Cyber Risks and Board Outcomes: BHUSA Interviews with Mimecast and Zscaler Leaders

www.news4hackers.com-cyber-risks-and-board-outcomes-bhusa-interviews-with-mimecast-and-zscaler-leaders-cyber-risks-and-board-outcomes-bhusa-interviews-with-mimecast-and-zscaler-leaders

The threat landscape has become more interconnected, disruptive, and complex. Ransomware is now as much about extortion and data theft as it is about encryption. Supply chain vulnerabilities continue to expand, creating new challenges for organizations.

Dan Bowden, Global Business CISO at Marsh

Dan Bowden, Global Business CISO at Marsh, discusses how to align cyber risk with board-level priorities such as resilience, financial exposure, regulatory compliance, and reputational impact. He emphasizes the need for CISOs to frame cybersecurity as an enterprise risk rather than a technical issue. This approach enables organizations to measure, prioritize, and manage cyber risks alongside other strategic concerns.

Aligning Cyber Risk with Board Priorities

Bowden highlights findings from Marsh’s Cyber Catalyst research and Global Cyber Claims Report, which underscore the evolving nature of cyber threats and their financial implications.

Leslie Nielsen, CISO at Mimecast

Leslie Nielsen, CISO at Mimecast, explains that these systems operate with the same credentials as human users but lack accountability. He argues that agentic AI should not be treated as a separate security category but as an extension of human risk. Nielsen stresses that existing controls for managing human behavior provide a foundation for securing AI-driven operations.

Agentic AI as Human Risk Extension

His insights are drawn from Mimecast’s research, including the whitepaper *Securing The Agentic Enterprise*, which addresses the unique challenges of AI in corporate environments.

Brett Stone-Gross, Sr. Director of Threat Intelligence at Zscaler

Brett Stone-Gross, Sr. Director of Threat Intelligence at Zscaler, details how attackers exploit roles within organizations to gain deeper access. The study examines a ransomware campaign linked to a group known for initial access, data exfiltration, and selective encryption of critical systems.

Ransomware Targeting Elevated Privileges

Findings highlight the importance of monitoring employee roles and access levels to mitigate risks. A forthcoming 2026 Ransomware Report from ThreatLabz will expand on these findings, offering additional data on attack trends and enterprise preparedness.

“Agentic AI should not be treated as a separate security category but as an extension of human risk.”

Industry Leaders on Cybersecurity, Leadership, and Emerging Technologies

The discussion includes perspectives from industry leaders on the intersection of cybersecurity, leadership, and emerging technologies. Topics range from AI’s dual role in enabling and countering threats to the evolving responsibilities of CISOs in safeguarding organizational assets.

Key Research and Resources

Key research and resources mentioned include Mimecast’s State of Human Risk Report, Threat Intelligence Hub, and Zscaler’s ongoing analysis of ransomware tactics.

Conclusion

The conversation underscores the need for proactive strategies to address the growing complexity of cyber threats.


Blog Image

About Author

en_USEnglish