[{"data":1,"prerenderedAt":1000},["ShallowReactive",2],{"navigation_docs":3,"-design-personas-02-head-of-cyber-harry":369,"-design-personas-02-head-of-cyber-harry-surround":995},[4,8,72,102,220,266,280,301,365],{"title":5,"path":6,"stem":7},"Introduction","\u002Fintroduction","0.introduction",{"title":9,"icon":10,"path":11,"stem":12,"children":13,"page":67},"Company","i-lucide-building-2","\u002Fcompany","1.company",[14,18,22,26,30,34,38,42,46,50,54,68],{"title":15,"path":16,"stem":17},"About","\u002Fcompany\u002Fabout","1.company\u002F0.about",{"title":19,"path":20,"stem":21},"Values","\u002Fcompany\u002Fvalues","1.company\u002F1.values",{"title":23,"path":24,"stem":25},"Communication","\u002Fcompany\u002Fcommunication","1.company\u002Fcommunication",{"title":27,"path":28,"stem":29},"Competition","\u002Fcompany\u002Fcompetition","1.company\u002Fcompetition",{"title":31,"path":32,"stem":33},"Hybrid Working","\u002Fcompany\u002Fhybrid-working","1.company\u002Fhybrid-working",{"title":35,"path":36,"stem":37},"Manchester Office","\u002Fcompany\u002Foffice","1.company\u002Foffice",{"title":39,"path":40,"stem":41},"Operations","\u002Fcompany\u002Foperations","1.company\u002Foperations",{"title":43,"path":44,"stem":45},"Policies","\u002Fcompany\u002Fpolicies","1.company\u002Fpolicies",{"title":47,"path":48,"stem":49},"Problem Statement","\u002Fcompany\u002Fproblem-statement","1.company\u002Fproblem-statement",{"title":51,"path":52,"stem":53},"Product Strategy","\u002Fcompany\u002Fproduct-strategy","1.company\u002Fproduct-strategy",{"title":55,"path":56,"stem":57,"children":58,"page":67},"Products","\u002Fcompany\u002Fproducts","1.company\u002Fproducts",[59,63],{"title":60,"path":61,"stem":62},"Capability Exchange","\u002Fcompany\u002Fproducts\u002Fcapability-exchange","1.company\u002Fproducts\u002Fcapability-exchange",{"title":64,"path":65,"stem":66},"ESProfiler Platform","\u002Fcompany\u002Fproducts\u002Fesprofiler","1.company\u002Fproducts\u002Fesprofiler",false,{"title":69,"path":70,"stem":71},"Security","\u002Fcompany\u002Fsecurity","1.company\u002Fsecurity",{"title":73,"icon":74,"path":75,"stem":76,"children":77,"page":67},"People Ops","i-lucide-users","\u002Fpeople-ops","2.people-ops",[78,82,86,90,94,98],{"title":79,"path":80,"stem":81},"Compensation","\u002Fpeople-ops\u002Fcompensation","2.people-ops\u002Fcompensation",{"title":83,"path":84,"stem":85},"Education","\u002Fpeople-ops\u002Feducation","2.people-ops\u002Feducation",{"title":87,"path":88,"stem":89},"Expenses","\u002Fpeople-ops\u002Fexpenses","2.people-ops\u002Fexpenses",{"title":91,"path":92,"stem":93},"Holiday & Leave","\u002Fpeople-ops\u002Fleave","2.people-ops\u002Fleave",{"title":95,"path":96,"stem":97},"Onboarding","\u002Fpeople-ops\u002Fonboarding","2.people-ops\u002Fonboarding",{"title":99,"path":100,"stem":101},"Recruitment","\u002Fpeople-ops\u002Frecruitment","2.people-ops\u002Frecruitment",{"title":103,"icon":104,"path":105,"stem":106,"children":107,"page":67},"Engineering","i-lucide-rocket","\u002Fengineering","3.engineering",[108,151,155,175,196,200,208,212,216],{"title":109,"path":110,"stem":111,"children":112,"page":67},"Contributing","\u002Fengineering\u002Fcontributing","3.engineering\u002Fcontributing",[113,117,121,125,129,142],{"title":114,"path":115,"stem":116},"Development Setup","\u002Fengineering\u002Fcontributing\u002Fdevelopment-setup","3.engineering\u002Fcontributing\u002F1.development-setup",{"title":118,"path":119,"stem":120},"Engineering