46,99 €
inkl. MwSt.
Versandkostenfrei*
Versandfertig in über 4 Wochen
  • Broschiertes Buch

The author (JC Gaillard) has been involved with information security matters for over 20 years and started writing regularly on the topic in 2015. Talking to CISOs, CIO, CEOs and their teams as part of his day-to-day field work as consultant, he became gradually horrified by what he was seeing in too many large corporates in terms of security maturity levels and the actual problems some were still struggling with - something that goes way beyond anecdotal evidence and is at the heart of survey after survey every year. After all, information security good practices have been well established…mehr

Produktbeschreibung
The author (JC Gaillard) has been involved with information security matters for over 20 years and started writing regularly on the topic in 2015. Talking to CISOs, CIO, CEOs and their teams as part of his day-to-day field work as consultant, he became gradually horrified by what he was seeing in too many large corporates in terms of security maturity levels and the actual problems some were still struggling with - something that goes way beyond anecdotal evidence and is at the heart of survey after survey every year. After all, information security good practices have been well established for over 20 years and many industry bodies have been promoting them and evolving them throughout that period. Why is it that large firms which have had fully functioning information security teams in place all that time, and have spent - collectively - hundreds of millions on the topic if not more on cyber security, are still struggling today with issues - such as patch management - which should have been on their radar for over 10 years? There is truly a cyber security lost decade for many between the CodeRed, Slammer and Blaster outbreaks of 2001-2003 and the Wannacry and Not Petya attacks of 2017. By failing to get the basics right in terms of security during that time while continuing to engage in massive cloud-driven business transformation programmes which have turned the enterprise into a truly borderless hybrid, many large firms have dramatically increased their level of exposure to cyber threats. And now the acceleration of the digital transformation emboldened by the COVID crisis - which has also heightened cyber threats - is making things even more complex. And politicians and regulators are now involved as the GDPR and CCPA have shown us over the past few years, now with privacy legislations building up across the U.S. and worldwide. At Board level, the "when-not-if" paradigm around cyber-attacks has taken root, but it creates fundamentally different dynamics for CISOs and CIOs, as the focus shifts radically from risk and compliance towards execution and delivery, often in exchange of massive investments around security. To embed those different dynamics around cyber security and make true progress, large organisations must stop thinking of the topic in pure technological terms, look back and address urgently the underlying cultural and governance issues that have been the true roadblocks of that "lost decade". This is the theme the author has been developing since 2015 through his contribution to the Corix Partners blog and we offer you in this book a selection of articles published between February 2015 and August 2021. They frame a true reflexion on those matters and offer elements of solution to start changing the narrative around cyber security.
Autorenporträt
JC Gaillard is the Founder and CEO of Corix Partners, a London-based Boutique Management Consultancy Firm and Thought-leadership Platform focused on assisting CIOs and other C-level executives in resolving Cyber Security Strategy, Organisation and Governance challenges.He is a leading advisor, a senior executive and a global cyber security influencer with over 25 years of experience developed in several financial institutions in the UK and continental Europe, and a track-record at driving fundamental change in the Security field across global organisations, looking beyond the technical horizon into strategy, governance, culture, and the real dynamics of transformation.French and British national permanently established in the UK since 1993, he holds an Engineering Degree from Telecom Paris and has been co-president of the Cyber Security group of the Telecom Paris alumni association since May 2016.He runs the Corix Partners blog and the "Security Transformation Leadership" publication on Medium.He is a Fellow of the Chartered Institute of Information Security (FCIIS) , a member of the Forbes Business Council and contributes regularly to the Business Transformation Network, London Tech Leaders and TechNative websites; he has also posted regularly in the past on The Digital Transformation People, IoTforAll, Business 2 Community and Experfy platforms.He is an expert contributor on the CIO Water Cooler, and has previously published articles on InfoSecurity Magazine, Computing, the C-Suite.co.uk, Info Sec Buzz, Disruption Hub, and the IoD Director websites.He is involved with techUK as part of their Cyber People Series, which explores how CISOs should engage at C-Suite and Board level, with two reports on the theme released in December 2020 and December 2021.He also collaborates with leading analysts firm Kuppinger Cole in Germany, with the Association for Data and Cyber Governance in the US and with the Edutec Alliance in Brazil.He was listed in the top 10 of UK 30 most influential thought leaders on Risk, RegTech and Compliance by Thomson Reuters in April 2017, and in the top 100 global social media influencers for financial services by Refinitiv in July 2019.He is a 2022 Onalytica Cyber Security Influencer, and was also identified by them as "Social Media Amplifier" on Risk Management in April 2021, and as a "Key Opinion Leader" on Data Management, IoT Connectivity and RPA in December 2020 and January 2021, as well as an influential voice and sub-topic expert on hybrid work and the future of work in January 2022.He has been ranking consistently in the top 5 of global influencers with Thinkers360 on cybersecurity, and in the top 10 on security, leadership and management.He is the author of "Cyber Security: The Lost Decade - A Security Governance Handbook for the CISO and the CIO" first published in September 2017 with updated annual editions released every year up to 2021, and "The Cybersecurity Leadership Handbook for the CISO and the CEO", released on Amazon in February 2023.He animates the Security Transformation Research Foundation, a dedicated think-tank and research body affiliated to Corix Partners, aimed at approaching Security problems differently and producing innovative and challenging research ideas in the Security, Business Protection, Risk and Controls space, and co-produces the Cyber Security Transformation podcast on Anchor.He is also a Non-Executive Director with Strata Security Solutions and has been a member of the NextWorld Capital European Advisors Network since 2014.