* [![perspectives](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2025/02/prespective-icon.png)](https://www.paloaltonetworks.com/perspectives)
* The Keys to CISO Role Success---Part Two: Elevating Your Stature

# The Keys to CISO Role Success---Part Two: Elevating Your Stature

![The Keys to CISO Role Success—Part Two: Elevating Your Stature](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2022/05/the-keys-to-ciso-role-success-elevating-your-stature.jpg)  
**By [Ed Harris](https://www.paloaltonetworks.com/perspectives/author/ed-harris/ "Posts by Ed Harris")** | **7 min read** |  
![share icon](https://paloaltonetworks.com/content/dam/pan/en_US/cxo-perspectives/images/cxo-share.svg)

* LinkedIn button ![linkedin-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-linkedin.svg)
* Twitter share button ![twitter-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-twitter-x-black.svg)
* \[Email share button ![email-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-email.svg)\](mailto:?subject=The Keys to CISO Role Success—Part Two: Elevating Your Stature\&body=Check out this article https%3A%2F%2Fwww.paloaltonetworks.com%2Fperspectives%2Fthe-keys-to-ciso-role-success-elevating-your-stature%2F "Share in Email")
* ![copy-icon](https://www.paloaltonetworks.com/perspectives/wp-content/themes/csp2025/dist/images/icons/icon-share.svg)
  [](https://www.paloaltonetworks.com/perspectives/the-keys-to-ciso-role-success-elevating-your-stature/?pdf=download&lg=en&_wpnonce=7c4ed01ef4 "Click here to download") MEET THE AUTHOR  
  ![](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2025/02/panw_master-twitter-profile-pic-400x400-1.png)  
  Ed Harris is Global Director of Information Security at Mauser Packaging and a fellow at the Institute for Critical Infrastructure Technology....

[Learn more](https://www.paloaltonetworks.com/perspectives/author/ed-harris/)

## IN THIS ARTICLE

In the [first part of this series](https://www.paloaltonetworks.com/cybersecurity-perspectives/the-keys-to-ciso-role-success-part-one-entering-a-new-role/?ts=markdown) I shared two key actions new CISOs can take to get up to speed quickly and make the most of a new leadership role. In this article, we'll cover two ways you can elevate your stature as CISO---and your effectiveness---once you've gotten your feet on the ground during your first months on the job. One of these two keys to success is a capability to develop. The other is a professional opportunity to cultivate that can be game changing for CISOs or any leader.

## Two Keys to Elevating Your Stature as CISO

### Key \#1: Learn To Speak Multiple Languages

Almost all CISOs are fluent in the language of cybersecurity. But that's not enough. You must be equally proficient in other languages of your organization. After all, you can't be successful as a CISO if you can't speak to other leaders and teams in words that they can clearly understand and relate to.

As a CISO, you obviously need to know the language of information security. But you also need to know the language of IT. You should be able to talk to developers and people who work in networking and the server team and the desktop team. So speaking IT should be your second language.

The third language to become fluent in is the language of audit---a vocabulary that speaks directly to the risk posture of the organization. It's not always about cyber risk. Sometimes it's just related to risk in general. But the language of audit really aligns with how the organization does business and protects its most important assets.

Finally, the most critical language to understand and speak well is simply the language of business. It allows you to be heard and respected when talking to your board and your senior executives. You need to be able to communicate things like revenue streams, risk management, what's going on in all of your business units, and how security impacts all of it. Learning this language even more deeply involves becoming fluent in the different functional areas of your business---including HR, finance, sales, and marketing.

**How can CISOs become fluent in all of these languages?** One way is to go back to school, as I have done. Years ago I went back for an MBA and now I'm getting a doctorate in IT with an emphasis on cybersecurity. But you don't have to be a glutton for punishment like me and go back to school; I happen to really enjoy it, and enjoy the process of learning. I find the educational background helpful, not just in doing my job day-to-day, but with public speaking, webinars and other public activities of that nature. The best advice I can offer in learning the multiple languages of business, infosec, IT and audit is to follow the old adage: *"We have two ears and one mouth so we can listen twice as much as we speak."*

I find the best CISOs are great at paying attention and asking questions. Come with a humble heart. Go to lunch with someone on the infrastructure team and ask them about servers and infrastructure, about what their days are like and what kinds of new solutions they are using and considering for the company. Have similar conversations across the organization---with leaders and others in HR, finance, sales, and marketing and all corners of the business. I may sit with a business unit president and ask about their plans for the next six months. I'll think about what they are planning and come back to them with ways I can help deliver what they want with a reduced risk posture.

When I'm talking to the business side, I want them to see me as "the department of YES." We don't ever tell the business, "No." We always come back with a way to help them generate revenue for our company. Our job is to be creative and get them to a level where they can generate more revenue without added potential for risk liability.

