Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Continuing Education
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
ColumnsManagementLeadership & ManagementSecurity Leadership and Management

Here We Go Again! ERM vs. ESRM

By Lynn Mattice
Lynn Mattice
ERM vs. ESRM and Career Planning Security Magazine November 2017
Lynn Mattice
ERM vs. ESRM and Career Planning Security Magazine November 2017
November 1, 2017

Security organizations both in the private and public sectors have made considerable progress in gaining stature. More and more senior security executives truly have a seat at the table today as a respected member of the C-suite. Many security executives regularly interface with the Board of Directors and maintain excellent relationships with board members. Security organizations still have a lot of room for improvement.

 

Smoke and Mirrors

Throughout the years, an incredible amount of effort by a broad range of true leaders have moved the security industry out of the old smoke and mirrors approach to security. In the past, very few security practitioners understood how to become engaged and aligned with the business and learn to speak the language of business. Most practitioners spoke about security in terms that were security-centric and not relevant to business. Few business leaders even understood what their security folks were saying. As a result, the security function was relegated to “out of sight – out of mind” or “we’ll call you when we need you.”

Currently there is a concerted effort underway to push Enterprise Security Risk Management (ESRM) as the newest concept for security practitioners to embrace. In my opinion, ESRM is being driven mainly by individuals and organizations as a revenue generation opportunity for themselves. I strongly urge security practitioners to reconsider embracing and adopting ESRM.

 

The Path Forward

The best way for security functions to be embraced by the C-suite is to align the security function with the business and focus on being relevant and adding value – that is how you gain the respect and support of your senior executives. Study your company’s strategic plan and the overall goals and objectives of the company. Learn as much as you can about your company’s business, its products, supply chain, channel partners, logistics and don’t forget about the company’s customer base. Learn all you can about the company’s competitors and the challenges the company faces in the marketplace. Spend time meeting with senior executives and key functional leaders to understand the challenges they face, and then focus on how security can assist each of those executives and functions. Just the fact that you show interest in the challenges they face and are focused on assisting them in finding creative mitigation solutions will go a long way in changing the perception about security’s value.

Rather than spending time and energy focusing on ESRM, invest in learning about enterprise risk management (ERM) and figure out how you can align the security function with ERM, which is a business management tool that transcends the entire enterprise. Security functions have a unique opportunity to become partners with the ERM function and perhaps even lead it. At last year’s Fall session of the Security 500, we had a session that provided a comparison of ESRM and ERM. Audience members overwhelmingly stated that they saw significantly more alignment with the business by focusing on ERM vs. adopting ESRM.

Security practitioners need to focus on learning the language of the business and becoming entrenched as a business partner. We can’t expect senior executives and functional leaders to learn another new “security-centric” language contained in ESRM... they don’t have the time or the interest and frankly won’t care. Become relevant to the business or risk being deemed redundant and unnecessary.

I look forward to hearing back from readers on their views about adapting to the business or retrenching to the old smoke and mirrors ways of the past.

KEYWORDS: C-suite security security career security management security risk management

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Mattice 2016 200px

Lynn Mattice is Managing Director of Mattice & Associates, a top-tier management consulting firm focused primarily at assisting enterprises with ERM, cyber, intelligence, security and information asset protection programs. He can be reached at: matticeandassociates@gmail.com

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Security Leadership and Management
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
  • The Most Influential People in Security 2025

    Security’s Most Influential People in Security 2025

    Security Magazine’s 2025 Most Influential People in...
    Most Influential People in Security
    By: Security Staff
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Sponsored Content

Sponsored Content is a special paid section where industry companies provide high quality, objective, non-commercial content around topics of interest to the Security audience. All Sponsored Content is supplied by the advertising company and any opinions expressed in this article are those of the author and not necessarily reflect the views of Security or its parent company, BNP Media. Interested in participating in our Sponsored Content section? Contact your local rep!

close
  • critical event management
    Sponsored byEverbridge

    Why a Unified View Across IT, Continuity, and Security Makes or Breaks Crisis Response

  • Charlotte Star Room
    Sponsored byAMAROK

    In an Uncertain Economy, Security Is a Necessity - Not an Afterthought

  • Sureview screen
    Sponsored bySureView Systems

    The Evolution of Automation in the Command Center

Popular Stories

Cybersecurity trends of 2025

3 Top Cybersecurity Trends from 2025

Red laptop

Security Leaders Discuss SitusAMC Cyberattack

Green code

Logitech Confirms Data Breach, Security Leaders Respond

Neon human and android hands

65% of the Forbes AI 50 List Leaked Sensitive Information

The Louvre

After the Theft: Why Camera Upgrades Should Begin With a Risk Assessment

Top Cybersecurity Leaders

Events

September 18, 2025

Security Under Fire: Insights on Active Shooter Preparedness and Recovery

ON DEMAND: In today’s complex threat environment, active shooter incidents demand swift, coordinated and well-informed responses.

December 11, 2025

Responding to Evolving Threats in Retail Environments

Retail security professionals are facing an increasingly complex array of security challenges — everything from organized retail crime to evolving cyber-physical threats and public safety concerns.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products

Related Articles

  • Insider Threat – One of the Biggest Risks We Face

    Insider Threat – One of the Biggest Risks We Face

    See More
  • Secure ID – Here We Go

    See More
  • Lynn Mattice

    A Picture Is Worth a Thousand Words

    See More

Related Products

See More Products
  • The Complete Guide to Physical Security

See More Products

Events

View AllSubmit An Event
  • January 6, 2011

    From Here to There - Advancing in the Security Field

    Learn the three components that are critical for your advancement.
View AllSubmit An Event
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2025. All Rights Reserved BNP Media.

Design, CMS, Hosting & Web Development :: ePublishing