Better Boards Conference 2026
Pathfinders – Governing with Courage
31 July - 1 August • Cairns Convention Centre
Presentation
Board Imperatives on Digital Security – A Fresh Approach
![]()
Greg Porter
Director, Greg Porter Advisory
Greg Porter has broad technology and business experience over many decades and has post graduate qualification in Engineering (Electrical) and Financial Management.
He has been a senior executive in a number of organisations and has contributed to these at a strategic level and been recommended for his “out of the box” thinking. He has developed his knowledge and skills across many industry sectors (electricity distribution, vertically integrated mining, financial services, tertiary education, logistics, not for profit organisations, professional services, federal and state governments while consulting to SMEs, NFPs.
Greg is currently part of a director's group (Gordon Directors Group) with whom he has worked on the development of the 'Six Imperatives of Digital Security'. He is also on the board of a start-up NFP while also having worked with a number of boards at their direction and to good effect.
Communication between organisations and their boards on Digital Security is difficult. Boards are often told ‘we are secure’, ‘you don’t have to worry’, or try and convert technical information to something the board understands. They are not often part of the narrative despite being totally responsible for the organisation’s security.
But what if a board is asked what is important to them? What should boards expect an organisation to have in place that can be questioned, approved and monitored in terms that are important to boards?
The ‘Six Imperatives on Digital Security for Boards’ and its integration with the operational framework has been developed to give boards confidence in satisfying its statutory responsibilities, and the management of the subject by the organisation.
Today’s approach to security is largely one of ‘Whack-a-mole’ (and cannot be avoided!), and while this is good for solving ongoing vulnerabilities and threats, it does not necessarily inform the board of an overarching view of security.
This presentation will explain the Imperatives (People, Availability, Survivability, Reputation, Compliance, Risk Assurance), and how they relate to the activities the organisation is doing and the base elements an organisation should have in place. It will also discuss how these imperatives can be used on an ongoing basis to monitor the security of the organisation.
Security should not be left up to IT. It is complex, multi-disciplined, multi-layered, broad, much of it is technical. The basis for security should be a detailed security profile, governance framework, security principles, security strategic plan and risk mitigation. These are somewhat different from other recommendations in the director space but practical and related to each organisation and drawn from real life security events. The approach is fresh, provocative, and thought provoking!
Master the art of the boardroom
Receive the Better Boards Newsletter
Sign up to the Better Boards Newsletter for regular content for directors and CEOs of NFP organisations, receive articles, conference information and webinar notices.










