Joe Gottlieb talks with Jeff Frick at the Four Seasons Hotel in East Palo Alto, CA.
#theCUBE
https://siliconangle.com/2017/08/31/cybersecurity-starts-company-board-understands-risk-equation-tcgsecurityseries/
Cybersecurity starts with company board that understands risk equation
Cybersecurity does not spring from the ground up. It flows from the top, the boardroom, where companies make their most important decisions. While boards don’t care about technical concerns, they do understand risk. Translating the risks and rewards of good security into boardroom terms is vital, according to Joe Gottlieb (pictured), senior vice president of corporate development at SailPoint Technologies Inc.
“Boards are trying to provide governance. They need wisdom to provide governance. If they don’t understand security at all, how can they be wise about it?” Gottlieb asked.
Gottlieb spoke with Jeff Frick (@JeffFrick), host of theCUBE, SiliconANGLE’s mobile livestreaming studio, during the Chertoff Group Security Series “Security in the Boardroom” event in Palo Alto, California. They discussed SailPoint, security culture and translating security needs into boardroom terms. (* Disclosure below.)
Process and culture empower security
SailPoint helps large companies control who has access to what. This is a vital niche, because giving the wrong person access to the wrong things can threaten a company’s entire network. Access must be limited to what a person needs to do their job, and little more, according to Gottlieb. Unfortunately, many businesses have no way to control access in an efficient manner.
“For the average large company, this is a manual effort; it’s not systematic, which it has to be,” Gottlieb said. By putting a process in place to control access effectively, companies can reduce their vulnerability to security attacks. Likewise, a company security culture of consistency, patience and methodical progress is very important, Gottlieb stated.
A defining part of the culture is the boardroom. There has been a significant push recently to make boards more proactive about security. The days of prevention are over; now companies must take an active role in monitoring threats, setting good governance and educating users, according to Gottlieb.
“Every attack starts with a phishing attack that compromises an end-user, then moves laterally to the good stuff,” Gottlieb said.
Meanwhile, measuring the effectiveness of cybersecurity is difficult. The best way to turn it into numbers is to look at security as part of risk management, Gottlieb advised. Doing this can help translate security into terms that boards understand. Then, security becomes a matter of investments and trade-offs, which is how boards see the world, he added.
Watch the complete video interview below, and be sure to check out more of SiliconANGLE’s and theCUBE’s coverage of The Chertoff Group Security Series “Security in the Boardroom.” (* Disclosure: TheCUBE is a paid media partner for The Chertoff Group Security Series “Security in the Boardroom.” Neither The Chertoff Group LLC nor SailPoint Technologies Inc. have editorial control over content on theCUBE or SiliconANGLE.)
Forgot Password
Almost there!
We just sent you a verification email. Please verify your account to gain access to
Chertoff Group Security Series 2017 | East Palo Alto. If you don’t think you received an email check your
spam folder.
Sign in to Chertoff Group Security Series 2017 | East Palo Alto.
In order to sign in, enter the email address you used to registered for the event. Once completed, you will receive an email with a verification link. Open this link to automatically sign into the site.
Register For Chertoff Group Security Series 2017 | East Palo Alto
Please fill out the information below. You will recieve an email with a verification link confirming your registration. Click the link to automatically sign into the site.
You’re almost there!
We just sent you a verification email. Please click the verification button in the email. Once your email address is verified, you will have full access to all event content for Chertoff Group Security Series 2017 | East Palo Alto.
I want my badge and interests to be visible to all attendees.
Checking this box will display your presense on the attendees list, view your profile and allow other attendees to contact you via 1-1 chat. Read the Privacy Policy. At any time, you can choose to disable this preference.
Select your Interests!
add
Upload your photo
Uploading..
OR
Connect via Twitter
Connect via Linkedin
EDIT PASSWORD
Share
Forgot Password
Almost there!
We just sent you a verification email. Please verify your account to gain access to
Chertoff Group Security Series 2017 | East Palo Alto. If you don’t think you received an email check your
spam folder.
Sign in to Chertoff Group Security Series 2017 | East Palo Alto.
In order to sign in, enter the email address you used to registered for the event. Once completed, you will receive an email with a verification link. Open this link to automatically sign into the site.
Sign in to gain access to Chertoff Group Security Series 2017 | East Palo Alto
Please sign in with LinkedIn to continue to Chertoff Group Security Series 2017 | East Palo Alto. Signing in with LinkedIn ensures a professional environment.
Are you sure you want to remove access rights for this user?
Details
Manage Access
email address
Community Invitation
Joe Gottlieb, SailPoint | Security in the Boardroom
Joe Gottlieb talks with Jeff Frick at the Four Seasons Hotel in East Palo Alto, CA.
#theCUBE
https://siliconangle.com/2017/08/31/cybersecurity-starts-company-board-understands-risk-equation-tcgsecurityseries/
Cybersecurity starts with company board that understands risk equation
Cybersecurity does not spring from the ground up. It flows from the top, the boardroom, where companies make their most important decisions. While boards don’t care about technical concerns, they do understand risk. Translating the risks and rewards of good security into boardroom terms is vital, according to Joe Gottlieb (pictured), senior vice president of corporate development at SailPoint Technologies Inc.
“Boards are trying to provide governance. They need wisdom to provide governance. If they don’t understand security at all, how can they be wise about it?” Gottlieb asked.
Gottlieb spoke with Jeff Frick (@JeffFrick), host of theCUBE, SiliconANGLE’s mobile livestreaming studio, during the Chertoff Group Security Series “Security in the Boardroom” event in Palo Alto, California. They discussed SailPoint, security culture and translating security needs into boardroom terms. (* Disclosure below.)
Process and culture empower security
SailPoint helps large companies control who has access to what. This is a vital niche, because giving the wrong person access to the wrong things can threaten a company’s entire network. Access must be limited to what a person needs to do their job, and little more, according to Gottlieb. Unfortunately, many businesses have no way to control access in an efficient manner.
“For the average large company, this is a manual effort; it’s not systematic, which it has to be,” Gottlieb said. By putting a process in place to control access effectively, companies can reduce their vulnerability to security attacks. Likewise, a company security culture of consistency, patience and methodical progress is very important, Gottlieb stated.
A defining part of the culture is the boardroom. There has been a significant push recently to make boards more proactive about security. The days of prevention are over; now companies must take an active role in monitoring threats, setting good governance and educating users, according to Gottlieb.
“Every attack starts with a phishing attack that compromises an end-user, then moves laterally to the good stuff,” Gottlieb said.
Meanwhile, measuring the effectiveness of cybersecurity is difficult. The best way to turn it into numbers is to look at security as part of risk management, Gottlieb advised. Doing this can help translate security into terms that boards understand. Then, security becomes a matter of investments and trade-offs, which is how boards see the world, he added.
Watch the complete video interview below, and be sure to check out more of SiliconANGLE’s and theCUBE’s coverage of The Chertoff Group Security Series “Security in the Boardroom.” (* Disclosure: TheCUBE is a paid media partner for The Chertoff Group Security Series “Security in the Boardroom.” Neither The Chertoff Group LLC nor SailPoint Technologies Inc. have editorial control over content on theCUBE or SiliconANGLE.)