• About
  • Subscribe
  • Contact
Thursday, May 8, 2025
    Login
  • Management Leadership
    • Growth Strategies
    • Finance
    • Operations
    • Sales and Marketing
    • Careers
  • Technology
    • Infrastructure and Platforms
    • Business Applications and Databases
    • Big Data, Analytics and Intelligence
    • Security
  • Industry Verticals
    • Finance and Insurance
    • Manufacturing
    • Logistics and Transportation
    • Retail and Wholesale
    • Hospitality and Tourism
    • Government and Public Services
    • Utilities
    • Media and Telecommunications
  • Resources
    • Whitepapers
    • PodChats
    • Videos
  • Events
No Result
View All Result
  • Management Leadership
    • Growth Strategies
    • Finance
    • Operations
    • Sales and Marketing
    • Careers
  • Technology
    • Infrastructure and Platforms
    • Business Applications and Databases
    • Big Data, Analytics and Intelligence
    • Security
  • Industry Verticals
    • Finance and Insurance
    • Manufacturing
    • Logistics and Transportation
    • Retail and Wholesale
    • Hospitality and Tourism
    • Government and Public Services
    • Utilities
    • Media and Telecommunications
  • Resources
    • Whitepapers
    • PodChats
    • Videos
  • Events
No Result
View All Result
No Result
View All Result
Home Technology Security

PodChats for Future: Overcoming common CISO pain points in Asia

Allan Tan by Allan Tan
August 24, 2021
PodChats for Future: Overcoming common CISO pain points in Asia

PodChats for Future: Overcoming common CISO pain points in Asia

The chief information security officer (CISO) is the executive responsible for an organization's information and data security.

According to IDG's 2020 Security Priorities Study, 61% of surveyed companies have a CISO, though that rate goes up to 80% for large enterprises.

CISO pain points in Asia

Callsign chief security officer, Ian Cruxton believes that information security concerns do not distinguish between borders and nationalities.

“From my perspective, from what I see, in particular, I think the speed of technology evolution is a real challenge and presents an obstacle to overcome in terms of ensuring that we can secure systems and ensure that we've got appropriate management around data against what is a really quickly evolving backdrop,” he elaborated.

He further opined that the nature of technology evolution, agile development, the need, and the appetite for new features are all put pressure on security by design policies and processes.

“Maintaining that organizational discipline and ensuring that processes are in place to end, making sure that the security elements of that do not fall behind, I think is really, really important,” he added.

He also stressed that the competition for and retention of skilled individuals in a highly competitive job market is a real challenge for everyone now. He acknowledged the wealth of talent in Asia as well as a huge demand across the security landscape. This is the real issue, he called out.

Easing the CISO pain points

Is something being done to ease the CISO’s pain points? Cruxton believes there are several approaches to do so. He stressed that security must be embedded into the software development process – a concept IDC DevOps analyst, Gina Smith, called DevDecOps.

He acknowledged that the bigger pain point around talent retention of the right skills and experience is going to be around for some time.

“There is a big investment at the front end in terms of young people recognizing that technology is an environment they need to work in. But in terms of the strong niche skills, from a security perspective, that's something that we see as being a continuing challenge for us,” he continued.

He cautioned that what is needed is someone with the skills and insights to understand that this is about sensible and pragmatic choices, to allow a business to succeed, while defending and protecting the value of that business, to the, to the best ability that it can and that that's about calibrating risk appetite.  

“I think that one of the really important skillsets for a CISO is to be engaged in those discussions and to be able to reach into the board where necessary to help them to calibrate where that appetite might need to sit.”

While a CISO with deep technical knowledge is a huge benefit, as is having experience or qualifications in that environment.

Spreading the risk

Cruxton is not married to the idea of a single person with all the right skills, expertise, and experience. He is concerned this person becomes the single point of failure for the company.

He believes it is more beneficial to “spread out some of the equities that you've got across the business and allowing people to learn from each other as well, which I think is a really important point.”

“Within Callsign, we work really hard at defining responsibilities accountabilities. And as a result, we think that we have clarity about who has the leadership role and the ownership of managing and delivering against critical accountabilities within that. There are opportunities for doing that. But you do need to get yourself organized to do that,” he concluded.

Cruxton commented that there is always that tension between security and the ability of a business to do what it needs to do to be successful and to thrive. “I manage those elements, I also have responsibility for our security risk and compliance functions, business resilience capabilities,” he added as he described his role at Callsign.

Click on the podchat player and listen to Cruxton offer his advice on overcoming the most common CISO pain points in Asia.

