The message in recent years to chief information security officers (CISO) and chief security officers (CSO) is that, “it’s not enough to be a geek.”
What is still to be determined is whether a training program – even a good training program – is all it will take to make them more than geeks.
Clearly, there is a perceived need. While CISOs in many organizations are part of the so-called C-suite, surveys show they are generally held in low regard by their C-level colleagues, who think their skill set is too narrow, that they are unable to “speak the language of business,” and are most useful as a scapegoat in the event of a data breach, not as a strategic participant in business decisions.
To read this article in full or to leave a comment, please click here
Original enclosures: |
No comments:
Post a Comment