Flavius Plesu — Pioneering Human Risk Management as Founder & CEO of OutThink - the original CHRM platform made by CISOs, for CISOs
Pioneering Human Risk Management as Founder & CEO of OutThink - the original CHRM platform made by CISOs, for CISOs
Flavius Plesu ranks #588 of 19,190 LinkedIn creators in Computer & Network Security, and is a standout voice in Switzerland. They have 23.5K followers and published 33 posts in the last 30 days at a 0.1% average engagement rate.
- 23.5K followers
- 33 posts / 30d
- 0.1% avg engagement
- 315 follower growth / 30d
The roast
Flavius, you named your company OutThink, which is a bold choice for someone whose entire engagement strategy is just repeating the same corporate word salad 22 times a month. You aren’t managing human risk; you’re just the world’s most expensive pop-up ad that everyone is trying to close.
About Flavius
I’m Flavius, a seasoned cybersecurity leader and the CEO of OutThink. With 20 years of experience and a background as a CISO, I understand the complexities of securing large organizations. OutThink was born from my belief that people, when engaged beyond traditional security awareness, can become an organization’s strongest defense. My passion not only lies in preventing data breaches but also in inspiring change and challenging the status quo. My team and I work enthusiastically to help businesses understand and manage cybersecurity human risk effectively. As a speaker, I share insights on cybersecurity, human risk management, digital skills, and my journey as a founder. I welcome questions and insightful conversations, so feel free to reach out.
Highlights
- Consistent Creator — 25 posts in 30d · top 5%
- Big Audience — 23,507 followers · top 5%
- Top 5% in Computer & Network Security — Ranked #15 of 333 creators
- Top 10% in Switzerland — Ranked #19 of 306 creators
Recent posts
WhatsApp is rolling out usernames to 3 billion people so they can message without sharing a phone number. India halted it this week over fraud and impersonation concerns. Here's something the coverage is missing: A phone number was never a security control, but for years it was quietly doing security work. You never consciously vetted a number. But a message from a saved contact carried a little more implied legitimacy than a message from a stranger... And the number itself told you something. An unfamiliar country code was a 🚩 you felt before you thought about it - how many people answer
8 reactions · 0 comments · 0 reposts
Security Architecture teams design controls. They think about friction, access paths, user behaviour under pressure. Rarely do they consult the person in the organisation who knows most about how employees actually behave: the Security Awareness Officer. The result is controls that introduce friction without changing behaviour: - Secure paths that nobody uses - Workarounds that become the norm. I've written about why this happens and what fixing it actually looks like. It's the third playbook in the workshop Damon DePaolo and I are running at SANS Institute in August. Link in the comments.
11 reactions · 5 comments · 0 reposts
"Reporting that the cabinet is full of dynamite is not the same as addressing why it is stored there." Read that again if you run a security program. This was said in the comments of one of my previous posts. It is the sharpest thing anyone has said to me about risk reporting in a while. Visibility has become the finish line: 1️⃣ We find the risk 2️⃣ We log the risk 3️⃣ We put it on the board slide and call that managing it. But dynamite does not store itself. Someone put it there, usually because the safe path was slower, the approved tool created friction, or the shortcut was the only w
6 reactions · 2 comments · 0 reposts