Redefining Society and Technology Podcast

How Do We Make Decisions in Cyber Security? Operational, Tactical, and Strategic Decision-Making in the Age of AI | An Australian Cyber Conference 2024 in Melbourne Conversation with Ivano Bongiovanni | On Location Coverage

Nov 28, 2024
Ivano Bongiovanni, General Manager at AusCERT and Senior Lecturer in Cybersecurity at the University of Queensland, dives into the intricacies of decision-making in cybersecurity. He offers insights from his research involving six organizations, uncovering how industry, organizational, team, and individual factors shape security strategies. Bongiovanni highlights the critical link between data governance and cybersecurity, and discusses the evolving responsibilities of CISOs in light of new regulations. His expertise sheds light on how effective governance can turn cybersecurity into a strategic asset.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Cybersecurity Decision-Making Influences

  • Ivano Bongiovanni's research reveals four levels of influence on cybersecurity decision-making: industry, organizational, team, and individual.
  • Key drivers include regulations, organizational culture, and access to professional forums like AISA.
INSIGHT

Data Governance: Value Creation

  • Data governance is crucial for robust cybersecurity and organizational value creation, moving beyond loss prevention.
  • It enables business intelligence, operational efficiency analysis, and stronger arguments for investment.
INSIGHT

Mimetic Forces in Cybersecurity

  • Mimetic forces drive cybersecurity decisions, especially when information is scarce, leading to following competitors.
  • Vendors influence this by replicating practices across organizations, impacting 'best practice' definitions.
Get the Snipd Podcast app to discover more snips from this episode
Get the app