Access and Feeds

Security: How the Security Leader can be more Effective

By Dick Weisinger

A new report by IBM looks at the role of the Chief Information Security Officers (CISO) and identifies how leaders in this role can be more effective. The results of the study are summarized in an Infographic.

Top on mind for many security leaders is how to deal with the security risks related to mobile. The IBM report found that mobile security is the number one ‘most recently deployed’ initiative. 25 percent of the security leaders surveyed have deployed mobile security within the last 12 months. But the report finds that less than 40 percent of organizations have yet drafted an enterprise policy for how to deal with employees that use their own device with the company network (BYOD).

David Jarvis, Manager at the IBM Center for Applied Insights and co-author of the IBM report, said that “in last year’s assessment we were told that mobile security was the number one area where security leaders were going to invest in. It’s the number one technology area that they’re worried about. So, I think that we really see that movement happening now. We see investments being made. We see it moving up the list of importance.”

One of the recommendations of the report is that security leaders need to be more collaborative and share information with their peers and colleagues both inside and outside the organization.

Jarvis said that “only about a quarter of organizations are collaborating outside their walls.” Security leaders need to be able to discuss and share information with each other. Unfortuantely, the report finds that more than half of security leaders currently do not share security or threat information with anyone, including peers, suppliers or industry groups. Sharing information with those outside the organization can help keep alert them to possible threats and help them to make better decisions about how to reduce their liability and costs.

A few of the other recommendations include:

  • Focus on overall risk
  • Invest in advanced technology
  • Formalize your security strategy
  • Introduce relevant metrics
Digg This
Reddit This
Stumble Now!
Buzz This
Vote on DZone
Share on Facebook
Bookmark this on Delicious
Kick It on DotNetKicks.com
Shout it
Share on LinkedIn
Bookmark this on Technorati
Post on Twitter
Google Buzz (aka. Google Reader)

Leave a Reply

Your email address will not be published. Required fields are marked *

*