Summary
The key to corporate resilience is to develop crisis “shock absorbers” that enable businesses to continue operations, expand customer outreach, and accelerate company change during times of crisis.
Cyber resilience is about recognizing security risks, implementing adequate security controls, and ensuring cyber-incident responses are rapid and efficient to mitigate long-term consequences. Cyber risk must be treated with the same seriousness as other risks, such as natural catastrophes or severe diseases. The board of directors and CEO must recognize and prioritize cyber risks on par with other business risks.
Building a strong cyber culture needs a strong organizational commitment. Instead of just adhering to regulations and standards, a principles-based approach will greatly aid in staff comprehension and compliance. The CISO is an essential resource and leader in in establishing and implementing the firm’s best cybersecurity plan—but they...