I Just Can’t Communicate With the Business. I’ve Tried Condescension AND Derision.
All links and images can be found on CISO Series.
This week’s episode is hosted by me, David Spark, producer of CISO Series and Andy Ellis (@csoandy), principal of Duha. Joining us is Gary Chan, CISO, SSM Health. Be sure to check out Gary's security mentalism website: https://www.gschan2000.com.
In this episode:
- Decision-making with incomplete information
- Translation beats technical expertise
- Influence trumps authority for CISOs
- Technical prowess creates adversaries
Huge thanks to our sponsor, Vanta

Automate, centralize, & scale your GRC program with Vanta. Vanta’s Trust Management Platform automates key areas of your GRC program—including compliance, internal and third-party risk, and customer trust—and streamlines the way you gather and manage information. And the impact is real: A recent IDC analysis found that compliance teams using Vanta are 129% more productive. Get started at Vanta.com/ciso.
Published on 4 weeks ago