Instructor
Mike is the Founder and CEO of NTM Advisory. He embraces disruption, brings calm to chaos, and enjoys delivering transformation programs to solve complex and challenging problems. He is a proven leader of diverse international teams successfully delivering to clients primarily in the financial services, healthcare, and retail industries.
Mike has over 15 years of Consulting and Industry experience – bringing the perspective of both a trusted advisor and a practitioner who has had to make hard decisions and deal with the consequences. Mike built his foundation of expertise with over a decade of experience at PwC across the Cybersecurity and Privacy, IT Infrastructure, Cloud Computing, and Advisory practices. He has designed and run security and privacy programs as a CISO and is an expert at efficiently using resources to pragmatically mitigate IT and business risks.
He holds the Certified Information Security Manager (CISM) certification from ISACA, the ITIL Foundations Certification and previously held the AWS Solutions Architect certification.
Mike holds a Bachelor's degree in Computer Science from the University of Notre Dame, and a Global Executive MBA from the Fuqua School of Business at Duke University, including embedded learning and professional experiences on 4 continents (Shanghai, New Delhi, Santiago, Berlin, and Durham, NC).
Amidst today's constant stream of data breaches and escalating regulatory demands, cybersecurity has become a top concern for both IT and business leaders within CPA firms. Join us to discover practical strategies for aligning your business objectives with an effective risk management approach, safeguarding and enhancing both your firm's and your clients' operations.
1. Understand the pivotal role of the Chief Information Security Officer (CISO) as both a technical expert and a strategic business leader, capable of aligning cybersecurity initiatives with broader organizational objectives.
2. Appreciate the collaborative nature of cybersecurity, recognizing that effective cybersecurity is a collective responsibility that involves various stakeholders across and outside the organization.
3. Be able to describe how to apply a structured and pragmatic approach to building a cybersecurity program, leveraging frameworks and prioritization techniques to address risks and vulnerabilities systematically.
4. Recognize the importance of making progress in cybersecurity initiatives without waiting for perfection, emphasizing the value of iterative improvements and adaptive strategies.
5. Gain insights from real-world case studies and best practices, enabling them to implement practical and realistic cybersecurity strategies within their own organizations.
The Presentation takes a look at multiple dimensions of the role of an IT and Information Security Program with the following sections:
- You’re a Business Leader First: IT and Cybersecurity Risk IS a business risk
- Security is a Team Sport: Protecting an organization is not just the IT or Information Security team's responsibility.
- Structured = Defensible: Anchoring in industry frameworks allows you to strategically build a program with limited resources.
- Just Start: Don't let perfection be the enemy of progress. You are never done managing cybersecurity risk, so just get started.
None
None
Anyone interested in learning more about integrating risk management into your business objectives.