Nobody ever gets credit for fixing security problems that never happened

AN
Ali Nemati
Nov 18, 202548 sec read20 views

The article discusses challenges faced by security teams in prioritizing preventative measures over reactive responses due to systemic issues such as attribution errors and hero culture. It highlights that managers often attribute low performance to individual laziness rather than system inefficiencies, leading to a focus on working harder instead of smarter. This results in rewarding heroic efforts to solve crises rather than investing in learning and improvement activities that prevent problems from occurring. The article also notes the rarity of security teams having sufficient power and resources to implement preventative controls, contributing to a cycle where they are perpetually stuck in firefighting mode. Additionally, it emphasizes how cutting corners due to time pressures can create long-term risks that eventually cause significant issues. Overall, these dynamics hinder effective cybersecurity practices and organizational resilience against threats.

Read the full article at Venture in Security


Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.

20
Comments
AN
Ali NematiWritten by Ali
View all posts

Related Articles

Nobody ever gets credit for fixing security problems that never happened | OSLLM.ai