Four key takeaways from our South Summit panel on cybersecurity strategy

From L-R: Alberto Yépez (ForgePoint Capital), Agustín González (Prosegur), Alejandro Becerra (Telefónica), Román Ramírez (Ferrovial), Adolfo Hernandez (Banco Sabadell).
  1. The importance of proactive Vs reactive strategies — Alejandro Becerra, Global CISO for Telefónica spoke about the importance of always being prepared for the next major cyber attack. The panel agreed that it is impossible to avoid 100% of cyberattacks but damage can be limited if the business has a proactive approach to threats. Alejandro spoke from experience, noting that Telefonica found itself in this position during the WannaCry attack which affected over 200,000 victims and more than 300,000 computers worldwide. Key to defeating the attack, was an open and transparent approach to communicating with their entire ecosystem of customers and partners, a message that empowered the security community to protect their own organisations and collaborate in taking down the virus.
  2. Risk management is key — Román Ramírez, Head of Security Ops & Architecture for Ferrovial highlighted the reality that it is impossible for an organisation to secure every asset and therefore it is critical to prioritise certain assets and manage risk instead of trying to protect everything. Some assets and potential vulnerabilities will have a much higher value for attackers with a greater or lesser possibility of being attacked. CISOs should focus on understanding what these assets are, the probability of uncovering a vulnerability, and taking the right approach to mitigate that risk.
  3. Offer solutions not technology — In engaging with the startup community Alejandro Becerra, Global CISO for Telefónica stressed the importance of vendors offering solutions to corporates and not just technology. “It is easy to get wrapped up in emerging new technologies like AI and Blockchain that are having a major impact on the sector however as a buyer we are only interested in how you are going to solve our problem.” Agustín González, Global CIO for Prosegur highlighted the importance of being customer-centric in a startups approach to selling new solutions. “Empathy with the client is critical in demonstrating that you have a deeper understanding of the issues I am facing and how your solution can help me solve them.”
  4. Activate the human firewall — As a closing comment, Alberto Yépez, Founder and Managing Partner at ForgePoint Capital, reminded us that often the weakest link in an organisation’s cybersecurity defence is the human element. It is the individuals lack of understanding on how to react to a potential attack that can exacerbate the issue, converting potentially harmless attacks, like a phishing email, into a more viral organisation-wide attack. Alberto pointed to education as a means of addressing this shortcoming. By doing so, the organisation activates the “Human firewall” that can act as the first vital line of defence to oncoming cyber-attacks.

--

--

Get the Medium app

A button that says 'Download on the App Store', and if clicked it will lead you to the iOS App store
A button that says 'Get it on, Google Play', and if clicked it will lead you to the Google Play store
Adara Ventures

Adara Ventures

We invest in boldly ambitious businesses, partnering with founders with vision, courage and the capacity to execute.