3 Suggestions to Consider When Building Your Cyber Strategy

As cybersecurity has arguably become the boardroom issue, directors are pressing CEOs to ensure cyber risks are addressed with urgency. As major breaches continue, it’s not just CIOs’ careers at risk, but CEOs’ too. What should CEOs be doing to ensure their name doesn’t headline as the victim of the next big breach? Here are three suggestions.

1. Be prepared to make the proper investment. Unfortunately, companies often rush to buy the latest security fad, like malware detection or web application security, and then suffer buyer’s remorse within a year because it doesn’t properly provide visibility over the entire threat life cycle. Malware detection or web application security may keep hackers away from one locked door, but be assured they will keep trying other doors until they find one they can open.

Of the breaches we’ve investigated over the past two years, 30% have involved documented web vulnerabilities with published, but unimplemented, patches. With the cost of breaches often running in the tens of millions or more, it is not smart risk management to bet the farm on the latest tools like these over comprehensive security hygiene that consider all areas of entry to your network.

“A strong security strategy includes prevention, detection, containment and remediation.”

2. Change your mindset to prepare for the inevitable. While prevention is a large part of the equation, CEOs must admit that their security posture is not impenetrable if a determined hacker persists long enough. A strong security strategy that includes prevention, detection, containment and remediation means the difference between a single infiltration and a widespread breach affecting customer records, employee personal identifying information, stolen intellectual property and/or millions of dollars in reputational damage.

2. Regularly put your strategy to the test. CEOs should consider this a rule of thumb: for every dollar invested in new security technology, an additional 25 cents is required to properly implement the tools and train the staff to use them. In many cases, the financial and reputational damage caused by breaches are magnified due to the improper implementation of solutions, or the staffs were not fully trained to use the systems. Teams must be properly trained and tested, and readiness should be evaluated before a real threat comes knocking.

Ultimately, CEOs need to take action and ensure the proper people, technologies and strategies are in place to protect themselves and their organizations. If not, they have more than tomorrow’s headlines to worry about.

By

 

PHOTO ON HARD DRIVE


MORE LIKE THIS

  • Get the CEO Briefing

    Sign up today to get weekly access to the latest issues affecting CEOs in every industry
  • upcoming events

    Roundtable

    Strategic Planning Workshop

    1:00 - 5:00 pm

    We are in a period of rapid change. Customer needs, technologies, competitors and internal capabilities require companies to review and update their strategies for the new realities. In this workshop, strategy experts Steve Rutan and Denise Harrison will show you a systematic approach to strategic planning to help you refine or redefine your business strategy and approach including:

    • Learn what you need to know to develop an effective strategic plan. Put the right players on the strategic planning team.
    • Develop strategies that leverage your company’s unique position in the marketplace. Lift your management team beyond “business as usual” thought processes and activities.
    • Translate your strategies into action. Achieve your vision for success and generate superior financial results.
    • Identify exactly what you need to do now to position your company for future success.

    To sign up, select this option in your registration form. Additional fee of $695 will be added to your total.

    New York, NY: ​​​Chief Executive's Corporate Citizenship Awards 2017

    Women in Leadership Seminar and Peer Discussion

    2:00 - 5:00 pm

    Female leaders face the same issues all leaders do, but they often face additional challenges too. In this peer session, we will facilitate a discussion of best practices and how to overcome common barriers to help women leaders be more effective within and outside their organizations. 

    Limited space available.

    To sign up, select this option in your registration form. Additional fee of $495 will be added to your total.

    Golf Outing

    10:30 - 5:00 pm
    General’s Retreat at Hermitage Golf Course
    Sponsored by UBS

    General’s Retreat, built in 1986 with architect Gary Roger Baird, has been voted the “Best Golf Course in Nashville” and is a “must play” when visiting the Nashville, Tennessee area. With the beautiful setting along the Cumberland River, golfers of all capabilities will thoroughly enjoy the golf, scenery and hospitality.

    The golf outing fee includes transportation to and from the hotel, greens/cart fees, use of practice facilities, and boxed lunch. The bus will leave the hotel at 10:30 am for a noon shotgun start and return to the hotel after the cocktail reception following the completion of the round.

    To sign up, select this option in your registration form. Additional fee of $295 will be added to your total.