### Key \#2: Develop Your Own "R\&D Team"

What do I mean by the concept of developing your own "R\&D team"? Contrary to what you might think, I'm not talking about research and development related to your cybersecurity or technological innovation. Instead, it's about developing *yourself* as a leader.

That kind of R\&D takes forming personal relationships. This can be with CISOs in other companies, perhaps in the same geographic area, or the same industry, or like-minded individuals that you respect and with whom you are willing to share information. It can also be with think tanks, analysts, vendors and others who may have relevant knowledge, experience or contacts to share.

You want to build bidirectional communication with these potential colleagues, peers, advisors, and mentors. You want to bounce ideas off individuals whose knowledge and experience complements yours, and vice versa. I think of it as a "personal R\&D team" because it's just for you as a CISO.

It's important to learn to be comfortable sharing---not just your wins, but also your losses. If you've had a problem recently, when you talk to your personal R\&D team, you may find insight and guidance in how they've handled a similar situation. Maybe they already invented that particular wheel, so you don't have to reinvent it.

There's real value in having conversations at the CISO peer level, even if it's just talking about how to get creative with financing, or ways to find additional budget money. I advise people to:

* **Get involved with CISO groups in your geographic area or in your industry.** Reach out to other CISOs and be willing to share so you develop bidirectional relationships that can help one another. Go to dinners, hand out business cards, collect business cards.
* **Go to conferences, webinars and other industry events on a regular basis**, whether in-person or virtual, and listen to the experiences and pitfalls faced by other CISOs across all industries. You may find commonalities that you wouldn't expect; for example, manufacturing companies and hospitals both deal with a lot of industrial controls, so there is a lot CISOs in those fields can learn from one another.
* **Communicate regularly with your personal R\&D team**, face to face, by email, by videoconference, whatever it takes to build a rapport so that you have a repository of people at your level that you can bounce ideas off of. If you are willing to share and learn, you will find that the collective knowledge will help you grow faster and make the work more fulfilling and collaborative.

## Taking the Next Step

CISO is a challenging job, especially in today's environment where the workplace is changing right before our eyes. Whether you're new to the CISO job or have years of experience, there are always steps you can take to be better, and to make the job more fulfilling and rewarding for yourself.

In these two articles, I've identified four keys that have helped me in my career and have helped countless peers and colleagues. These are: hiring smart people, creating visibility everywhere, learning multiple languages and building your own personal R\&D team.

As I mentioned in [part one](https://www.paloaltonetworks.com/cybersecurity-perspectives/the-keys-to-ciso-role-success-part-one-entering-a-new-role/?ts=markdown), there is tremendous value in hiring people with a teacher mindset. There is also tremendous value in tackling the CISO job with the same mindset. If you set out to teach, mentor, inspire and learn, you can reduce some of the stress that comes with the territory, while continuously making the work interesting and forward-looking.

*** ** * ** ***

*Ed Harris is Global Director of Information Security at Mauser Packaging and a fellow at the Institute for Critical Infrastructure Technology.*

* [Cyber as a Boardroom Topic](https://www.paloaltonetworks.com/perspectives/all-articles/?cat=cyber-as-a-boardroom-topic)

## Related Content

![](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/AdobeStock_704394220-16x7-1-scaled.png) BLOG

### AI

**Is Your Enterprise Architecture Ready for the Agentic Workforce?**

Exploring autonomous, agent-to-agent risk: Why your security needs governed...

[Anand Oswal](https://www.paloaltonetworks.com/perspectives/author/anand-oswal/ "Posts by Anand Oswal")
[](https://www.paloaltonetworks.com/perspectives/is-your-enterprise-architecture-ready-for-the-agentic-workforce/)  
![](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/02/New-Economics-of-Cyber-Resilience-featured.jpg) BLOG

### AI

**From Insurance Policy to Growth Engine: The New Economics of Cyber Resilience**

Security is not a shield. It is a sensor for business velocity....

[Ben Hasskamp](https://www.paloaltonetworks.com/perspectives/author/ben-hasskamp/ "Posts by Ben Hasskamp")
[](https://www.paloaltonetworks.com/perspectives/from-insurance-policy-to-growth-engine-the-new-economics-of-cyber-resilience/)  
![](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/01/CEO-Doppelgangers-featured.jpg) BLOG

### AI

**CEO Doppelgängers: When Identity Becomes the New Attack Surface**

Explore why authenticity is the new currency of trust....

