“After the incident, an accepted risk is a governance decision disguised as a paper control; that is what clients renew for.”

After the incident, an accepted risk is a governance decision disguised as a paper control; that is what clients renew for. — Kai London (Professor Kai London), CISO. Principle 9844 of 10000 from the book “The Breach Had Permission” — cybersecurity, AI security and OT resilience doctrine. Official sites: professorkailondon.com · kailondon.co.uk