Cybersecurity

CEO Stuart McClure Has Your Cure for Failed Cybersecurity Measures

“As global CTO of McAfee, I did a lot of apologizing,” he explains. “Week after week, month after month, year after year, all I really did was apologize for how we didn’t really protect computers. I thought, there had to be a better way.”

Three years ago, McClure left McAfee to find it. Typical antivirus software, he explains, relies on maintaining a database of known offenders—a list of viruses and malware known as virus definitions—that it uses to identify new threats. The trouble, of course, is that the threats have to succeed in wreaking havoc somewhere before they can be added to the database. “In other words, for me to protect your house from being burgled, someone else has to have already been burglarized by that individual,” explains McClure.

In fact, studies suggest that traditional cybersecurity software detects only 45% of attacks. McClure’s new company, Cylance, takes a completely different approach. Using mathematical models and artificial intelligence, it seeks to protect computers against attackers—both known and unknown. “It took about two solid years of training the models and getting all the infrastructure built properly,” he says. “Now, the computers that run our CylanceProtect software can completely protect a computer—more than 99% detection—even when they’re disconnected from the cloud.”

Hackers, however, are persistent, says McClure, who notes that in addition to strong security, software companies need to practice vigilance with their outside vendors. “Security is only as strong as your weakest link,” he says, pointing out that hackers who can’t get in the front door will turn to the windows and the chimney.

Asked what else CEOs can do to safeguard their companies, McClure offers three suggestions:

1. CHALLENGE YOUR CIO. “Most chief security officers want to give the impression that they have everything under control—but they really don’t,” says McClure. “Create a culture of challenging your security people and asking them, ‘What makes you think we’re so secure?’”

2. FIND—AND FILL IN—YOUR BLIND SPOTS. “The biggest mistake CEOs make is not knowing their limitations and hiring to fill in those blind spots,” explains McClure. “They should be hiring people who can take over their jobs.”

3. MAKE SECURITY A CLEAR PRIORITY. “Move the security function out from under IT and make it a direct report to the CEO,” urges McClure. “Eventually, elevate the chief security and risk officer to have IT reporting to them.”


Jennifer Pellet

As managing editor at Chief Executive and Corporate Board Member magazines, Jennifer Pellet oversees a team of writers, editors and graphic designers, and also writes for both publications.

Share
Published by
Jennifer Pellet

Recent Posts

The Three Things C-Suite Leaders Need (But Rarely Ask For)

Beneath every high-performing organization lies a rarely discussed leadership architecture. Here’s what CEOs need to…

1 hour ago

What CEOs Must Learn About Letting Go: ‘It’s Like Cutting Off An Arm’

Exiting a CEO role can feel like losing a part of your identity. Key things…

2 hours ago

The Energy Audit Is In: Why Executive Burnout Puts Strategy—And The Whole Business—At Risk

Executive energy is not a private concern to be managed behind closed doors. It’s a…

20 hours ago

From ‘Weak’ To ‘Good’: CEO Optimism Improves In October

Our latest survey finds CEOs increasingly confident in their ability to find growth in the…

1 day ago

How Awake Window & Door Has Championed Second-Chance Hiring

More than half of the manufacturer’s employee base is formerly incarcerated—tapping into an underutilized talent…

4 days ago

The Crisis Of Financial Noise—And How To Stop It

When credible voices retreat, social media "hacks" fill the void. Northwestern Mutual's CEO shares four…

5 days ago