[Amy Blackshaw](https://www.paloaltonetworks.com/perspectives/author/amy-blackshaw/ "Posts by Amy Blackshaw")
[](https://www.paloaltonetworks.com/perspectives/ceo-doppelgangers-when-identity-becomes-the-new-attack-surface/)  
STAY CONNECTED

## Connect with our team today

Job Level  
Sign me up to receive news, product updates, sales outreach, event information and special offers about Palo Alto Networks and its partners.  
By submitting this form, I understand my personal data will be processed in accordance with Palo Alto Networks [Privacy Statement](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown) and [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown).  
This site is protected by reCAPTCHA and the Google [Privacy Policy](https://policies.google.com/privacy) and [Terms of Service](https://policies.google.com/terms) apply.
Reach out  
{#footer} Products and Services

* [AI-Powered Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown)

* [Secure AI by Design](https://www.paloaltonetworks.com/ai-security?ts=markdown)

* [Prisma AIRS](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown)

* [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown)

* [Cloud Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown)

* [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown)

* [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown)

* [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown)

* [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown)

* [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown)

* [Enterprise IoT Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown)

* [Medical IoT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown)

* [Industrial OT Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown)

* [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown)

* [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown)

* [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown)

* [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown)

* [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown)

* [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown)

* [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown)

* [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown)

* [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown)

* [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown)

* [Application Acceleration](https://www.paloaltonetworks.com/sase/app-acceleration?ts=markdown)

* [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown)

* [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown)

* [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown)

* [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown)

* [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown)

* [Remote Browser Isolation](https://www.paloaltonetworks.com/sase/remote-browser-isolation?ts=markdown)

* [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown)

* [AI-Driven Security Operations Platform](https://www.paloaltonetworks.com/cortex?ts=markdown)

* [Cloud Security](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown)

* [Cortex Cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown)

* [Application Security](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown)

* [Cloud Posture Security](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown)

* [Cloud Runtime Security](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown)

* [Prisma Cloud](https://www.paloaltonetworks.com/prisma/cloud?ts=markdown)

* [AI-Driven SOC](https://www.paloaltonetworks.com/cortex?ts=markdown)

* [Cortex XSIAM](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown)

* [Cortex XDR](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown)

* [Cortex XSOAR](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown)

* [Cortex Xpanse](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown)

* [Unit 42 Managed Detection \& Response](https://www.paloaltonetworks.com/cortex/managed-detection-and-response?ts=markdown)

* [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown)

* [Next-Generation Identity Security](https://www.paloaltonetworks.com/idira?ts=markdown)

* [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown)

* [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown)

* [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown)

* [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown)

* [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown)

* [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown)

* [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown)

* [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown)

* [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown)

* [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown)

* [Threat Intel and Incident Response Services](https://www.paloaltonetworks.com/unit42?ts=markdown)

* [Prepare for Emerging Risks](https://www.paloaltonetworks.com/unit42/frontier-ai-defense?ts=markdown)

* [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown)

* [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown)

* [Understand the Adversary](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown)

* [Respond to a Cyber Attack](https://www.paloaltonetworks.com/unit42/respond?ts=markdown)  
  Company

* [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown)

* [Careers](https://jobs.paloaltonetworks.com/en/)

* [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown)

* [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown)

* [Customers](https://www.paloaltonetworks.com/customers?ts=markdown)

* [Investor Relations](https://investors.paloaltonetworks.com/)

* [Location](https://www.paloaltonetworks.com/about-us/locations?ts=markdown)

* [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown)  
  Popular Links

* [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown)

* [Communities](https://www.paloaltonetworks.com/communities?ts=markdown)

* [Content Library](https://www.paloaltonetworks.com/resources?ts=markdown)

* [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown)

* [Event Center](https://events.paloaltonetworks.com/)

* [Manage Email Preferences](https://start.paloaltonetworks.com/preference-center)

* [Products A-Z](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown)

* [Product Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/certifications?ts=markdown)

* [Report a Vulnerability](https://www.paloaltonetworks.com/security-disclosure?ts=markdown)

* [Sitemap](https://www.paloaltonetworks.com/sitemap?ts=markdown)

* [Tech Docs](https://docs.paloaltonetworks.com/)

* [Unit 42](https://unit42.paloaltonetworks.com/)

* [Do Not Sell or Share My Personal Information](https://panwedd.exterro.net/portal/dsar.htm?target=panwedd)
  ![Palo Alto Networks Logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/pan-logo-dark.svg)

* [Privacy](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown)

* [Trust Center](https://www.paloaltonetworks.com/legal-notices/trust-center?ts=markdown)

* [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown)

* [Documents](https://www.paloaltonetworks.com/legal?ts=markdown)

Copyright © 2026 Palo Alto Networks. All Rights Reserved

* [![Youtube](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/youtube-black.svg)](https://www.youtube.com/user/paloaltonetworks)
* [![Podcast](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/icons/podcast.svg)](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown)
* [![Facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/facebook-black.svg)](https://www.facebook.com/PaloAltoNetworks/)
* [![LinkedIn](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/linkedin-black.svg)](https://www.linkedin.com/company/palo-alto-networks)
* [![Twitter](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/twitter-x-black.svg)](https://twitter.com/PaloAltoNtwks)
* EN  
  Select your language
