I wrote about this in depth for Cyber Defence Magazine — why volume-based metrics are failing boards, and the questions CISOs should actually be answering.
Check it out here: https://t.co/cRdIVQ2BUF
Only 34% of boards have defined their cyber risk appetite.
Security teams report volume. Boards need exposure.
It’s not about how many vulnerabilities exist. It’s about what’s actually exploitable.
That’s the shift winning trust in 2026.
#cybersecurity#ciso#appsec
(1/2)
3.5B Chrome users recently got a wake-up call.
Zero-days prove that the patch-and-pray model is broken. The real risk? Threats no one knows yet.
Details & insights: https://t.co/82ZA3hxDgW
Golf has always been more than just a game for me. It teaches patience, focus & discipline. Spent the weekend at the @ndtv PGTI Pro-Am with corporate leaders and pros.
Good swings, great conversations, and a reminder that the long game matters/
Noticed something interesting recently... teams weren’t just running scans with @ZeroThreat_ZT, they were making remediation decisions based on them.
That made us plan our move toward logic-aware, Agentic AI testing...
More on how & why of the shift here https://t.co/WjkWsgxwpo
Shared my thoughts in detail on the speed vs. security debate a couple of months ago.
Here's the link if you'd like to check it out: https://t.co/GZQJT0OgTQ
#SoftwareEngineering
In a delivery discussion today, "move faster" came up more than once.
But here's the truth: Speed only helps when teams know what to deprioritize when trade-offs appear.
Otherwise it just adds noise.
Especially when it comes to speed vs. security discisisons.
#speedvssecurity
Watching teams ship at scale taught me this:
if security doesn’t fit how developers already work, it won’t scale.
Check out my complete experience and insights here: https://t.co/err3lGRcbs
#security#developers#automation
Every year strips away a little more noise and sharpens the signal. Taking those lessons into 2026 with more focus, more intent, and a long-term view on impact.
Happy New Year 🚀
#Building#TechForGood#vision2026
Was on round-up calls with security teams recently. Noticed the same story across the board: Too much to protect, Too little bandwidth.
2025 named the problem.
2026 will be about who can operate at the pace of change.
#CyberSecurity#ThreatManagement#SecurityOps#APIsecurity