Over 20% of losses from cyber incidents in 2024 were caused by outages and attacks of third parties, according to Resilience’s Mid-Year Cyber Risk Report.
Managing ecosystem risk today goes far beyond an annual vendor assessment or adjusting insurance limits. As attacks increasingly target critical suppliers, subsidiaries, and partners, the CISO's challenge is no longer just visibility—it’s control. Understanding and quantifying cyber risk across your extended enterprise has become essential to operational resilience.
How do you manage risks that sit outside your direct control? That’s the daily reality for CISOs, held accountable for threats that originate from vendors, partners, subsidiaries, and the software that powers the business. In today’s hyperconnected enterprise, your security posture is only as strong as the weakest link in your ecosystem. For security leaders aspiring to step into the C-suite, mastering the ability to assess and govern this interconnected risk is what separates tactical management from true security leadership.
Drawing on more than two decades of experience as a Colonel in the United States Air Force and as Director of the Risk Operations Center at a leading cyber insurance firm, Jud Dressler will introduce a practical framework for navigating today’s complex risk landscape. This talk will clarify how cybersecurity practices, quantifiable cyber risk, and cyber insurance intersect—and why moving beyond the traditional “threat-and-defense” model is essential. Together, we’ll explore how financial risk is embedded within technical data and what that means for business leaders.
You’ll learn how to:
- Identify and quantify cyber risks in your ecosystem of vendors, supply chain, and partners
- Translate people, process, and technical controls into business and financial terms that resonate with executives
- Apply cyber insurance principles as a proactive risk management tool—not just a policy of last resort
- Understand why better data leads to better security, which enables better business decisions