Category: Cybersecurity Strategy
-
Step Ten – It’s all About the Journey (Keeping the Strategy Relevant)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. Always make sure to keep your cybersecurity strategy up to date and adjust it when required. You may recall during my concluding paragraph in Step Zero, where I discussed the Basics of Cybersecurity Strategy, I emphasized that a…
-
Step Nine – How Do We Get There? (Defining the Operational Roadmap for the Strategy)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. You must clearly outline what actions you are going to take, and over what time period, to make your Cybersecurity Strategy real. The success of your strategy rests totally on its practical operationalization. Not only must you be…
-
Step Eight – How Do We Know When It’s Working? (Defining Metrics)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. You must be able to measure the successful realization of your strategy as it is operationalized. You will recall I said earlier that the cybersecurity strategy should be considered a living thing that should be reviewed and revisited…
-
Step Seven – But What Will It Do? (Determining the Objectives and Key Results)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. Your cybersecurity strategy must clearly articulate how you will address your Risk Statements and realize your Future State and Vision. This is where the rubber hits the road. What, specifically are you seeking to accomplish with your strategy…
-
Step Six – Dare to Dream (Envisioning the Future State and Articulating the Vision)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. Clearly communicate your ideal future state to show your aspirational vision for cybersecurity. At this point, you can build on everything you have gathered and built to define your target state. Now that you have done the leg…
-
Step Five – What’s The Worst That Can Happen? (Defining Organizational Risks)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. Your cybersecurity strategy must clearly articulate the risks the organization faces and the possible consequences. We’re at a pivotal part of the development process for creating a winning cybersecurity strategy! We have by now collected the foundational information…
-
Step Four – What’s In It For Me? (Determining your Organization’s Priorities, Business Value Drivers, and Principles)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. Your cybersecurity strategy must reflect a clear understanding of the organization’s priorities, goals, and drivers. You may recall during the introduction to this blog series I stated that one of the secrets to drafting a winning strategy was…
-
Step Three – Who Goes There? (Understanding the Current and Projected Threat Landscape)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. “Forewarned, forearmed; to be prepared is half the victory.” Miguel de Cervantes As you work to develop a cybersecurity strategy and to improve your organization’s capabilities, always be sure to look down the road to what threats you…
-
Step Two – Where Are You? (Understanding your Organization’s Current Cybersecurity State)
This blog walks cybersecurity professionals through the logical steps to create a practical and actionable cybersecurity strategy. It’s impossible to figure out how to get to where you’re going without knowing where you’re starting from. You must have a crystal-clear understanding of your organization’s current cybersecurity capabilities; what you have and what you do not.…
-
Step One – Who Are You? (Understanding your Organization)
This blog is intended to walk cybersecurity professionals through the logical steps in creating a practical and actionable cybersecurity strategy. Be absolutely clear on what your organization is about from the top on down. I stated in my last post that the cybersecurity function doesn’t operate in a vacuum or for its own purposes. It’s…