Peer-to-peer support and advice
ClubCISO holds an annual security maturity survey, along with events like open mics and dinners, where members can mix with their peers, learn, and support each other.
Our private ClubCISO App and LinkedIn groups provide what may be the biggest pool of real world, peer-to-peer, vendor-free CISO advice available anywhere, virtually 24×7.
Members use privileged information from the survey and our discussions to refine their internal business cases and to help drive changes in security culture.
ClubCISO membership criteria
Governing Principles
ClubCISO is a community of ‘in role’ information security leaders working at end user organisations. To be considered for membership you must be:
- A senior security practitioner responsible for information security within an end user organisation (directly employed or self-employed but contractually accountable e.g. as virtual CISO).
- OR normally employed in such a role but ‘between jobs’.
Applications cannot be considered from:
- Individuals working in customer-facing roles for organisations offering or delivering commercial security/IT services or products.
- Those representing publishers, researchers or trade associations.
We normally admit only one member per organisation, but where there is a split role (e.g. geographically, or governance v technical) we consider these on a case-by-case basis. Senior industry specialists whose valued contributions benefit the membership may be nominated as ‘emeritus’ members by the ClubCISO Advisory Board.
What if I work for a vendor or consulting firm?
The rule is that you must be working in an internal-facing role.
- If you work for a security or IT vendor you must be able to demonstrate that you are an internal-facing security leader, with no commercial or business development brief.
- If you are self-employed – or run your own small consultancy – you must be able to demonstrate that you personally provide virtual CISO services, not pre-sales, to clients.
- If you provide virtual CISO services or hold another position as part of a larger consulting firm or vendor we are unlikely to be able to approve your application because this presents risks to members’ intellectual property. Existing members who move into such roles are normally managed as ClubCISO ‘alumni’; they continue to receive member news but cannot participate in ClubCISO events, discussion forums and polls until they move back into an internal role.
Advisory Board
To protect the integrity of the community all applications require ClubCISO Advisory Board approval. Its decision is final, but it exercises its discretion to accommodate people from as broad a range of organisations as possible, from large multinationals to innovative startups.
The Advisory Board comprises information security professionals from the ClubCISO community, our sponsor Telstra International, and special advisors seconded for their expertise in communications, events and education.