Skip to main content

Wow! CISO is going to the guardhouse due to a breach


Iams3le
Forum|alt.badge.img+11

2 comments

MicoolPaul
Forum|alt.badge.img+23
  • 2362 comments
  • October 6, 2022

Unfortunately they’re being used a bit as a scapegoat here, the CEO at the time was aware, but it’s the CISO that’s taking the fall… This standard should be applied to the board, determine who knew about this and was complicit, would be very interesting!


Iams3le
Forum|alt.badge.img+11
  • Author
  • Veeam Legend
  • 1394 comments
  • October 7, 2022
MicoolPaul wrote:

Unfortunately they’re being used a bit as a scapegoat here, the CEO at the time was aware, but it’s the CISO that’s taking the fall… This standard should be applied to the board, determine who knew about this and was complicit, would be very interesting!

I agree! A lot of organuzations aren’t reporting due to reputational damage, but I think .... “GDPR introduces a duty on all organizations to report certain personal data breaches to the relevant supervisory authority. You must do this within 72 hours of becoming aware of the breach, where feasible.”


Comment