BSW #291 – Doug Hubbard
Richard Seiersen and our guest, Doug Hubbard, are finishing the second edition of How to Measure Anything in Cybersecurity Risk. Doug is here to share the success of the first edition and preview the second edition. With more insights, the second edition will share more more research data, free tools, and new concepts like FrankenSME. If you're a risk management professional or want to learn more about risk management, don't miss this interview.
In the leadership and communications section, 8 Questions to Ask Before Selecting a New Board Leader, How Cybersecurity Leaders Can Build Employee Trust—And Why It Is Important, 7 rules to communicate the business value of IT, and more! Visit https://www.securityweekly.com/bsw for all the latest episodes!
Follow us on Twitter: https://www.twitter.com/securityweekly Like us on Facebook: https://www.facebook.com/secweekly
Full Audio
Segments
1. 2nd Edition: How to Measure Anything in Cybersecurity Risk – Doug Hubbard – BSW #291
Richard Seiersen and our guest, Doug Hubbard, are finishing the second edition of How to Measure Anything in Cybersecurity Risk. Doug is here to share the success of the first edition and preview the second edition. With more insights, the second edition will share more more research data, free tools, and new concepts like FrankenSME. If you're a risk management professional or want to learn more about risk management, don't miss this interview.
Announcements
Do you have a specific guest or topic that you want us to cover on one of the shows? Submit your suggestions for guests by visiting https://securityweekly.com/guests and completing the form! We review suggestions monthly and will reach out to you once reviewed!
Guest

Douglas Hubbard is the inventor of the Applied Information Economics (AIE) method and founder of Hubbard Decision Research (HDR). He is the author of How to Measure Anything: Finding the Value of Intangibles in Business, The Failure of Risk Management: Why It’s Broken and How to Fix It, Pulse: The New Science of Harnessing Internet Buzz to Track Threats and Opportunities and How to Measure Anything in Cybersecurity Risk (all published with Wiley). He has sold over 175,000 copies of his books in eight different languages. One of his books is required reading for the Society of Actuaries exam prep. In addition to his books, Mr. Hubbard has been published in several periodicals including Nature, The IBM Journal of Research and Development, OR/MS Today, Analytics, CIO, Information Week, and Architecture Boston.
Mr. Hubbard’s career has focused on the application of AIE to solve current business issues facing today’s corporations. Mr. Hubbard has completed over 200 risk/return analyses of large, critical projects, investments and other management decisions in the last 25 years. AIE is the practical application of several fields of quantitative analysis including Bayesian analysis, Monte Carlo simulations, and many others. Mr. Hubbard’s consulting experience totals over 29 years and spans many industries including insurance, financial services, pharmaceutical, healthcare, utilities, energy, federal and state government, entertainment media, military logistics, and manufacturing. His AIE methodology, has received critical praise from The Gartner Group, The Giga Information Group, and Forrester Research. He is a popular speaker at valuation, risk, metrics and decision analysis conferences all over the world.
Hosts

2. New Board Leaders, Great Leaders, and Communicating Business Value – BSW #291
In the leadership and communications section, 8 Questions to Ask Before Selecting a New Board Leader, How Cybersecurity Leaders Can Build Employee Trust—And Why It Is Important, 7 rules to communicate the business value of IT, and more!
Announcements
Thank you for listening to or watching our podcasts! We want to ensure that we are creating the most relevant and useful content for our audience across our network! It is crucial to us that we are delivering to you more of what you want to hear and learn about. Please take a few minutes to complete our listener survey so that we can craft our content based on your needs. Visit https://securityweekly.com/survey to submit your feedback.
Hosts

- 1. 8 Questions to Ask Before Selecting a New Board Leader
Too many companies don’t apply the same rigor and analysis to selecting a board leader as they would for a new chief executive — and yet in today’s environment, board leadership is more important and urgent than ever. The authors, who have collectively interacted with more than a fifth of the governing boards of the Fortune 1000, suggest eight questions to ask to ensure a more thoughtful and disciplined process for selecting, evaluating, compensating, or removing a board leader.
- 2. How CISOs can manage the cybersecurity of high-level executives
C-suite executives and board members are targeted through their personal devices as cybercriminals look to penetrate corporate systems and access sensitive and proprietary information. Protecting them requires a holistic approach.
- 3. How Cybersecurity Leaders Can Build Employee Trust—And Why It Is Important
In the context of security, there are two types of trust: trust that our actions will be predictable, and trust that we have employees’ best interests in mind. To turn employees from company bystanders to security advocates, both are important.
- 4. A Great Leader
Leadership is a vital aspect of any organization, and a great leader can make all the difference in the success or failure of a team or company.
In this blog, we’ll learn, not how to become a leader but a great leader.
- 5. What is Risk Management and Why is it Important?
Risk management is the process of identifying, assessing and controlling threats to an organization's capital and earnings. These risks stem from a variety of sources, including financial uncertainties, legal liabilities, technology issues, strategic management errors, accidents and natural disasters.
A successful risk management program helps an organization consider the full range of risks it faces. Risk management also examines the relationship between risks and the cascading impact they could have on an organization's strategic goals.
- 6. 7 rules to communicate the business value of IT
To tell a compelling IT business value story in a way that resonates with leadership and supports enterprise decision-making, CIOs must focus on communicating outcomes delivered. It is essential to present a case that clearly links investment priorities to business goals.
Otherwise, the CEO, CFO and other business leadership will not understand the full value of IT initiatives and will not factor them into enterprise-wide resource allocation decisions.
- 7. 5 major communication skills you should possess this 2023
Communication skills are vital and significant in an individual’s emotional, and professional development. Asides the fact that communication skills involve listening, speaking, writing and emphasizing, it is very much crucial to upskill with major skills relevant in our today’s technological and business world.
The subject matter addresses ‘must-get’ communication skills. We cannot overemphasize the usefulness of these skills in our friendships, businesses and relationships. No doubt, the art of mastering the following skills below would give you an edge over others.
