Practical insight on cybersecurity, leadership, healthcare technology, data, and executive decision-making.
Selected ideas, publications, interviews, tools, and resources from Dr. Edward Marchewka on cybersecurity leadership, board communication, data, risk, operations, and executive influence.
Credibility signals that support the boardroom cybersecurity message.
A curated set of books, chapters, podcasts, articles, and media contributions connected to cybersecurity leadership, board communication, metrics, and executive risk.
A Cybersecurity Leader’s Journey
CRC Press book focused on helping cybersecurity leaders speak the language of executives and boards.
Explore the Book →ABA Cybersecurity Handbook
Chapter contribution on why public interest organization attorneys should care about cybersecurity.
Ask About This Work →CISO Compass
Contributed insight on security metrics to measure program effectiveness in a cybersecurity leadership text.
View Related Resources →SecurityWeekly
Podcast appearance focused on stopping useless security metrics and improving cybersecurity reporting.
Use as a Talk Topic →CSO Online
Article contribution on whether it matters who the CISO reports to, tied to influence and executive positioning.
View Executive Profile →SecureWorld
Contribution focused on getting cybersecurity buy-in and improving how cyber risk is communicated.
Book a Related Talk →Cybersecurity leaders need more than better dashboards. They need better conversations.
Boards and executive teams do not need every technical detail. They need to understand exposure, tradeoffs, business impact, investment decisions, accountability, and operational readiness.
The work collected here reflects a consistent theme: cybersecurity, technology, data, and risk become more valuable when leaders can translate them into decisions the business can act on.
The boardroom cybersecurity message is grounded in research, not just opinion.
Dr. Marchewka’s work on cybersecurity leadership is grounded in doctoral research examining why executives and cybersecurity professionals often perceive, frame, and communicate risk differently.
His research focus includes cybersecurity risk information asymmetry, the affect heuristic, risk perception, executive decision-making, and the ways presentation and communication influence how leaders understand cybersecurity risk.
That research now informs his book, speaking topics, board communication frameworks, cybersecurity metrics work, leadership development, and advisory conversations.
Research Themes
- Cybersecurity risk information asymmetry
- Risk perception and executive decision-making
- The affect heuristic in cybersecurity conversations
- Board and executive communication
- Cybersecurity metrics and business impact
- Trust, framing, and stakeholder alignment
Areas of focus across publications, interviews, resources, and talks.
Cybersecurity Leadership
Practical leadership for CISOs, CIOs, security teams, and executives responsible for cyber risk.
Board Communication
Translating technical risk into language boards and executives can understand, challenge, fund, and govern.
Security Metrics
Moving beyond vanity metrics toward measures that support decisions, accountability, and business alignment.
Healthcare Technology
Leadership where technology, patient care, compliance, cybersecurity, data, and operational resilience intersect.
AI Governance
Helping organizations think clearly about AI adoption, data responsibility, cybersecurity, accountability, and controls.
Data & Analytics
Using reporting, analytics, governance, and decision systems to improve performance and executive visibility.
Risk & Compliance
Connecting audit expectations, security controls, regulatory exposure, and operational execution.
Executive Leadership
Operating across technology, risk, operations, people, process, vendors, finance, and transformation.
Tools, checklists, and resources for leaders who need better cybersecurity conversations.
These resources support better cybersecurity communication, board reporting, continuity planning, risk thinking, and executive decision-making.
CISO Compensation Model
A practical tool for thinking about CISO compensation, role expectations, scope, and market positioning.
Open Tool →BC/DR Game
A practical exercise for thinking through business continuity, disaster recovery, operational resilience, and scenario planning.
Open Tool →Board Cybersecurity Metrics
A forthcoming resource to help security leaders report risk in terms of exposure, decisions, accountability, and business impact.
View Resources →CISO Board-Reporting Checklist
A forthcoming checklist for preparing concise, executive-ready board updates on cybersecurity, risk, resilience, and priorities.
View Resources →AI Governance Checklist
A forthcoming executive checklist for responsible AI adoption, data governance, risk ownership, and operational control.
View Resources →Executive Cybersecurity Glossary
A forthcoming glossary that translates cybersecurity terms into executive, operational, and board-level language.
View Resources →Cybersecurity, leadership, digital transformation, and business-risk conversations.
These themes can be adapted into keynotes, podcasts, articles, board briefings, workshops, or executive conversations.
Security Is Business Risk
Reframing security as business risk and improving how leaders communicate cybersecurity to executives and boards.
Use as a Talk Topic →Better Security Through Better Metrics
Moving beyond weak security metrics and reporting cybersecurity in a way that supports decisions and accountability.
View Related Resources →Measuring Digital Transformation ROI
Thinking about the value, outcomes, and return of digital transformation through executive and operational lenses.
View Executive Profile →Getting Cybersecurity Buy-In
Improving cybersecurity communication, stakeholder engagement, and executive understanding.
Use as a Talk Topic →CISO Reporting & Influence
How CISO positioning, executive reporting relationships, and communication shape security influence.
Explore the Book →Integrated Cyber Risk Management
Understanding cyber risk through governance, accountability, business exposure, and operational execution.
View Related Resources →Insight themes
“Cybersecurity becomes more useful when it is translated into business decisions.”
Board Communication“Metrics should create clarity, not noise.”
Security Leadership“Technology leadership is most valuable when it improves how the organization thinks, decides, and executes.”
Executive OperationsBring the insights into a keynote, board briefing, workshop, or executive conversation.
The themes on this page can be adapted for executive audiences, boards, cybersecurity conferences, healthcare organizations, leadership development programs, podcasts, and advisory conversations.
Common formats include keynotes, board education sessions, CISO leadership workshops, executive briefings, cyber-risk communication sessions, and book-based discussions.
Keynotes
Bring practical cybersecurity and executive leadership insight to conferences and professional groups.
Board Briefings
Help directors and executives ask better cybersecurity and technology-risk questions.
Workshops
Turn ideas into usable messaging, metrics, board reports, and leadership practices.
Need practical insight your audience can actually use?
For media, podcast, book, article, speaking, workshop, or executive briefing inquiries, start the conversation here.