Who should have the ultimate responsibility for cyber security - the CIO or the CISO?

25.2k views3 Upvotes19 Comments
Sort By:
Chief Security Officer in Software6 years ago
2 7 Replies
CIO in Software6 years ago

CISO unless the CIO has a very strong background in Cyber Security

CTO in Software6 years ago


lock icon

Please join or sign in to view more content.

By joining the Peer Community, you'll get:

  • Peer Discussions and Polls
  • One-Minute Insights
  • Connect with like-minded individuals
CTO in Software6 years ago
The entire company, including the Board
6 1 Reply
CxO and Startup Advisor in Software6 years ago

This is by far the best answer here...

Chief Security Officer in Software6 years ago
I’ll add to my original comment. If a company is mature enough then I still think the CISO, but in a lot of cases, depending on who has the most business/technology responsibility, it is usually the CTO or CIO. At my last 2 companies it has been the CTO.
CTO in Software6 years ago
I don't understand the context around a company being mature enough, or not, for security to be a first-class citizen. That will never be solved by reporting structure, and security, as I at least previously implicitly said, needs to be embedded into the entire DNA of a company. Compliance != Security
Chief Security Officer in Software6 years ago
Completely agree Mike and I think that is what all security pros strive for, but that isn’t always the reality. However, some organizations just haven’t figured out the priority of security.

Content you might like

243 views2 Upvotes




Alignment with Cloud Provider7%


Alignment with Existing IT Skills4%

Product / Feature Set7%

Vendor Relationship / Reputation

Other (comment)

View Results
5.7k views3 Upvotes1 Comment
Head of Enterprise Architecture MERCK Group in Healthcare and Biotecha year ago
Strategy & Architecture
Read More Comments
39k views5 Upvotes34 Comments

Acquiring new clients and projects20%

Keeping up with evolving technologies and testing methodologies52%

Building a strong reputation and establishing credibility in the industry53%

Adapting to changing client demands and expectations40%

Ensuring effective communication and collaboration with clients and development teams21%

Developing effective pricing strategies and staying profitable14%

Other (please specify)

View Results