Cezary Piekarski, Group CISO, Standard Chartered

  • Defined the actions that can be automated and those that require human approval
  • Set escalation paths and accountable decision-makers for high-impact incidents
  • Tested how automated controls behave when they generate false positives, miss a threat or disrupt an important service
  • Prepared business leaders to understand the operational implications of cyber and AI-related risks
  • Built a culture in which employees can report mistakes, raise concerns and escalate issues early