A new report by Pulse Security AI, titled "The CISO-Board Communication Gap," reveals a significant disconnect between security leaders and corporate boards regarding cybersecurity understanding and risk appetite. Key findings include that only 12.5% of security leaders feel confident their boards understand their program accurately, while 55% of boards have not defined their cyber risk appetite.
The report also highlights issues like the time-consuming board preparation process for security leaders and the lack of formal decision-making regarding cyber risk by boards. It concludes that trust can be rebuilt post-incident but emphasizes the need for a more structured communication approach between security leaders and boards.