Bob Chaput Author Blog

Enabling Board Cyber Risk Oversight

From Cyber Guardian to Boardroom Luminary  – A Personal Story About CIO Evolution Parallels, with Career Advice

From Cyber Guardian to Boardroom Luminary – A Personal Story About CIO Evolution Parallels, with Career Advice

It’s like deja-vu all over again.—Yogi BerraIntroductionI’ve discussed the CISO role evolving “From Cyber Guardian to Boardroom Luminary” in two previous articles. One was entitled “From Cyber Guardian to Boardroom Luminary—Yogi Berra,” and it refers to the quote...

read more
Thinking Clearly About Risk Assessments

Thinking Clearly About Risk Assessments

If I had an hour to solve a problem and my life depended on the solution, I would spend the first 55 minutes determining the proper question to ask.– Albert EinsteinIntroductionThere are few Einsteins out there for solving the problem of establishing, implementing,...

read more
Healthcare Privacy and Security Spending Thought Experiment!

Healthcare Privacy and Security Spending Thought Experiment!

Healthcare Privacy and Security Spending Thought Experiment! IntroductionIn a recent post entitled Heads Up! Massive Increase in Proposed FY2025 OCR Budget: Focus on HIPAA Enforcement and Risk Management, as in the title, I wrote about the "whopping" proposed increase...

read more
Heads Up! Massive Increase in Proposed FY2025 OCR Budget:  Focus on HIPAA Enforcement and Risk Management

Heads Up! Massive Increase in Proposed FY2025 OCR Budget: Focus on HIPAA Enforcement and Risk Management

Heads Up! Massive Increase in Proposed FY2025 OCR Budget: Focus on HIPAA Enforcement and Risk ManagementIntroductionThe proposed Fiscal Year 2025 (FY2025) budget for the Office for Civil Rights (OCR) under the U.S. Department of Health and Human Services (HHS)...

read more
Navigating Cyber Risks in Healthcare: A Critical Wake-Up Call

Navigating Cyber Risks in Healthcare: A Critical Wake-Up Call

Navigating Cyber Risks in Healthcare: A Critical Wake-Up Call“Plus ça change, plus c'est la même chose” (“The more things change, the more they stay the same.”)--Jean-Baptiste Alphonse KarrIn our digital age, the healthcare sector remains the most vulnerable to cyber...

read more
From Cyber Guardian to Boardroom Luminary – Top 5 Actions

From Cyber Guardian to Boardroom Luminary – Top 5 Actions

From Cyber Guardian to Boardroom Luminary - Top 5 Actions“The best time to plant a tree was 20 years ago. The second best time is now.” – Chinese ProverbIn my recent post, From Cyber Guardian to Boardroom Luminary- Yogi Berra, I presented a case for change in how...

read more
From Cyber Guardian to Boardroom Luminary – Yogi Berra

From Cyber Guardian to Boardroom Luminary – Yogi Berra

From Cyber Guardian to Boardroom Luminary - Yogi BerraIt's like deja-vu, all over again.—Yogi Berra[1]IntroductionI recently delivered the keynote at an ISC2 Spotlight event focused on Governance, Risk Management, and Compliance (GRC). The title of my talk was From...

read more
Cyber Risk Illiteracy – 4 – ECRM Program vs. Cybersecurity Strategy

Cyber Risk Illiteracy – 4 – ECRM Program vs. Cybersecurity Strategy

Cyber Risk Literacy – 4 – ECRM Program vs. Cybersecurity StrategyBy failing to prepare, you are preparing to fail.—Benjamin Franklin[1]First, in case you didn’t notice, I have changed the series title from “Cyber Risk Illiteracy” to “Cyber Risk Literacy.” After all,...

read more