Operations","\u002Fengineering\u002Fcontributing\u002Fengineering-operations","3.engineering\u002Fcontributing\u002F2.engineering-operations",{"title":122,"path":123,"stem":124},"Documentation","\u002Fengineering\u002Fcontributing\u002Fdocumentation","3.engineering\u002Fcontributing\u002F3.documentation",{"title":126,"path":127,"stem":128},"Agentic Coding","\u002Fengineering\u002Fcontributing\u002Fagentic-coding","3.engineering\u002Fcontributing\u002Fagentic-coding",{"title":130,"path":131,"stem":132,"children":133,"page":67},"Back End","\u002Fengineering\u002Fcontributing\u002Fback-end","3.engineering\u002Fcontributing\u002Fback-end",[134,138],{"title":135,"path":136,"stem":137},"API Guidelines","\u002Fengineering\u002Fcontributing\u002Fback-end\u002Fapi-guidelines","3.engineering\u002Fcontributing\u002Fback-end\u002Fapi-guidelines",{"title":139,"path":140,"stem":141},"LLM Prompts & Langfuse Integration","\u002Fengineering\u002Fcontributing\u002Fback-end\u002Fllm-prompts","3.engineering\u002Fcontributing\u002Fback-end\u002Fllm-prompts",{"title":143,"path":144,"stem":145,"children":146,"page":67},"Front End","\u002Fengineering\u002Fcontributing\u002Ffront-end","3.engineering\u002Fcontributing\u002Ffront-end",[147],{"title":148,"path":149,"stem":150},"Testing","\u002Fengineering\u002Fcontributing\u002Ffront-end\u002Ftesting","3.engineering\u002Fcontributing\u002Ffront-end\u002Ftesting",{"title":152,"path":153,"stem":154},"Production Database","\u002Fengineering\u002Fdatabase-connection","3.engineering\u002Fdatabase-connection",{"title":156,"path":157,"stem":158,"children":159},"Deployment","\u002Fengineering\u002Fdeployment","3.engineering\u002Fdeployment",[160,163,167,171],{"title":60,"path":161,"stem":162},"\u002Fengineering\u002Fdeployment\u002Fcapability-exchange","3.engineering\u002Fdeployment\u002Fcapability-exchange",{"title":164,"path":165,"stem":166},"Langfuse Deployment","\u002Fengineering\u002Fdeployment\u002Fecs-langfuse-deployment","3.engineering\u002Fdeployment\u002Fecs-langfuse-deployment",{"title":168,"path":169,"stem":170},"ESP Platform Configuration","\u002Fengineering\u002Fdeployment\u002Fesp-platform-configuration","3.engineering\u002Fdeployment\u002Fesp-platform-configuration",{"title":172,"path":173,"stem":174},"Platform","\u002Fengineering\u002Fdeployment\u002Fplatform","3.engineering\u002Fdeployment\u002Fplatform",{"title":176,"path":177,"stem":178,"children":179,"page":67},"Github","\u002Fengineering\u002Fgithub","3.engineering\u002Fgithub",[180,184,188,192],{"title":181,"path":182,"stem":183},"Packages","\u002Fengineering\u002Fgithub\u002Fpackages","3.engineering\u002Fgithub\u002Fpackages",{"title":185,"path":186,"stem":187},"Personal Access Token","\u002Fengineering\u002Fgithub\u002Fpersonal-access-token","3.engineering\u002Fgithub\u002Fpersonal-access-token",{"title":189,"path":190,"stem":191},"Troubleshooting","\u002Fengineering\u002Fgithub\u002Ftroubleshooting","3.engineering\u002Fgithub\u002Ftroubleshooting",{"title":193,"path":194,"stem":195},"Workflows","\u002Fengineering\u002Fgithub\u002Fworkflows","3.engineering\u002Fgithub\u002Fworkflows",{"title":197,"path":198,"stem":199},"Platform