Credited by Robert Garigue to Gabe Davids of EDS.
Core Point: Done properly, security enables MORE risk-taking, allows one to do MORE with LESS. In other words, cyber-security policies that are risk-averse instead of risk-enabling are, in a word, retarded and retard the enterprise. Case in point: Wikileaks leading to no more flash drives–what SHOULD be in place is all the flash drives one wishes, but embedded security that prevents or flags abuse of those flashdrives.
See Also:
Robert Garigue, “Technical Preface” to Book Three
Robert Garigue, CISO Briefing