Chapter 5

Uncover Your Blind Spots: Hire Experts of Diverse Backgrounds

Organizations must have the right experts onboarded with diverse backgrounds to help mitigate risks. There are a number of ways of looking at the pool of candidates; we believe that taking a diverse approach to the selection is key.

It is essential for boards of directors to know their organizations have the right experts onboarded with diverse backgrounds to help mitigate risks. There are a number of ways of looking at the pool of candidates; we believe that taking a diverse approach to recruitment and selection is key. Ideal cybersecurity organizations have multiple dimensions of expertise: They need to have expertise in the best practices of running a modern cybersecurity program. They need to understand systems. Next, they need to have a deep understanding of the industry (for example, a CISO of an automaker, having knowledge of autonomous self-driving as well as internet-connected cars would be valuable to overseeing the firm). The third dimension must cover a range of perspectives and backgrounds. We list several examples here:

1

Military Veterans

The military is one example of a background that can provide valuable skills and experience in the field of cybersecurity. Military personnel are trained to operate in high-pressure situations and to make quick decisions in the face of danger. These are critical skills in the field of cybersecurity. Military personnel are also used to working in highly controlled environments, which is essential for maintaining the security of sensitive information.

2

Non-Traditional Industries

Many unconventional industries are also rich in skills and experience in cybersecurity. One example is nuclear power, which is heavily regulated and require strict security protocols to be in place. This is because a nuclear power plant is a high-value target for cyber attackers. Individuals who have experience running a nuclear power plant have a deep understanding of the importance of security and the measures that need to be taken to protect critical infrastructure. Other industries involving critical infrastructure such as oil and gas, aviation, and communications can offer alternate perspectives and additional pools of skilled candidates.

3

Diversity of Perspective

When it comes to cybersecurity, diversity is key. A diverse team of experts can bring a range of perspectives and skill sets to the table. The CISO and her team should consider and represent all stakeholders, including individual users, technical practitioners, finance, shareholders and more, and perhaps should have varied career backgrounds to better understand their perspectives. Additionally, diversity of culture, gender, age, and other qualities leads to better debate, enhanced problem-solving skills, and improved decision-making. Diversity creates an environment for a more comprehensive approach to cybersecurity, which can help to identify potential vulnerabilities and mitigate potential threats.

In short, hiring experts with diverse backgrounds is essential for protecting organizations from cyber threats. The military, as well as diverse industry backgrounds and other qualities skills and experience land themselves well in the field of cybersecurity. A diverse team of experts can bring a range of perspectives and skill sets to the table, which can lead to broader analysis and help to identify potential vulnerabilities and mitigate potential threats. The board of directors should take the necessary steps to hire experts with diverse backgrounds in order to protect their organization from cyber threats.

Chapters