Ops","\u002Fengineering\u002Fplatform-ops","3.engineering\u002Fplatform-ops",{"title":172,"path":201,"stem":202,"children":203,"page":67},"\u002Fengineering\u002Fplatform","3.engineering\u002Fplatform",[204],{"title":205,"path":206,"stem":207},"useAPI","\u002Fengineering\u002Fplatform\u002Fuse-api","3.engineering\u002Fplatform\u002Fuse-api",{"title":209,"path":210,"stem":211},"Project Management","\u002Fengineering\u002Fproject-management","3.engineering\u002Fproject-management",{"title":213,"path":214,"stem":215},"Releases","\u002Fengineering\u002Frelease","3.engineering\u002Frelease",{"title":217,"path":218,"stem":219},"Tools","\u002Fengineering\u002Ftools","3.engineering\u002Ftools",{"title":221,"icon":222,"path":223,"stem":224,"children":225,"page":67},"Design","i-lucide-palette","\u002Fdesign","4.design",[226,247,251,255,259,262],{"title":227,"path":228,"stem":229,"children":230,"page":67},"Personas","\u002Fdesign\u002Fpersonas","4.design\u002F0.personas",[231,235,239,243],{"title":232,"path":233,"stem":234},"CISO - Simon","\u002Fdesign\u002Fpersonas\u002F01-ciso-simon","4.design\u002F0.personas\u002F01-ciso-simon",{"title":236,"path":237,"stem":238},"Head of Cyber - Harry","\u002Fdesign\u002Fpersonas\u002F02-head-of-cyber-harry","4.design\u002F0.personas\u002F02-head-of-cyber-harry",{"title":240,"path":241,"stem":242},"Security Architect - Sasha","\u002Fdesign\u002Fpersonas\u002F03-security-architect-sasha","4.design\u002F0.personas\u002F03-security-architect-sasha",{"title":244,"path":245,"stem":246},"Procurement Officer - Paige","\u002Fdesign\u002Fpersonas\u002F04-procurement-officer-paige","4.design\u002F0.personas\u002F04-procurement-officer-paige",{"title":248,"path":249,"stem":250},"Design Thinking","\u002Fdesign\u002Fdesign-thinking","4.design\u002F1.design-thinking",{"title":252,"path":253,"stem":254},"Design & Development","\u002Fdesign\u002Fdesign-and-development","4.design\u002F3.design-and-development",{"title":256,"path":257,"stem":258},"Branding","\u002Fdesign\u002Fbranding","4.design\u002F4.branding",{"title":217,"path":260,"stem":261},"\u002Fdesign\u002Ftools","4.design\u002F5.tools",{"title":263,"path":264,"stem":265},"Customer Success","\u002Fdesign\u002Fworking-with-customers","4.design\u002F6.working-with-customers",{"title":267,"icon":268,"path":269,"stem":270,"children":271,"page":67},"Sales","i-lucide-dollar-sign","\u002Fsales","4.sales",[272,276],{"title":273,"path":274,"stem":275},"Customer Onboarding","\u002Fsales\u002Fonboarding","4.sales\u002Fonboarding",{"title":277,"path":278,"stem":279},"Sales Tools","\u002Fsales\u002Ftools","4.sales\u002Ftools",{"title":281,"icon":282,"path":283,"stem":284,"children":285,"page":67},"Marketing","i-lucide-book-image","\u002Fmarketing","5.marketing",[286,290,294,297],{"title":287,"path":288,"stem":289},"Content","\u002Fmarketing\u002Fcontent","5.marketing\u002Fcontent",{"title":291,"path":292,"stem":293},"Messaging","\u002Fmarketing\u002Fmessaging","5.marketing\u002Fmessaging",{"title":217,"path":295,"stem":296},"\u002Fmarketing\u002Ftools","5.marketing\u002Ftools",{"title":298,"path":299,"stem":300},"Website","\u002Fmarketing\u002Fwebsite","5.marketing\u002Fwebsite",{"title":302,"icon":303,"path":304,"stem":305,"children":306,"page":67},"AI & Data Ops","i-lucide-database","\u002Fdata-ops","6.data-ops",[307,315,319,344,361],{"title":60,"path":308,"stem":309,"children":310,"page":67},"\u002Fdata-ops\u002Fcapability-exchange","6.data-ops\u002FCapability Exchange",[311],{"title":312,"path":313,"stem":314},"Leaderboard Calculation","\u002Fdata-ops\u002Fcapability-exchange\u002Fleaderboard-calculation","6.data-ops\u002FCapability Exchange\u002Fleaderboard-calculation",{"title":316,"path":317,"stem":318},"Account Portal (CAS)","\u002Fdata-ops\u002Faccount-portal","6.data-ops\u002Faccount-portal",{"title":320,"path":321,"stem":322,"children":323,"page":67},"Data Management","\u002Fdata-ops\u002Fdata-management","6.data-ops\u002Fdata-management",[324,328,332,336,340],{"title":325,"path":326,"stem":327},"Adding Products","\u002Fdata-ops\u002Fdata-management\u002Fadding-products","6.data-ops\u002Fdata-management\u002Fadding-products",{"title":329,"path":330,"stem":331},"Adding Vendors","\u002Fdata-ops\u002Fdata-management\u002Fadding-vendors","6.data-ops\u002Fdata-management\u002Fadding-vendors",{"title":333,"path":334,"stem":335},"Framework Mapping","\u002Fdata-ops\u002Fdata-management\u002Fframework-mapping","6.data-ops\u002Fdata-management\u002Fframework-mapping",{"title":337,"path":338,"stem":339},"Refreshing Vendors","\u002Fdata-ops\u002Fdata-management\u002Frefreshing-vendors","6.data-ops\u002Fdata-management\u002Frefreshing-vendors",{"title":341,"path":342,"stem":343},"Reviewing Draft Vendors","\u002Fdata-ops\u002Fdata-management\u002Freviewing-draft-vendors","6.data-ops\u002Fdata-management\u002Freviewing-draft-vendors",{"title":345,"path":346,"stem":347,"children":348,"page":67},"LLM Ops","\u002Fdata-ops\u002Fllm-ops","6.data-ops\u002Fllm-ops",[349,353,357],{"title":350,"path":351,"stem":352},"Agents","\u002Fdata-ops\u002Fllm-ops\u002Fagents","6.data-ops\u002Fllm-ops\u002F1.agents",{"title":354,"path":355,"stem":356},"ESPi Architecture & Query Flow","\u002Fdata-ops\u002Fllm-ops\u002Fespi-architecture","6.data-ops\u002Fllm-ops\u002F2.espi-architecture",{"title":358,"path":359,"stem":360},"Evaluating Agents","\u002Fdata-ops\u002Fllm-ops\u002Fevaluations","6.data-ops\u002Fllm-ops\u002F3.evaluations",{"title":362,"path":363,"stem":364},"Message Queues","\u002Fdata-ops\u002Fmessage-queues","6.data-ops\u002Fmessage-queues",{"title":366,"path":367,"stem":368},"Glossary","\u002Fglossary","glossary",{"id":370,"title":236,"body":371,"description":988,"extension":989,"links":990,"meta":991,"navigation":992,"path":237,"seo":993,"stem":238,"__hash__":994},"docs\u002F4.design\u002F0.personas\u002F02-head-of-cyber-harry.md",{"type":372,"value":373,"toc":967},"minimark",[374,379,386,390,477,481,505,510,514,523,527,554,558,592,596,683,696,700,727,731,736,765,769,802,806,839,843,873,877,883,886,895,899],[375,376,378],"h2",{"id":377},"the-design-authority","The Design Authority",[380,381,382],"blockquote",{},[383,384,385],"p",{},"\"If I take this out, what gap am I opening — and can I prove it?\"",[375,387,389],{"id":388},"quick-facts","Quick facts",[391,392,393,404],"table",{},[394,395,396],"thead",{},[397,398,399,402],"tr",{},[400,401],"th",{},[400,403],{},[405,406,407,419,429,439,453,467],"tbody",{},[397,408,409,416],{},[410,411,412],"td",{},[413,414,415],"strong",{},"Title",[410,417,418],{},"Head of Cyber, Chief Security Architect, Director of Security Engineering",[397,420,421,426],{},[410,422,423],{},[413,424,425],{},"Company profile",[410,427,428],{},"10,000+ employees, $1bn+ revenue",[397,430,431,436],{},[410,432,433],{},[413,434,435],{},"Budget authority",[410,437,438],{},"De facto — controls allocation across the portfolio, doesn't hold the signature",[397,440,441,446],{},[410,442,443],{},[413,444,445],{},"Reports to",[410,447,448],{},[449,450,452],"a",{"href":451},".