Bob Chaput Author Blog
Enabling Board Cyber Risk Oversight
Risk Rating and Risk Appetite
Blog #6 of ~15 in ECRM Framework & Strategy SeriesRisk Rating and Risk AppetiteIf you are starting this ECRM Framework & Strategy Series here, with Blog #6, you may wish to review some previous posts:#1, Introduction - Overseeing the Development of Your ECRM...
Selecting and Adopting an ECRM Framework, Process, and Maturity Model
Blog #5 of ~15 in ECRM Framework & Strategy SeriesSelecting and Adopting an ECRM Framework, Process, and Maturity ModelIf you are starting this ECRM Framework & Strategy Series here, with Blog #5, you may wish to review some previous posts:#1, Introduction -...
Basic Cyber Risk Management Terminology
Blog #4 of ~15 in ECRM Framework & Strategy SeriesBasic Cyber Risk Management TerminologyIf you are starting this ECRM Framework & Strategy Series here, with Blog #4, you may wish to review some previous posts:#1, Introduction - Overseeing the Development of...
Setting ECRM Guiding Principles, Aligning Business and ECRM Strategic Objectives, and Clarifying Governance
Blog #3 of ~15 in ECRM Framework & Strategy SeriesSetting ECRM Guiding Principles, Aligning Business and ECRM Strategic Objectives, and Clarifying GovernanceIf you are diving into this ECRM Framework & Strategy Series for the first time, with Blog #3, you may...
Getting Started with the Development of Your ECRM Framework and Strategy
Blog #2 of ~15 in ECRM Framework & Strategy SeriesGetting Started with the Development of Your ECRM Framework and StrategyIn this and upcoming posts in this ECRM Framework & Strategy Series, I will cover one or more aspects of developing your ECRM Framework...
Introduction – Overseeing the Development of Your ECRM Framework and Strategy
Blog #1 of ~15 in ECRM Framework & Strategy SeriesPosts in this series:#1, Introduction - Overseeing the Development of Your ECRM Framework and Strategy#2, Getting Started with the Development of Your ECRM Framework and Strategy#3, Setting ECRM Guiding Principles,...
Board Members – Stop Wasting Investors’ Money on Cybersecurity!
Board Members – Stop Wasting Investors' Money on Cybersecurity!IntroductionPick your favorite business publication, magazine, research resource, top consultancy, or local butcher or baker. The data, systems, and devices that create, receive, maintain, or transmit...
The Board, M&A, and Cyber Risk Management
Introduction I cited an MIT Sloan Executive Education in a recent blog post, Getting Started with Enterprise Cyber Risk Management (ECRM) | Overseeing the Development of Your ECRM Framework and Strategy, “Cyber risk is so significant that a responsible board can no...
Getting Started with Enterprise Cyber Risk Management (ECRM) | Overseeing the Development of Your ECRM Framework and Strategy
Board members, C-suite executives, and staff, here’s an excellent New Year’s Resolution – Act now! Resuscitate your enterprise cyber risk management program (ECRM)! IntroductionAs if you haven’t heard the admonition enough, a recent interview in an MIT Sloan Executive...
Voltaire and Cyber Risk Management
Voltaire and Cyber Risk ManagementRecent conversations with Fortune 500 CISOs, CIOs, C-suite executives, and board members remind me of the importance of words and their definitions. Perhaps it’s the relative immaturity of the field of cyber risk management and,...




