Acceleration Economy
  • Home
  • Cloud Wars
  • Analyst Content
    • By Category
      • AI/Hyperautomation
      • Cloud/Cloud Wars
      • Cybersecurity
      • Data
    • By Interest
      • Leadership
      • Office of the CFO
      • Partners Ecosystem
      • Sustainability
    • By Industry
      • Financial Services
      • Healthcare
      • Manufacturing
      • Retail
    • By Type
      • Guidebooks
      • Digital Summits
      • Practitioner Roundtables
      • Practitioner Playlists
    • By Language
      • Español
  • Vendor Shortlists
    • All Vendors
    • AI/Hyperautomation
    • Cloud
    • Cybersecurity
    • Data
  • What we do
    • Advisory Services
    • Marketing Services
    • Event Services
  • Who we are
    • About Us
    • Practitioner Analysts
  • Subscribe
Twitter Instagram
  • CIO Summit
  • Summit NA
  • Dynamics Communities
Twitter LinkedIn
Acceleration Economy
  • Home
  • Cloud Wars
  • Analyst Content
        • By Category
          • AI/Hyperautomation
          • Cloud/Cloud Wars
          • CybersecurityThe practice of defending computers, servers, mobile devices, electronic systems, networks, and data from malicious attacks.
          • Data
        • By Interest
          • Leadership
          • Office of the CFO
          • Partners Ecosystem
          • Sustainability
        • By Industry
          • Financial Services
          • Healthcare
          • Manufacturing
          • Retail
        • By Type
          • Guidebooks
          • Digital Summits
          • Practitioner Roundtables
          • Practitioner Playlists
        • By Language
          • Español
  • Vendor Shortlists
    • All Vendors
    • AI/Hyperautomation
    • Cloud
    • Cybersecurity
    • Data
  • What we do
    • Advisory Services
    • Marketing Services
    • Event Services
  • Who we are
    • About Us
    • Practitioner Analysts
  • Subscribe
    • Login / Register
Acceleration Economy
    • Login / Register
Home » Why CISOs Must Be Part of Data Governance
Cybersecurity as a Business Enabler

Why CISOs Must Be Part of Data Governance

Chris HughesBy Chris HughesOctober 18, 2022Updated:December 1, 20223 Mins Read
Facebook Twitter LinkedIn Email
CISOs data governance
Share
Facebook Twitter LinkedIn Email
Acceleration Economy Cybersecurity

Data is the modern digital economy’s lifeblood. Organizations use it for everything from improving revenue and financial outcomes to patient care, consumer engagement, and market expansion. To drive even better business outcomes, many organizations have realized that a structured data governance plan is required. They have begun to empower their chief data officers (CDOs) to lead the way on data governance, which makes sense given CDOs’ niche expertise and focus. That said, for several reasons, chief information security officers (CISOs) must be part of data governance efforts.

The CISO, like several stakeholders, needs to leverage data for business purposes (senior management for business decisions; marketing and sales for customer outcomes; and so on). The CISO has a need for data, both in terms of use, and, more importantly, to ensure it is secured throughout its lifecycle. This lifecycle involves several stages, including generation, collection, processing, storage, and even destruction; it’s a process lifestyle that CISOs and cybersecurity need to be involved in.

Collection and Privacy

As organizations increasingly look to collect more data from users, consumers, and stakeholders, there are key considerations around security and privacy that must be considered to ensure the organization is meeting any regulatory requirements. Frameworks such as the EU’s General Data Protection Regulation (GDPR) and others emerging in the U.S. provide clear requirements around the use of citizen/customer data, and, if organizations aren’t cognizant of these requirements, they can quickly find themselves in hot water.

Data Breaches

Much like the business, malicious actors are also heavily focused on the data. This could be personal data, business data, intellectual property, financial data, and so on. If this data is properly secured while it is at rest, in transit, and in use, it can be exposed to malicious actors who can use it for anything from ransomware and extortion to credit card fraud and identity theft. CISOs can be involved in key activities such as data discovery, classification, and, ultimately, governance to ensure the organization understands what data it has, how it is classified or categorized, and how it is governed throughout the previously mentioned lifecycle.