\u002F01-ciso-simon","Simon the CISO",[397,454,455,460],{},[410,456,457],{},[413,458,459],{},"Direct report",[410,461,462,466],{},[449,463,465],{"href":464},".\u002F03-security-architect-sasha","Sasha the Security Architect"," (and her peers)",[397,468,469,474],{},[410,470,471],{},[413,472,473],{},"Primary motivation",[410,475,476],{},"Walk into every decision with a recommendation he can defend against the architecture, not just the invoice",[375,478,480],{"id":479},"note-on-title-variance","Note on title variance",[383,482,483,484,493,494,498,499,501,502,504],{},"This title is used inconsistently across the market and it's worth not over-fitting the persona to one org chart shape. Job-description research explicitly gives this role budget influence and hiring authority — heads of cyber security set the roadmap, decide which tools to invest in, and how risk is reported to the board",[485,486,487],"sup",{},[449,488,492],{"href":489,"rel":490},"https:\u002F\u002Fwww.digitalwaffle.co\u002Fjob-descriptions\u002Fhead-of-cyber-security",[491],"nofollow","[1]"," — but at some companies \"Head of Cyber Security\" reports straight to the CIO and ",[495,496,497],"em",{},"is"," the top security seat with no CISO above it, explicitly positioned as a stepping stone toward a future CISO title. The two-layer structure assumed here (",[449,500,452],{"href":451}," above, ",[449,503,465],{"href":464}," below) is the more common shape at 10,000+ employee \u002F $1bn+ enterprises, but treat it as the common case, not a universal rule.",[506,507],"mermaid",{":zoom":508,"code":509},"1","flowchart TD\n    Simon[\"Simon the CISO\"]\n    Harry[\"Harry the Head of Cyber\"]\n    Sasha[\"Sasha the Security Architect\"]\n    Paige[\"Paige the Procurement Officer\"]\n\n    Simon --> Harry\n    Harry --> Sasha\n    Paige -.\"renewal \u002F notice period flagged\".-> Harry\n    Harry -.\"usage & overlap evidence\".-> Paige\n\n    classDef focal fill:#fef3c7,stroke:#92400e,stroke-width:2px,color:#000\n    class Harry focal\n",[375,511,513],{"id":512},"role","Role",[383,515,516,517,519,520,522],{},"Owns the security tooling portfolio\u002Fstack strategy. Translates the risk appetite of ",[449,518,452],{"href":451}," into an actual set of products, coverage, and spend. Runs the team of Security Architects, including ",[449,521,465],{"href":464},". The single point where technical reality, commercial reality, and board narrative are all supposed to meet — usually the one person expected to hold all three in his head at once.",[375,524,526],{"id":525},"a-dayweek-in-his-calendar","A day\u002Fweek in his calendar",[528,529,530,534,542,548],"ul",{},[531,532,533],"li",{},"Mix of portfolio strategy, vendor meetings, internal stakeholder management, and firefighting.",[531,535,536,537,541],{},"Regularly blindsided by renewals ",[449,538,540],{"href":539},".\u002F04-procurement-officer-paige","Paige the Procurement Officer"," surfaces with too little runway to make a good decision.",[531,543,544,545,547],{},"Spends a disproportionate amount of time assembling narrative and evidence for ",[449,546,452],{"href":451}," \u002F the board rather than doing architecture work.",[531,549,550,551,553],{},"Chases ",[449,552,465],{"href":464}," and her peers for status on tools he inherited and doesn't fully trust.",[375,555,557],{"id":556},"objectives","Objectives",[528,559,560,577,583,586],{},[531,561,562,563,570],{},"Build a portfolio that's genuinely defensible against a framework (MITRE, NIST CSF, internal control set), not just \"purchased.