• Hiyaa! My name is Diane, and this is my very first blog post on Strategic Security by Diane. In this post I would like to introduce why I have created this space, and what I would like to share through it. I have never done anything of this sort before - but am hoping to  learn with time all the while giving something back to the industry. My posts will include opinion pieces about information security; risk management; and leading infosec professionals....

  • Information security programmes are built on assessing risks and understanding what changes are required to make the unacceptable, acceptable. Information security objectives are reached through successful changes that usually overarch whole organisations or whole business units. In a time where the only constant in organisations,......

  • As an information security professional, I started off my career thinking infosec was all about technical controls – networking; infrastructure; application development. With time, I realised that information security is actually more about the what technical controls you choose to implement and the how you go about doing......

Hi! I'm Diane!

Follow this page, for updates on infosec, strategy and organisational change management. My blogs will involve opinion pieces on how I believe infosec risk should be seen as a business risk, and infosec teams treated as a partner to the business.