CIO Watercooler's Tech Talks podcast has invited Jonny Tyers to join them for an episode titled "From Hacker to Hero: Simplifying Cyber Risks for Business Leaders". We're looking forward to a conversation that gets into why most security communication fails at the business level — and what a better approach looks like.
About the episode
CIO Watercooler's Tech Talks podcast is aimed at technology leaders and decision-makers: CIOs, CTOs, and senior IT leaders who understand that security matters but often don't have a security background themselves. That's an audience Jonny talks to regularly, and the questions they have are consistently different from what the security industry tends to address.
The "hacker to hero" framing comes from Jonny's own background — moving from offensive security research into work that helps businesses understand and manage their risk rather than just finding vulnerabilities. The shift in perspective that requires is part of what the conversation will explore.
What the conversation will cover
The episode will cover why security communication typically fails at the business level. Technical teams produce findings that don't connect to commercial outcomes. Boards receive reports they can't interpret or act on. The security function ends up isolated — spending its time on compliance processes that don't reflect real risk.
Jonny will walk through what changes when you start with the business question — what are we actually trying to protect, and what would it cost us if it went wrong — rather than starting with the technical question of what vulnerabilities exist. That reframe is simple but it changes everything about what you prioritise and how you communicate with leadership.
The conversation will also touch on the specific challenge for small and mid-size organisations, which face the same obligations as large enterprises but with a fraction of the resource.
Listen to the episode
The full episode is available on the CIO Watercooler website and all major podcast platforms.

Jonny founded Threatplane in 2017. With a background in offensive security, he has spent 15+ years helping organisations across defence, financial services, healthcare, and manufacturing understand and manage their technology risks.
Full bio →
