Risk as Opportunity: A Collaborative Deep Dive with Shana Uhlmann
Prof. Dan Haagman
Pen Testing Expert | CEO - Chaleit | Hon. Professor of Practice | International Conference Chair | Aus CISO Advisory Board | Co-founder of Cyber firms NotSoSecure & 7Safe (both acquired) | Commercial Heli & Plane Pilot
"If you're not terrified, you're not trying."
This quote stopped me in my tracks during a deep dive into risk exploitation with the brilliant Shana Uhlmann , IT Director at Tattarang and Chief Information Security Officer for Tattarang and the Minderoo Foundation. It perfectly captures the paradigm shift happening in cyber security leadership right now — one that challenges everything we think we know about risk management.
Here's the thing: most of us in cyber security have been taught to be risk-safe. We've created this culture where CISOs often find their comfort zone in holding technical knowledge that others don't understand. But what if we're looking at it all wrong?
Many CISOs come from technical backgrounds. And while technical expertise is valuable, it can sometimes lead people down a rabbit hole of seeking perfect security solutions rather than acceptable risk levels.
One of the most interesting points Shana raised is this: if you're not terrified, you're not trying. Operating in a space of discomfort isn't just okay but essential for growth.
More professionals should understand this: engaging with risk doesn't mean being reckless. It means understanding and operating within clear risk tolerances.
In the full article, we explore a practical framework for categorising risks:
This approach helps CISOs focus on what matters and communicate more effectively with stakeholders.
Here's a thought that might make some security professionals uncomfortable: in fast-paced, innovative environments, leaders can expect to make "wrong" decisions about 70% of the time. The key is not to panic but to create an environment where "wrong" decisions become learning opportunities rather than failures.
领英推荐
Our collaborative essay on risk as opportunity goes deeper into these concepts and provides practical frameworks for implementing this mindset shift in your organisation.
It's part of our ongoing work at Chaleit to challenge traditional thinking in cyber security and find ways to enable business growth while maintaining appropriate security controls.
If you're ready to transform your approach to cyber security leadership and risk management, Chaleit can help. Every organisation's journey is unique, and we can help you develop and implement a tailored approach that aligns with your business objectives while maintaining appropriate security controls. Let's talk.
You might also enjoy reading: The Art of Risk Management, a collaborative essay by Benjamin Stephan , CISO, and Prof. Dan Haagman , CEO of Chaleit.?
Disclaimer
The views expressed in this article represent the personal insights and opinions of Dan Haagman and Shana Uhlmann. Dan Haagman's views also reflect the official stance of Chaleit, while Shana Uhlmann's views are her own and do not necessarily represent the official position of her organisation. Both authors share their perspectives to foster learning and promote open dialogue.
Director, Forrest Research Foundation. Cultural Researcher, Respectful Disagreement, Nano-Cultures, the educational power of discomfort
3 个月Hey Dan and Shana, this is awesome. The opportunities that emerge from risks are rarely taken and really are a marker of success!
Cybersecurity Influencer | Advisor | Author | Speaker | LinkedIn Top Voice | Award-Winning Security Leader | Awards Judge | UN Women UK Delegate to the UN CSW | Recognised by Wiki & UNESCO
3 个月Such a thorough review of cybersecurity and risk management / expolitation which everyone should read. Great job Dan Haagman & Shana Uhlmann ! ??????
Chief Information Security Officer | Information Security | Physical Security | Personnel Security | Experienced Security Risk Professional
3 个月Amazing piece of work Shana and Dan. Love it!!
CIO/CTO/CISO | Senior Executive Leader in Complex IT & Engineering Environments | Driving Business Success through Digital Transformation
3 个月This was so enjoyable to explore and analyse with you Dan Haagman. Understanding our personal risk setting, how that translates to our conduct in the office and in our roles, and what we should be aiming for is so critical to success!