\"",[485,564,565],{},[449,566,569],{"href":567,"rel":568},"https:\u002F\u002Fsabsa.org\u002Fthe-attributers-blog-traceable\u002F",[491],"[2]",[485,571,572],{},[449,573,576],{"href":574,"rel":575},"https:\u002F\u002Fwww.attackiq.com\u002F2026\u002F03\u002F10\u002Fwhat-does-mitre-attack-coverage-really-mean\u002F",[491],"[3]",[531,578,579,580,582],{},"Find and kill duplicate\u002Foverlapping spend before ",[449,581,540],{"href":539}," or the CFO finds it first.",[531,584,585],{},"Walk into every decision window with a recommendation already costed, not scrambling at T-minus-30.",[531,587,588,589,591],{},"Give ",[449,590,452],{"href":451}," a story he can tell upward without getting caught out.",[375,593,595],{"id":594},"pain-points","Pain points",[528,597,598,621,648,677],{},[531,599,600,601,604,605,608,609,612,613,620],{},"Institutional knowledge about what's ",[495,602,603],{},"actually"," deployed lives in individual engineers' heads and walks out the door when they leave. APQC research found only ",[413,606,607],{},"8%"," of organizations consistently capture knowledge from departing employees, while ",[413,610,611],{},"16%"," make no attempt at all",[485,614,615],{},[449,616,619],{"href":617,"rel":618},"https:\u002F\u002Farguslabs.ai\u002Ftribal-knowledge-problem-when-best-people-leave\u002F",[491],"[4]",".",[531,622,623,624,627,628,635,636,639,640,647],{},"Manual consolidation analysis is weeks of spreadsheet work per category, done reactively, always racing a renewal clock. Tool-count estimates vary by methodology: ",[413,625,626],{},"45"," cybersecurity tools on average with analysts actively using fewer than half on any given day",[485,629,630],{},[449,631,634],{"href":632,"rel":633},"https:\u002F\u002Fwww.secure.com\u002Fblog\u002Fsoc\u002Fsecurity-tool-sprawl",[491],"[5]",", versus ",[413,637,638],{},"61"," security tools each watching its own slice",[485,641,642],{},[449,643,646],{"href":644,"rel":645},"https:\u002F\u002Fnhimg.org\u002Fcommunity\u002Fcybersecurity-beyond-identity\u002Fsecurity-tool-sprawl-and-context-loss-what-practitioners-need-to-fix\u002F",[491],"[6]",". Do not collapse these into one fake average.",[531,649,650,651,653,654,657,658,665,666,669,670,620],{},"Notice periods and renewal dates are scattered across contracts ",[449,652,540],{"href":539}," holds, not natively visible to security until it's nearly too late — ",[413,655,656],{},"69%"," of software contracts carry an auto-renew clause with a 30–90 day notice window",[485,659,660],{},[449,661,664],{"href":662,"rel":663},"https:\u002F\u002Fwww.bettercloud.com\u002Fmonitor\u002Fhow-to-avoid-automatic-software-renewals-and-save-big\u002F",[491],"[7]","; Gartner data cited by Varisource indicates ~",[413,667,668],{},"75%"," of SaaS vendors rely on auto-renewal as retention",[485,671,672],{},[449,673,676],{"href":674,"rel":675},"https:\u002F\u002Fwww.varisource.com\u002Fblog\u002Fsoftware-renewal-negotiation-guide-best-practices",[491],"[8]",[531,678,679,680,682],{},"Personally exposed if ",[449,681,452],{"href":451}," gets blindsided in the board — this is the job that absorbs that risk on his behalf.",[383,684,685,686,688,689,692,693,620],{},"The ",[449,687,540],{"href":539}," ↔ Harry the Head of Cyber scramble (procurement flags a security-tool renewal, architecture cannot answer in time, leverage is lost) is a ",[413,690,691],{},"synthesis",", not a named survey. See ",[449,694,540],{"href":695},".