Blog post -

You need a CISO, now!

You need to have a chief security officer. There are no room for excuses anymore. And lots of companies have introduced it, calling it CISO, Chief Risk Officer or Data Security Officer for example.

you-need-a-cisco

Still, many lack the role. Not least smaller companies.

Lacking a C-suite person focusing on security is an unnecessary risk for your organization.

There are more and more identities to keep track of. Not just people, but machines, devices, entities. Everything will soon be connected. And someone in your organization needs to be on top of this.

All identities, digital and analog need to be authenticated, secured and stored in an effective way.

But it is not only because hackers and other criminals are planning attacks. Legislation in the area of data security is being strengthened both on a national, EU and global level. If you don’t start taking control of these issues, you will have a massive work to do when the new legislation is here.

And it is also about competence. We still come across IT professionals who think that username and password is sufficient protection of critical resources. For us it is like opting out of a burglar alarm and leaving the windows of the office ground floor open at night.

Having a bird’s eye view of your digital and physical infrastructure, data, employees, devices, partners, visitors and current and coming legislations is too much responsibility for a more general CIO. You need a dedicated C-suite person for this. Otherwise you will at some point start missing threats.

This issue could be even more pressing for those organizations that have merged with other entities. Often following this, you will have different legacy systems from each of the merged entities. This could pose serious security challenges. One employee or partner could have one access level in one system and another level in the other system. Names could be misspelled between systems and create confusion and holes open to breach.

Regardless if you have merged with others or not. Regardless if you have had breaches in the past or not. You need a CISO now. Whether you call the person Chief Information Security Officer or something else is not important. What is important is that you know who enters the door, both metaphorically and literally speaking.

Things will only speed up from here. Security challenges will become even more urgent and complex. Coming legislation will be tougher to comply with. There are no reasons not to put out a job ad for a CISO today.

Oh, and if you want our advice on what to look for in a CISO, contact us and we will do our best to share our experience!

/Daniel Hjort
Director Business Development & Software Sales

Topics

  • Data, Telecom, IT

Categories

  • blog
  • technology nexus
  • ciso

Regions

  • England

Contacts

Related content

  • Kristinehamn Municipality boosts security with dynamic identity management

    Many municipal employees handle sensitive data, including within school administration and healthcare. The neXus dynamic platform for physical and digital identity management gives the municipality complete control over who is on the premises and access to the computer network. The solution also ensures that the municipality can easily control which users are authorized for which information.

  • Six themes drive identity management in 2016

    For neXus, the leading global provider of security solutions and services, identity management will be one of the central issues in the context of IT security in 2016. The trends such as continuous flexibilization in the working environment, new forms of customer communication and the growing number of cyber-attacks are responsible for this.

  • Magnus Malmström as Director Software

    Magnus Malmström assumed the role as Director Software at neXus in May 2016. Magnus Malmström has nearly 15 years of experience in Product Management and Product Marketing positions within mobility and secure identities.

  • The future of eID

    eID is an electronic identification solution for citizens and organizations, accessing services by banks, government authorities and other companies.

  • Securing banking solutions

    ​How can neXus help securing banking solutions for authentication, verification and signatures for the next generation of banking services? Meeting and attracting new customers in a disruptive banking market thru new mobile channels is a big challenge!

  • Identities without borders

    ​Imagine using your Swedish electronic signature for applying for a building permit for your summer home in Spain? It can soon turn into reality as the new EU regulation eIDAS is being introduced across Europe, enabling national electronic signatures to work across borders in the union.

  • neXus goes back to school

    ​neXus takes pride in playing an active part in all the societies in which we operate. We want to contribute our knowledge to help public sector take advantage of the opportunities created by the digital revolution, without sacrificing integrity or security.

  • Go out and play

    The number of connected devices is expected to exceed 20 billion by 2020. At the same time McKinsey estimates that faulty cybersecurity solutions related to this will cost organizations more than 3 trillion dollars by the same year.

Related events