GRAND LEDGE – I hear it all the time. “My management just doesn’t ‘get’ security.” Or, “We tried those cyber actions a few years back, but now our execs are on to something else.”

And all over the world, people say: “My management thinks that we’ve had no major data breaches, so we must be doing something right.”

Dan Lohrmann

Or, “Our tech leaders are obsessed with (fill-in-the blank) security solution, but they don’t seem to care about anything else. While that product is great, we have so many other holes that are not being addressed.”

Or, “We’ve had so many vacancies for so long, that this has become the new normal. Every time we get a few people in, we tend to lose others just as fast. There is just nothing that seems to work consistently.”

Or, “I’m ready to give up and move-on. I’m so frustrated. Our leaders jump from one shiny-black box to another almost like the latest diet fad. But we never implement things properly.”

To read the rest of Dan Lohrmann’s column, click on http://www.govtech.com/blogs/lohrmann-on-cybersecurity/why-many-organizations-still-dont-get-security.html