Back to desk

Security Leadership & Strategy

Security Leadership & Strategy Security programs, operating models, organization design, executive communication, investment, prioritization, adoption, and leadership lessons rooted in security and technology experience.

Learn

article · Featured

The CyberSecurity & Evolving Threats

A general-audience tour of the threats that dominated 2022 — ransomware, malware, and phishing — and the baseline controls that reduce exposure to them.

22 Dec, 2022

Open document : The CyberSecurity & Evolving Threats
Apply

article · Featured

Top 5 things for a Successful Cyber Response 'IR' Plan

Having an incident response plan at all is associated with a 43% reduction in breach cost. Here are the five things that separate a plan that holds up under pressure from one that sits unread — with practical examples for each.

11 Jan, 2022

Open document : Top 5 things for a Successful Cyber Response 'IR' Plan
Learn

article

Your Decisions Are the Bottleneck, Not Your AI

AI can do security work in seconds, but the work still waits in queues and SLAs built for human speed. Compare each SLA with how fast AI can do the same step, automate the steps that need no judgment, and set clear rules for when containment blocks and when it goes to a person.

26 Sep, 2026

Open document : Your Decisions Are the Bottleneck, Not Your AI

How Do Security Leaders Learn to Talk Business? An Open Question

Security leaders lose decisions when they report on controls instead of choices. A question-stage note: why I think the translation fails, what the SEC's 2023 rule implies about who carries it, and a way to start practising this week.

26 Sep, 2026

Open document : How Do Security Leaders Learn to Talk Business? An Open Question
Use

framework

Mountain Maturity Communication Model

A mountain-climbing analogy that translates NIST CSF maturity levels into a five-stage narrative — Basecamp through Summit Standard — that boards and executives grasp without a framework briefing.

21 Sep, 2026

Open document : Mountain Maturity Communication Model
Explore

experiment

I Scanned 16 MCP Servers for Safety Hints. The Scanner Flagged Every One.

On 2026-05-21 I scanned 16 public MCP servers for tool annotations, the hints agent clients use to decide when a human approves an action. The scanner flagged all 16, and one of those results is wrong. Here is what the gap means for approval gates, and what to check before you adopt a server.

20 May, 2026

Open document : I Scanned 16 MCP Servers for Safety Hints. The Scanner Flagged Every One.
Apply

article

4 Essentials for Executive & Business Buyin on your Incident Response Plan

Four things an incident response plan needs before executives will stand behind it: response SLAs the business agrees to, a clear split between operational and strategic plans, formalization of processes you already run rather than net-new invention, and a signature from the C-suite.

22 Dec, 2022

Open document : 4 Essentials for Executive & Business Buyin on your Incident Response Plan
Go to AI & Emerging Technology