISOs. We spoke about proportionate defense; CISOs shouldn't be trying to protect everything equally. Information has value but many CISOs make the mistake of trying to protect everything the same.

"Organisations fail when they spend a hundred dollars trying to protect a hundred million dollars worth of assets, and they spend the same hundred dollars trying to protect something that is worthless."

He also shared an encouraging #YouDidWhat?! story for #CyberRiskLeaders but from the perspective of a positive example of financial services that was breached earlier this year and what they got right.

Although Greg recognises the importance of holding companies accountable in the event of a breach, it is also important to reinforce the positive (especially on the things they got right in their detection and response), and what we can learn from that so that we can be better prepared.

"Rather than a beating and blaming culture, let's congratulate people on what they did get right."

That's another thing with Greg. He wasn't focused on just sharing industry knowledge. He took time to impart lessons along the way, sharing from his own personal journey and growth in career. That day, I walked away from my chat with Greg inspired, a timely reminder indeed on the:

  • the importance of seeking out #mentors,
  • taking #initiative,
  • learning constantly,
  • recognising the good, and the progress that our industry has made, and
  • knowing the value that you bring as an individual.

This is Part II of a Five-Part #CoffeewiththeCSuite Series:

Part I: A Lesson from the World's very First CISO

Part III: The View of Cyber Risk in the Retail Industry?

Part IV: The CISO's Strategy

Part V: Fireside Chats with the Board

To read the entire collection of the CISO kit including global C-Suite insights and perspectives across industries, you can now get your very own Cyber Risk Leaders book in stores or the e-book on Amazon, Kindle or Google Playbooks.

About the Author

Shamane Tan is a published Author of Cyber Risk Leaders and the APAC Executive Security Advisor at Privasec, a leading and independent Security Consulting Firm. She has worked with exciting start-ups all the way to global organisations extensively in the Asia-Pacific region. Shamane advises the C-Suite and IT Executives on their business security posture to the reality of the challenges they faced from regulatory issues and cybercrime. She is also the founder of the Cyber Risk Meetup which is in four major cities in Australia, as well as Singapore. Her meetups offer Security Enthusiasts and Executives a unique platform to impart and exchange innovative insights. 

要查看或添加评论,请登录

Shamane Tan的更多文章

  • 2023 CISO Trends: Beyond Business, It's Personal

    2023 CISO Trends: Beyond Business, It's Personal

    Last year, I did an infographic on my top 10 CISO flavours 2022, featuring key topics frequently discussed by cyber…

    4 条评论
  • AI Utopia 2030?

    AI Utopia 2030?

    Would this even be possible? A future where AI amplifies the best of human intentions and safeguards against the worst.…

    3 条评论
  • Conversations with an Undercover Spy

    Conversations with an Undercover Spy

    ?? Have you ever wondered what it's like being a spy while watching espionage TV series and movies? I had the…

    1 条评论
  • Harnessing the Synergy of Minds: Uniting 100+ CISOs for Collective Growth

    Harnessing the Synergy of Minds: Uniting 100+ CISOs for Collective Growth

    Today, I wanted to share with you the incredible journey of the Chief Information Security Officer (CISO) community…

    2 条评论
  • Building a Cyber Resilient Business Via the C-Suite Lens

    Building a Cyber Resilient Business Via the C-Suite Lens

    As our world becomes increasingly digital, cyber threats are on the rise and pose a significant risk to businesses of…

    3 条评论
  • Book Featured in Forbes Australia - Building a Cyber Resilient Business

    Book Featured in Forbes Australia - Building a Cyber Resilient Business

    I'm beyond ecstatic to find out that one of my many-years-in-the-making dream of mine just came to life. My heart…

    50 条评论
  • Top 10 CISO flavours this 2022

    Top 10 CISO flavours this 2022

    My first shot at making an infographic is a recap of what I consider as key CISO highlights for 2022. Let me know what…

    26 条评论
  • Part V: Fireside Chats with the Board

    Part V: Fireside Chats with the Board

    So you find yourself in the boardroom, now what? In my 90 minutes conversation with a Board Director, due to the…

    11 条评论
  • Part IV: The CISO's Strategy

    Part IV: The CISO's Strategy

    How many of you have often wondered how does the CISO come up with their cyber security strategy, and how does it…

    5 条评论
  • Cyber Risk Leaders Readers

    Cyber Risk Leaders Readers

    2019 has been an incredible year of many personal milestones. How can I forget the many talented Cyber Risk leaders…

    22 条评论

社区洞察

其他会员也浏览了