Log inSign up
Phil Venables
9,673 posts
Image
user avatar
Phil Venables
@philvenables
All about cyber, resilience, risk, AI - at scale. Partner - Ballistic Ventures / 4 x CISO / Board Director / Chief Risk Officer
USA
philvenables.com
Joined April 2009
590
Following
14.1K
Followers
  • Pinned
    user avatar
    Phil Venables
    @philvenables
    Sep 13, 2014
    Attackers have bosses and budgets too.
  • user avatar
    Phil Venables
    @philvenables
    Dec 11, 2020
    Yes, it's true. Today is my last day at GS and after a long rest period of.......a weekend.......I'm super excited to get started as CISO for Google Cloud on Monday.
    Google Hires Goldman Sachs Veteran to Lead Cloud Security
    Google Hires Goldman Sachs Veteran to Lead Cloud Security
    From wsj.com
  • user avatar
    Phil Venables
    @philvenables
    Nov 18, 2019
    Simple Rules of (InfoSec) Career Success. A thread. Over the years I made note of what behaviors I’ve seen from successful people. By success, I mean getting results, increase span of influence and are highly regarded as coaches for improving the lives of their teams. 1/11
  • user avatar
    Phil Venables
    @philvenables
    Jun 23, 2019
    Threat Intelligence. A Thread. Threat intelligence seems, at least to me, to get maligned too much. For many years I’ve found it an immensely useful element of an enterprise security and risk program. So, some perspectives on this. 1/11
  • user avatar
    Phil Venables
    @philvenables
    May 21, 2022
    I'm amazed cybersecurity doesn't draw more lessons from safety engineering. As I read up more on this there's huge learning opportunities. Yes, not totally applicable due to adversarial nature of cyber but many useful cross over design principles. This book is a great primer.
    Image
  • user avatar
    Phil Venables
    @philvenables
    Mar 7, 2025
    Some news...... Over 4 years ago I became Google Cloud’s first CISO and brought many teams together into a unified security, compliance, privacy and risk team focused on securing the cloud, securing our customers and securing the planet. However, it’s now time for me to
    35K
  • user avatar
    Phil Venables
    @philvenables
    Mar 31, 2019
    Technology. A thread. In the late 1980’s I was a developer using virtualized systems and containers, software defined networks, thin-client end points that could graphically render serialized content in a standard mark-up language.
  • user avatar
    Phil Venables
    @philvenables
    Aug 27, 2022
    Apparently an Ancient Persian decision making technique was to debate a group decision twice. Once when sober and once when drunk. Only if the decision was the same in both circumstances would it proceed. I suspect I won’t be able to introduce this approach at work.
  • user avatar
    Phil Venables
    @philvenables
    Feb 10, 2022
    A big part of the CISOs role is: Escalation-as-a-Service.
  • user avatar
    Phil Venables
    @philvenables
    Sep 11, 2021
    It is incredible it has been 20 years since 9/11/2001. I used to work next to the World Trade Center and my wife and I lived 2 blocks away in Battery Park. This was the view from our apartment after the first plane hit. 1/13
    Image
  • user avatar
    Phil Venables
    @philvenables
    Jan 1, 2023
    After several days of 2 person building, the 10,001 piece Lego Titanic is done and it’s epic.
    Image
    Image
    Image
    51K
  • user avatar
    Phil Venables
    @philvenables
    Jul 3, 2021
    Cybersecurity and the Curse of Binary Thinking. - Certifications - Compliance - Security through obscurity - Security ratings - End user shaming - Information sharing - Cloud is someone else's computers - Sophisticated attacks - and more..........
    philvenables.com
    Cybersecurity and the Curse of Binary Thinking
    Working in information/cybersecurity and technology risk is a fascinating and challenging career, as I’ve covered here. There is, mostly, a great spirit of sharing and collaboration among security...
  • user avatar
    Phil Venables
    @philvenables
    Sep 1, 2019
    Vulnerability Management. A thread. I don’t see much written on vulnerability management in more holistic terms vs. patch/bug fixing. This might be ok given a lot of vuln. mgmt. should be contextualized into enterprise risk/control. But still worth a short thread....... 1/13
  • user avatar
    Phil Venables
    @philvenables
    Dec 7, 2019
    The Art of Influencing. A thread. A critical measure of success for most security roles is the ability to influence. I’ve often found people think influence skills are innate - you have them or you don't. But, as with most “soft skills”, they can be learnt. Here are some: 1/16

New to X?

Sign up now to get your own personalized timeline!

Create account

By signing up, you agree to the Terms of Service and Privacy Policy, including Cookie Use.

Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Don't miss what's happening
People on X are the first to know.
Log inSign up
Advertisement
Advertisement