Skip to main content
Tradecraft Labs

Independent research exploring the human side of cybersecurity governance, leadership, and risk-informed decision making.

Current Research

BISO GovernanceActive

The Business Information Security Officer as a Governance Intermediary: Improving Cybersecurity Decision Quality Through Trust, Influence, and Risk-Based Decision Making

The Business Information Security Officer (BISO) functions as a governance intermediary and boundary-spanning leadership role that enables organizations to navigate competing cybersecurity and business priorities through structured risk-based decision making.

Research Progress

Current Stage: Interviews

Why This Research Matters

Existing BISO literature focuses primarily on role definitions, reporting structures, stakeholder engagement, and security-business communication. Limited research examines how BISOs influence organizational decision-making, improve governance processes, facilitate risk acceptance, or contribute to decision quality. How BISO effectiveness should be measured remains largely unaddressed. This research investigates the BISO as a governance intermediary rather than a communication function, and addresses that gap directly.

From the Research Journal

View all entries →
Milestone

Platform Launch and Research Status

Tradecraft Labs launches as a public research platform. This entry documents the current state of the BISO Governance research, what has been completed to date, and what comes next in the practitioner interview phase.