In CISO Edge, the Gartner Cybersecurity Podcast, VP Analyst Chris Mixter engages Gartner experts and progressive CISOs to help cybersecurity leaders cut through...
CISOs, Stop Worrying About Your Budget and Focus on Your Brand
See this episode’s highlights:How building an intentional brand connects you to the C-suite. (01:00)To build an intentional brand, create three lists. (09:45)Shout-out to Houston’s late, great Atchafalaya River Cafe. (20:56)Use the tactics of framing and priming to reinforce your brand. (23:13)CISOs tend to see their budget as the key thing capping the cybersecurity function’s potential enterprise impact, when in fact the function’s (and the CISO’s) reputation has just as much to do with the role cybersecurity can play. And, unlike the budget, which has many drivers beyond our control, CISOs can exert almost complete control over their brand! In this episode of CISO Edge podcast, Gartner experts Leigh McMullen and Chris Mixter share the steps needed to create an intentional — and impact-amplifying — CISO (and cybersecurity function) brand.Leigh C. McMullen is a Distinguished Vice President, Analyst in Gartner's CISO, Security and Risk Management team. Leigh leverages his experience as both a line-of-business manager and IT leader to provide CISOs with insight on navigating and making a difference within the C-suite. Additionally, he provides clients with a holistic view of cybersecurity leadership research, specializing on the topics of future operating models, vision and strategy, politics, influence, business engagement, internal marketing and communications.
--------
33:22
Want People to Behave Securely? Listen to Them
Join Gartner experts Chris Mixter and Richard Addiscott in this episode of CISO Edge to debunk the myths around why employees behave nonsecurely, why most tactics and executive communications around employee behavior don’t work, and to explore ways to rapidly increase the value delivered by your secure behavior and culture program (SBCP).What if I told you that “lack of cyberawareness” isn’t the reason people behave nonsecurely? (03:50)Where do your employee-related security incidents come from? (09:56)How can we move from compliance-centric to behavior-centric cybersecurity? (13:48)Help executives understand what is a defensible level of performance around human risk exposure. (26:15)Richard Addiscott is a Vice President Analyst in Gartner's global security and risk management practice, helping CISOs and senior cybersecurity executives deliver highly effective information security programs and build high performing cybersecurity teams. With more than 20 years of experience in industry, Richard has held enterprise information security and IT leadership, information security consulting and advisory, IT governance, and business development roles across the public, private, and not-for-profit sectors.
--------
35:18
Can Vendor Consolidation and Defense in Depth Coexist?
Join Gartner experts Chris Mixter and Peter Firstbrook as they debunk the myths about vendor consolidation and provide CISOs with practical guidance on navigating this sea change in how cybersecurity technology is sold and operated. Does vendor consolidation contravene defense in depth? (05:34)Take a data-centric perspective to evaluate consolidation opportunities. (12:09) Questions for CISOs ask cybersecurity technology vendors about their pivot to platform-centric architectures. (21:29) Questions for CISOs to ask themselves about their cybersecurity talent in the platform era. (27:29) Gartner Distinguished VP Analyst Peter Firstbrook utilizes his 25+ years of experience as an industry analyst to help clients improve their security posture to defend and respond to malicious attacks. Peter is responsible for endpoint protection platform (EPP), endpoint detection, and remediation (EDR), extended detection and response (XDR) markets, as well as topics such as security vendor consolidation, workspace security and generative AI security.
--------
35:55
How CISOs Can Try Cyber Deterrence
Join Gartner experts Chris Mixter and Will Candrick on this episode of the CISO Edge Podcast to learn how to implement a capability that many cybersecurity organizations see as beyond their program’s abilities or too risky to attempt: cyber deterrence. Why now is the time to explore cyber deterrence. (2:41) Where deterrence fits into your cybersecurity program. (12:15)Bad actors are rational and you can use that against them (16:39)Introducing the Gartner PARC Framework for prioritizing deterrence tactics. (20:39)How deterrence contributes to cybersecurity team engagement. (28:25)This podcast explores research found in CISO Edge: Use Cyber Deterrence to Stop Attacks Before They StartWill Candrick is a Senior Director Analyst within Gartner’s risk and security management group. Will brings extensive experience researching cybersecurity management challenges, and regularly advises CISOs and their teams on maturing security and risk practices. In particular, Will focuses on cybersecurity strategic planning, incident response, awareness, metrics, board reporting and policies. Before Gartner, Will held research roles at CEB researching management best practices for CISOs and their teams. Will has a bachelor’s degree in economics with a concentration in political economy from Carleton College.
--------
35:04
Empowering Growth Through Geopolitically Elastic Supply Chains
This episode explores:How, despite geopolitical instability, CSCOs can meet growing performance expectations by increasing their supply chain’s flexibility in key areas. (1:20)Definitions and applications of terminology associated with this process, such as “trust boundaries” and “supply chain elasticity.” (5:10)Concerns of increased complexity associated with supply chain elasticity. (8:30)Methods to assess geopolitical risks’ potential impacts on a supply chain. (13:18)Recommendations for CSCOs seeking to increase their supply chain’s elasticity. (16:35) In this episode of the Supply Chain Podcast, host Lindsay Azim and guest Pierfrancesco (Pier) Manenti, research vice president for the Gartner supply chain strategy team, discuss findings from Supply Chain Executive Report: Empowering Growth Through Geopolitically Elastic Supply Chains. As countries cloister their markets in response to various geopolitical tensions, accessing a global marketplace is becoming harder for CSCOs. Lindsay and Pier explore how “supply chain elasticity,” a concept explored in the Executive Report, can help CSCOs alleviate these market access issues while driving growth. The discussion includes key definitions and actions, success stories from organizations already applying these principles and recommendations for CSCOs to improve elasticity within their own supply chains.Pierfrancesco (Pier) Manenti is research vice president for the Gartner supply chain strategy team. Pier provides insights and advisory support to chief supply chain officers (CSCOs) and heads of strategy of global manufacturing and retail corporations, especially with regards to future trends and key challenges affecting end-to-end supply chain strategy. He focuses on strategic transformation, digitalization, agility and design for profitability.
Sobre CISO Edge, The Gartner Cybersecurity Podcast
In CISO Edge, the Gartner Cybersecurity Podcast, VP Analyst Chris Mixter engages Gartner experts and progressive CISOs to help cybersecurity leaders cut through the noise and focus their energy on work that creates value for the enterprise.