Bringing It Together

A data governance strategy that neglects to include the CISO and security considerations is like a stool missing legs. It will inevitably fall over as it encounters the friction of regulatory requirements, malicious actors, concerned customers, and trusted business partners. It is often said that security must be baked in rather than bolted on, and this is especially true when it comes to organizations’ data governance plans.

It is also worth pointing out that zero trust is data-centric and failing to include the CISO in data governance is inevitably setting up any zero-trust organizational plans for failure. However, it is up to CISOs to ensure they’re engaging with their chief data officer (CDO) and fellow C-suite counterparts and ensuring they have a seat at the proverbial table. Silos exist at the organizational executive level, and, much like the push for DevSecOps (development, security, and operations) and breaking down silos, these organizational executive level silos need to be broken down to bolster collaboration to enable better business outcomes — what we should all be after.

Join us on October 27, 2022 for Acceleration Economy’s Data Modernization Digital Battleground, a digital event in which four leading cloud vendors answer questions on key considerations for updating data strategies and technology. Register for free here.


Want more cybersecurity insights? Subscribe to the Cybersecurity as a Business Enabler channel:

Acceleration Economy Cybersecurity

CISO Compliance Cybersecurity data devsecops featured Featured Post GDPR governance zero trust
Share. Facebook Twitter LinkedIn Email
Analystuser

Chris Hughes

CISO & Co-Founder
Aquia

Areas of Expertise
  • Cybersecurity
  • LinkedIn

Chris Hughes is an Acceleration Economy Analyst focusing on Cybersecurity. Chris currently serves as the Co-Founder and CISO of Aquia. Chris has nearly 20 years of IT/Cybersecurity experience. This ranges from active duty time with the U.S. Air Force, a Civil Servant with the U.S. Navy and General Services Administration (GSA)/FedRAMP as well as time as a consultant in the private sector. In addition, he also is an Adjunct Professor for M.S. Cybersecurity programs at Capitol Technology University and University of Maryland Global Campus. Chris also participates in industry Working Groups such as the Cloud Security Alliances Incident Response Working Group and serves as the Membership Chair for Cloud Security Alliance D.C. Chris also co-hosts the Resilient Cyber Podcast. Chris holds various industry certifications such as the CISSP/CCSP from ISC2 as holding both the AWS and Azure security certifications. He regularly consults with IT and Cybersecurity leaders from various industries to assist their organizations with their Cloud migration journeys while keeping Security a core component of that transformation.

  Contact Chris Hughes ...

Related Posts

Quantum Era Begins: IBM, Cleveland Clinic Attack Deadly Diseases

March 28, 2023

Why CEOs Must Understand Applications, Benefits, and Risks of ChatGPT

March 28, 2023

How to Adapt Cybersecurity Processes to Strengthen Multi-Cloud Incident Response

March 28, 2023

Why Information, or Data With Context, Is More Valuable Than Data Alone

March 28, 2023
Add A Comment

Comments are closed.

Recent Posts
  • Quantum Era Begins: IBM, Cleveland Clinic Attack Deadly Diseases
  • Why CEOs Must Understand Applications, Benefits, and Risks of ChatGPT
  • How to Adapt Cybersecurity Processes to Strengthen Multi-Cloud Incident Response
  • Why Information, or Data With Context, Is More Valuable Than Data Alone
  • How Informatica Is Helping Grocery Giant Kroger Fine-Tune Its Supply Chain

  • 3X a week
  • Analyst Videos, Articles & Playlists
  • Exclusive Digital Business Content
This field is for validation purposes and should be left unchanged.
Most Popular Guidebooks

Securing Multi-Cloud Ecosystems

March 24, 2023

Securing Software-as-a-Service Applications

March 1, 2023

Retail Innovation With AI, Data, and Cybersecurity

March 1, 2023

Cloud Data Strategy, Analytics, and Governance

February 27, 2023

Advertisement
Acceleration Economy
Twitter LinkedIn
  • Home
  • About Us
  • Privacy Policy
  • Get In Touch
  • Advertising Opportunities
© 2023 Acceleration Economy.

Type above and press Enter to search. Press Esc to cancel.

  • Login
Forgot Password?

Connect with

Login with Google Login with Windowslive

Lost your password? Please enter your username or email address. You will receive a link to create a new password via email.