Hi Bill, I just started in a new CISO role 2 months ago and this helped me a lot. I've definitely been falling into the trap of just doing what's familiar and struggling to balance strategy and force myself to stretch out into the unfamiliar aspects of the role. I come from a technical background which means I have so much to learn on the strategy and relationships front, but this helped immensely and I think it will put me on the right path. Thank you so much.
@billcampbell998810 ай бұрын
Delighted you found value!
@mosymuis4 жыл бұрын
I keep coming back to this. Wonderful analysis and advice in here!
@technotambo23 жыл бұрын
I have been preparing for a CISO role because I have both Cyber Security and Management training, you have really helped me!!
@billcampbell99883 жыл бұрын
Best of success to you, then, @FOG Travel!
@Tmr60304 жыл бұрын
Having been worked for 25yrs, 15yrs as CISO these are valuable insights👍
@ชเเดชกบเช5 жыл бұрын
Proud to be the 100th sub. This man speaks truth.
@tombyrne22257 жыл бұрын
Thanks Bill! This video was very informative and entertaining.
@AdityaAdv6 жыл бұрын
Good presentation, helped me form my thoughts on the topic, thanks!
@jennypouwels2085 жыл бұрын
Thanks for giving us information and insight in an entertaining way! very good video
@adityadwivedi87983 жыл бұрын
can you make a video on How to became ciso for newbies starting their career in cybersecurity
@jack65392 жыл бұрын
Well done. I sense someone who knows scm well. Am I right?
@billcampbell99882 жыл бұрын
I have to concede that I don't. But as someone who is not familiar, I'm now curious what intersection you saw with what I'm discussing here. Maybe I should learn more about SCM?
@jack65392 жыл бұрын
@@billcampbell9988 I can't remember the context when I posted this, but yeah, software configuration management was the predecessor to Devops. Good SCM teams handled what is today called devops and much more - governance, security, full traceability from needs to standards, to requirements, designs, code, binaries environments, customers. Most SCM teams just focussed on build and deployment automations, so when Devops came along, they all rebranded, leaving behind the other aspects of which we are all feeling the pain for now imo. The last decades focus on time to delivery and more features at the expense of everything else has, imo been a disaster from a security perspective. BTW: I just buzzed out at the chicken versus pig analogy - if you don't mind, I really want to incorporate that one into my rants.
@billcampbell99882 жыл бұрын
@@jack6539 omg how embarrassing. I thought when you mentioned SCM you were referring to Supply Chain Management. Yes, of course I'm very conversant with what we used to call SCM (Software Configuration Management) years ago, but which has since been rather overtaken by a spectrum of disciplines and technologies (e.g. devops, as you observed). And you're welcome to use the breakfast analogy as you see fit! :-)
@cornywallyja5 жыл бұрын
at 4:50 Lol Lol Lol Lol!
@735Secure6 жыл бұрын
Big thumbs up, thank you!
@patelgaurav48084 жыл бұрын
Hii, what i should study in college to become CISO?
@billcampbell99884 жыл бұрын
I'm sorry; I'm not very familiar with college degree programs. As I point out in the presentation, there are many paths to CISO, all of which are valid. There isn't One True Way(TM) to get there. A degree in Computer Science or Cybersecurity might be a good start for some, but it's hardly the only way. And by the way, I don't think you'll ever find yourself in a situation where the CEO says, "Gaurav would be the best choice for the new CISO, except he didn't get the right degree all those years ago so he's out."
@patelgaurav48084 жыл бұрын
@@billcampbell9988 Thanks for sharing this information. It's help me a lot.
@eng.samialhejailan79174 жыл бұрын
hi Bill need consultation in my career path ? how i can reach you ? thank you
@billcampbell99884 жыл бұрын
Sorry didn't see this until now. You can reach me at billc@predictable.solutions
@HulkWorldWar17 жыл бұрын
Great information Bill. We were just bought by a company that doesn't have a mature security program or infrastructure team. It will definitely be a challenge to change their mindset of prioritizing cost before risk.
@billcampbell99887 жыл бұрын
Thanks for watching, Alex. Maybe it's what you actually meant, but of course, cost containment will always be a priority for responsible business leaders. What's sometimes missed is that assuming a risk (deciding not to invest in controls) has a cost. And that cost is incurred by the business intrinsically even if it's not explicitly recognized and acknowledged by management. Best of luck to you with your organizational changes!
@bluestar94865 жыл бұрын
Thank you!
@eledu213 жыл бұрын
jajaja en el min 12:29 aparece Raul Alfonsin!! que tipo inservible!
@billcampbell99882 жыл бұрын
Es una foto de archivo; ¡No esperaba que los argentinos se dieran cuenta! Jejejeje