

211. 10 questions boards should ask about cybersecurity
10 snips Jul 12, 2024
Discussing cybersecurity oversight for boards, Justin Greis and Daniel Wallace provide insights on managing cyber risks, resource allocation, asset management, incident response, and collaborative strategies to enhance organizational resilience.
AI Snips
Chapters
Transcript
Episode notes
Cybersecurity Strategy and Resources
- Boards should ask about the company's cybersecurity strategy and resource allocation.
- Assume current resources are inadequate and ask how additional budget would be spent.
Cybersecurity Operating Model
- Companies' cybersecurity operating models, capabilities, and organizational structures differ significantly.
- Boards must understand their specific model, including the "what," "who," and "how" of cybersecurity operations.
Cyber Risk Tolerance
- Articulate a clear risk tolerance for cyber events, considering downtime, breaches, and customer impact.
- Review the cyber risk portfolio to ensure decisions align with the stated risk appetite.