# Organizational Politics & The Security Program

DevFeed: [Organizational Politics & The Security Program](<https://devfeed.tech/articles/organizational-politics-the-security-program-39492.md>)

Original publisher: [Read original article](<https://www.philvenables.com/post/organizational-politics-the-security-program>)

Author: phil7672

Published: 2026-03-21T11:29:27Z

Content type: opinion

Language: en

Sources: [Risk and Cyber](<https://devfeed.tech/sources/risk-and-cyber.md>)

Topics: [Security](<https://devfeed.tech/topics/security.md>), [Threat Research](<https://devfeed.tech/topics/threat-research.md>)

Tags: [cybersecurity](<https://devfeed.tech/tags/cybersecurity.md>), [leadership](<https://devfeed.tech/tags/leadership.md>), [risk](<https://devfeed.tech/tags/risk.md>), [security](<https://devfeed.tech/tags/security.md>), [technology](<https://devfeed.tech/tags/technology.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

## AI overview

The article revisits organizational politics in security programs and argues that cybersecurity benchmarking should focus on control effectiveness and outcomes rather than budgets alone. It also discusses the continuing waves of vulnerabilities and possible responses.

## Source excerpt

I first wrote the original of this post over 4 years ago. Having seen a new spurt of discussion about organization politics in various on-line and in-person forums I thought it was time for an update. At every stage in your career and in every part of your role you are going to have to deal with organizational politics. People often construe such politics as inherently negative. Yes, there are some organizations that have toxic cultures where organizational politics looks more like chicanery...