About My Work

Helping leaders document cybersecurity oversight, decisions, and controls as evidence of responsible institutional conduct.
After an incident, organizations may be judged not only on what happened but on whether leadership understood the risk and took reasonable steps to address it.
Clear governance, documented decisions, appropriate controls, and continuing review create a stronger record of responsible care.
Brent helps boards and executive teams create a clear record that cybersecurity risks were understood, assigned, addressed, and reviewed over time. The work focuses on governance practices, documented decisions, proportionate controls, and continuing oversight—evidence that can support insurers, counterparties, regulators, and counsel when an organization must demonstrate it did not act negligently.
‍
Work