Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
Security Leadership and Management

How Politics in IT Can Put Enterprises at Risk

By Dan Ross
September 9, 2014

Every size and type of business is faced with IT and security challenges of ever-increasing variety and complexity. As IT departments scramble to find enough budget, skilled staff and time to address all the intrusions that could negatively impact their organization, internal pressures build. Especially in larger enterprises, the IT team is actually several teams: network, data, security, compliance, and so on. Piling on, each team works with several vendors, which are definitely not set up to work with each other. Obviously, there’s enough to grapple with technology-wise to keep everyone busy forever.

These “politics” in and around IT departments, especially in larger organizations, play a significant role in the overall security of the company. Even within the typical security department, there are islands of responsibility, budgets, and data. The network team doesn’t share resources or ideas with the endpoint team, and so on. Those who get data first often hide it in hopes it will make them look good or provide justification to request more funding. Veterans of the game know that dividing security work into sub-teams often means a bigger overall budget. If you simply consolidate teams, you stand to lose resources as redundancies are discovered and eliminated. In that sense, it may be beneficial to maintain some silos with distinct funding sources.

The real problem with silos is lack of collaboration.  Without a strong web of communication stretching across all subdivisions, the security profile of an organization is incomplete. Gaps in security can go undetected, overlaps create inefficiencies, and data never makes it to the teams that do something important with it. Security staff and vendors must share data for the betterment of IT security systems, and for the protection of the enterprise as a whole.

In order for this sharing to become an integral part of a company’s culture and operations, upper level management must engage with their security teams. Executives and managers can look beyond IT fiefdoms to compile a holistic view of the people, processes and technology that serve to protect their infrastructure and their brand. Stepping back from interdepartmental politics will allow leaders to start intelligent conversations about shared priorities and risks. A big picture view will also highlight gaps in security that often occur when distinct solutions are deployed within silos and sub-teams.

This two-way communication breakdown clearly needs to be addressed within organizations, but also by security vendors. Not only do we need to better relay importance to upper management, we also need to better collaborate with boots-on-the-ground IT professionals to implement solutions in a way that benefits the entire business.   

Recent high-profile incidents like the Target credit card breach have been widely publicized enough to reach the ears of executives. After all was said and done, very high-level executives lost their jobs and Target’s stellar brand was tarnished. It has become apparent that security (or lack of it) can make a big impact on the bottom line. Negative brand impact can potentially equal millions of dollars lost. On the other hand, a strong security profile can protect a brand and provide competitive advantage. The speed and thoroughness with which you can anticipate, detect and remediate security issues is certainly a competitive factor, and increasingly a condition of doing business with partners and the public.

Comprehensive security solutions can bridge political divides within IT organizations by providing visibility and a common set of data points. If every sub-team responsible for some piece of an organization’s cybersecurity can see easily the whole picture, including vulnerabilities and risks, it is possible to plan an integrated solution from a common understanding. Streamlining data gathering and sharing means teams can speak a common language when collaborating instead of being stuck with conflicting sets of terminology or reporting tools. A security solution that continuously scans every endpoint in the enterprise can provide objective, verifiable, repeatable and portable analyses.

This approach was the topic of much discussion at the recent Gartner Security & Risk Management Summit in Washington D.C., with speakers calling for organizations to become more proactive and hands-on about endpoint security through increased visibility throughout the enterprise network. This single view of security data becomes the trusted foundation for efficient work in service to the brand and the bottom line. The frantic games around the need for control, covering one’s derriere, and hoarding financial and staffing resources arise from the fear of the unknown. No security team wants the breach to happen on their watch, or through their piece of the network. An end-to-end continuous monitoring solution that addresses the headaches of Bring Your Own Device (BYOD), patch updates, configuration states, incomplete network registries and the like can build up enough peace of mind to alleviate the pressure cooker effect and encourage clear-headed planning and faster response times.

Politics are a part of every workplace, but powerful, comprehensive tools make a tough job easier and mitigate the causes of tiresome fire drills. The pointing of fingers becomes a moot point if everyone knows they are operating off the same data-driven understanding of security infrastructure. The job of the security team is challenging enough without internal complications. Leadership must align and inspire teams with the united goals of customer service, brand protection and competitive advantage and empower them with the right tools to get the job done.

KEYWORDS: cybersecurity management cybersecurity silo office security security communications security department

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

With more than 30 years of successful entrepreneurial leadership and management experience, Dan Ross is responsible for strategic direction and day-to-day global management at Promisec. Promisec is a pioneer in endpoint visibility and remediation, empowering organizations to avoid threats and disarm attacks that can lead to unwanted headlines and penalties. Our technology assures users that their endpoints are secure, audits are clean, regulations are met, and vulnerabilities are addressed proactively.

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Cyber tech background

    Security’s Top Cybersecurity Leaders 2026

    Security magazine’s Top Cybersecurity Leaders 2026 award...
    Security Leadership and Management
  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Security Education & Training
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Popular Stories

SEC Podcast Header Podcast

Credential Management in High Turnover Environments

Glowing police siren

Security Isn’t a Commodity. Neither Is Off-Duty Law Enforcement

Laptop in darkness

Reframing MFA Bypass: Four Identity Gaps Attackers Exploit

Soccer stadium

How the Current Iran-US Conflict May Impact World Cup Security

Man with covered face

Why Most Workplace Violence Prevention Starts Too Late

SEC 2026 Benchmark Banner

Events

July 8, 2026

The 2026 Security Maturity Benchmark Report: Insights From Senior Security Leaders

LIVE: July 8, 2026 at 2 pm EDT In this webinar, speakers will share key insights from the report, including why today’s threat environment demands greater maturity and how to evaluate your organization’s current security posture.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products


Alertmedia sponsored webinar

Related Articles

  • cyber-shield-freepik1170x658.jpg

    US enterprises at risk; Russian cyberattacks could disrupt public safety, critical infrastructure

    See More
  • bored-enews

    Enterprises at Risk from Accidental Insider Threats

    See More
  • API-security-freepik1170x658v50.jpg

    Overconfidence in API security posture leaves enterprises at high risk

    See More

Related Products

See More Products
  • security culture.webp

    Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

  • Risk Analysis and the Security Survey, 4th Edition

  • 1119490936.jpg

    Solving Cyber Risk: Protecting Your Company and Society

See More Products
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing