July 21st 2021 marked the inaugural CyberShift event, held online a summary of that event is currently being prepared and will be posted here.
The CyberShift Alliance is a collaboration between several associations and organisations including ISACA SheLeadsTech, FITT, CISO Lens, AWSN, ASD, AustCyber, (ISC)2, AISA, DOTM, EY and Forrester Research – its mission is to address culture change within the security sector.
The alliance was born from an International Women’s Day event run by AWSN and ISACA aptly titled “Don’t Reward The Brilliant Jerk” and the AustCyber ”Culture Shock” Event. These events attracted significant interest from attendees, and a call to action that we want to do better as an industry to address hidden systematic, and endemic issues that have plagued our industry.
To address this culture change, the CyberShift Alliance held an inaugural discussion on 21 July 2021 on what toxic culture looks like in practice and how individuals, leaders and organizations can address it.
The next discussion has been postponed due to COVID-19.
You can register your expression of interest here.
Assisting organisations address culture change
On the short and long term effect of toxic culture to our industry
CyberShift seeks to map issues that lead to poor organisational culture
Capturing actions that can be implemented by individuals, leaders and companies
Articulation and Measurement is critical to maintaining cultural maturity
Australian Signals Directorate
Australian Women in Security Network
Ernst & Young
Day Of The Month Club
Registered 21st July 2021
Attended the inaugural event
attended the workshops
The inability to, and fear of, speaking out about bad behaviour in the cyber security industry. Lead presenter, Jinan Budge, principal analyst serving security & risk professionals at Forrester Research surveyed her professional network and found that 65% of respondents voted it to be a “career suicide”. The vast majority of us are afraid to speak up about workplace-related problems, highlighting a fear of potential disciplinary action(s) in doing so.
Poor workplace culture. This intrinsic cultural problem and mindset within the cyber security sector [see “Beware the Brilliant Cybersecurity Jerk” article in Edition 2 of the magazine] is preventing a sizeable pool of capable talent from joining the industry. It is also causing a retention problem and it is hindering Australia from tackling cyber threats in the most inclusive, collaborative and, therefore, the most optimum way.
Recruiting for fit and with purpose. When recruiting, employers are asked to consider not only the skillsets of its potential employees but whether they are the right fit for a good workplace culture, and in turn, whether their company is worthy of such w
What can be done to resolve the issue?
Protect and value your employees by having a Code of Ethics in place. Enforce mandatory leadership training which covers modules such as bullying in the workplace, sexual harassment and misconduct as well as setting aside a budget to manage your emplyee’s mental health and wellbeing.
Budge and her fellow panel members, Laura Lees, Jacqui Kernot and James Turner provided some blunt advice for CISOs and security leaders who may have a toxic culture in their organisation – start by simply recognising the issue and naming it publicly instead of ignoring it – ‘Empathy is about listening more than speaking.’
Listen harder and actively, try and embrace the ideas of fellow colleagues, especially if they differ to yours. At a bare minimum, be kind and choose to challenge if a situation feels uncomfortable or unjust.
The discussions around what toxic culture looks like in practice and how individuals, leaders and organisations can address it was incredibly valuable. We hope everyone who joined in benefitted from it.
Can be affected by poor
culture in the workplace
This leads to effects on business performance and revenue
Time to take a look at organisational culture and make a change
Implement culture benchmarks
and measure the maturity
The time to act is now
Great Culture = Great Reputation
Start your journey with us now
Coming Soon – Summary from CyberShift 1.0 workshops
The team will post the link to the video from the CyberShift 1.0 event once it has cleared post production. Thank you.
Please check back periodically to discover and learn about the latest activities of CyberShift Alliance. Bear with us while our site is under construction. Thank you.