this post was submitted on 24 Jan 2025
3 points (100.0% liked)
cybersecurity
3651 readers
8 users here now
An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!
Community Rules
- Be kind
- Limit promotional activities
- Non-cybersecurity posts should be redirected to other communities within infosec.pub.
Enjoy!
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
In security, resilience and disaster recovery discussions with your client, how do you go about threading the needle between "scaring the pants off them" and "she'll be right mate"?
When I look around me, the weight of discussion seems to be towards the latter, rather than the former. I could conclude that the client has been getting advice from idiots and charlatans, but that might be considered uncharitable, not to mention potentially career limiting.
I've had to read the riot act on a couple of occasions in my 40 year career, whilst it gets the job done, it's never fun.
What is your winning strategy to get the client to go, oh, Oh, ooooh, fuck, without running a mile?