P
Paul Cragg
1
APPEARANCES
1
PODCASTS
012
DEC 30
JAN 6
JAN 13
JAN 20
JAN 27
FEB 3
FEB 10
FEB 17
FEB 24
MAR 3
MAR 10
MAR 17
MAR 24
MAR 31
APR 7
APR 14
APR 21
APR 28
MAY 5
MAY 12
MAY 19
MAY 26
JUN 2
JUN 9
JUN 16
JUN 23
JUN 30
JUL 7
JUL 14
JUL 21
JUL 28
AUG 4
AUG 11
AUG 18
AUG 25
SEP 1
SEP 8
SEP 15
SEP 22
SEP 29
OCT 6
OCT 13
OCT 20
OCT 27
NOV 3
NOV 10
NOV 17
NOV 24
DEC 1
DEC 8
DEC 15
DEC 22
DEC 29
JAN 5
JAN 12
JAN 19
JAN 26
FEB 2
FEB 9
FEB 16
FEB 23
MAR 2
MAR 9
MAR 16
MAR 23
MAR 30
APR 6
APR 13
APR 20
APR 27
MAY 4
MAY 11
MAY 18
MAY 25
JUN 1
JUN 8
JUN 15
JUN 22
JUN 29
JUL 6
JUL 13
JUL 20
JUL 27
AUG 3
AUG 10
AUG 17
AUG 24
AUG 31
SEP 7
SEP 14
SEP 21
Sep 17, 2026
Cyber resilience: do boards fall short?
6:49
7:11
7:48
7:58
8:10
6:21
And whilst those cyber attacks were terrible for the people who worked in those companies, who had invested in those companies and were customers of those companies, the wider impact on industry and of course on regulation and lawmaking has probably been a net positive because we're now in a much better place to at least understand the risks that we face has that filtered through as yet to the customer bases that you're both talking to so

Paul CraggGUEST
it's actually quite interesting point steve so you know richard touched upon um the media we We as an MSSP have kind of seen a degree of the ostrich with its head in the sand kind of analogy on cyber recently.

Paul CraggGUEST
And in fact, those large scale incidents at the back end of last year drove a lot of smaller scale organisations to push their heads in further because they were kind of sat there feeling well, if these big brands can suffer an incident of this scale, and therefore, there's the hypothetical, they must be spending X amount of money on cyber and on IT and on security, then what hope do we have? So it actually drove the complete opposite behavior from an end user perspective.

Paul CraggGUEST
What we are seeing, however, is the regulation having the right behaviour or starting to embed the right behavioural patterns.

Paul CraggGUEST
And I think we as a nation are being slightly behind the times on getting regulation to drive people's behaviour.

Paul CraggGUEST
And the only reason why you put regulation in place is because something isn't working at the end of the day.
16 MINS LATER
24:11
So what then do we need to change? Because if we've got this discrepancy, we've got this shortfall where perhaps the CISO or the CIO's department thinks they're better than they are and the board is not taking it as seriously as they should, what needs to give? I
