Blogginlägg -

You need a CISO, now!

You need to have a chief security officer. There are no room for excuses anymore. And lots of companies have introduced it, calling it CISO, Chief Risk Officer or Data Security Officer for example.

you-need-a-cisco

Still, many lack the role. Not least smaller companies.

Lacking a C-suite person focusing on security is an unnecessary risk for your organization.

There are more and more identities to keep track of. Not just people, but machines, devices, entities. Everything will soon be connected. And someone in your organization needs to be on top of this.

All identities, digital and analog need to be authenticated, secured and stored in an effective way.

But it is not only because hackers and other criminals are planning attacks. Legislation in the area of data security is being strengthened both on a national, EU and global level. If you don’t start taking control of these issues, you will have a massive work to do when the new legislation is here.

And it is also about competence. We still come across IT professionals who think that username and password is sufficient protection of critical resources. For us it is like opting out of a burglar alarm and leaving the windows of the office ground floor open at night.

Having a bird’s eye view of your digital and physical infrastructure, data, employees, devices, partners, visitors and current and coming legislations is too much responsibility for a more general CIO. You need a dedicated C-suite person for this. Otherwise you will at some point start missing threats.

This issue could be even more pressing for those organizations that have merged with other entities. Often following this, you will have different legacy systems from each of the merged entities. This could pose serious security challenges. One employee or partner could have one access level in one system and another level in the other system. Names could be misspelled between systems and create confusion and holes open to breach.

Regardless if you have merged with others or not. Regardless if you have had breaches in the past or not. You need a CISO now. Whether you call the person Chief Information Security Officer or something else is not important. What is important is that you know who enters the door, both metaphorically and literally speaking.

Things will only speed up from here. Security challenges will become even more urgent and complex. Coming legislation will be tougher to comply with. There are no reasons not to put out a job ad for a CISO today.

Oh, and if you want our advice on what to look for in a CISO, contact us and we will do our best to share our experience!

/Daniel Hjort
Director Business Development & Software Sales

Ämnen

  • Datasäkerhet

Kategorier

  • blog

Regioner

  • Dalarna

Kontakter

Relaterat innehåll

  • Kristinehamns kommun höjer säkerheten med dynamisk identitetshantering

    Många medarbetare inom Kristinehamns kommun hanterar känslig information, t ex inom skola och vårdomsorg. Med neXus dynamiska plattform för fysisk och digital identitetshantering får kommunen fullständig kontroll på vilka som får röra sig i kommunens lokaler och därtill ha åtkomst till kommunens nätverk.

  • Sex teman driver identitetshantering under 2016

    För neXus, internationellt ledande leverantör av säkerhetslösningar och -tjänster, är identiteshantering det centrala temat i sammanhang med IT-säkerhet under 2016. Ansvariga för detta är trender så som den fortsatta flexibiliseringen av arbetslivet, nya typer av kundkommunikation och det växande antalet cyberangrepp.

  • Magnus Malmström blir ny Director Software

    Magnus Malmström tillträde som Director Software på neXus i maj 2016. Magnus Malmström har nära 15 års erfarenhet från Product Management- och Product Marketing-positioner inom mobilitet och säkra identiteter.

  • The future of eID

    eID is an electronic identification solution for citizens and organizations, accessing services by banks, government authorities and other companies.

  • Securing banking solutions

    How can neXus help securing banking solutions for authentication, verification and signatures for the next generation of banking services? Meeting and attracting new customers in a disruptive banking market thru new mobile channels is a big challenge!

  • Identities without borders

    ​Imagine using your Swedish electronic signature for applying for a building permit for your summer home in Spain? It can soon turn into reality as the new EU regulation eIDAS is being introduced across Europe, enabling national electronic signatures to work across borders in the union.

  • Go out and play

    The number of connected devices is expected to exceed 20 billion by 2020. At the same time McKinsey estimates that faulty cybersecurity solutions related to this will cost organizations more than 3 trillion dollars by the same year.

  • Digital innovation on the way – prepare for eIDAS

    Soon the new EU regulation eIDAS will become enforceable and countries all over Europe have a fairly short time to adapt. For instance, all Swedish governmental e-services must be ready for foreign electronic signatures by September 2018. So while you have some time to adapt, there is no time to waste before starting the process.

Relaterade event