Перейти к содержимому

Why Most CISOs Don't Know What Their Business Actually Does

the cyber weekly

0:00 / 0:00

Why Most CISOs Don't Know What Their Business Actually Does

50 просмотров · 2 недели назад
the cyber weekly
499 подписчиков
50 просмотров · 2 недели назад
🚨 Most CISOs can explain every control on their stack but ask them what the business actually sells, and they go quiet. In this episode of The Cyber Weekly, Deo sits down with Jake Bernardes CISO at Gambit Security, ex-pen tester, chartered accountant, and a guy who learned Chinese and German before ever touching cybersecurity. We get into: 💰 The "Minimum Viable Business" framework for justifying security spend 🧩 Why GRC is broken (and how to fix the forgotten "R") 🤖 Which security roles AI will kill and which ones it can't touch 📜 Why Jake thinks certifications are mostly pointless 🌐 Why your network matters more than your CISSP 🎙️ Building leadership on transparency, vulnerability, and authenticity Random Access Memories: https://randomaccessmemories.io Jake Bernardes on LinkedIn:   / jakeleobernardes   Random Access Memories on YouTube:    / @randomaccessmemoriespod   If you're in GRC, trying to break into cybersecurity, or leading a security team through the AI shift this conversation will change how you think about your career. 00:00 Intro: The Intersection of Chinese & Cybersecurity 01:19 Who is Jake Bernardes? 03:18 How Accounting Creates Better CISOs 04:14 The "Minimum Viable Business" & Proving ROI 08:26 Why GRC is Broken (And How to Fix It) 13:02 The Future of GRC Engineering & Automation 17:32 Why Cyber Certifications Are "Pointless" 19:24 AI is Killing Tier 1 SOC Jobs: What to do next 22:43 The 3 Pillars of True Leadership #TheCyberWeekly #CISO #Cybersecurity #GRC #RiskManagement #CyberCareers #InfoSec #CyberLeadership 🔐🎙️📈