In this episode, the CIO of Energy Solutions discusses the formation of cybersecurity and technology budgets, the dynamics between CIOs and security vendors, navigating complex security challenges, strategic team collaboration, IT challenges, and enhancing security practices with external partnerships.
Foster meaningful discussions with executives to address security concerns collaboratively, prioritizing client's needs over sales tactics.
Implement a strategic theme-based approach for selecting security solutions, emphasizing concept validation, pricing considerations, and ongoing vendor collaboration.
Deep dives
Challenges in Security Conversations with C Suite
Discussing the struggles in security vendor conversations with the C Suite, the episode highlights the importance of shifting the dialogue from pressuring executives to fostering meaningful discussions. Instead of bombarding with sales tactics, the emphasis is on understanding the client's needs and engaging in constructive dialogues to address security concerns collaboratively.
Risk Mitigation Strategy at Energy Solutions
The podcast delves into David Wysong's role at Energy Solutions, emphasizing his background in risk mitigation strategies and aligning technology with business needs. Wysong's focus on vendor security and risk management, particularly catering to extensive client demands, showcases how the company prioritizes security frameworks like SOC 2 audits and integrates risk mitigation practices.
Navigating Security Tools and Compliance
The discussion extends to the tactical approach in adopting security solutions at Energy Solutions, involving a dedicated IT team managing critical infrastructure. The team's strategic theme-based approach facilitates collaboration with vendors to address security issues, emphasizing concept validation before adoption. Demonstrations, pricing considerations, and client referrals play crucial roles in selecting appropriate security solutions.
Maintaining Proactive Risk Management
The episode underscores the evolving nature of cybersecurity risks and the importance of proactive risk management discussions. Emphasis is placed on continuous risk assessments and timely response to vulnerabilities, stressing the significance of maintaining a robust security posture. The conversation highlights the need for ongoing dialogue with vendors and periodic updates to address emerging cybersecurity challenges.
It’s a mystery as old as time: the cybersecurity and technology budget and acquisition strategy. How are they formed? How are these projects prioritized? How are internal teams proposing changes and asking for new dollars (and likely not getting them)? This week, we chat with someone at the heart of the matter for their business who walks us through how they build their security and information roadmap, or in what I lovingly call: quit bugging the C-suite.
David Weisong is the CIO for Energy Solutions and has a background in software development, DevOps, and managing IT functions, which makes him the perfect candidate to properly discuss the ins and outs of cybersecurity and IT roadmaps.
Get the Snipd podcast app
Unlock the knowledge in podcasts with the podcast player of the future.
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode
Save any moment
Hear something you like? Tap your headphones to save it with AI-generated key takeaways
Share & Export
Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode