Ep.2: Annual Plans for Your Risk Management Strategy & Governance (Form 10-K)

Published: Oct. 29, 2023, 4 p.m.

In our second episode, Dr. Norrie discusses the SEC's new cybersecurity disclosure rules, emphasizing a shift from measuring cybersecurity efforts to providing measurable success in risk containment within predefined tolerance levels. The regulations require companies to describe their processes for identifying, assessing, and managing cybersecurity risks, including the involvement of consultants and partners. Dr. Norrie also highlights the importance of presenting these strategies in plain language for investors and recommends improving collaboration between risk, compliance, and security teams while involving the Board of Directors in cybersecurity governance, in line with the SEC's increased focus on cybersecurity compliance as a top governance priority.

Visit cyberconIQ.com to learn how our patented approach helps mitigate human risk in your organization more effectively.