Bil Harmer, an operating partner and CISO at Craft Ventures, dives into the intriguing concept of Field CISOs, shedding light on their evolving responsibilities. He clarifies the distinction between traditional and field CISOs and discusses the importance of genuine cybersecurity expertise in these roles. The conversation touches on the legal responsibilities and credibility concerns that come with the position, emphasizing the need for established credentials. Harmer also highlights the collaborative nature of the Field CISO role in enhancing organizational security.
The role of field CISOs is evolving, with discussions highlighting the need to clarify responsibilities and the implications of their titles.
Field CISOs serve as both consultative figures and potential sales personnel, raising debates on their independence and credibility in cybersecurity.
Deep dives
Field CISOs: Role Ambiguity and Industry Perspectives
The role of field CISOs is gaining traction in the cybersecurity industry, prompting discussions regarding their actual responsibilities and titles. Some professionals argue that field CISOs should only carry the CISO title if they have operational accountability for security within an organization, while others suggest that these roles can provide valuable insights without the same level of responsibility. For example, Phil Venables from Google emphasized that staff within the 'office of the CISO' might have extensive experience without being labeled as field CISOs, highlighting the confusion around this title. Additionally, there is a concern that the ambiguous nature of these roles can undermine the credibility of those who hold them, as many may lack direct security responsibilities.
Consultative vs. Sales Role: The Purpose of Field CISOs
Field CISOs are often positioned as consultative figures who bridge the gap between customer needs and sales execution, though some industry experts debate the extent to which their roles should lean towards sales. Critics like Dmitry Sokolovsky suggest that field CISOs should be temporary positions designed for those transitioning back into traditional CISO roles, emphasizing that over time, individuals may lose touch with the evolving industry landscape. Bill Harmer shared his experience as a strategist and CISO, noting that genuine independence and credibility are vital when explaining complex security concepts to customers. The role's intent, whether to sell or consult, remains hotly debated within the cybersecurity community.
Evolving CISO Titles: Professional Designation Discussion
As the use of titles like field CISO continues to grow, there is a clear call for a re-evaluation of how CISO-related titles are utilized across the industry. Some experts propose creating professional designations for CISOs to establish a clear distinction between those who genuinely hold significant security responsibilities and those who do not. Juliet Okafor pointed out that the title CISO implies a level of trust and authority that should not be diluted by its association with sales and marketing roles. Ultimately, defining the responsibilities tied to these titles and ensuring that they reflect actual expertise may help mitigate the confusion currently surrounding the CISO landscape.
Cyera’s AI-powered data security platform gives companies visibility over their sensitive data, context over the risk it represents, and actionable, prioritized remediation guidance. As a cloud-native, agentless platform, Cyera provides holistic data security coverage across SaaS, PaaS, IaaS and On-premise environments. Visit www.cyera.io to learn more.
Get the Snipd podcast app
Unlock the knowledge in podcasts with the podcast player of the future.
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode
Save any moment
Hear something you like? Tap your headphones to save it with AI-generated key takeaways
Share & Export
Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more
AI-powered podcast player
Listen to all your favourite podcasts with AI-powered features
Discover highlights
Listen to the best highlights from the podcasts you love and dive into the full episode