Pythia Cyber Elevator Pitch 2026-06-11
Like everyone else, we get asked "what's your elevator pitch?" We always have one, but we find it a useful exercise to revisit and revise ours to better fit this ever-changing world of cybersecurity. Here is our latest elevator pitch. Cybersecurity is a risk management function. Management is mostly about people. Many Cybersecurity Programs (CSPs) are rigorous and based on a valid, tested foundation such as the NIST CSF. Few CSPs have been implemented with an eye to how the people involved will behave. We help you make your CSP more effective by making it more rooted in human behavior. Running a CSP is like putting on a play: a good script is a necessary but not sufficient condition for a good performance. A single good performance is nice, but that does not make a successful run. Having good policies and good procedures based on those policies is a fine start, but if your cast and crew don't deliver then you don't have good cybersecurity. Those of us who have see...