Executive essays on governing cyber risk.

Not a blog. A place for clear thinking, written for boards and executive leadership.

Clear thinking for boards, published as it's written.

We would rather publish a few pieces worth an executive's time than a stream worth none. Each is drawn from two decades of CISO accountability — the latest are below, and new essays appear as they are written.

Published · No. 009

Putting a dollar figure on cyber risk

Why heatmaps fail leadership, and how financial quantification changes the budget conversation.

Read →
Published · No. 008

What your board should ask before the next renewal

The questions that separate organizations that renew smoothly from those that get repriced — and how to answer them.

Read →
Forthcoming

Who is accountable for your AI?

The governance gap opening faster than any regulation — and what executives can do about it now.

Looking for something practical right now? The six questions your board will ask is a one-page guide, available immediately.

Prefer the conversation to the essay?

You do not have to wait for the next piece. A 30-minute Executive Briefing puts the same thinking to work on your specific situation.

Schedule an Executive Briefing

30 minutes · No obligation · Nothing will be sold to you