Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Why Today's CISO Must Be a Business Enabler

Commvault
10/06/2026
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


They were the department of NO. Today we have to be the department of KNOW. The CISO today has to be that strategic thinker. The environment is changing, the threat landscape is changing, the politics are changing, the culture is changing. So today CISOs have to be cultural leaders as well. We're no longer just a gatekeeper. We are more so the enablers. We have to be.

TL;DR

  • The CISO role has fundamentally shifted from technical gatekeeper to strategic business enabler over the past two decades, requiring a much broader leadership mandate.
  • Mookencherry's memorable framing — moving from the 'department of NO' to the 'department of KNOW' — captures the core expectation placed on modern security leaders.
  • Today's CISOs must also be cultural leaders, adapting to a constantly changing environment that includes evolving threats, organizational politics, and shifting business priorities.

Summary

In this short clip, Shefali Mookencherry, CISO at the University of Illinois Chicago (UIC), delivers a sharp reframe of what modern security leadership demands. She contrasts the CISO of 2000 — a technologist defined by restriction, the "department of NO" — with today's imperative: becoming the "department of KNOW." That wordplay carries real strategic weight. Today's CISO must synthesize threat intelligence, organizational culture, political dynamics, and business priorities into decisions that enable rather than obstruct. Mookencherry argues that the role has expanded well beyond technical gatekeeping into cultural leadership, requiring CISOs to influence behavior, build trust across the enterprise, and align security posture with organizational goals. The shift from gatekeeper to enabler is not optional — it is a survival requirement for security leaders operating in environments where threats, regulations, and stakeholder expectations are all evolving simultaneously. This clip is a concise articulation of a broader industry conversation about the expanding mandate of the modern CISO.

Chapters

0:00 - The CISO of 2000
0:11 - From NO to KNOW
0:15 - Strategic and Cultural Leadership
0:27 - Enablers, Not Gatekeepers

Key Quotes

0:09 "They were the department of NO."
0:11 "Today we have to be the department of KNOW."
0:24 "Today CISOs have to be cultural leaders as well."

FAQ

What does Mookencherry mean by the 'department of KNOW'?

She contrasts the old CISO identity — the 'department of NO,' defined by restriction and gatekeeping — with a new model where security leaders are expected to provide knowledge, strategic guidance, and informed enablement across the organization.

Why does Mookencherry say CISOs must be cultural leaders?

Because the environment CISOs operate in is changing across multiple dimensions simultaneously — threats, politics, and organizational culture — requiring security leaders to influence behavior and build alignment, not just manage technology.


Categories:
  • » Webinar Library » Commvault
  • » Cybersecurity » Compliance & GRC
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Security Operations
  • Compliance & Governance
  • Executive Briefing
  • Best Practices
  • CISO role evolution
  • Security leadership
  • Business enablement
  • Organizational culture
  • Risk management
  • Cybersecurity strategy
  • Executive leadership
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Why Today's CISO Must Be a Business Enabler

              Industry Events (Sponsor Hosted)

              • Oct
                13

                Transitioning from CJIS to FERPA: Essential Audit Evidence for Compliance

                10/13/202601:00 PM ET
                • Oct
                  15

                  Risk in Real Time Demo Series: Virtual Patching: Protection at the Speed of Exploitation

                  10/15/202611:00 AM ET
                  • Oct
                    20

                    Harnessing Data Governance for AI with Cyera and Snowflake

                    10/20/202611:00 AM ET
                    More events

                    Upcoming Webinar Calendar

                    • 10/13/2026
                      01:00 PM
                      10/13/2026
                      Transitioning from CJIS to FERPA: Essential Audit Evidence for Compliance
                      https://www.truthinit.com/index.php/channel/2159/transitioning-from-cjis-to-ferpa-essential-audit-evidence-for-compliance/
                    • 10/15/2026
                      11:00 AM
                      10/15/2026
                      Risk in Real Time Demo Series: Virtual Patching: Protection at the Speed of Exploitation
                      https://www.truthinit.com/index.php/channel/1372/risk-in-real-time-demo-series-the-autonomous-era-orchestrating-a-resilient-enterprise/
                    • 10/20/2026
                      11:00 AM
                      10/20/2026
                      Harnessing Data Governance for AI with Cyera and Snowflake
                      https://www.truthinit.com/index.php/channel/2137/harnessing-data-governance-for-ai-with-cyera-and-snowflake/
                    • 10/27/2026
                      01:00 PM
                      10/27/2026
                      The HUMAN Experience: Real-Time Insights into Page Intelligence
                      https://www.truthinit.com/index.php/channel/2139/the-human-experience-real-time-insights-into-page-intelligence/
                    • 11/04/2026
                      11:00 AM
                      11/04/2026
                      Leveraging CISA’s Zero Trust Maturity Model for an AI-Driven Landscape
                      https://www.truthinit.com/index.php/channel/2149/leveraging-cisas-zero-trust-maturity-model-for-an-ai-driven-landscape/
                    • 11/04/2026
                      11:00 AM
                      11/04/2026
                      Aligning Agentic Intent: Understanding Your Agents' Purpose vs. Their Actions
                      https://www.truthinit.com/index.php/channel/2158/aligning-agentic-intent-understanding-your-agents-purpose-vs-their-actions/
                    • 11/05/2026
                      01:00 PM
                      11/05/2026
                      HUMAN Dialogue: Redefining Authentic Trust in the Agentic Internet
                      https://www.truthinit.com/index.php/channel/2160/human-dialogue-redefining-authentic-trust-in-the-agentic-internet/
                    • 11/19/2026
                      01:00 PM
                      11/19/2026
                      360View: Govern, Secure & Recover Your Microsoft 365 Environment
                      https://www.truthinit.com/index.php/channel/2076/360view-govern-secure-recover-your-microsoft-365-environment/
                    Truth in IT
                    • Sponsor
                    • About Us
                    • Terms of Service
                    • Privacy Policy
                    • Contact Us
                    • Preference Management
                    Desktop version
                    Standard version