  1. Specific to Asia, what are the top 3 CISO pain points?
    1. How are these being addressed today?
    1. Can something be done to improve the outcome?
  2. To address these pain points, what is the IDEAL COMPLEMENT of expertise needed by the CISO?
  3. Is reporting to the CIO the best option for the CISO to address his/her functional goals?
    1. If not CIO, who is the best option?
  4. Name 3 best practices for a CISO to be effective at his/her role?
  5. Not all organizations in Asia have a CISO role. When such a role is not around, how should a business delegate the responsibility?
Related:  Guide to the 2023 Gartner top 10 strategic technology trends
Tags: Callsignchief information security officerCISOPodchats
Allan Tan

Allan Tan

Allan is Group Editor-in-Chief for CXOCIETY writing for FutureIoT, FutureCIO and FutureCFO. He supports content marketing engagements for CXOCIETY clients, as well as moderates senior-level discussions and speaks at events. Previous Roles He served as Group Editor-in-Chief for Questex Asia concurrent to the Regional Content and Strategy Director role. He was the Director of Technology Practice at Hill+Knowlton in Hong Kong and Director of Client Services at EBA Communications. He also served as Marketing Director for Asia at Hitachi Data Systems and served as Country Sales Manager for HDS’ Philippines. Other sales roles include Encore Computer and First International Computer. He was a Senior Industry Analyst at Dataquest (Gartner Group) covering IT Professional Services for Asia-Pacific. He moved to Hong Kong as a Network Specialist and later MIS Manager at Imagineering/Tech Pacific. He holds a Bachelor of Science in Electronics and Communications Engineering degree and is a certified PICK programmer.

No Result
View All Result

Recent Posts

  • Experts warn against AI-powered deepfake impersonation scams
  • Dropbox updates universal search and knowledge management product
  • Agentic AI-powered AppSec platform launched for the AI era
  • IDC forecasts GenAI alone will grow at a 59.2% CAGR
  • Dataiku brings new AI capabilities to create and control AI agents

Live Poll

Categories

  • Big Data, Analytics & Intelligence
  • Business Applications & Databases
  • Business-IT Alignment
  • Careers
  • Case Studies
  • CISO
  • CISO strategies
  • Cloud, Virtualization, Operating Environments and Middleware
  • Computer, Storage, Networks, Connectivity
  • Corporate Social Responsibility
  • Customer Experience / Engagement
  • Cyber risk management
  • Cyberattacks and data breaches
  • Cybersecurity careers
  • Cybersecurity operations
  • Education
  • Education
  • Finance
  • Finance & Insurance
  • FutureCISO
  • General
  • Governance, Risk and Compliance
  • Government and Public Services
  • Growth Strategies
  • Hospitality & Tourism
  • HR, education and Training
  • Industry Verticals
  • Infrastructure & Platforms
  • Insider threats
  • Latest Stories
  • Logistics & Transportation
  • Management Leadership
  • Manufacturing
  • Media and Telecommunications
  • News Stories
  • Operations
  • Opinion
  • Opinions
  • People
  • Process
  • Remote work
  • Retail & Wholesale
  • Sales & Marketing
  • Security
  • Tactics and Strategies
  • Technology
  • Utilities
  • Videos
  • Vulnerabilities and threats
  • White Papers

Strategic Insights for Chief Information Officers

FutureCIO is about enabling the CIO, his team, the leadership and the enterprise through shared expertise, know-how and experience - through a community of shared interests and goals. It is also about discovering unknown best practices that will help realize new business models.

Quick Links

  • Videos
  • Resources
  • Subscribe
  • Contact

Cxociety Media Brands

  • FutureIoT
  • FutureCFO
  • FutureCIO

Categories

  • Privacy Policy
  • Terms of Use
  • Cookie Policy

Copyright © 2022 Cxociety Pte Ltd | Designed by Pixl

Login to your account below

or

Not a member yet? Register here

Forgotten Password?

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Management Leadership
    • Growth Strategies
    • Finance
    • Operations
    • Sales and Marketing
    • Careers
  • Technology
    • Infrastructure and Platforms
    • Business Applications and Databases
    • Big Data, Analytics and Intelligence
    • Security
  • Industry Verticals
    • Finance and Insurance
    • Manufacturing
    • Logistics and Transportation
    • Retail and Wholesale
    • Hospitality and Tourism
    • Government and Public Services
    • Utilities
    • Media and Telecommunications
  • Resources
    • Whitepapers
    • PodChats
    • Videos
  • Events
Login

Copyright © 2022 Cxociety Pte Ltd | Designed by Pixl

Subscribe