A Decade of Strategic Focus in Cybersecurity
This year marks ten years since we established Corix Partners in its current form, and I would like to reflect on the work we’ve done, the challenges we’ve seen, and the recurring themes that continue to shape cybersecurity as a discipline.
When we rebranded and relaunched Corix Partners in 2015 with Neil Cordell, our goal was simple: to help large organizations tackle complex cybersecurity problems with clarity, pragmatism, and strategic focus. It was clear to me even then that many of the persistent issues in cybersecurity weren’t technical in nature — they were organizational. They were about governance, leadership, accountability, and how security was managed at the top. That has remained the focus of our work.
Focus on Leadership and Execution
Over the past decade, Corix Partners has supported clients across industries in the UK and in France, helping them define and implement security strategies, design operating models, navigate post-incident recovery, and build sustainable governance frameworks. The challenges vary, but the patterns are familiar: security is often too isolated, too reactive, and too disconnected from business priorities.
A central concern throughout my work has been the role of the CISO. I have long argued that cybersecurity leadership must evolve beyond technical management. The organization’s cybersecurity leader must become a business leader — someone who can drive change, influence decision-making, and ensure that security becomes embedded in the organization’s culture and governance structures.
Publishing and Thought Leadership
Much of what I’ve written over the years has focused on that transformation. Through the Corix Partners blog and other publications, I’ve aimed to share insights based on practical experience — not just trends or theory.
I’ve also had the opportunity to consolidate these perspectives into a number of books:
- Cybersecurity: The Lost Decade (2019) — a retrospective on the limited progress made across the 2010s, despite increased spending and awareness.
- The Cybersecurity Leadership Handbook for the CISO and the CEO (2024 edition) — a curated collection of over 100 articles written between 2015 and 2024, offering practical guidance on aligning leadership, governance, and cybersecurity priorities.
- The Cybersecurity Spiral of Failure – and How to Break Out of It (2024) — a concise management summary of recurring systemic issues in cybersecurity, along with steps toward more sustainable and accountable practices.
These publications reflect what I’ve seen firsthand: cybersecurity cannot be fixed with technology alone. It requires leadership, persistence, and alignment with the broader goals of the business.
Looking Ahead
Over the years, I’ve also contributed to mentoring programs, professional networks, and conversations around the future of cybersecurity — including how it intersects with ESG and corporate governance. These broader themes are becoming more relevant as digital risk continues to rise on board agendas.
Looking ahead, the mission for Corix Partners remains the same. We will continue to focus on helping organizations make cybersecurity a manageable, meaningful part of business leadership — not a side concern or compliance afterthought.
I’m grateful to the clients, colleagues, readers, and peers who have supported this work over the past decade. As cybersecurity continues to evolve, the need for clear and independent thinking, strong governance, and effective leadership remains as pressing as ever.
JC Gaillard
Founder & CEO
Corix Partners
Contact Corix Partners to find out more about developing a successful Cyber Security Practice for your business.
Corix Partners is a Boutique Management Consultancy Firm and Thought-Leadership Platform, focused on assisting CIOs and other C-level executives in resolving Cyber Security Strategy, Organisation & Governance challenges.