Intelligent CISO Issue 15 | Page 62

FOUR ASPECTS OF A CISO’S ROLE THAT MUST NOT BE IGNORED The role of a CISO is high-pressured but crucial in defending organisations and businesses against modern cyberthreats. Jan van Vliet, VP and GM of EMEA, Digital Guardian, explores some of the lesser known aspects of a CISO’s role and why they play a big part in the overall security posture of any organisation. W ith security so high on every corporate agenda these days, Chief Information Security Officers (CISOs) are under more pressure than ever before to keep their organisations protected. But with so many different things to consider at all times, less experienced CISOs can quickly become overwhelmed. This typically leads to the adoption of a blinkered approach to the job, focusing on a handful of ‘big ticket’ items while eschewing many other smaller, but equally important aspects of the role. It’s easy to understand why it happens, but this approach invariably leads to issues over time. In many cases, just a little bit of attention to the following four areas can go a long way towards improving overall security posture. 62 Empowering employees through proper training and education It’s all too easy to fixate on technology as the best way to protect an organisation but in reality, it’s employees who play the biggest role in keeping hostile actors out. For that reason, A strong team also helps to share the workload, reducing the pressure on the CISO and preventing them from becoming a bottleneck within the organisation. Jan van Vliet EMEA VP and GM Digital Guardian training and education should never be skimped on, or ignored. Not only is it highly cost effective compared to the investment required for large scale security solutions, but in many cases, a properly trained workforce will do more for overall security as well. Properly trained, vigilant employees can quickly identify phishing attempts or social engineering tactics and even spot rogue insiders, helping to prevent many attacks entirely. Taking the time to thoroughly vet partners and third-party vendors Data plays a critical role in nearly every business today, but few organisations have the in-house capabilities to recover it themselves in the event of loss or corruption. As such, many choose to partner with third party specialists Issue 15 | www.intelligentciso.com