Careers, Leadership, Remote access

Transformational CISO, Metrics, & 5 Simple Ways to Make Better Decisions – BSW #190

In the Leadership and Communications section, What it takes to be a transformational CISO, Put Your Metrics Where Your Mouth Is, 5 Simple Ways to Make Better Decisions, and more!

Full episode and show notes


  • Do you have a specific guest or topic that you want us to cover on one of the shows? Submit your suggestions for guests by visiting and completing the form! We review suggestions monthly and will reach out to you once reviewed!

  • It's official! Security Weekly, in partnership with CyberRisk Alliance, is excited to present Security Weekly Unlocked on December 10, 2020. The inaugural edition of Security Weekly Unlocked also celebrates Security Weekly's 15th Anniversary. Visit to submit your presentation & register for free!


Matt Alderman
Matt Alderman
Executive Director at CyberRisk Alliance
  1. 1. Information Security Forum Research Demonstrates Importance of the Next Generation CISO - There are many other factors in the make-up of the next-generation CISO, however, they stand out as key differentiators of forward-looking professionals. The six differentiating characteristics include: • Balancing Opportunity with Risk • Demonstrating Leadership • Managing Incidents and Crises • Finding Their Own Voice • Dealing with Regulatory Volume • Handling Technology
  2. 2. What it takes to be a transformational CISO - What exactly, though, does a transformational CISO possess that sets him or her apart? That allows him or her to “love” the hard work of overhauling and rebuilding? There are a number of traits and characteristics that define such a leader: 1. A transformational CISO is energized by change and disruption, and they’re energetic in general. 2. They’re comfortable operating in chaos. 3. They’re dynamic and adaptable. 4. They’re outspoken and persuasive, they tend to be more extraverted, and they’re able to build consensus. 5. They have to be able to do a bit of sales, and they have to be able to fit security into the rest of the company’s journey.
  3. 3. Put Your Metrics Where Your Mouth Is - You’ve no doubt heard the saying “what gets measured gets managed.” And it’s true. Why? Because what gets measured, gets noticed. CEOs and other executives respond to what boards and shareholders notice.
  4. 4. 5 Simple Ways to Make Better Decisions - Here are five strategies that will help you to make better, faster decisions: 1. Fewer options = better decisions. 2. Earlier is better. 3. Fewer people make better decisions than big groups. 4. Sleep on it. 5. Toss the coin.
  5. 5. CIOs say security must adapt to permanent work-from-home - Both private- and public-sector CIOs see many more employees permanently working remotely, and say security needs to adapt to new threats and how they communicate.
  6. 6. To Succeed in a Negotiation, Help Your Counterpart Save Face - To understand the critical nature of face to negotiation success, consider these three cases: 1. Afghanistan – Freeing Hostages 2. Calgary – A Crisis Negotiation 3. Brazil and France – A Business Tug-of-War
  7. 7. Department of Treasury releases advisory on potential sanctions risks for facilitating ransomware payments - The U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC) is issuing an advisory to alert companies that engage with victims of ransomware attacks of the potential sanctions risks for facilitating ransomware payments. This advisory highlights OFAC’s designations of malicious cyber actors and those who facilitate ransomware transactions under its cyber-related sanctions program. URL to the advisory:
Jason Albuquerque
Jason Albuquerque
Chief Operating Officer at Envision Technologies
Paul Asadoorian
Paul Asadoorian
Founder at Security Weekly
prestitial ad