“With the serious impact that a data breach or cyberattack can have on businesses today, cyber risk has quickly become a boardroom-level concern. As a result, organisations must start treating cyber threats the same way they treat overall enterprise risk,” said Jim Pflaging, SailPoint board of directors member and chair of the Cybersecurity Committee. “With this newly-formed committee, SailPoint is setting an example by proactively elevating and addressing cyber risk at the board level with a committee that has cybersecurity as its sole focus.”
“No company is truly ‘safe’ from a cyberattack or a data breach, but the most proactive companies are planning ahead for the strong likelihood of one of these events,” said Mark McClain, CEO and Co-founder, SailPoint. “As a security company, we want to show our customers that we are as committed to securing our own organisation as we are to securing theirs. This board-level committee is us ‘walking the walk’ by staying on the pulse of the threat landscape, hardening our internal network and our products and services, and ensuring that we maintain compliance with important privacy and data protection regulations. This is the right path forward, and we expect more security and IT operations companies will follow our lead on setting a high standard in this area in the months ahead.”
SailPoint’s Cybersecurity Committee is led by Jim Pflaging, with board members Mike Sullivan, chair of SailPoint’s Audit Committee, and Chip Virnig serving on the committee. SailPoint’s CIO Kevin Hansel and CTO and CISO, Darran Rolls will work closely with the committee in fulfilling the committee’s role and charter. The committee will provide board-level oversight of the effectiveness of SailPoint’s cybersecurity programs and its practices for identifying, assessing, and mitigating cybersecurity risks spanning the company, including its products and services. Other committee responsibilities include oversight of the Company’s: security breach and incident response planning; disaster recovery and business continuity preparedness; and compliance with information security and data protection laws and industry standards.