CXO Security Insights

Summary & Notes: Boston CxO Security Forum

Summary & Notes: Boston CxO Security Forum – June 2026 By Michael Hiskey Executive Summary The Boston CxO Security Forum brought together senior cybersecurity, technology, risk, and business leaders for a day of candid, practitioner-led discussions focused on some of the most consequential issues facing organizations today: Agentic AI, executive accountability, identity governance, operational resilience, third-party risk, and the future

Read More »

Security & Risk Management Summit 2026 —Five Strategic Lessons Every CISO Should Take Back from National Harbor

Gartner Security & Risk Management Summit 2026: Five Strategic Lessons Every CISO Should Take Back from National Harbor By Michael Hiskey Each year, Gartner Security & Risk Management Summit provides a useful snapshot of where the cybersecurity profession stands and where it is heading. The sessions, analyst perspectives, vendor announcements, hallway conversations, and executive discussions collectively reveal what is occupying

Read More »

Security & Risk Management Summit 2026 — A Field Guide & Compendium

Security & Risk Management Summit 2026 — A Field Guide & Compendium National Harbor, MD · June 1–3, 2026 · 478 sessions 1. The Big Picture This year’s Gartner Security & Risk Management Summit packs 478 agenda items across three days at the Gaylord National Harbor. Strip out the meals, registration windows, networking breaks, engagement zones, and exclusive lounges, and

Read More »

What is Third-Party Cyber Risk Management (TPCRM)?

And Why CISOs Suddenly Care So Much… Organizations No Longer Just Manage Vendors–They Inherit Cyber Risk Third-Party Cyber Risk Management (TPCRM) is a term increasingly advanced by Gartner and now widely discussed among cybersecurity, risk, compliance, and resilience leaders. As such, I imagine it will come up a great deal during this year’s Gartner Security & Risk Management Summit in

Read More »

Power, Patriotism, and the Future of Cyber: Inside the National Cyber Innovation Forum

Reflections from the National Cyber Innovation Forum Inside the U.S. Capitol Yesterday, I had the opportunity to attend the National Cyber Innovation Forum — an invite-only gathering held inside the United States Capitol Visitor Center in Washington, DC — and honestly, the setting alone was worth the trip. There is something fundamentally different about discussing national defense, AI, fraud, critical

Read More »

Vendors Already Have AI. Your TPRA Process Probably Doesn’t

Vendors Already Have AI. Your TPRA Process Probably Doesn’t.   Lessons from Brian Kelly’s standout H-ISAC Spring Summit session on AI, vendor risk & the growing visibility gap inside healthcare security. At the recent H-ISAC Spring Americas Summit 2026 in Tampa, one of the most talked-about sessions wasn’t focused on futuristic AI predictions or theoretical governance frameworks. Instead, it tackled

Read More »