Blog

What It Actually Takes to Build a Security Team That Works

In March 2026, six security leaders discussed on Reddit the key elements of building effective security teams, emphasizing the importance of fostering a collaborative culture where security is seen as a resource rather than a roadblock. They highlighted strategies such as positioning security as the “department of engagement,” making secure practices easy through platform-based models, hiring thoughtfully with a focus on culture fit, and ensuring smaller teams and vendors build trust through documented processes and demonstrated maturity.

https://cisoseries.com/what-it-actually-takes-to-build-a-security-team-that-works/

The 3 Trials of Leadership in the Age of AI

The article discusses three significant leadership challenges presented by the rise of AI in the workplace: the Leadership Trial of Identity, which requires leaders to prioritize soft skills like empathy and creativity over traditional hard skills; the Leadership Trial of Technique, focusing on managing blended teams of humans and AI with new performance metrics and organizational designs; and the Leadership Trial of Governance, emphasizing the need for boards to develop balanced, AI-literate oversight amidst evolving risks. These trials call for a fundamental transformation in leadership approaches to successfully integrate AI into organizations.

https://hrexecutive.com/the-3-trials-of-leadership-in-the-age-of-ai/

How 1Password CIO Jacob DePriest Thinks About Approving Internal AI Tools

1Password CIO and CISO Jacob DePriest emphasizes the need for faster evaluation and approval processes for internal AI tools to keep up with AI-driven cyber threats. To manage the rising number of employee “citizen developers,” 1Password is implementing expedited, limited experiments for AI tools alongside thorough onboarding and security controls that limit access based on need, ensuring both innovation and security.

https://www.itbrew.com/stories/2026/04/20/how-1password-cio-jacob-depriest-thinks-about-approving-internal-ai-tools

AI Doesn’t Create ROI. Organizations Do.

Despite clear evidence of AI delivering task-level productivity gains, most organizations struggle to translate these improvements into measurable financial returns at the enterprise level. The article argues that AI itself does not create ROI; instead, capturing value requires organizations to redesign their structures, decision-making, governance, and performance metrics to overcome legacy systems and misaligned incentives, making organizational readiness the true barrier to scaling AI impact.

https://www.cio.com/article/4159823/ai-doesnt-create-roi-organizations-do.html

The CISO Role Has Always Been Brutal. Here Is What Makes Some Survive It.

Peter Liebert reflects on the challenging role of the Chief Information Security Officer (CISO), emphasizing that cybersecurity risks can be managed through people, processes, and technology but always involve residual risk based on an organization's risk appetite and resource allocation. He uses a restaurant menu analogy to illustrate how CISOs must offer informed risk options tailored to their leadership's preferences and priorities, highlighting that ultimate risk decisions rest with business leaders rather than CISOs themselves.

https://www.scworld.com/perspective/the-ciso-role-has-always-been-brutal-here-is-what-makes-some-survive-it

Beyond Awareness: Human Risk Management Metrics for CISOs

Traditional cybersecurity awareness training often fails to sufficiently protect organizations against increasingly sophisticated human-targeted cyber threats. Forrester Research advocates for a human risk management approach that leverages behavioral data to identify and mitigate risky employee actions through targeted interventions, fostering a security culture focused on measurable behavior change rather than mere training completion. This data-driven strategy enables CISOs to align security metrics with business goals and improve overall cybersecurity posture by addressing the root causes of human vulnerabilities.

https://www.techtarget.com/searchsecurity/tip/Beyond-awareness-Human-risk-management-metrics-for-CISOs

Why the CIO Is Uniquely Positioned to Lead the Digital Workforce

In 2026, the CIO role has expanded from maintaining systems to leading the integration of advanced AI as a digital workforce within enterprises, driven by breakthroughs in AI accuracy and workflow capability. As AI increasingly performs structured cognitive work, CIOs are uniquely positioned to oversee its safe deployment, integration with core business systems, and transformation of workflows, thereby translating technological progress into measurable business advantages. This shift requires CIOs to manage AI as a workforce layer with accountability, governance, and cultural change, positioning them at the center of strategy, growth, and operational redesign.

https://www.cio.com/article/4160987/why-the-cio-is-uniquely-positioned-to-lead-the-digital-workforce.html

Vulnerability Exploitation Surges Often Precede Disclosure, Offering Possible Early Warnings

A new GreyNoise report reveals that surges in the exploitation of software vulnerabilities often occur weeks before vendors publicly disclose the flaws, providing potential early warnings for organizations. The study found that nearly half of exploitation surges between December 2025 and March 2026 preceded vulnerability disclosures within three weeks, suggesting that timely threat intelligence on attack activity could enable companies to better prepare and protect their systems before vulnerabilities become widely known.

https://www.cybersecuritydive.com/news/vulnerability-disclosure-surges-warnings-greynoise/817952/

The Role of a New Machine

In his 2026 reflection on Tracy Kidder’s Pulitzer-winning book The Soul of a New Machine, Dan Cohen draws parallels between the 1970s minicomputer revolution and today's AI hype. He highlights that just as the Eclipse MV/8000 transformed work by moving companies from paper to digital processing, current AI technology raises similar debates about its impact, purpose, and ethical concerns, emphasizing that both eras focus on creating tools to aid human work rather than imbuing machines with intelligence.

https://newsletter.dancohen.org/archive/the-role-of-a-new-machine/

AI Hit Software Engineers First. Here’s What They Want You to Know.

Software engineers have experienced significant changes in their roles due to AI tools automating coding tasks, with these tools blurring traditional job boundaries and prompting a shift away from highly specialized roles. While repetitive jobs may be at risk of automation, AI is creating new opportunities and increasing demand for adaptable workers who can leverage the technology, signaling a transformation likely to affect many white-collar jobs.

https://www.businessinsider.com/software-engineers-lessons-white-collar-works-ai-disruption-2026-4

Scroll to Top