Strong CIO-CISO relations fuel success at Ally

Diverse partners mature Latin businessman and European businesswomen discussing project with documents at table in office. Team of colleagues professional business people working together, copy space


Donna, can you build on that and talk about how you provide clarity for 11,000 teammates, especially in the area of cybersecurity?

Hart: Human error and phishing are still the major cyber risks to a corporation. Ransomware is our No. 1 threat, and it really is stemming from a team member clicking on the wrong thing. So, No. 1 is security awareness and training.

Donna Hart, CISO, Ally

Ally

No. 2 is we take our phishing test very seriously, and we’re expanding that to vishing, to QR codes, to spear phishing to focus on different groups and functions. And we have required training associated with it.

We’re big believers in communicating when something’s happening on the network. If it seems odd or different, if we’re seeing an attack, we communicate that well. From a fraud perspective, we also partner heavily with our fraud teams to make sure that we’re keeping team members engaged on that conversation. They are our first line of defense.

Many struggle to communicate the business value of technology. Sathish, what do you do to provide clarity and articulate that?

Muthukrishnan: We have made it part of the process. We identify the value we are creating and capturing before we kick off a technology project, and it’s a joint conversation with the business. I don’t think it’s just the business responsibility to say my customer acquisition is going to go up, or my revenue is going to go up by X. There is a technology component to it, which is extremely critical, especially as a full-scale digital-only organization. What does it take for you to build the capability? How long will it take? How much does it cost and what does it cost to run it?



Source link
lol

Donna, can you build on that and talk about how you provide clarity for 11,000 teammates, especially in the area of cybersecurity? Hart: Human error and phishing are still the major cyber risks to a corporation. Ransomware is our No. 1 threat, and it really is stemming from a team member clicking on the wrong…

Leave a Reply

Your email address will not be published. Required fields are marked *