enterprisesecuritymag

A featured contribution from Leadership Perspectives, a curated forum for enterprise security leaders, nominated by our subscribers and vetted by the Enterprise Security Magazine Editorial Board.

Global CISO at Amgen

The Changing Facets in Enterprise Security Space

Greg Barnes, Global CISO at Amgen

Greg Barnes currently works as the global CISO at Amgen. He has implemented and directed advanced global technologies and teams for the Fortune 500, as well as the USAF. He is a John L. Levitow leadership award winner, former Advisor to the Blue Cross Blue Shield Association Board, and current H-ISAC Board Vice-Chair. He holds a B.S. in Information Technology and an M.S. in Information Assurance from Northeastern University.

What are some of the challenges that exist in the enterprise security space?

One of the most pressing challenges is the extraordinary difficulty in preparinga comprehensive, and trustworthy inventory of one’s environment.The proliferation of cloud, and continuously changing work contexts driven by that has aggravated the situation, making it incredibly problematic for businesses to guard their innovation capital, and identify their perimeter, let alone protect it.

One of the more frustrating issues, is the disconnect that seems to exist between investment levels in security solutions and the outcomes their consumerscan achieve. Despite the feverish pace of development and investment in the security industry writ large, it doesn’t appear to be driving deeply different outcomes from say 5 years ago.

What are some interesting and impactful projects/initiatives that you’re currently overseeing?

I’m really focused on one thing;the development of confident, capable, and sympathetic, but forceful leadership. It just happens to be in a setting where there are security related projects going on all the time.

How do you envision the future enterprise securities space?

If there were any lingering doubts about the necessity of digital transformation for business longevity, the coronavirus silenced them. For some- it’s go-digital-or-go-dark. And when mostbusiness interactions take place virtually, security obviously has to go with that, and that’s only going to expand the need for competent leadership and management.

"The sharpest tool in the information security staff tool bag is the mind... But to maximize its effect, we must learn to be at ease under pressure”

In the near future, we may find it extraordinarily difficult to start a business without a deep digital investment, and nearly impossible to stay in business without security staff and tooling.

What would be your piece of advice to your peers?

The sharpest tool in the information security staff tool bag is the mind... But to maximize its effect, we must learn to be at ease under pressure, because that pressure isn’t going away. I truly believe it’s critical for the inbound generation to first embrace and then practice operating under pressure, rather than avoiding it.

There’s an old saying “slow is smooth and smooth is fast”, and I believe that’s true in the information security world. No matter what situation we find ourselves in professionally, we always have time to be deliberate, and being deliberate pays dividends both in speed and in our ability to operate under pressure.

After that- perhaps our capacity for empathy is a close second. As we approach conversations with our peers, business unit leaders, subordinates (or anyone really)it’s always helpful to keep in mind that whatever outcomes we seek – they will be even better than we first imagined if the other person in that conversation we’re having feels seen, heard, and valued.

The articles from these contributors are based on their personal expertise and viewpoints, and do not necessarily reflect the opinions of their employers or affiliated organizations.