
Sign up to save your podcasts
Or


Speaking Security in Board Language: How CISOs Can Elevate Cybersecurity from IT to Business Priority
In this episode of Threat Vector, host David Moulton speaks with Nigel Hedges, Executive General Manager of Cyber and Risk at Chemist Warehouse, about transforming cybersecurity conversations at the executive level.
Key Discussion Points:
Reframe cyber as business risk: Nigel describes cyber as "technology-enabled business risk" rather than just a technology issue
Master storytelling with analogies: Learn how to explain identity access management using train stations vs. stadiums, making complex concepts accessible to boards
Focus on materiality: Nigel limits board presentations to 20 metrics maximum and advocates for 5 minutes of content plus 5 minutes for questions
Measure engagement beyond clicks: Track not just phishing click rates, but employee reporting rates when they identify suspicious emails
Build business relationships first: Spend your first 100 days understanding both cyber risks and meeting business unit leaders with the question "How can I help you?"
What You'll Learn:
Related Resource:
By Palo Alto Networks and N2K Networks4.9
3333 ratings
Speaking Security in Board Language: How CISOs Can Elevate Cybersecurity from IT to Business Priority
In this episode of Threat Vector, host David Moulton speaks with Nigel Hedges, Executive General Manager of Cyber and Risk at Chemist Warehouse, about transforming cybersecurity conversations at the executive level.
Key Discussion Points:
Reframe cyber as business risk: Nigel describes cyber as "technology-enabled business risk" rather than just a technology issue
Master storytelling with analogies: Learn how to explain identity access management using train stations vs. stadiums, making complex concepts accessible to boards
Focus on materiality: Nigel limits board presentations to 20 metrics maximum and advocates for 5 minutes of content plus 5 minutes for questions
Measure engagement beyond clicks: Track not just phishing click rates, but employee reporting rates when they identify suspicious emails
Build business relationships first: Spend your first 100 days understanding both cyber risks and meeting business unit leaders with the question "How can I help you?"
What You'll Learn:
Related Resource:

184 Listeners

2,001 Listeners

369 Listeners

374 Listeners

638 Listeners

1,019 Listeners

321 Listeners

416 Listeners

8,012 Listeners

174 Listeners

314 Listeners

189 Listeners

73 Listeners

134 Listeners

169 Listeners