Security FOMO Par Deux

Change your mind

Helen Patton
5 min readMay 14, 2023

--

FOMO: Fear of Missing Out

A hand holding a directional compass
Photo by Ethan Sykes on Unsplash

People trained in the art of cybersecurity management spend a fair amount of time scanning the landscape, looking for things they don’t know much about, learning about new stuff (cough, AI, cough), and generally paying attention to the unknown. The Cynefin Framework would call this type of work “chaos” or “complex” domains — where we spend out time probing, sensing, and acting in areas where there is little to no structure.

It’s not surprising, really. In order to do cyber risk management really well, you need to think about your threats, which are constantly changing. You must consider your vulnerabilities, which are also constantly changing. You must think about these things in the context of your business and its priorities, which are, you guessed it, always constantly changing. If you’re not scanning your environment looking for new, unknown things, you will miss the contextual changes that will make some things more relevant than others.

Security leaders worry they will miss out. Not just on missing out on seeing colleagues at a great conference, they worry they will miss the emerging new threats that will inevitably be The Threat that takes out their organization. They are pretty sure that the IT/engineering teams are doing something unnecessarily risky, right now, and…

--

--

Helen Patton

Cyber Security, Technology Ethics, and Humanity. What else? I can be found at CISOHelen.com or on Twitter @CisoHelen or on Mastodon @cisohelen@infosec.exchange