Why Most CISOs Don't Know What Their Business Actually Does
the cyber weekly
0:00 / 0:00
Why Most CISOs Don't Know What Their Business Actually Does
50 просмотров · 2 недели назад
the cyber weekly
499 подписчиков
50 просмотров · 2 недели назад
🚨 Most CISOs can explain every control on their stack but ask them what the business actually sells, and they go quiet.
In this episode of The Cyber Weekly, Deo sits down with Jake Bernardes CISO at Gambit Security, ex-pen tester, chartered accountant, and a guy who learned Chinese and German before ever touching cybersecurity.
We get into:
💰 The "Minimum Viable Business" framework for justifying security spend
🧩 Why GRC is broken (and how to fix the forgotten "R")
🤖 Which security roles AI will kill and which ones it can't touch
📜 Why Jake thinks certifications are mostly pointless
🌐 Why your network matters more than your CISSP
🎙️ Building leadership on transparency, vulnerability, and authenticity
Random Access Memories: https://randomaccessmemories.io
Jake Bernardes on LinkedIn: / jakeleobernardes
Random Access Memories on YouTube: / @randomaccessmemoriespod
If you're in GRC, trying to break into cybersecurity, or leading a security team through the AI shift this conversation will change how you think about your career.
00:00 Intro: The Intersection of Chinese & Cybersecurity
01:19 Who is Jake Bernardes?
03:18 How Accounting Creates Better CISOs
04:14 The "Minimum Viable Business" & Proving ROI
08:26 Why GRC is Broken (And How to Fix It)
13:02 The Future of GRC Engineering & Automation
17:32 Why Cyber Certifications Are "Pointless"
19:24 AI is Killing Tier 1 SOC Jobs: What to do next
22:43 The 3 Pillars of True Leadership
#TheCyberWeekly #CISO #Cybersecurity #GRC #RiskManagement #CyberCareers #InfoSec #CyberLeadership 🔐🎙️📈