\u002F04-procurement-officer-paige#what-is-evidenced-vs-synthesized",[375,697,699],{"id":698},"relationships","Relationships",[528,701,702,710,717],{},[531,703,704,709],{},[413,705,706,708],{},[449,707,452],{"href":451},":"," reports up, translates ground truth into board-ready evidence and a defensible number.",[531,711,712,716],{},[413,713,714,708],{},[449,715,465],{"href":464}," manages down, relies on her for on-the-ground verification but often distrusts the completeness of what surfaces informally.",[531,718,719,723,724,726],{},[413,720,721,708],{},[449,722,540],{"href":539}," the core decision-window relationship — ",[449,725,540],{"href":539}," flags a contract coming up for renewal, Harry the Head of Cyber has to answer what residual risk a cut or keep creates, fast, with evidence, or the default is auto-renew.",[375,728,730],{"id":729},"empathy-mapping","Empathy Mapping",[732,733,735],"h3",{"id":734},"says","Says",[391,737,738,744],{},[394,739,740],{},[397,741,742],{},[400,743],{},[405,745,746,750,755,760],{},[397,747,748],{},[410,749,385],{},[397,751,752],{},[410,753,754],{},"\"I need this costed, mapped, and evidenced before I take it upstairs.\"",[397,756,757],{},[410,758,759],{},"\"Why am I finding out about this renewal now?\"",[397,761,762],{},[410,763,764],{},"\"Don't show me a vendor heatmap. Show me where we're actually covered.\"",[732,766,768],{"id":767},"does","Does",[391,770,771,777],{},[394,772,773],{},[397,774,775],{},[400,776],{},[405,778,779,784,789,797],{},[397,780,781],{},[410,782,783],{},"Owns portfolio strategy, acts as security design authority",[397,785,786],{},[410,787,788],{},"Constantly reconciles technical reality with commercial reality",[397,790,791],{},[410,792,793,794,796],{},"Builds the narrative\u002Fevidence ",[449,795,452],{"href":451}," presents",[397,798,799],{},[410,800,801],{},"Chases architects and vendors for ground truth",[732,803,805],{"id":804},"thinks","Thinks",[391,807,808,814],{},[394,809,810],{},[397,811,812],{},[400,813],{},[405,815,816,821,829,834],{},[397,817,818],{},[410,819,820],{},"\"I'm the one who actually has to know, and I don't, not fully.\"",[397,822,823],{},[410,824,825,826,828],{},"\"If I miss this overlap, ",[449,827,540],{"href":539}," or the CFO will find it, and that's worse.\"",[397,830,831],{},[410,832,833],{},"\"I inherited half of this stack — I don't trust what I didn't build.\"",[397,835,836],{},[410,837,838],{},"\"Every renewal is a test of whether I actually know my own estate.\"",[732,840,842],{"id":841},"feels","Feels",[391,844,845,851],{},[394,846,847],{},[397,848,849],{},[400,850],{},[405,852,853,858,863,868],{},[397,854,855],{},[410,856,857],{},"Perpetually a step behind the renewal clock",[397,859,860],{},[410,861,862],{},"Caught between technical truth and boardroom narrative",[397,864,865],{},[410,866,867],{},"Quiet anxiety about institutional knowledge walking out the door",[397,869,870],{},[410,871,872],{},"Motivated by control and being ahead of the problem, not behind it",[375,874,876],{"id":875},"design-marketing-angle","Design & marketing angle",[383,878,879,880,882],{},"This is the primary champion and likely economic influencer for ESProfiler even though ",[449,881,452],{"href":451}," signs off.",[383,884,885],{},"Speak to Harry the Head of Cyber directly about decision windows, evidence assembly, and framework mapping — this is the person who will actually log in, run the baseline, and bring the recommendation upward.",[383,887,888,889,891,892,620],{},"Dollar-figure overlap findings land hardest here because it's his personal risk being reduced. Frame the product as the estate description he must already have when consultancy, audit, or the clock owned by ",[449,890,540],{"href":539}," arrives — not as another tool in the sprawl he is trying to kill. See the ",[449,893,47],{"href":894},"..\u002F..\u002Fcompany\u002Fproblem-statement",[375,896,898],{"id":897},"sources","Sources",[528,900,901,911,917,927,937,943,949,958],{},[531,902,903,906,907,910],{},[449,904,492],{"href":489,"rel":905},[491]," Digital Waffle, ",[495,908,909],{},"Head of Cyber Security Job Description"," — sets the roadmap, decides which tools to invest in, how risk is reported to the board",[531,912,913,916],{},[449,914,569],{"href":567,"rel":915},[491]," SABSA — a control that cannot be traced to a business risk is not required",[531,918,919,922,923,926],{},[449,920,576],{"href":574,"rel":921},[491]," AttackIQ, ",[495,924,925],{},"What Does MITRE ATT&CK Coverage Really Mean?"," — untested coverage is unknown, not green",[531,928,929,932,933,936],{},[449,930,619],{"href":617,"rel":931},[491]," APQC via Argus Labs, ",[495,934,935],{},"The Tribal Knowledge Problem"," — 8% capture departing knowledge; 16% make no attempt",[531,938,939,942],{},[449,940,634],{"href":632,"rel":941},[491]," Secure.com, security tool sprawl — 45 tools; analysts use fewer than half on a given day",[531,944,945,948],{},[449,946,646],{"href":644,"rel":947},[491]," NHIMG \u002F Securiti, tool sprawl and context loss — 61 security tools",[531,950,951,954,955,957],{},[449,952,664],{"href":662,"rel":953},[491]," BetterCloud — auto-renewals; ",[413,956,656],{},"; 30–90 day notice",[531,959,960,963,964,966],{},[449,961,676],{"href":674,"rel":962},[491]," Varisource citing Gartner — ~",[413,965,668],{}," of SaaS vendors rely on auto-renewal",{"title":968,"searchDepth":969,"depth":969,"links":970},"",2,[971,972,973,974,975,976,977,978,979,986,987],{"id":377,"depth":969,"text":378},{"id":388,"depth":969,"text":389},{"id":479,"depth":969,"text":480},{"id":512,"depth":969,"text":513},{"id":525,"depth":969,"text":526},{"id":556,"depth":969,"text":557},{"id":594,"depth":969,"text":595},{"id":698,"depth":969,"text":699},{"id":729,"depth":969,"text":730,"children":980},[981,983,984,985],{"id":734,"depth":982,"text":735},3,{"id":767,"depth":982,"text":768},{"id":804,"depth":982,"text":805},{"id":841,"depth":982,"text":842},{"id":875,"depth":969,"text":876},{"id":897,"depth":969,"text":898},"The head of cyber, or Chief Security Architect, is the head of the security team and the security architects. They are responsible for the security tooling portfolio and often the key decision maker for security investments.","md",null,{},true,{"title":236,"description":988},"d6iRwSYWAwdPnOnctk-w3K8PkFm0HUzgmNPTO6weaX0",[996,998],{"title":232,"path":233,"stem":234,"description":997,"children":-1},"The CISO is the accountable one of the security team.",{"title":240,"path":241,"stem":242,"description":999,"children":-1},"The security architect is the boots on the ground of the security estate.",1790076745588]